MAC Table |
Up to 8192 MAC addresses |
Spanning Tree Protocol (STP) |
Standard 802.1d Spanning Tree support, enabled by
default
Fast convergence using 802.1w (Rapid Spanning Tree [RSTP])
Multiple Spanning Tree instances using 802.1s (MSTP)
16 instances are supported |
Port Grouping |
Support for IEEE 802.3ad Link Aggregation Control
Protocol (LACP)
●
Up to 8 groups
●
Up to 8 ports per group with 16
candidate ports for each (dynamic) 802.3ad link aggregation
Load balance based on source and destination MAC
address, or source and destination MAC/IP |
VLAN |
Support for up to 256 VLANs simultaneously
Port-based and 802.1Q tag-based VLANs
Management VLAN
Guest VLAN |
Auto Voice VLAN |
Voice traffic is automatically assigned to a
voice-specific VLAN and treated with appropriate levels of QoS |
QinQ VLAN |
VLANs transparently cross a service provider network
while isolating traffic among customers |
Generic VLAN Registration Protocol (GVRP) and
Generic Attribute Registration Protocol (GARP) |
Protocols for automatically propagating and
configuring VLANs in a bridged domain |
Head-of-Line (HOL) Blocking |
HOL blocking prevention |
Jumbo Frame |
Frame sizes up to 9216 supported |
Security |
ACLs |
Drop or rate limit based on source and destination
MAC, VLAN ID or IP address, protocol, port, differentiated services code
point (DSCP)/IP precedence, TCP/UDP source and destination ports, 802.1p
priority, Ethernet type, Internet Control Message Protocol (ICMP)
packets, IGMP packets, TCP flag
Support up to 512 rules |
Port Security |
Creates the ability to lock source MAC addresses to
ports; limits the number of learned MAC addresses |
IEEE 802.1x (Authenticator Role) |
802.1X: RADIUS authentication; guest VLAN; multiple
host mode |
RADIUS, TACACS+ |
Supports RADIUS and TACACS authentication; switch
functions as a client |
MAC Address Filtering |
Supported |
Storm Control |
Broadcast, multicast, and unknown unicast |
DoS Protection |
DOS attack prevention |
STP Bridge Protocol Data Unit (BPDU) Guard |
This security mechanism protects the network from
invalid configurations. A port enabled for BPDU Guard is shut down if a
BPDU message is received on that port |
Secure Shell (SSH) Protocol |
SSH is a secure replacement for Telnet traffic. SCP
also uses SSH. SSH v1 and v2 are supported |
Secure Sockets Layer (SSL) |
SSL support: Encrypts all HTTPS traffic, allowing
highly secure access to the browser-based management GUI in the switch |