DES-3200-28
Layer 2 Management Switch with 24 ports 10/100 Base-TX + 2 ports 100/1000 SFP + 2 Combo ports 10/100/1000 BASE-T/ 100/1000 SFP
Kirjeldus
The DES-3200 Series is a member of D-Link’s Layer 2 managed switch family designed for the ETTX, FTTX, and enterprise markets. The DES-3200 Series provides 8/16/24, or 48 10/100Mbps Fast Ethernet connections and 2/4 combo Gigabit/SFP ports. The DES-3200-10/18 comes in a 9/11-inch compact size and incorporates a fanless design suitable for desktop, telecom cabinet, or distribution box deployment. The DES-3200-26, 28, 28/ME, 28F, and 52 models are 1U 19” rack mount size and provide 24/48 copper or fiber connections on Fast Ethernet with the beneficial design of 2/4 Gigabit/SFP Combo ports which provide up to 4Gbps uplink bandwidth or dual Ethernet ring topology support. The DES-3200-10-DC, 18-DC, 26-DC, and 52-DC provide 48 V DC input which is adequate for the power systems of telecommunication facilities. The DES-3200-28/ME is a purpose-made device for telecom cabinets where devices have only one manageable side and operators or engineers have to do troubleshooting very quickly. The DES-3200-28/ME has all of its interfaces in the front including the power supply to meet specific metropolitan market requirements. Also, it can support an alarm interface for event detection and alarm actions. The DES-3200-28F is the ideal solution for FTTX deployments. It provides direct Ethernet fiber connectivity to the home CPEs. Without the crosstalk problem of traditional copper cables, DES-3200-28F extends the coverage of ETTX up to 20km. The DES-3200-28P/52P are IEEE 802.3af and IEEE 802.3at Power over Ethernet (PoE) compliant switches and provide 15.4W per port and up to 30W in the first four/eight ports. The PoE/PoE+ powers devices such as video IP phones, wireless access points, and IP cameras directly through Ethernet cables which makes the deployment of the network much easier. All switches of the DES-3200 series feature embedded 2 or 4 Gigabit SFP uplinks, which provides flexible network topology choices such as ring, tree, or mixed.
Security and Availability
The DES-3200 Series supports 802.1X port-based/host-based access control, Guest VLAN and RADIUS/TACACS /XTACACS/TACACS+ Authentication for strict access control over the network. The IP-MAC-Port Binding feature allows administrators to bind a source IP address with an associated MAC for a defined port number to enhance user access control. Furthermore, with the DHCP snooping feature, the switch automatically pairs the IP/MAC by snooping DHCP packets and saving them to the IMPB white list. These features play a significant role in keeping the network secure and auditable. The built-in D-Link Safeguard Engine identifies and prioritizes “CPU interested” packets to prevent malicious traffic from interrupting normal network flows and protects switch operation. In addition, the DES-3200 Series provides various multi-layer Access Control List (ACL) rules. Administrators are able to limit the network services or access rights without impacting the switch performance.
Resilience/Performance Enhancement
For mission critical environments the DES-3200 Series supports 802.1D-2004 edition, 802.1w and 802.1s Multiple Spanning Tree (MSTP). STP allows you to configure the switch with a redundant backup bridge path, so transmission and reception of packets can be guaranteed in the event of any failed switch on the network. The switches also support 802.1AX and 802.3ad Link Aggregation, enabling you to group multiple ports in parallel to form a single port, increasing bandwidth and redundancy for higher availability. For Quality of Service (QoS), the switch supports 802.1p and advanced packet classification based on TOS, DSCP, MAC address, IP addresses, VLAN ID, TCP/UDP port number, protocol type, and user-defined packet content. This enables flexible configuration for specific multi-media applications such as VoIP or IPTV. Furthermore, the DES-3200 series supports automatic, effective QoS function for voice traffic. The Voice VLAN1 includes the voice end points automatically in to a dedicated VLAN with higher priority to guarantee the quality and security of the voice traffic.
