Description
The DES-3200 Series is a member of D-Link’s Layer 2 managed switch family designed for the ETTX, FTTX, and enterprise markets. The DES-3200 Series provides 8/16/24/48 10/100Mbps Fast Ethernet connections and 2/4 combo Gigabit/SFP ports. The DES-3200-28/ME switches are 1U 19” rack mount size and provide 24/48 copper or fiber connections on Fast Ethernet with the beneficial design of 2/4 Gigabit/SFP Combo ports which provide up to 4Gbps uplink bandwidth or dual Ethernet ring topology support. The DES-3200-28/ME is a purpose-made device for telecom cabinets where devices have only one manageable side and operators or engineers have to do troubleshooting very quickly. The DES-3200-28/ME has all of its interfaces in the front including the power supply to meet specific metropolitan market requirements. Also, it can support an alarm interface for event detection and alarm actions. All switches of the DES-3200 series feature embedded 2 or 4 Gigabit SFP uplinks, which provides flexible network topology choices such as ring, tree, or mixed.
Security and Availability
The DES-3200 Series supports 802.1X port-based/host-based access control, Guest VLAN and RADIUS/TACACS /XTACACS/TACACS+ Authentication for strict access control over the network. The IP-MAC-Port Binding feature allows administrators to bind a source IP address with an associated MAC for a defined port number to enhance user access control. Furthermore, with the DHCP snooping feature, the switch automatically pairs the IP/MAC by snooping DHCP packets and saving them to the IMPB white list. These features play a significant role in keeping the network secure and auditable. The built-in D-Link Safeguard Engine identifies and prioritizes “CPU interested” packets to prevent malicious traffic from interrupting normal network flows and protects switch operation. In addition, the DES-3200 Series provides various multi-layer Access Control List (ACL) rules. Administrators are able to limit the network services or access right without impact the switch performance.
Resilience/Performance Enhancement
For mission critical environments the DES-3200 Series supports 802.1D-2004 edition, 802.1w and 802.1s Multiple Spanning Tree (MSTP). STP allows you to configure the switch with redundant backup bridge path, so transmission and reception of packets can be guaranteed in the event of any failed switch on the network. The switches also support 802.1AX and 802.3ad Link Aggregation, enabling you to group multiple ports in parallel to form a single port, increasing bandwidth and redundancy for higher availability. For Quality of Service (QoS), the switch support 802.1p and advanced packet classification based on TOS, DSCP, MAC address, IP addresses, VLAN ID, TCP/UDP port number, protocol type, and user-defined packet content. This enables flexible configuration for specific multi-media applications such as VoIP or IPTV. Furthermore, DES-3200 series supports automatic, effective QoS function for voice traffic. The Voice VLAN1 includes the voice end points automatically in to a dedicated VLAN with higher priority to guarantee the quality and security of the voice traffic.
Traffic and Bandwidth Control
The bandwidth control feature allows network administrators to define the ingress/egress throughput levels for each port with granularity down to 8kpbs. The switch also supports the storm control feature which minimizes damages within the network. Port mirroring helps administrators facilitate traffic diagnostics or track switch performance and make changes if necessary. The DES-3200 Series supports a two rate and single-rate Three Color Marker (trTCM/srTCM) to classify traffic streams into conforming and nonconforming groups to guarantee the minimum bandwidth for important traffic.
Multicast Applications
The DES-3200 series provides fully L2 multicast functions, including IGMP snooping, IGMP filtering, fast leave, and multicast traffic configuration for specific ports. With L2 Multicast support, the DES-3200 series shows its ability to handle growing IPTV application. The Host-based IGMP/MLD Snooping allows multiple multicast subscribers per physical interface and ISM VLAN sends multicast streams in a multicast VLAN to save bandwidth in the backbone network. The ISM VLAN profiles allow users to bind/replace the pre-defined multicast registration information to subscription ports quickly and easily.
OAM
The DES-3200 series provides cable diagnostics to check the status of network cables and pinpoint the cause of any network cable malfunction without requiring on-site operator support. The 802.1ag Connectivity Fault Management (CFM) feature provides tools to monitor and troubleshoot end-to-end Ethernet networks, allowing service providers to check connectivity isolate network issues, and identify customers affected by network issues. The 802.3ah Ethernet OAM, Dying Gasp, and D-Link Unidirectional Link Detection (DULD) functions can improve network management on the Ethernet and help maintain a stable network connection and support fault locating.
