Bộ Chia Mạng Planet (WGSW-24040) L2+ 24-Port 10/100/1000T + 4-Port Gigabit TP/SFP Combo Managed Switch
Overview
Cost-effective IPv6 Managed Gigabit Switch Solution for Enterprises
PLANET WGSW-24040 series is a Layer 2+ managed Gigabit Switch that features 24-Port 10/100/1000BASE-T + 4-Port Shared 100/1000BASE-X SFP and supports static Layer 3 routing for enterprise-level network. The abundant L2/L4 switching engine offered by the WGSW-24040 series performs effective data traffic control for enterprises and VoIP service providers, video streaming, and multicast applications. Providing user-friendly but advanced IPv6/IPv4 management interfaces, it is well suited for backbone and workgroup network applications by providing affordability, high performance, and stable transmission quality.
Cybersecurity Network Solution to Minimize Security Risks
The new generation of WGSW-24040 series has the cybersecurity feature to protect the switch management and enhance the security for mission-critical network without extra deployment cost and effort. The new WGSW-24040 expands its memory and upgrades the kernel of SSH and SSL protocols to provide strong protection against advanced threats. It includes a range of cybersecurity features such as DHCP Snooping, IP Source Guard, ARP Inspection Protection, 802.1x port-based and mac-based network access control, RADIUS and TACACS+ user accounts management, SNMPv3 authentication, and so on to complement it as an all-security solution. The network administrator can now construct highly-secure corporate networks with considerably less time and effort than before.
Solution for IPv6 Networking
By supporting IPv6/IPv4 dual stack and plenty of management functions with easy and friendly management interfaces, the WGSW-24040 series is the best choice for IP surveillance, VoIP and wireless service providers to connect with the IPv6 network. It also helps the SMB to step in the IPv6 era with the lowest investment but not necessary to replace the network facilities while the ISP constructs the IPv6 FTTx edge network.
IPv4 and IPv6 VLAN Routing for Secure and Flexible Management
To help customers stay on top of their businesses, the WGSW-24040 series not only provides ultra high transmission performance and excellent Layer 2 technologies, but also offers IPv4/IPv6 VLAN routing feature which allows to cross over different VLANs and different IP addresses for the purpose of having a highly-secure, flexible management and simpler networking application.
Robust Layer2 Features
The WGSW-24040 can be programmed for advanced switch management function, such as dynamic port link aggregation, Q-in-Q VLAN, Multiple spanning tree protocol(MSTP), Layer 2/4 QoS, bandwidth control and IGMP/MLD snooping. The SWGSW-24040 series allows the operation of a high-speed trunk combining multiple ports. It enables up to 14 trunk groups with 8 ports per trunk group and supports connection fail-over as well.
Powerful Security
The WGSW-24040 series offers comprehensive Layer 2 to Layer 4 access control list (ACL) for enforcing security to the edge. It can be used to restrict to network access by denying packets based on source and destination IP address, TCP/UDP port number or defined typical network applications. Its protection mechanism also comprises 802.1x Port-based and MAC-based user and device authentication. With the private VLAN function, communication between edge ports can be prevented to ensure user privacy.
Enhanced Security and Traffic Control
The WGSW-24040 series also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection functions to prevent IP snooping from attack and discard ARP packets with invalid MAC address. The network administrator can now construct highly-secure corporate networks with considerably less time and effort than before.
User-friendly Secure Management
For efficient management, the WGSW-24040 managed switch series is equipped with console, web and SNMP management interfaces. With the built-in web-based management interface, the WGSW-24040 series offers an easy-to-use, platform-independent management and configuration facility. The WGSW-24040 series supports SNMP and it can be managed via any management software based on standard of SNMP v1 and v2 protocol. For reducing product learning time, the WGSW-24040 series offers Cisco-like command via Telnet or console port and customer doesn’t need to learn new command from these switches. Moreover, the WGSW-24040 series offers remote secure management by supporting SSH, SSL and SNMPv3 connection which can encrypt the packet content at each session.