Traffic and Bandwidth Control
The bandwidth control feature allows network administrators to define the ingress/egress throughput levels for each port with granularity down to 8kpbs. The switch also supports the storm control feature which minimizes damages within the network. Port mirroring helps administrators facilitate traffic diagnostics or track switch performance and make changes if necessary. The DES-3200 Series supports a two rate and single-rate Three Color Marker (trTCM/srTCM) to classify traffic streams into conforming and nonconforming groups to guarantee the minimum bandwidth for important traffic.
Multicast Applications
The DES-3200 series provides full L2 multicast functions, including IGMP snooping, IGMP filtering, fast leave, and multicast traffic configuration for specific ports. With L2 Multicast support, the DES-3200 series shows its ability to handle growing IPTV application. The Host-based IGMP/MLD Snooping allows multiple multicast subscribers per physical interface and ISM VLAN sends multicast streams in a multicast VLAN to save bandwidth in the backbone network. The ISM VLAN profiles allow users to bind/replace the pre-defined multicast registration information to subscription ports quickly and easily.
OAM
The DES-3200 series provides cable diagnostics to check the status of network cables and pinpoint the cause of any network cable malfunction without requiring on-site operator support. The 802.1ag Connectivity Fault Management (CFM) feature provides tools to monitor and troubleshoot end-to-end Ethernet networks, allowing service providers to check connectivity, isolate network issues, and identify customers afected by network issues. The 802.3ah Ethernet OAM, Dying Gasp, and D-Link Unidirectional Link Detection (DULD) functions can improve network management on the Ethernet and help maintain a stable network connection and support fault locating.
Management Capability
The DES-3200 series supports standard management protocols such as SNMP, RMON, Telnet, SSH/SSL security authentication, and DHCP relay option 82. The switch series also features a web-based GUI that provides a user-friendly interface and easy management. DHCP auto-configuration is an enhanced management feature that allows administrators to preset a configuration on a TFTP server and apply to switches automatically when the switch is trying to get IP addresses from DHCP. It makes the switch deployment easier and quicker, especially in a large scale network. LLDP and LLDP-MED1 provide quick discovery of Ethernet equipment especially for endpoint devices. According to the discovery result, administrators can easily push the configurations to corresponding devices and build up a topology drawing through the network management system (NMS) quickly.
D-Link Single IP Management (SIM) simplifies and speeds up management tasks, allowing multiple switches to be configured, monitored and maintained from any workstation running a web browser through one unique IP address. The DES-3200 Series also works with D-Link’s D-View 6.0 software. D-View 6.0 is a Network Management System that allows for the central management of critical network characteristics such as availability, reliability, resilience, and security. D-View 6.0 provides a useful set of tools for network administrators who want to effectively manage device configurations, fault tolerance, performance, and security.
IPv6 Ready
The DES-3200 Series has been certified with IPv6 Ready Logo Phase 2 which guarantees the connectivity and manageability in an IPv6 network. Furthermore, it supports IPv4/v6 dual stack function that allows the switch to act as a bridge between IPv4 and IPv6 networks. As networks grow and the need for larger addressing and higher security becomes critical, the DES-3200 Series supports various IPv6 ACL, IMPBv6 1, and L3 Control Packet Filtering functions to protect the network against attacks and meet the requirements for the design of the IPv6 architecture.
