Datasheet
SGS-5220-24T2X
3
Solution for IPv6 Networking
By supporting IPv6 / IPv4 dual stack and plenty of management functions with easy 
and friendly management interfaces, the SGS-5220 series is the best choice for IP 
surveillance, VoIP and wireless service providers to connect with the IPv6 network. It 
also helps the SMB to step in the IPv6 era with the lowest investment but not necessary 
to replace the network facilities while the ISP constructs the IPv6 FTTx edge network.
IPv4 and IPv6 VLAN Routing for Secure and Flexible Management
To help customers stay on top of their businesses, the SGS-5220 switch series not only 
provides ultra high transmission performance and excellent layer 2 technologies, but also 
offers IPv4/IPv6 VLAN routing feature which allows to cross over different VLANs and 
differentIPaddressesforthepurposeofhavingahighlysecured,exiblemanagement
and simpler networking application.
Robust Layer2 Features
The SGS-5220 series can be programmed for advanced switch management 
function, such as dynamic port link aggregation, Q-in-Q VLAN, Multiple spanning tree 
protocol(MSTP), Layer 2/4 QoS, bandwidth control and IGMP/MLD snooping. The SGS-
5220 series allows the operation of a high-speed trunk combining multiple ports. It 
enables up to 14 groups of 8 ports for trunk maximum and supports connection fail-over 
as well.
Powerful Security
The SGS-5220 series offers comprehensive layer2 to layer4 access control list (ACL) for 
enforcing security to the edge. It can be used to restrict to network access by denying 
packetsbasedonsourceanddestinationIPaddress,TCP/UDPportnumberordened
typical network applications. Its protection mechanism also comprises 802.1x Port-
based and MAC-based user and device authentication. With the private VLAN function, 
communication between edge ports can be prevented to ensure user privacy. 
IPv4 Network
IPv6 Network
Application
IPv6
Stack
IPv4
Stack
Transport Layer
TELNET
WEB
SSHSNMP
ICMPSSL
DHCPNTP
SGS-5220-24T2X
IPv6 Management HostIPv4 Management Host
LACPMSTP
Q-in-Q LLDPQoS
MLD
IGMP
Multicast
• Supports IGMP Snooping v1, v2 and v3
• Supports MLD Snooping v1 and v2
• Querier mode support
• IGMPSnoopingportltering
• MLDSnoopingportltering
• Multicast VLAN Registration (MVR) support
Security
• Authentication
–
IEEE 802.1x Port-based / MAC-based network access 
authentication
–
Built-in RADIUS client to co-operate with the RADIUS 
servers
–
TACACS+ login users access authentication
–
RADIUS / TACACS+ users access authentication
• Access Control List
–
IP-based Access Control List (ACL)
–
MAC-based Access Control List
• Source MAC / IP address binding
• DHCP Snoopingtolterun-trustedDHCPmessages
• Dynamic ARP Inspection discards ARP packets with 
invalid MAC address to IP address binding
• IP Source GuardpreventsIPspoongattacks
• Auto DoS rule to defend DoS attack
• IP address access management to prevent unauthorized 
intruder
Management
• IPv4 and IPv6 dual stack management
• Switch Management Interfaces
–
Console / Telnet Command Line Interface 
–
Web switch management
–
SNMP v1, v2c, and v3 switch management
–
SSH / SSL secure access
• IPv6 IP Address / NTP / DNS management
• Built-in Trivial File Transfer Protocol (TFTP) client
• BOOTP and DHCP for IP address assignment
• System Maintenance