Flexible and Extendable Solution
The 4 mini-GBIC SFP slots built in the WGSW-24040 support dual speed as it features 100BASE-FX and 1000BASE-SX/LX SFP (Small Form-factor Pluggable) fiber-optic modules. Now the administrator can flexibly choose the suitable SFP transceiver according to not only the transmission distance, but also the transmission speed required. The distance can be extended from 550 meters to 2 kilometers (multi-mode fiber) and up to above 10/20/30/40/50/70/120 kilometers (single-mode fiber or WDM fiber). They are well suited for applications within the enterprise data centers and distributions.
Intelligent SFP Diagnosis Mechanism
The WGSW-24040 supports SFP-DDM (Digital Diagnostic Monitor) function that greatly helps network administrator to easily monitor real-time parameters of the SFP and SFP+ transceivers, such as optical output power, optical input power, temperature, laser bias current, and transceiver supply voltage.
Redundant AC/DC Power Supply to Ensure Continuous Operation
The WGSW-24040R is particularly equipped with one 100~240V AC power supply unit and one 36~60V DC power supply unit to provide an enhanced reliable and scalable redundant power supply. The continuous power system is specifically designed to fulfill the demands of high-tech facilities requiring the highest power integrity. With the 36~60V DC power supply, the WGSW-24040R is able to act as a telecom-level device that can be located in the electronic room.
Applications
Department / Edge Security and QoS Switch
The WGSW-24040 series connects up to 24 high speed workstations in the Ethernet environment, in which its two SFP Mini-GBIC interfaces uplink to a department backbone. Moreover, the Switch provides 16 Gigabit per second switch fabric and high bandwidth for backbone connection. The WGSW-24040 series improves the network efficiency and protects the network clients with the powerful features:
■ IPv6 / IPv4 management
■ Layer 2 to Layer 4 security
■ QoS
■ 802.1x Port-based and MAC-based network access authentication security
■ Multicast IGMP snooping
The advanced functionality of the WGSW-24040 series eliminates traditional issues associated with the use of Ethernet. Users can be separated with advanced VLAN functionality to enhance security. It makes the WGSW-24040 series one of the best and most cost-effective switch solutions for SMB.
FTTX / MAN Application Switch
The WGSW-24040 series applies the double tag VLAN (Q-in-Q) technology to provide low cost and easy operation for service providers carrying traffic for multiple customers across their networks. It features SNMPv3 and RMON Groups. The SNMPv3 security structure consists of security models, with each model having its own security levels. With four dual-speed SFP slots built in, the deployment distance of the WGSW-24040 series can be extended and provides a high-performance edge service for FTTx solutions. To build a network solution of FTTH (Fiber to the Home) or FTTC (Fiber to the Curb) for ISPs and FTTB (Fiber to the Building) for enterprises, the various distances of SFP transceivers are optional for customers’ choices. For security and various applications, the 24 Gigabit ports of the WGSW-24040 series can be configured with VLAN settings and connect to different units, offices, flowers, houses and departments.
