Security Switch ITS-24G4X-L3 with 24GE+410G SFP
Description
ITS-24G4X-L3 is designed for carrier-class GE access and 10G uplink networks. It covers all kinds of enterprise/operators applications, providing 24*10/100/1000Base-T, 1000Base-X SFP or 10G SPF+ for the requirement of cost-effective Gigabit access/aggregation.
ITS-24G4X-L3 adopts high performance processor to provide full speed forwarding and line-dormant capacity to coordinate with NGBN, supporting strong ACL, IP+MAC+ports binding and so forth.
Specifications
Genaral |
|
Item |
ITS-24G4X-L3 |
Switching capacity |
128Gbps |
Forwarding Capacity |
95Mpps |
Memory and Storage |
512MB SDRAM and 16MB flash memory |
Power Supply AV |
100~240V, 47~67Hz |
Power Consumption |
Full-load consumption ≤40W; Idle-power consumption ≤13W |
Dimensions |
(Width x Depth x Height) 440mm x 220mm x 44mm |
Environmental requirements |
Working temperature: -10°C~50°C; Relative humidity: 10%~90%, non-condensing |
Features
Genaral |
|
MAC |
16K MAC; Aging time and add/remove static MAC; Port MAC Limit; Disable MAC address learning on port orchannel-group; MAC address filtering |
VLAN |
4K VLAN entries. Port-based and MAC-based VLAN; Q-IN-Q |
Spanning Tree |
STP/RSTP/MSTP; Remote loop detec |
Port |
Bi-directional bandwidth control; Static link aggregation and LACP(Link Aggregation Control Protocol); Port mirroring |
Ipv4 |
DHCP Relay; DHCP Server; Static ARP; L3 forwarding specification to be 512; Static route; 64 LPM (default router) |
User’s Security |
Anti-ARP-spoofing; Anti-ARP-flooding; IP Source Guard create IP+VLAN+MAC+Port binding; Port Isolation; MAC address binding to the port and MAC address filtering; IEEE 802.1x and AAA/Radius authentication |
Device Security |
Anti-DOS attack(such as ARP, Synflood, Smurf, ICMP attack), ARP detection, worm and Msblaster worm attack; SSHv2 Secure Shell; SNMP v3 encrypted; management; Security IP login through Telnet; Hierarchical management and password protection of users |
Network Maintenance |
Dynamic ARP table-based binding; IP+VLAN+MAC+Port binding; L2 to L7 ACL flow filtration mechanism on the 80 bytes of the head of user-defined packet; Port-based broadcast/multicast suppression and auto-shutdown risk port; DHCP Option82 and PPPoE+ upload user’s physical location |
ACL |
Standard 1 K and extended ACL; Time Range ACL; Flow classification and flow definition based on source/destination MAC address, VLAN, 802.1p, ToS, DiffServ, source/destination IP(IPv4/IPv6) address, TCP/UDP port number, protocol type, etc; Packet filtration of L2~L7 deep to 80 bytes of IP packet head |
QoS |
Rate-limit to packet sending/receiving speed of port or self-defined flow; Packet mirror and redirection of interface and self-defined flow; Priority remark to port or self defined flow and provide 802.1P, DSCP priority and Remark; Super queue scheduler based on port or self-defined flow. Each port flow supports 8 priority queues and scheduler of SP, WRR, SP+WRR, etc. |
Multicast |
IGMPv1/v2/v3 Snooping ; IGMP Filter; MVR and cross VLAN multicast copy; IGMP Fast leave; IGMP Proxy; L3 multicast to be 64 |
Loop Protection |
EAPS\ERPS\PVST and GERP (recover-time<50ms); Loopback-detection |
Link Protection |
FlexLink (recover-time <50ms); RSTP/MSTP (recover-time <1s); LACP (recover-time <10ms) |
Device Protection |
Double fault-tolerant backup of host program and configuration files |
Network Maintenance |
Port real-time, utilization and transmit/receive statistic based on Telnet; LLDP; 802.3ah Ethernet OAM; RFC 3164 BSD syslog Protocol; Ping and Traceroute |
Device Management |
CLI, Console port, Telnet and WEB management; Stack; OAM (802.3ah and 802.1ag); VCT; User hierarchical permission; RADIUS; SNMP V1/V2c/V3 |