Datasheet
SGS-5220-24T2X
3
Solution for IPv6 Networking
By supporting IPv6 / IPv4 dual stack and plenty of management functions with easy
and friendly management interfaces, the SGS-5220 series is the best choice for IP
surveillance, VoIP and wireless service providers to connect with the IPv6 network. It
also helps the SMB to step in the IPv6 era with the lowest investment but not necessary
to replace the network facilities while the ISP constructs the IPv6 FTTx edge network.
IPv4 and IPv6 VLAN Routing for Secure and Flexible Management
To help customers stay on top of their businesses, the SGS-5220 switch series not only
provides ultra high transmission performance and excellent layer 2 technologies, but also
offers IPv4/IPv6 VLAN routing feature which allows to cross over different VLANs and
differentIPaddressesforthepurposeofhavingahighlysecured,exiblemanagement
and simpler networking application.
Robust Layer2 Features
The SGS-5220 series can be programmed for advanced switch management
function, such as dynamic port link aggregation, Q-in-Q VLAN, Multiple spanning tree
protocol(MSTP), Layer 2/4 QoS, bandwidth control and IGMP/MLD snooping. The SGS-
5220 series allows the operation of a high-speed trunk combining multiple ports. It
enables up to 14 groups of 8 ports for trunk maximum and supports connection fail-over
as well.
Powerful Security
The SGS-5220 series offers comprehensive layer2 to layer4 access control list (ACL) for
enforcing security to the edge. It can be used to restrict to network access by denying
packetsbasedonsourceanddestinationIPaddress,TCP/UDPportnumberordened
typical network applications. Its protection mechanism also comprises 802.1x Port-
based and MAC-based user and device authentication. With the private VLAN function,
communication between edge ports can be prevented to ensure user privacy.
IPv4 Network
IPv6 Network
Application
IPv6
Stack
IPv4
Stack
Transport Layer
TELNET
WEB
SSHSNMP
ICMPSSL
DHCPNTP
SGS-5220-24T2X
IPv6 Management HostIPv4 Management Host
LACPMSTP
Q-in-Q LLDPQoS
MLD
IGMP
Multicast
• Supports IGMP Snooping v1, v2 and v3
• Supports MLD Snooping v1 and v2
• Querier mode support
• IGMPSnoopingportltering
• MLDSnoopingportltering
• Multicast VLAN Registration (MVR) support
Security
• Authentication
–
IEEE 802.1x Port-based / MAC-based network access
authentication
–
Built-in RADIUS client to co-operate with the RADIUS
servers
–
TACACS+ login users access authentication
–
RADIUS / TACACS+ users access authentication
• Access Control List
–
IP-based Access Control List (ACL)
–
MAC-based Access Control List
• Source MAC / IP address binding
• DHCP Snoopingtolterun-trustedDHCPmessages
• Dynamic ARP Inspection discards ARP packets with
invalid MAC address to IP address binding
• IP Source GuardpreventsIPspoongattacks
• Auto DoS rule to defend DoS attack
• IP address access management to prevent unauthorized
intruder
Management
• IPv4 and IPv6 dual stack management
• Switch Management Interfaces
–
Console / Telnet Command Line Interface
–
Web switch management
–
SNMP v1, v2c, and v3 switch management
–
SSH / SSL secure access
• IPv6 IP Address / NTP / DNS management
• Built-in Trivial File Transfer Protocol (TFTP) client
• BOOTP and DHCP for IP address assignment
• System Maintenance