User’s Manual
Security
Authentication
− IEEE 802.1x Port-based/MAC-based network access authentication
− Built-in RADIUS client to cooperate with the RADIUS servers
− TACACS+ login users access authentication
− RADIUS/TACACS+ users access authentication
Access Control List
− IP-based Access Control List (ACL)
− MAC-based Access Control List
Source MAC/IP address binding
DHCP snooping to filter untrusted DHCP messages
Dynamic ARP Inspection discards ARP packets with invalid MAC address to IP address binding
IP Source Guard prevents IP spoofing attacks
Auto DoS rule to defend DoS attack
IP address access management to prevent unauthorized intruder
Layer 3 IP Routing Features
Supports static routes and route summarization
Management
IPv4 and IPv6 dual stack management
Switch Management Interfaces
- Console/Telnet Command Line Interface
- Web switch management
- SNMP v1 and v2c switch management
- SSH/SSL and SNMP v3 secure access
IPv6 IP address/NTP/DNS management
Built-in Trivial File Transfer Protocol (TFTP) client
BOOTP and DHCP for IP address assignment
System Maintenance
− Firmware upload/download via HTTP/TFTP
− Reset button for system reboot or reset to factory default
− Dual Images
DHCP Relay and DHCP Option82
User Privilege levels control
NTP (Network Time Protocol)
Link Layer Discovery Protocol (LLDP) and LLDP-MED
SFP-DDM (Digital Diagnostic Monitor)
Network Diagnostic
− ICMPv6/ICMPv4 Remote Ping
− Cable Diagnostic technology provides the mechanism to detect and report potential cabling issues
SMTP/Syslog remote alarm
Four RMON groups (history, statistics, alarms and events)
SNMP trap for interfacing Link Up and Link Down notification
System Log
PLANET Smart Discovery Utility for deployment management