HSR / PRP
|
- IEC 62439-3 HSR / PRP Seamless Redundancy Protocol (recovery time=0ms)
- IEC 61850-90-4 MMS Server for Switching Data with SCADA
|
Layer 3 IPv4 / 6 Routing (IPv6 Ready)
|
- Static routing / Inter VLAN routing
- Configurable maximum active routing rules
- Unicast routing RIPv1 / v2, OSPFv1 / v2, RIPng, OSPFv3
- Multicast routing DVMRP, PIM-SM, PIM-DM, PIM-SSM, PIMv6
- Redundant VRRP, VRRPv3
- Supports IGMP v1 / v2 / v3, MLD v1 / v2
|
Power Substation
|
- IEC 61850-90-4 MMS Server for Switching Data with SCADA
- IEC 61850 QoS Priority (GOOSE, SMV)
|
Reliability
|
- Protection circuits against abnormal operations
- Redundant power input
- Full environmental monitoring of temperature and internal voltage levels
|
Industrial Automation
|
- IEEE 1588v2 PTPv2 BC / OC / TC (Nanosecond-level (ns) Accuracy)
- IEEE 1588 PTP one-step variant
- IEEE 1588 PTP two-step variant
- IEEE 1588 PTP End-to-End Transparent Clock
- IEEE 1588 PTP Peer-to-Peer Transparent Clock
- IEEE 1588 PTP profile: Default
- IEEE 1588 PTP profile: Power (IEEEC C37.238 & IEC 61850-9-3)
- Modbus / TCP with master / slave heartbeats facility
- PROFINET IO non-real-time and real-time (NRT / RT)
- EtherNet / IP
- IEC 60870-5-104
- BACnet / IP
|
TSN Features
|
- IEEE 802.1AS-2020 Timing and Synchronization
- IEEE 802.1Qbv Time Aware Scheduling
- IEEE 802.1Qbu Frame Pre-emption / Cut-through
- IEEE 802.1CB Seamless Redundancy
- IEEE 802.1Qci Per-Stream Filtering and Policing
- IEEE 802.1Qav Forwarding and queuing enhancements for time-sensitive streams
- IEEE 802.3br Interspersing Express Traffic (IET)
|
Management Features
|
- NETCONF / RESTCONF northbound interface with YANG data modelling
- Web-based Graphical User Interface (GUI)
- Industry-standard CLI with context-sensitive help
- Link Layer Discovery Protocol (LLDP)
- Link Layer Discovery Protocol - Media Endpoint Discovery (LLDP-MED)
- Console management port on the front panel for ease of access
- Front panel LEDs provide at-a-glance PSU status, PoE status, and fault information
- USB interface allows software release files, configurations, and other files to be stored for backup and distribution to other devices
- Recessed Reset button
- Flow Control
|
IP Stack for Managed Interface
|
- Both IPv4 and IPv6 TCP / IP stack simultaneously, ICMP
|
IPv4 Features
|
- Equal Cost Multi Path (ECMP) routing
- Static unicast and multicast routes for IPv4
|
IPv6 Features
|
- IPv4 and IPv6 dual stack
- IPv6 hardware ACLs
- Static unicast routing for IPv6
|
SNMP
|
- SNMP v1 / v2c / v3 , Trap and Inform
- SNMP v1 / v2 provides light security by means of the community strings
- SNMP v3 provides a User-based Security Model (USM) and a Transport Security Model (TSM)
|
SNMP MIB
|
- RFC2819 RMON Groups 1,2,3,9, RFC 1213 MIB II, RFC 1157 SNMP MIB, RFC 1573 IF MIB
- SNMPv2-MIB, MIBII, Bridge MIB, Ethernet like MIB, VLAN MIB, IGMP MIB
- IEEE8021-SPANNING-TREE-MIB, IEEE8021-PAE-MIB, P-BRIDGE MIB, Q-BRIDGE MIB
- IEEE8023-LAG-MIB, LLDP-EXT-DOT1-MIB, LLDP-EXT-DOT3-MIB, Intrising Private MIB
|
Multicasting Features
|
- IGMP snooping with fast leave
- IGMP query solicitation
- MLDv2 for IPv6
- MLD snooping
- IGMP / MLD proxy (multicast forwarding)
- Protocol Independent Multicast-Dense Mode (PIM-DM)
- Protocol Independent Multicast-Sparse Mode (PIM-SM)
- GMRP for filtering multicast traffic
- GARP
|
Virtual LAN Features
|
- Generic VLAN Registration Protocol (GVRP)
- VLAN stacking, Q-in-Q
- VLAN translation
