Items |
DES-12X-L3 |
|
L2 features |
MAC |
MAC Black Hole Port MAC Limit |
VLAN |
4K VLAN entries Port-based/MAC-based/IP subnet-based VLAN PVLAN to realize port isolation and save public-vlan resources GVRP, QINQ |
|
Spanning tree protocol |
IEEE 802.1D Spanning Tree Protocol (STP) IEEE 802.1w Rapid Spanning Tree Protocol (RSTP) IEEE 802.1s Multiple Spanning Tree Protocol instances (MSTP) |
|
Port |
Bi-directional bandwidth control Static link aggregation and LACP (Link Aggregation Control Protocol) Port mirroring and traffic mirroring |
|
Security features |
User’s security |
Anti-ARP-spoofing Anti-ARP-flooding IP Source Guard create IP+VLAN+MAC+Port binding Port Isolation MAC address binds to port and port MAC address filtration IEEE 802.1x and AAA/Radius authentication |
Device security |
Anti-DOS attack(such as ARP,Synflood, Smurf, ICMP attack), ARP detection, worm and Msblaster worm attack SSHv2 Secure Shell SNMP v3 encrypted management Security IP login through Telnet Hierarchical management and password protection of users |
|
Network security |
User-based MAC and ARP traffic examination automatic ARP protection based on MAC address and ARP packet suppression or automatic user block of ARP traffic detection Dynamic ARP table-based binding IP+VLAN+MAC+Port binding L2 to L7 ACL flow filtration mechanism on the 80 bytes of the head of user-defined packet Port-based broadcast/multicast suppression and auto-shutdown risk port URPF to prevent IP address counterfeit and attack DHCP Option82 and PPPoE+ upload user’s physical location DHCP snooping / IP source Guard / 802.1X / rich security features Plaintext authentication of OSPF、RIPv2 and BGPv4 packets and MD5 cryptograph authentication |
|
Service features |
ACL |
Standard and extended ACL Time Range ACL Packet filter providing filtering based on source/destination MAC address, source/destination IP address, port, protocol, VLAN, VLAN range, MAC address range, or invalid frame. System supports concurrent identification at most 50-service traffic Packet filtration of L2~L7 even deep to 80 bytes of IP packet head |
QoS |
Rate-limit to packet sending/receiving speed of port or self-defined flow and provide general flow monitor and two-speed tri-color monitor of self-defined flow Priority remark to port or self-defined flow and provide 802.1P, DSCP priority and Remark transmission of high-priority packets with various traffic classification and QoS flow control functions CAR(Committed Access Rate)、Traffic Shaping and flow statistics Packet mirror and redirection of interface and self-defined flow Super queue scheduler based on port and self-defined flow. Each port/ flow supports 8 priority queues and scheduler of SP, WRR and SP+WRR. Congestion avoid mechanism,including Tail-Drop and WRED |
|
Multicast |
IGMPv1/v2/v3 IGMPv1/v2/v3 Snooping IGMP Filter MVR and cross VLAN multicast copy IGMP Fast leave IGMP Proxy PIM-SM/PIM-DM/PIM-SSM MLDv2/MLDv2 Snooping |
|
Route |
Functions |
IPV4 / IPV6 Interface |
Static route |
||
Reliability |
Loop protection |
ERRP |
Link protection |
Flex Link RSTP/MSTP LACP BFD |
|
Maintenance |
Network maintenance |
Telnet-based statistics RFC3176 sFlow LLDP 802.3ah Ethernet OAM RFC 3164 BSD syslog Protocol Ping and Trace route |
Device management |
Command-line interface(CLI), Console, Telnet and WEB configuration System configuration with SNMPv1/v2/v3 RMON (Remote Monitoring)1/2/3/9 groups of MIB NTP (Network Time Protocol) WEB-based network management Ping and Trace route |
Items | DES-12X-L2+ | |
L2 features | MAC | MAC Black Hole Port MAC Limit |
VLAN | 4K VLAN entries Port-based/MAC-based/IP subnet-based VLAN PVLAN to realize port isolation and save public-vlan resources GVRP QINQ |
|
