User Manual

Table Of Contents
Users Manual of WGS-5225-8UP2SV
17
Robust Layer 2 Features
The WGS-5225-8UP2SV can be programmed for advanced switch management functions such as dynamic port link
aggregation, Q-in-Q VLAN, private VLAN, Rapid Spanning Tree Protocol, Layer 2 to Layer 4 QoS, bandwidth control and IGMP
snooping. The WGS-5225-8UP2SV provides 802.1Q tagged VLAN, and the VLAN groups allowed will be maximally up to 2K.
Via aggregation of supporting ports, the WGS-5225-8UP2SV allows the operation of a high-speed trunk combining multiple
ports. It enables a maximum of up to 2 trunk groups with 2 ports per trunk group, and supports fail-over as well.
Network with Cybersecurity Helps Minimize Security Risks
The WGS-5225-8UP2SV comes with enhanced cybersecurity to fend off cyberthreats and cyberattacks. It supports SSHv2 and
TLSv1.2 protocols to provide strong protection against advanced threats. Served as a key point to transmit data to customer's
critical equipment in a business network, the cybersecurity feature of the WGS-5225-8UP2SV protects the switch management
and enhances the security of the mission-critical network without any extra deployment cost and effort.
Efficient Management
For efficient management, the WGS-5225-8UP2SV is equipped with Command line, Web and SNMP management interfaces.
With the built-in Web-based management interface, the WGS-5225-8UP2SV offers an easy-to-use,
platform-independent management and configuration facility.
For text-based management, it can be accessed via Telnet and SSHv2 protocol.
For standard-based monitor and management software, it offers SNMPv3 connection which encrypts the packet content
at each session for secure remote management.
Powerful Security from Layer 2 to Layer 4
The WGS-5225-8UP2SV offers comprehensive Layer 2 to Layer 4 Access Control List (ACL) for enforcing security to the
edge. It can be used to restrict network access by denying packets based on source and destination IP address, TCP/UDP ports
or defined typical network applications. Its protection mechanism also comprises 802.1X Port-based and MAC-based user and
device authentication. With the private VLAN function, communication between edge ports can be prevented to ensure user
privacy.
Advanced IP Network Protection
The WGS-5225-8UP2SV also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection functions to
prevent IP snooping from attack and discard ARP packets with invalid MAC address. The network administrators can now
construct highly-secure corporate networks with considerably less time and effort than before.