DES-3552PEOL EOS
תאור
The DES-3528/3552 xStack series are enhanced L2+ access stackable switches designed to connect end-users in a secure SMB (small and medium size business) or enterprise network. These switches provide physical stacking* , static routing* , multicast and enhanced security, making it an ideal access layer solution. The DES-3528/3552 xStack Series can seamlessly integrate with L3 core switches to form a multi-level network structure consisting of a high-speed backbone and centralized servers.
Flexible & Cost-Effective Ethernet Stack.
The DES-3528/3552 series provide the option of 24 or 48 10/100Mbps Ethernet ports and up to four Gigabit uplinks per switch. Users requiring connections to devices such as IP phones, network cameras and wireless APs can deploy the DES-3528P, which provide 24 10/100Mbps PoE ports. Eight of these PoE ports provide up to 30watts per port, while the remaining adhere to the 802.3af standard (15.4watt output per port), giving administrators the ability to connect to the 802.3af standard devices as well as the 802.3at pre-standard equipment such as the 802.11n AP. The two combo 10/100/100BASE-T SFP slots on the front panel provide flexible copper or fiber Gigabit connection. The two 10/100/1000BASE-T ports on the back panel are designed for fexible dual usage. They can be used either as stacking ports with 4Gbps bidirectional stacking bandwidth, or can simply be used as copper Gigabit uplinks. Physical stacking* capability allows administrators to add up to eight switch units per stack on a scalable expansion basis. This series offers an attractive stackable switch alternative to the expensive chassis-based solution.
Comprehensive Security.
The DES-3528/3552 series provide users with the latest security features such as 802.1X Guest VLAN, MAC-based Access Control (MAC) and Web-based Access Control (WAC). 802.1X Guest VLAN is a comprehensive end-point security solution for user authentication/authorization and WAC guarantees granular network access control with a user-friendly authentication mechanism. The IP-MAC-Port Binding feature allows administrators to bind a source IP address with an associated MAC and also to define the port number to enhance user access control. And with DHCP Snooping feature, the switch automatically learns the IP/MAC pairs by snooping DHCP packets and saving them to the IMPB white list. This keeps the network secure and auditable. The D-Link Safeguard Engine identifes and prioritizes "CPU interested" packets to prevent malicious traffc from interrupting normal network fows and protects switch operation.
Enhanced Network Performance & Availability.
The DES-3528/3552 series targets SMB/enterprise customers who require a high level of network security and maximum uptime. It offers Static Route*, 4K VLAN, advanced selective Q-in-Q, as well as delivering progressive QoS capability for mission-critical applications and multicast services. The switches offer superior performance and availability through the latest Spanning Tree protocol, optional redundant power, and Loopback Detection (D-Link's advanced technology for preventing loops without the presence of STP).
User-friendly & Ecosystem-friendly.
The DES-3528/3552 series uses D-Link's Web GUI 2.0, an easy-to-use web interface, and confguration wizards to minimize administrators' learning curve and make deployments easier to plan and implement. Utilizing the latest generation of chipsets, the DES-3528/3552 series optimizes power consumption to reduce energy costs and contribute to a greener environment. In addition, its fanless design ensures quiet operation, ideal for deployment in open spaces.