Key Features
Physical Port
- 24-port 10/100/1000BASE-T RJ45 copper
- 4 100/1000BASE-X mini-GBIC/SFP slots , shared with Port-21 to Port-24 compatible with 100BASE-FX SFP
- Console interface for basic management and setup
Layer 2 Features
- High performance of Store-and-Forward architecture and runt/CRC filtering eliminates erroneous packets to optimize the network bandwidth
- Storm control support
– Broadcast / Multicast / Unknown-unicast
- Supports VLAN
– IEEE 802.1Q tagged VLAN
- – Up to 255 VLANs groups, out of 4094 VLAN IDs
- – Supports provider bridging (VLAN Q-in-Q, IEEE 802.1ad)
- – Private VLAN Edge (PVE)
- – Protocol-based VLAN
- – MAC-based VLAN
- – Voice VLAN
- – GVRP (GARP VLAN Registration Protocol)
- Supports Spanning Tree Protocol
– IEEE 802.1D Spanning Tree Protocol(STP)
- – IEEE 802.1w Rapid Spanning Tree Protocol(RSTP)
- – IEEE 802.1s Multiple Spanning Tree Protocol (MSTP), spanning tree by VLAN
- – BPDU Guard
- Supports Link Aggregation
– 802.3ad Link Aggregation Control Protocol (LACP)
- – Cisco ether-channel (static trunk)
- – Maximum 10 trunk groups, up to 16 ports per trunk group
- – Up to 32Gbps bandwidth (full duplex mode)
- Provides port mirroring (many-to-1)
- Port mirroring to monitor the incoming or outgoing traffic on a particular port
- Loop protection to avoid broadcast loops
- Compatible with Cisco Uni-directional link detection (UDLD) that monitors a link between two switches and blocks the ports on both ends of the link if the link fails at any point between the two devices.
Quality of Service
- Ingress Shaper and Egress Rate Limit per port bandwidth control
- 8 priority queues on all switch ports
- Traffic classification
– IEEE 802.1p CoS
- – TOS / DSCP / IP Precedence of IPv4/IPv6 packets
- – IP TCP/UDP port number
- – Typical network application
- Strict priority and Weighted Round Robin (WRR) CoS policies
- Supports QoS and In/Out bandwidth control on each port
- Traffic-policing policies on the switch port
- DSCP remarking
Multicast
- Supports IGMP snooping v1, v2 and v3
- Supports MLD snooping v1 and v2
- Querier mode support
- IGMP snooping port filtering
- MLD snooping port filtering
- Multicast VLAN Registration (MVR) support
Security
- Authentication
– IEEE 802.1x port-based / MAC-based network access authentication
- – Built-in RADIUS client to co-operate with the RADIUS servers
- – TACACS+ login users access authentication
- – RADIUS / TACACS+ users access authentication
- Access Control List
– IP-based Access Control List (ACL)
- – MAC-based Access Control List
- Source MAC / IP address binding
- DHCP Snooping to filter un-trusted DHCP messages
- Dynamic ARP inspection discards ARP packets with invalid MAC address to IP address binding
- IP source guard prevents IP spoofing attacks
- Auto DoS rule to defend DoS attack
- IP address access management to prevent unauthorized intruder
Management
- IPv4 and IPv6 dual stack management
- Switch Management Interfaces
– Console / Telnet command line Interface
- – Web switch management
- – SNMP v1, v2c, and v3 switch management
- – SSH / SSL secure access
- IPv6 IP Address / NTP / DNS management
- Built-in Trivial File Transfer Protocol (TFTP) client
- BOOTP and DHCP for IP address assignment
- System Maintenance
– Firmware upload/download via HTTP / TFTP
- – Reset button for system reboot or reset to factory default
- – Dual Images
- DHCP Relay
- DHCP Option82
- DHCP Server
- User Privilege levels control
- NTP (Network Time Protocol)
- Link Layer Discovery Protocol (LLDP) and LLDP-MED
- Network Diagnostic
– ICMPv6 / ICMPv4 Remote Ping
- – Cable Diagnostic technology provides the mechanism to detect and report potential cabling issues
- SMTP / Syslog remote alarm
- Four RMON groups (history, statistics, alarms and events)
- SNMP trap for interface Link Up and Link Down notification
- System Log
- PLANET Smart Discovery Utility for deploy management
Redundant Power System (WGSW-24040R)
- Redundant 100~240V AC/36-60V DC dual power
- Active-active redundant power failure protection
- Backup of catastrophic power failure on one supply
- Fault tolerance and resilience
Specifications
Datasheet
Date | Version | Description | Download |
---|---|---|---|
2018-02-09 | 1.0 | WGSW-24040 / WGSW-24040R |