Spanning tree protocol | IEEE 802.1D Spanning Tree Protocol (STP) IEEE 802.1w Rapid Spanning Tree Protocol (RSTP) IEEE 802.1s Multiple Spanning Tree Protocol instances (MSTP) |
|
Port | Bi-directional bandwidth control Static link aggregation and LACP(Link Aggregation Control Protocol) Port mirroring and traffic mirroring |
|
Security features | User’s security | Anti-ARP-spoofing Anti-ARP-flooding IP Source Guard create IP+VLAN+MAC+Port binding Port Isolation MAC address binds to port and port MAC address filtration IEEE 802.1x and AAA/Radius authentication |
Device security | Anti-DOS attack(such as ARP,Synflood, Smurf, ICMP attack), ARP detection, worm and Msblaster worm attack SSHv2 Secure Shell SNMP v3 encrypted management Security IP login through Telnet Hierarchical management and password protection of users |
|
Network security | User-based MAC and ARP traffic examination automatic ARP protection based on MAC address and ARP packet suppression or automatic user block of ARP traffic detection Dynamic ARP table-based binding IP+VLAN+MAC+Port binding L2 to L7 ACL flow filtration mechanism on the 80 bytes of the head of user-defined packet Port-based broadcast/multicast suppression and auto-shutdown risk port URPF to prevent IP address counterfeit and attack DHCP Option82 and PPPoE+ upload user’s physical location DHCP snooping / IP source Guard / 802.1X / rich security features Link protection such as dynamic link aggregation and Ethernet ring network Plaintext authentication of OSPF、RIPv2 and BGPv4 packets and MD5 cryptograph authentication |
|
IP routing | IPv4 | ARP Proxy DHCP Relay DHCP Server Static route RIPv1/v2 OSPFv2 BGPv4 ECMP Strategy route Route policy MPLS L3VPN、MPLS L2VPN and VPLS |
IPv6 | ICMPv6 ICMPv6 redirection DHCPv6 ACLv6 OSPFv3 BGP RIPng IPv6 and IPv4 dual stack |
|
Service features | ACL | Standard and extended ACL Time Range ACL Packet filter providing filtering based on source/destination MAC address, source/destination IP address, port, protocol, VLAN, VLAN range, MAC address range, or invalid frame. System supports concurrent identification at most 50 service traffic Packet filtration of L2~L7 even deep to 80 bytes of IP packet head |
QoS | Rate-limit to packet sending/receiving speed of port or self-defined flow and provide general flow monitor and two-speed tri-color monitor of self-defined flow Priority remark to port or self-defined flow and provide 802.1P, DSCP priority and Remark transmission of high-priority packets with various traffic classification and QoS flow control functions CAR(Committed Access Rate)、Traffic Shaping and flow statistics Packet mirror and redirection of interface and self-defined flow Super queue scheduler based on port and self-defined flow. Each port/ flow supports 8 priority queues and scheduler of SP, WRR and SP+WRR. Congestion avoid mechanism,including Tail-Drop and WRED |
|
Multicast | IGMPv1/v2/v3 IGMPv1/v2/v3 Snooping IGMP Filter MVR and cross VLAN multicast copy IGMP Fast leave IGMP Proxy PIM-SM/PIM-DM/PIM-SSM MLDv2/MLDv2 Snooping |
|
Route | Functions | IPV4 / IPV6 Interface |
Static route | ||
Reliability | Loop protection | ERRP Loopback-detection |
Link protection | FlexLink RSTP/MSTP LACP BFD |
|
Device protection | VRRP host backup Double fault-tolerant backup of host program and configuration files Strictly follow the relevant standards, and other mainstream manufacturers fully interoperability |
|
Maintenance | Network maintenance | Telnet-based statistics RFC3176 sFlow LLDP 802.3ah Ethernet OAM RFC 3164 BSD syslog Protocol Ping and Traceroute |
Device management | Command-line interface(CLI), Console, Telnet and WEB configuration System configuration with SNMPv1/v2/v3 RMON (Remote Monitoring)1/2/3/9 groups of MIB NTP(Network Time Protocol) WEB-based network management Ping and Traceroute |
Model |
Product Description |
DES-12X-L3 |
12*10GE SFP+, 1*console |