* Physical Stacking and Static Route are planned for future releases
מאפיינים כללים
Interfaces
• 48-port 10/100 BASE-TX
• 2-Port 10/100/1000 BASE-T
• 2 combo ports 10/100/1000 BASE / SFP
• 1 console port RS-232
• PoE: The port 10/100 BASE-TX
• Gigabit and 100BASE-FX (Fiber) SFP-ports
Performance
• Switching matrix: 17.6 Gb / s
• Max. speed forwarding 64Bayt: 13,1 Mpps
Stacking
• Physical stack
-Stacking bandwidth with up to 4 Gb / s
-Up to 8 units, stacking
• Virtual stack:
-Support for D-Link Single IP Management (SIM)
-Up to 32 devices, united in virtual stack
Layer 2 features
• MAC Address Table: Up to 16K entries
• Flow control:
-Flow control 802.3h
-HOL Blocking Prevention
• Support for Jumbo-frames up to 9216 bytes
• Spanning Tree:
-802.1D STP
-802.1w RSTP
-802.1s MSTP
-Filter BPDU-packages
-Root Restriction
• Loopback Detection (LBD)
• ERPS (Ethernet Ring Protection Switching) 6
• Link Aggregation 802.3ad:
-Up to 8 groups per device, up to 8 ports per group
• Port mirroring:
-Mode One-to-One
-Mode-Many-to-One
-Mode Flow-based (flow-based mirroring)
-Mirroring RSPAN
Multicast Layer 2
• IGMP Snooping:
-IGMP v1/v2/v3 Snooping
-Supports 1K IGMP-group
-IGMP Snooping Fast Leave on ports / hosts
-Report Suppression Function
• IGMP Proxy
• Limit multicast to IP-addresses (IGMP-filtration):
-Up to 24 profiles filtering IGMP, 128 ranges of addresses to profile
• MLD Snooping:
-MLD v1/v2 Snooping
Support for 256-MLD-groups (to be extended to 1K in future versions of software)
-MLD Snooping Fast Leave on ports / hosts
VLAN
• Group VLAN:
-Max. number of groups VLAN: 4K
• GVRP:
-Maks.256 dynamic VLAN groups
• 802.1 Q Tagged VLAN
• VLAN port-based
• 802.1v VLAN protocol
• Double VLAN (Q-in-Q):
-Q-in-Q port-based
-Selective Q-in-Q *
• VLAN Translation
• VLAN based on MAC-address
• VLAN on the subnet
• ISM VLAN
• Asymmetric VLAN
• Private VLAN
• VLAN Trunking
Functions of Level 3
• Max. number of IP-interfaces: 16
• ARP Proxy
• IPv6 Neighbor Discovery (ND)
Layer 3 Routing
• Routing between VLAN6
-Max. 224 IPv4 routes
-Max. 96 IPv6 routes
• Up to 16 records of the static marshrutizatsii6
• The route is based on policy
QoS
• 802.1p
• 8 queues
• Processing queues:
-Strict Priority
-Weighted Round Robin (WRR)
-Strict WRR
• CoS based on:
-Switch Port
-VLAN ID, 802.1p Priority Queues
-MAC-address
-IPv4/v6-adresa
-DSCP
-Type of protocol
-Class of IPv6 traffic
-IPv6 flow-label
-Non-TCP / UDP port
-Packet-defined
• Supports the action with the flow:
Tagging, 802.1p priority
Tagging-TOS / DSCP
-Bandwidth Management
-Committed Information Rate (CIR), in increments of 64Kb / s
• Three Color Marker
-TrTCM
-SrTCM
• Congestion Control:
-SRED
• Bandwidth Management:
-Based port (Ingress / Egress, min. Step 64 kB / s)
-Flow-based (Ingress / Egress, min. Step 64 Kb / s)
Access Control Lists (ACL)
• Up to 1792 rules
• ACL based on:
-802.1p Priority Queues
-VLAN ID
-MAC-address
-Ether-Type
-IPv4/IPv6 Address
-DSCP
-Non-TCP / UDP port
-IPv6 traffic class
-IPv6 flow-label
-Content packages, user-defined
• Statistics ACL
• ACL on the basis of time
• ACL-based VLAN
• CPU Interface Filtering
Security Features
• SSH v2
• SSL v3
• Function Port Security (port-based security):
-Up to 64 MAC-address on port/VLAN6
• Office of the broadcast /
multicast / unicast
storm
• Traffic Segmentation
• Function IP-MAC-Port Binding (IMPB):
Check-ARP-packets
Check-IP-packets
-DHCP Snooping
-IPv6 ND Snooping6
-500 Entries per device
