SS2R24G4i/SS2R48G4i
2
of switch has unique network access functions and flexible management of network, including MAC
binding/filtering, limiting the total number of Mac addresses, IEEE802.1Q VLAN, PVLAN, IEEE802.1x
access authentication, QoS, ACL, bandwidth control, IEEE802.3ad TRUNK, IGMP Snooping,
broadcast storm control, IEEE802.1d/w spanning tree, port mirroring and so on.
1.1.2 Features and Benefits
MAC Address Control
Besides the standard dynamic learning capability of MAC address, the SS2R24/48G4i switch also
supports several other methods of management based on the MAC address list. The MAC address
binding function can restrict the MAC addresses of access equipment connected to a port, in order to
keep access secure. The MAC address filtering function can filter according to source and destination
MAC addresses to block the invalid access equipment.
VLAN Configuration
The switch supports standard IEEE802.1Q VLAN, port-protect VLAN and PVLAN. IEEE802.1 Q
VLAN can divide ports into several VLAN groups, the upper limit of which is 4094. It can also do
multi-switch VLAN division via IEEE802.1 Q VLAN, and thus manage to control broadcast traffic,
guarantee the security and performance of the network at the same time. PVLAN function can divide
ports into isolated port and community port, then isolate or connect ports as demanded by network
applications.
QoS
The switch fully supports QoS policy. Users can specify 4 priority queue on each port.
WRR/SP/SWRR scheduling is also supported. SS2R24/48G4i switch also supports the port security.
The traffic can be sorted by port, VLAN, DSCP, IP precedence and ACL table. User can also modify
packets’ DSCP and IP precedence values. Users can specify different bandwidths for voice/data/video
to customize different qualities of service.
ACL
The switch supports complete ACL policy. ACL is a mechanism realized by switches to filter IP data.
By allowing or denying specific data packets entering/leaving the network, a switch can control the
network access and effectively guarantee the secure operation of network. SS2R24/48G4i switch
supports IP -based, MAC-based and MAC-IP-based ingress filtering, it can also filter data based on the
information of source/destination IP address, source/destination MAC address, IP protocol type,
TCP/UDP port, IP precedence, time range and ToS, etc..
IEEE802.1x Access Authentication
The switch not only supports port-based IEEE802.1x authentication mode, but also supports MAC
-based authentication mode. It can set the upper limit of access authentication users per port, realize
dynamic secure authentication mode basing on MAC address, and bind the MAC address of an
authenticated equipment to a port. Combining these IEEE802.1x authentication modes with the
authentication and cost-counting products, we can supply a whole set of integrated IEEE802.1x access
authentication and cost-counting resolution to satisfy the need of access, authentication and
cost-counting, ensuring the network’s security and its ability to operate.
Bandwidth Control (Speed Limit of Port)
The switch can control the upstream/ downstream bandwidth and provide different access
bandwidth for users of different levels. Each port can set its bandwidth rate as demanded to meet the
need of access network to control access bandwidth.