|
Quality of Service
|
- 8 priority queues with a hierarchy of high priority queues for real-time traffic, and mixed scheduling, for each switch port
- IP precedence and DiffServ marking based on Layer 2, 3 and 4 headers
- Policy-based QoS and traffic shaping
- Policy-based QoS based on VLAN, port, MAC, and general packet classifiers
- Policy-based storm protection
- Strict priority, weighted round robin, or mixed scheduling
- Taildrop for queue congestion control
- Wirespeed traffic classification with low latency for real-time streaming media applications
|
Resiliency Features
|
- Ethernet Ring Protection Switching (ITU-T G.8032 ERPS)
- Link Aggregation Control Protocol (LACP)
- Loop detection and thrash limiting
- Media Redundancy Protocol (MRP)
- Multiple Spanning Tree Protocol (MSTP)
- Rapid Spanning Tree Protocol (RSTP)
- Spanning Tree Protocol (STP) root guard
- Virtual Router Redundancy Protocol (VRRPv3)
|
Services
|
- Domain Name System (DNS) client and relay
- DNSv6 client and relay
- Dynamic Host Configuration Protocol (DHCP) server and relay
- DHCPv6 server and relay
- HyperText Transfer Protocol (HTTP / 1.1)
- Network Time Protocol (NTP) for IPv4 and IPv6
- Simple Mail Transfer Protocol (SMTP)
- Secure Shell (SSHv2 / v3)
- TELNET
- Trivial File Transfer Protocol (TFTP)
|
Diagnostic Tools
|
- Automatic link flap detection and port shutdown
- Event logging via Syslog over IPv4
- Optical Digital Diagnostic Monitoring (DDM)
- Ping polling for IPv4 and IPv6
- Port mirroring
- No limit on mirrored port
- Up to 4 mirror (analyzer) ports for received traffic
- 1 mirror (analyzer) port for transmitted traffic
- VLAN mirroring (RSPAN)
- TraceRoute for IPv4 and IPv6
|
Configuration Import and Export
|
- Readable text configuration file for system quick installation
- Supports HTTP / HTTPs / FTP / FTP-SSL / SFTP / TFTP backup and restore config file
- Rollback Config*
|
Security Features
|
- Authentication, Authorization and Accounting (AAA)
- Auth-fail and guest VLANs
- Configurable ACLs for management traffic
- BPDU protection
- DHCP snooping, IP source guard and Dynamic ARP Inspection (DAI)
- DoS attack blocking and virus throttling
- Dynamic VLAN assignment
- HTTP over TLS (HTTPS)
- MAC address filtering and MAC address lockdown
- MACsec encryption (cipher suite: GCM-AES-128 / 256, GCM-AES-XPN-128 / 256)
- Password protected bootloader
- Port-based learn limits (intrusion detection)
- Secure Copy (SCP)
- Strong password security and encryption
- Login Policy
- TACACS+ authentication and accounting
- Tri-authentication: MAC-based, web-based and IEEE 802.1X
- Trust access control (PACC)
- Port Security (Static Port Lock)
- 802.1X dynamic access control list (ACL) based on RADIUS attributes
- RADIUS and TACACS+ Authentication
|
Firmware
|
- Upgrading via HTTP / HTTPs / FTP / FTP-SSL / SFTP / TFTP
- Dual Image
|
Dual Homing
|
- Two separate uplink paths to network devices
|
Bandwidth Control (Rate Limit)
|
- Bi-directional Rate limit in percentage (Ingress and Egress)
- In the ingress direction, packet type (Broadcast / Multicast / Unicast packet) combination rules are allowed
- Traffic shaping in egress
|
ACL
|
- Layer 2, Layer 3 (IPv4 / IPv6), Layer 4 packet filtering
- Traffic classification based on source MAC, destination MAC, source IP, destination IP, TCP / UDP port, and VLAN
- Bi-directional ACLs (Ingress and Egress)
- Time range-based ACLs
- VLAN-based ACL issuing
- IMPB (IP-MAC-Port Binding)
|