| PTP Telecom Profile | 
Supports IEEE 1588v2 (T-GM, T-BC / OC, T-TC, T-TSC) Transparent Clock / Boundary Clock / Ordinary Clock / GrandmasterSupports Telecom Profile G.8275.1, G.8275.2, and G.8265.1Supports G.8262 / G.8262.1 SyncESupports G.8264 SyncE ESMCIntegrated Stratum 3E OCXO with optional hold over performancesRich timing input / output interfaces: ToD, 1PPS, BITS and 10MHzInternal GNSS receiver for master clock implementationsSupport FlexE for flexible bandwidth utilizationNanosecond-level Accuracy with G.8273.2 and G.8273.3 standards compatibility | 
                    
                      | Time Synchronization | 
IEEE 1588v2 PTP (GM, BC / OC, and TC)
Supports E2E / P2P: End-to-End and Peer-to-Peer modeSupports two steps PTPSupports L2 multicast and L3 (IPv4) multicast UDP transport mechanismIndustrial / Automation Profile 802.1AS-2020 (gPTP)Power Profile IEC 61850-9-3 and IEEE C37.238-2017*AES67 and SMPTE ST 2110 for AV-over-IP Dante network*Nanosecond-level (ns) Accuracy | 
                    
                      | Stacking | 
Up to 6 x 10 GbE stacking portsSupports stackable up to 6 units, a total of 60 Gb stacking bandwidthUp to 144 Gigabit ports in a single stackSupports spine and leaf line-rate topologies | 
                    
                      | Layer 3 IPv4 / 6 Routing (IPv6 Ready) | 
Static routing / Inter VLAN routingUnicast routing RIPv1 / v2, OSPFv1 / v2, BGP4*, RIPng*, OSPFv3*, BGP4+*Multicast routing DVMRP, PIM-SM, PIM-DM, PIM-SSM, PIMv6*Redundant VRRP, VRRPv3*Supports IGMP v1 / v2 / v3, MLD v1 / v2 | 
                    
                      | NAT (Network Address Translation) | 
Hardware NAT Translations: Wire-speed performanceOne-to-One NATPort ForwardingDynamic NATPort Overload (PAT-Port Address Translations): TCP Timeout (sec.) UDP Timer (sec.) | 
                    
                      | MACsec | 128-bit and 256-bit cipher suites (GCM-AES-256)
 | 
                    
                      | Link Aggregation | 
Static & Dynamic aggregation (IEEE 802.3ad LACP)Maximum 8 groups (LAGs) and max 8 member ports per LAG | 
                    
                      | Broadcast / Multicast / Unicast Storm Suppression | Storm suppression based on port bandwidth percentage & PPS*
 | 
                    
                      | MAC Address Table | 
Static & Blackhole MAC addressMAC learning limit* | 
                    
                      | VLAN | 
IEEE 802.1Q Tag VLAN (up to 4094 VLANs)Port-based VLAN (up to 4094 VLANs)Protocol-based / IP subnet-based / MAC-based VLANQinQ (double-tag VLAN)VLAN Mapping (VLAN Translation)*Voice VLAN*MVRP* | 
                    
                      | Spanning Tree | 
Supports STP / RSTP / MSTPBPDU Guard and Root Guard | 
                    
                      | Loop Protect | Loopback detection and prevention
 | 
                    
                      | ERPS | ITU G.8032 Ethernet ring protection switching (ERPS)
 | 
                    
                      | DHCP | 
DHCP Client including option 66DHCP Snooping including option 82 / 66*DHCP Relay including option 82DHCP Server
MAC-based can assign IP address by specific hostPort-based can assign IP address by specific port | 
                    
                      | Mirroring | Local port mirroring: Ingress, Egress or both direction per portRemote port mirroring: RSPAN*
 | 
                    
                      | Quality of Service | 
Port-based priority with 802.1p CoS priority override*802.1p CoS priority and IPv4 DSCP priority8 Hardware queues per portFlexible queue scheduling algorithms including SP, WRR, and SP + WRR* | 
                    
                      | Bandwidth Control (Rate Limit) | 
Bi-directional Rate limit in percentage (Ingress and Egress)In the ingress direction, packet type (Broadcast / Multicast / Unicast packet) combination rules are allowedTraffic shaping in egress* | 
                    
                      | ACL | 
Layer 2 to Layer 4 packet filteringTraffic classification based on source MAC, destination MAC, source IP, destination IP, TCP / UDP port, and VLAN*Bi-directional ACLs (Ingress and Egress)*Time range-based bi-directional ACLs (Ingress and Egress)*VLAN-based ACL issuing* | 
                    
                      | Discovery Protocol | Link Layer Discovery Protocol (LLDP) and CDP (Cisco Discovery Protocol)
 | 
                    
                      | Multicast | IGMP Snooping v1 / v2 / v3 and MLD Snooping v1 / v2
 | 
                    
                      | Security | 
Hierarchical user management and password protection*Supports up to 10 IP addresses to access the switchHTTPS for secure access to the web interfaceSSH 2.0 for secure shell to command line interfaceMAC-based authentication802.1X802.1X with VLAN assignment*802.1X dynamic access control list (ACL) based on RADIUS attributes*RADIUS and TACACS+ AuthenticationGuest VLAN*Supports Port Isolation*AAA authentication*Dynamic ARP Inspection* | 
                    
                      | SNMP & MIB | 
SNMP v1 / v2c / v3 and TrapSNMP v1 / v2 providing light security by means of the community strings*SNMP v3 providing User-based Security Model (USM) and Transport Security Model (TSM)*Remote Monitoring (RMON) alarm, event, and history recordingRemote Monitoring (RMON) (RFC2819) Groups 1,2,3,9RFC 1213 MIB II, RFC 1157 SNMP MIB, RFC 1573 IF MIB, RFC 1757 RMON, Private MIB | 
                    
                      | IP Stack for Managed Interface | Both IPv4 and IPv6 stack simultaneously
 | 
                    
                      | IPv6 for Managed Interface | 
Neighbor Discovery (ND)*IPv6-Ping, IPv6-Tracert, IPv6-Telnet, and IPv6-TFTP*DHCP Client for IPv6* | 
                    
                      | Configuration Import and Export | 
Readable text configuration file for system quick installationSupports HTTP / HTTPs / FTP / FTP-SSL / SFTP / TFTP backup and restore config file* | 
                    
                      | Firmware | Upgrading via HTTP / HTTPs / FTP / FTP-SSL / SFTP / TFTP*
 | 
                    
                      | Management | 
Supports CLI via SSH 2.0, Telnet and ConsoleSystem log, alarming based on severity*WEB UI management through HTTP / HTTPsNTP, SNTPPing, Tracert | 
                    
                      | Remote Management |  | 
                    
                      | DHCP for IPv6 | 
DHCPv6 Client including option 66DHCPv6 Snooping including option 82 / 66DHCPv6 Relay including option 82DHCPv6 Server
MAC-based can assign IP address by specific hostPort-based can assign IP address by specific port |