Datasheet

3
Manageability
RMON (remote monitoring): provides
advanced monitoring and reporting capabilities for
statistics, history, alarms, and events
Dual flash images: provides independent
primary and secondary operating system files for
backup while upgrading
Full-featured console: provides complete control
of the switch with a familiar command-line interface
(CLI)
Web interface: allows configuration of the switch
from any Web browser on the network
Multiple configuration files: allow multiple
configuration files to be stored to flash image
Software updates: free downloads from the
Web
IEEE 802.1AB Link Layer Discovery Protocol
(LLDP): automated device discovery protocol
provides easy mapping using network management
applications
Virtual stacking capability: single IP address
management for a virtual stack of up to 255
Comware-based 3Com legacy devices, including
HP E4XXX and E55XX series switches
Layer 2 switching
VLAN support and tagging: support IEEE
802.1Q, with 4094 simultaneous VLAN IDs
GARP VLAN Registration Protocol (GVRP):
allows automatic learning and dynamic assignment
of VLANs
Jumbo packet support: supports up to
9220-byte frame size to improve performance of
large data transfers
IEEE 802.1ad QinQ: increases the scalability of
an Ethernet network by providing a hierarchical
structure; connects multiple LANs on a high-speed
campus or metro network
Layer 3 routing
Routing protocols: supports static routes, RIP,
RIPv2, OSPF, and BGP4
OSPF-ECMP (Equal-Cost Multipath): enables
multiple equal-cost links in OSPF environment to
increase link redundancy and scale bandwidth
Security
Access control lists (ACLs): provide IP Layer 3
filtering based on source/destination IP
address/subnet and source/destination TCP/UDP
port number
RADIUS/TACACS+: eases switch management
security administration by using a password
authentication server
Secure Shell (SSHv2): encrypts all transmitted
data for secure, remote command-line interface (CLI)
access over IP networks
Secure Web management with HTTPS and
SSL: encrypts all HTTP traffic, allowing secure
access to the browser-based management GUI in
the switch
IEEE 802.1X and RADIUS network logins:
control port-based access for authentication and
accountability
Port security: allows access only to specified
MAC addresses, which can be learned or specified
by the administrator
MAC address lockout: prevents particular
configured MAC addresses from connecting to the
network
Switch management logon security: can
require either RADIUS or TACACS+ authentication
for secure switch CLI logon
Secure management access: securely encrypts
all access methods (CLI, GUI, or MIB) through
SSHv2, SSL, and/or SNMPv3
Custom banner: displays security policy when
users log in to the switch
Automatic VLAN assignment: automatically
assigns users to the appropriate VLAN based on
their identity and location and the time of day
IEEE 802.1X: provides port-based user
authentication with support for Extensible
Authentication Protocol (EAP) MD5, TLS, TTLS, and
PEAP with choice of AES, TKIP, and static or
dynamic WEP encryption for protecting wireless
traffic between authenticated clients and the access
point
Management password: provides security so
that only authorized access to the Web browser
interface is allowed
Dynamic IP lockdown: works with DHCP
protection to block traffic from unauthorized hosts,
preventing IP source address spoofing