• Function D-Link Safeguard Engine
• Filtering NetBIOS / NetBEUI
• DHCP Server Screening
• Preventing ARP Spoofing
• Protection against attacks BPDU
AAA (Authentication, authorization, accounting)
• 802.1X:
-Based access control ports
-Based Access Control host
-Identity-driven Policy (VLAN, ACL6, QoS) Assignment
-Authentication Database Failover
• Access to Web-based (WAC):
-Based access control port
-Based Access Control host
-Identity-driven Policy (VLAN, ACL6, QoS) Assignment
-Authentication Database Failover
• Compond Authentication
• Guest VLAN
• Microsoft ® NAP
-Supports 802.1X NAP
• Maintain RADIUS accounting
• Authentication for access to the switch
-RADIUS / TACACS +
• Accounts with 3 levels privileges
Performing Operations, Administration and Management (OAM)
• Cable Diagnostics
• 802.3 Ah Ethernet Link OAM
• 802.3 Ah D-Link Extension: D-Link Unidirectional Link Detection (DULD) 6
• 802.1 Ag Connectivity Fault Management (CFM)
• ITU-T Y.17316
Management
• Web-interface
• Command Line Interface (CLI)
• Telnet server
• Telnet Client
• TFTP client
• ZModem
• SNMP v1/v2/v3
• Sending a message for unusual situations traps
• System Log
• RMON v1:
-Support for Groups 1, 2, 3, 9
• RMON v2
-Supports ProbeConfig group
• SFlow
• LLDP
• LLDP-MED6
• BootP / DHCP-client
• Auto DHCP
• DHCP Relay
• DHCP Relay Option 60
• DHCP Relay Option 61
• DHCP Relay Option 82
• Add a tag PPPoE Circuit-ID
• DHCP-server
• Support for two copies of the Software (Dual Images)
• Support for two copies of the configuration (Dual Configuration)
• Monitoring CPU
• DNS Relay
• The command debug (Debug Command)
• SNTP
• Password Recovery
• Password Encryption
• ICM Pv6
• A trusted host
MIB
• RFC1065, 1066, 1155, 1156, 2578 MIB Structure
• RFC1212 MIB Definition
• RFC1213 MIB-II
• RFC1215 MIB Traps Convention
• RFC4188 Bridge MIB
• RFC1157, 2571 ~ 2576 SNMP MIB
• RFC1442, 1901 ~ 08, 2578 SNMPv2 MIB
• RFC1757, 2819 RMON MIB
• RFC2021 RMONv2 MIB
• RFC1398, 1643, 1650, 2358, 2665 Ether-like MIB
• RFC2674, 4363 Q-Bridge / P-Bridge MIB
• RFC2233, 2863 IF MIB
• RFC2618 RADIUS Authentication Client MIB
• RFC2620 RADIUS Accounting Client MIB
• RFC2925 Ping MIB
• D-Link Private MIB
Compliance with standards
• RFC768 UDP
• RFC791 IP
• RFC792 ICMPv4
• RFC2463, 4443 ICMPv6
• RFC4884 Extended ICMP
• RFC793 TCP
• RFC826 ARP
• RFC854 Telnet
• RFC793 TCP
• RFC 1321, 2284, 2865, 2716, 3580, 3748 Minutes of EAP (Extensible Authentication Protocol)
• RFC2571 SNMP Framework
• RFC2572 processing and sending of SNMP messages
• RFC2573 SNMP Applications
• RFC2574 User-based Security Model for SNMPv3
• RFC1981 Path MTU Discovery for IPv6
• RFC2460 IPv6
• RFC2461, 4861 IPv6 ND
• RFC2462, 4862 IPv6 Stateless Address Auto-Configuration
• RFC2464 IPv6 over Ethernet and Definition
• RFC3513, 4291 Architecture of IPv6 addressing
• RFC2893, 4213 IPv4/IPv6 Dual Stack
• RFC1112 Host extensions for IP multicasting
• RFC2236 IGMPv2
• RFC3376 IGMPv3
• RFC4605 IGMP / MLD Proxying
• RFC1027 ARP Proxy
• RFC2475 Differentiated Service
• RFC2597 Assured Forwarding PHB
• RFC2598 An Expedited Forwarding PHB
• RFC2697 Single Rate Three Color Marker
• RFC2698 Two Rate Three Color Marker
• RFC2246 SSL
• RFC2138 RADIUS
• RFC2139, 2866 RADIUS Accounting
• RFC1492 TACACS
• RFC2068, HTTP 2616
• RFC854 Telnet
• RFC783, 1350 TFTP
• RFC2570 SNMP
• RFC3164 System Log
• RFC3176 sFlow
• RFC951, 1542 BootP
• RFC2131 DHCP
• RFC1769 SNTP
• ITU-T G.8032 Ether Ring Protection Switching