Põhiomadused
Hardware Version
C1
Size
19” inch Standard Rack-mount Width, 1U Height
Interface
• 24 10/100 Base-TX
• 2 100/1000 SFP
• 2 Combo 10/100/1000BASE-T/ 100/1000 SFP
Console port
RJ-45
Performance
• Switching Capacity: 12.8Gbps
• 64-byte Maximum Forwarding Rate: 9.5Mpps
• MAC Address Table Size: 16K Entries
• SDRAM for CPU: 128M DDR2
• Packet Buffer: 1.5MB
• Flash Memory: 32MB
• Jumbo Frame: 12KB
LED
• Power (per device)
• Console (per device)
• Link/Active/Speed (per port)
Software
Stackability
• Virtual Stacking D-Link Single IP Management
• Up to 32 units per Virtual Stack
L2 Features
• MAC address table: 16K
• Flow Control
- 802.3x Flow Control
- HOL Blocking Prevention
• Jumbo Frame up to 12K bytes
• Spanning Tree Protocols
- 802.1D STP
- 802.1w RSTP
- 802.1s MSTP
• BPDU Filtering
• Root Restriction
• Loopback Detection
• Link Aggregation
- Complies with 802.1AX and 802.3ad
- DES-3200-10/10-DC: Max. 5 groups, 8 ports per group
- DES-3200-18/18-DC: Max. 9 groups, 8 ports per group
- DES-3200-26/26-DC: Max. 13 groups, 8 ports per group
- DES-3200-28/28F/28/ME/28P: Max. 14 groups, 8 ports per group
- DES-3200-52/52-DC/52P: Max. 26 groups, 8 ports per group
• Port Mirroring
- Supports 1 Mirroring group
- Supports One-to-One, Many-to-One, Flow-based (ACL) mirroring
- Ethernet Ring Protection Switching (ERPS)
- L2 Protocol Tunneling (L2PT)
L2 Multicasting
• IGMP Snooping
- IGMP v1/v2 snooping, IGMP v3 awareness
- Supports 1024 Groups
- Port/Host-based IGMP snooping Fast Leave
- Report Suppression
• MLD Snooping
- MLD v1, MLD v2 awareness
- Support 1 K groups
- Host-based MLD snooping
- Fast Leave
• IGMP Authentication
• IGMP/MLD Proxy Reporting
VLAN
• 802.1Q VLAN
• VLAN Group
- Max. 4K VLAN
• Port-based VLAN
• MAC-based VLAN
• GVRP
• 802.1v Protocol VLAN
• VLAN Trunking
• Double VLAN (Q-in-Q)
- Port-based Q-in-Q
- Selective Q-in-Q
• ISM VLAN
• VLAN Translation
• Voice VLAN
L3 Features
• IPv6 Neighbor Discovery (ND)
Quality of Service (QoS)
• Bandwidth Control
- Port-based (Ingress/Egress, Min. Granularity 8Kbps)
- Flow-based (Ingress/Egress, Min. Granularity 8Kbps)
- Per egress queue bandwidth control (Min. Granularity 8Kbps)
• 8 Queues per Port
• DSCP
• 802.1p
• Queue Handling
- Strict Priority
- Weighted Round Robin (WRR)
- Strict + WRR
• Three Color Marker
- trTCM
- srTCM
Quality of Service (QoS)
• CoS Based on:
- Switch port
- 802.1p Priority Queues
- VLAN ID
- MAC Address
- Ether type
- TOS
- DSCP
- Protocol Type
- TCP/UDP Port
- IPv6 Traffic Class
- IPv6 Flow Label
- User-Defined Packet Content
• Supports Following Actions for Flows
- Remark 802.1p Priority Tag
- Remark TOS/DSCP Tag
- Bandwidth Control Flow Statistic
Access Control List (ACL)
• Up to 1024 ingress access rules
• ACL Based on
- Switch Port
- 802.1p Priority
- VLAN ID
- Ether type
- IPv4/v6 address
- DSCP
- Protocol Type
- TCP/UDP Port Number
- IPv6 Traffic Class
- IPv6 Flow Label
- User-Defined Packet Content
• Time-based ACL
• ACL statistics
• CPU interface filtering
Security
• SSH v1, v2
• SSL v1, v2, v3
• Port Security
• Up to 64 MAC addresses per port
• Broadcast/Multicast/Unicast Storm Control
• Traffic Segmentation
• IP-MAC-Port Binding (IMPB)
- ARP Inspection
- IP Inspection
- DHCP Snooping
• D-Link Safeguard Engine
• DHCP Server Screening
• DHCP Client Filtering