Management Capability
The DES-3200 series supports standard management protocols such as SNMP, RMON, Telnet, SSH/SSL security authentication, and DHCP relay option 82. The switch series also features a web-based GUI that provides a user-friendly interface and easy management. DHCP auto-configuration is an enhanced management feature that allows administrators to preset a configuration on a TFTP server and apply to switches automatically when the switch is trying to get IP addresses from DHCP. It makes the switch deployment easier and quicker, especially in a large scale network. LLDP and LLDP-MED1 provide quick discovery of Ethernet equipment especially for endpoint devices. According to the discovery result, administrators can easily push the configurations to corresponding devices and build up a topology drawing through the network management system (NMS) quickly. D-Link Single IP management (SIM) simplifies and speeds up management tasks, allowing multiple switches to be configured, monitored and maintained from any workstation running a web browser through one unique IP address. The DES-3200 Series also works with D-Link’s D-View 6.0 software. D-View 6.0 is a Network Management System that allows for the central management of critical network characteristics such as availability, reliability, resilience, and security. D-View 6.0 provides a useful set of tools for network administrators who want to effectively manage device configurations, fault tolerance, performance, and security.
IPv6 Ready
The DES-3200 Series have been certified with IPv6 Ready Logo Phase 2 which guarantees the connectivity and manageability in an IPv6 network. Furthermore, it supports IPv4/v6 dual stack function that allows the switch to act as a bridge between IPv4 and IPv6 networks. As networks grow and the need for larger addressing and higher security becomes critical, the DES-3200 Series supports various IPv6 ACL, IMPBv61, and L3 Control Packet Filtering functions to protect the network against attacks and meet the requirements for the design of the IPv6 architecture.
General features
Size
• 19” inch standard rack-mount width, 1U Height
Interface
• 24 10/100 Base-TX +2 100/1000SFP + 2 Combo 10/100/1000 BASE-T/ 100/1000 SFP
• Console Port: RJ-45
Performance
• Switching Capacity: 12.8Gbps
• 64 Byte Packet Forwarding Rate: 9.5Mpps
• MAC Address Table: 16K Entries
• SDAM for CPU: 128 MB DDR2
• Packet Buffer Memory: 1.5MB
• Flash memory: 32MB
• Jumbo Frame: 12KB
LEDs
• Power (per device)
• Console (per device)
• Link/Active/Speed (per port)
Software Features
Stackability
• Virtual Stacking D-Link Single IP Management
• Up to 32 units per Virtual Stack
L2 Features
• MAC Address Table: 16K
• Flow Control
- 802.3x Flow Control
- HOL Blocking Prevention
• Jumbo Frame up to 12K bytes
• Spanning Tree Protocols
- 802.1D STP
- 802.1w RSTP
- 802.1s MSTP
• BPDU Filtering
• Root Restriction
• Loopback Detection
• Link Aggregation
- Comply with 802.1AX and 802.3ad
- DES-3200-28/ME: Max. 14 groups, 8 ports per group
• Port Mirroring
- Support 1 Mirroring group
- Support One-to-One, Many-to-One, Flow-based (ACL) mirroring
• L2 Protocol Tunneling (L2PT)
L2 Multicasting
• IGMP Snooping
- IGMP v1/v2 snooping, v3 awareness
- Support 1024 Groups
- Port/Host-based IGMP snooping Fast Leave
- Report Suppression
• MLD Snooping
- MLD v1, MLD v2 awareness
- Support 1 K groups
- Host-based MLD snooping
- Fast Leave
• IGMP Authentication
• IGMP/MLD Proxy Reporting
VLAN
• 802.1Q Tagged VLAN
• VLAN Group
• Max. 4K VLAN
• Port-based VLAN
• MAC-based VLAN
• GVRP
• 802.1v Protocol VLAN
• VLAN Trunking
• Double VLAN (Q-in-Q)
• Port-based Q-in-Q
• Selective Q-in-Q
• ISM VLAN
• VLAN Translation
• Voice VLAN
L3 Features
• IPv6 Neighbor Discovery (ND)
QoS
• Bandwidth Control
- Port-based (Ingress/Egress, Min. Granularity 8Kbps)
- Flow-based (Ingress/Egress, Min. Granularity 8Kbps)
- Ingress/ egress queue bandwidth control (Min. Granularity 8Kbps)
• 8 Queues per Port
• DSCP
• 802.1p
• Queue Handling
- Strict Priority
- Weighted Round Robin (WRR)
- Strict + WRR1
• Three Color Marker
- trTCM
- srTCM
• CoS Based on:
- Switch port
- 802.1p Priority Queues
- VLAN ID
- MAC Address
- Ether type
- TOS
- DSCP
- Protocol Type
- TCP/UDP Port
- IPv6 Traffic Class
- IPv6 Flow Label
- User-Defined Packet Content
• Supports Following Actions for Flows
- Remark 802.1p Priority Tag
- Remark TOS/DSCP Tag
- Bandwidth Control Flow Statistic
Access Control List (ACL)
• Up to 1024 ingress access rules
• ACL Based on
- Switch Port
- 802.1p Priority
- VLAN ID
- MAC Address
- Ether Type
- IPv4/v6 Address
- DSCP
- Protocol Type
- TCP/UDP Port Number
- IPv6 Traffic Class
- IPv6 Flow Label
- User-Defined Packet Content
• Time-based ACL
• ACL statistics
• CPU interface filtering
Security
• SSH v1, v2
• SSL v1, v2, v3
• Port Security
• Up to 64 MAC addresses per port
• Broadcast/Multicast/Unicast Storm Control
• Traffic Segmentation
• IP-MAC-Port Binding
- ARP Inspection
- IP Inspection
- DHCP Snooping
• D-Link Safeguard Engine
• DHCP Server Screening
• DHCP client Filtering
• ARP Spoofing Prevention
• BPDU Attack Protection
• NetBIOS/NetBEUI Filtering
• DoS attack Prevention
• L3 control Packet Filtering
AAA
• 802.1X
- Port-based Access Control
- Host-based Access Control
- Dynamic VLAN assignment
• Identity-driven Policy (VLAN, ACL, or QoS) Assignment
• MAC-based Access Control (MAC)
- Port-based Access Control
- Host-based Access Control
• Web-based Access Control (WAC)
- Port-based Access Control
- Host-based Access Control
• Microsoft® NAP (IPv4/v6) 1
- Support 802.1X NAP
- Support DHCP NAP
• Guest VLAN
• RADIUS Accounting
• RADIUS (IPv4/v61)
• TACACS
• TACACS+
• XTACACS+
• Trusted Host
OAM
• Cable Diagnostics
• 802.3ah Ethernet Link OAM
• Dying Gasp
• 802.1ag Connectivity Fault Management (CFM)
• 802.3ah D-Link Unidirectional Link Detection (DULD)
Green
• D-Link Green 3.0: Power saving function
- LED Shut-Off 1
- Port Shut-Off 1
- System Hibernation1
• Power Saving By Time-based PoE
Management
• Web-based GUI (IPv4)
• Command Line Interface (CLI)
• Telnet Server/ Client (Support IPv4)
• TFTP Client (IPv4)
• FTP Client (IPv4)
• Zmodem
• Command Logging
• SNMP v1/v2c/v3
• SNMP Traps
• System Log
• RMON v1
- Supports 1,2,3,9 Groups
• RMON v2
- Support ProbeConfig Group
• LLDP
• 802.1AB
• LLDP-MED1
• BootP/DHCP Client
• DHCP Auto-Configuration
• DHCP Relay (IPv4)
- DHCP Relay Option 12
- DHCP Relay Option 82
• PPPoE Circuit-ID Tag Insertion
• Flash File System
• SNTP
• CPU Monitoring
• Memory Monitoring
• Debug Command
• Password Encryption
• Password Recovery
• Microsoft® NLB (Network Load Balancing) Support
• Ping (IPv4/v6)1
• Traceroute
• Multiple IP Interface
MIB
• RFC RFC1065, 1066, 1155, 1156, 2578 MIB Structure
• RFC 1212 Concise MIB Definitions
• RFC1213 MIB II
• RFC 1215 MIB Traps Convention
• RFC1493, 4188 Bridge MIB
• RFC1157, 2571-2576 SNMP MIB
• RFC1901-1908, 3418, 3636, 1442, 2578 SNMPv2 MIB
• RFC271, 1757, 2819 RMON MIB
• RFC 2465 IPv6 MIB
• RFC 2466 ICMPv6 MIB
• RFC 2737 Entity MIB
• RFC 4293 IPv6 SNMP Mgmt Interface MIB
• Private MIB
• RFC 3289 DIFFSERV MIB
• RFC2021 RMONv2 MIB
• RFC1398, 1643, 1650, 2358, 2665, 3635 Ether-like MIB
• RFC2668 802.3 MAU MIB
• RFC2674,4363 802.1p MIB
• RFC 2233, 2863 IF MIB
• RFC 2618 RADIUS Authentication Client MIB
• RFC4022 MIB for TCP
• RFC4113 MIB for UDP
• RFC 3298 MIB for Deffserv.
• RFC2620 RADIUS Accounting Client MIB
• RFC 2925 Ping& Traceroute MIB
• Running configuration write and backup
• TFTP uploads and downloads
• Trap MIB
IETF® Standards
• RFC768 UDP
• RFC791 IP
• RFC792 ICMPv4
• RFC2463, 4443 ICMPv6
• RFC4884 Extended ICMP to Support Multi-Part Messages
• RFC793 TCP
• RFC 2474, 3260 Definition of the DS Field in the IPv4 and IPv6 Header
• RFC 1321, 2284, 2865, 3580, 3748 Extensible Authentication Protocol (EAP)
• RFC2571, RFC2572, RFC2573, RFC2574 SNMP
• RFC826 ARP
IPv6
• RFC1981Path MTU Discovery
• RFC2460 IPv61
• RFC2461, 4861 Neighbor Discovery
• RFC2462, 4862 IPv6 Stateless Address Auto-configuration
• RFC2464 IPv6 Neighbor over Ethernet and definition
• RFC3513, 4291 IPv6 Addressing Architecture
• RFC2893, 4213 IPv4/IPv6 dual stack function
• IPv6 Ready Logo Phase 2
Certificates
Order info
DES-3200-28/ME Layer 2 Management Switch