• ARP Spoofing Prevention
• BPDU Attack Protection
• NetBIOS/NetBEUI Filtering
• DoS Attack Prevention
• L3 Control Packet Filtering
AAA
• 802.1X
- Port-based Access Control
- Host-based Access Control
- Dynamic VLAN assignment
• Identity-driven Policy (VLAN, ACL, or QoS) Assignment
• MAC-based Access Control (MAC)
- Port-based Access Control
- Host-based Access Control
• Web-based Access Control (WAC)
- Port-based Access Control
- Host-based Access Control
• Microsoft® NAP (IPv4/v61)
- Support 802.1X NAP
- Support DHCP NAP
• Guest VLAN
• RADIUS Accounting
• RADIUS (IPv4/v61)
• TACACS
• TACACS+
• XTACACS+
• Trusted Host
OAM
• Cable Diagnostics
• 802.3ah Ethernet Link OAM
• Dying Gasp
• 802.1ag Connectivity Fault Management (CFM)
• 802.3ah D-Link extension: D-Link Unidirectional Link Detection (DULD)
Green
• D-Link Green 3.0: Power saving function
- LED Shut-Off1
- Port Shut-Off1
- System Hibernation1
• Power Saving by Time-based PoE
Management
• Web-based GUI (IPv4)
• Command Line Interface (CLI)
• Telnet Server/ Client (IPv4)
• TFTP Client (IPv4)
• FTP Client (IPv4)
• Zmodem
• Command Logging
• SNMP v1/v2c/v3
• SNMP Traps
• System Log
• RMON v1
- Supports 1, 2, 3, 9 groups
• RMON v2
- Supports ProbeConfig Group
• LLDP
• 802.1AB
• LLDP-MED
• BootP/DHCP Client
• DHCP Auto-Configuration
• DHCP Relay (IPv4)
• DHCP Option 12
• DHCP Relay Option 82
• PPPoE Circuit-ID Tag Insertion
• Flash File System
• SNTP
• CPU Monitoring
• Memory Monitoring
• Debug Command
• Password Encryption
• Password Recovery
• Microsoft® NLB (Network Load Balancing) Support
• Ping (IPv4/v61)
• Traceroute
• Multiple IP Interface
MIB
• RFC 1065, 1066, 1155, 1156, 2578 MIB Structure
• RFC 1212 Concise MIB Definitions
• RFC 1213 MIB II
• RFC 1215 MIB Traps Convention
• RFC 1493, 4188 Bridge MIB
• RFC 1157, 2571-2576 SNMP MIB
• RFC 1901-1908, 3418, 3636, 1442, 2578 SNMPv2 MIB
• RFC 271, 1757, 2819 RMON MIB
• RFC 2465 IPv6 MIB
• RFC 2466 ICMPv6 MIB
• RFC 2737 Entity MIB
• RFC 4293 IPv6 SNMP Mgmt Interface MIB
• Private MIB
• RFC 3289 DIFFSERV MIB
• RFC 2021 RMONv2 MIB
• RFC 1398, 1643, 1650, 2358, 2665, 3635 Ether-like MIB
• RFC 2668 802.3 MAU MIB
• RFC 2674, 4363 802.1p MIB
• RFC 2233, 2863 IF MIB
• RFC 2618 RADIUS Authentication Client MIB
• RFC 4022 MIB for TCP
• RFC 4113 MIB for UDP
• RFC 3298 MIB for Diffserv
• RFC 2620 RADIUS Accounting Client MIB
• RFC 2925 Ping & Traceroute MIB
• Running configuration write and backup
• TFTP uploads and downloads
• Trap MIB
IETF® Standard
• RFC 768 UDP
• RFC 791 IP
• RFC 792 ICMPv4
• RFC 2463, 4443 ICMPv6
• RFC 4884 Extended ICMP to Support Multi-Part Messages
• RFC 793 TCP
• RFC 2474, 3260 Definition of the DS Field in the IPv4 and IPv6 Header
• RFC 1321, 2284, 2865, 3580, 3748 Extensible Authentication Protocol (EAP)
• RFC 2571, RFC2572, RFC2573, RFC2574 SNMP
• RFC 826 ARP
IPv6
• RFC 1981 Path MTU Discovery
• RFC 2460 IPv6
• RFC 2461, 4861 Neighbor Discovery
• RFC 2462, 4862 IPv6 Stateless Address Auto-configuration
• RFC 2464 IPv6 Neighbor over Ethernet and definition
• RFC 3513, 4291 IPv6 Addressing Architecture
• RFC 2893, 4213 IPv4/IPv6 dual stack function
• IPv6 Ready Logo Phase 2
Sertifikaadid
Sidustooted
DES-3200-28/C1 Layer 2 Management Switch with 24 ports 10/100 Base-TX + 2 ports 100/1000 SFP + 2 Combo ports 10/100/1000 BASE-T/ 100/1000 SFP