DGS-3120-48PCEOL
תאור
The DGS-3120 xStack Series are enhanced L2 access stackable switches designed to connect end-users in a secure SMB or enterprise network. These switches support physical stacking, multicast and enhanced security, making them an ideal Gigabit access layer solution. The DGS-3120-24TC/48TC provides 20 or 44 10/100/1000 Mbps Gigabit Ethernet ports and 4 combo 1000BASE-T/SFP Gigabit Ethernet ports. The DGS-3120-24PC/48PC provides 24 or 48 10/100/1000 Mbps PoE Gigabit Ethernet ports and 4 combo 1000BASE-T/SFP Gigabit Ethernet ports. The DGS-3120-24SC/24SC-DC provides 16 SFP Gigabit Ethernet ports and 8 combo 1000BASE-T/SFP Gigabit ports. Each 10/100/1000 Mbps port of DGS-3120-24PC/48PC supports 802.3af and 802.3at Power over Ethernet standard. The default power budget is 370 Watts and can be expanded to 740 Watts with the DPS-700 RPS. The switches are also equipped with an SD Card slot, allowing the user to boot images and upload configuration files directly from an SD Card. Furthermore, syslog files can also be conveniently saved to a card.
Standard and Enhanced Images.
The DGS-3120 Series is embedded with two different software images - Standard Image (SI) and Enhanced Image (EI). The Standard Image provides sophisticated features for campus, or enterprise. It includes advanced Quality of Service (QoS), traffic shaping, L2 multicasting, and robust security features. The Enhanced Image supports ERPS, Double VLAN (Q-in-Q), Ethernet OAM, Static Route, IMPB, sFlow, IPv6 features which are suitable for the next generation IPv6 networks or triple play applications in Metro Ethernet.
Enhanced Network Reliability
The DGS-3120 Series targets enterprise/campus and customers who require a high level of network security and maximum uptime. All the models in DGS-3120 Series (except DGS-3120-24SC-DC) support an external redundant power supply so that continued operation can be assured. They also include other features, such as 802.1D Spanning Tree (STP), 802.1w Rapid Spanning Tree (RSTP) and 802.1s Multiple Spanning Tree (MSTP), Loopback Detection (LBD), and Broadcast Storm Control, that enhance network resilience. The G.8032 Ethernet Ring Protection Switching (ERPS) function minimizes the recovery time to 50 ms. For load sharing and redundancy backup in switch cascading/server attachment configuration, the DGS-3120 Series provides dynamic 802.3ad Link Aggregation Port Trunking. Comprehensive Security The DGS-3120 Series provides users with the latest security features such as Multi-layer and Packet Content Access Control Lists (ACL), Storm Control, and IP-MAC-Port Binding (IMPB) with DHCP Snooping. The IP-MAC-Port Binding feature allows administrators to bind a source IP address with an associated MAC and also define the port number to enhance user access control. With the DHCP Snooping feature, the switch automatically learns IP/MAC pairs by snooping DHCP packets and saving them to the IMPB white list. In addition, the D-Link Safeguard Engine identifies and prioritizes “CPU interested” packets to prevent malicious traffic from interrupting normal network flows, and to protect switch operation.
Identity Driven Network Policies
The DGS-3120 Series supports authentication mechanisms such as 802.1X, Web-based Access Control (WAC), and MAC-based Access Control (MAC) for strict access control and easy deployment. After authentication, individual policies such as VLAN membership, QoS policies, and ACL rules can be assigned to each host. In addition, the switch also supports Microsoft® NAP (Network Access Protection). NAP is a policy enforcement technology that allows customers to protect network assets from unhealthy computers by enforcing compliance with network health policies.
Traffic Management for Triple Play
The DGS-3120 Series implements a rich set of multilayer QoS/CoS features to ensure that critical network services like VoIP, video conference, IPTV and IP surveillance are served with high priority. The Traffic Shaping features guarantee bandwidth of these services when the network is busy. With L2 Multicast support, the DGS-3120 shows its ability to handle growing IPTV applications. Host-based IGMP/MLD Snooping allows multiple multicast subscribers per physical interface and ISM VLAN sends multicast streams in a multicast VLAN to save bandwidth and to provide better security to the backbone network. The ISM VLAN profiles allow users to bind/replace the pre-defined multicast registration information to subscriber ports quickly and easily.
Proactive, Effective Network Management
To uphold enterprise customers’ Service Level Agreements (SLA), service providers must reduce the Mean Time to Repair (MTTR) and increase service availability. Ethernet OAM features address these challenges and enable service providers to offer carrier-grade services. The DGS-3120 Series supports industry-standard OAM tools, including IEEE 802.3ah, IEEE802.1ag, and ITU-T Y.1731. Connectivity Fault Management (CFM) provides tools to monitor and troubleshoot end-to-end Ethernet networks, allowing service providers to check connectivity, isolate network issues, and identify customers affected by network issues.
IPv6 Technology
The DGS-3120 Series is fully compliant with the future IPv6 networks. It supports remote IPv6 manageability from telnet, HTTP, or SNMP. To create secure IPv6 networks, the DGS-3120 Series uses IPv6 ACL, DHCPv6 Snooping and Neighbor Discovery (ND) Snooping functions to protect the network from illegal IPv6 clients. The DGS-3120 Series has been certified with IPv6 Ready Logo Phase 2 from the IPv6 forum, a worldwide IPv6 advocacy consortium. The IPv6 Ready Logo Program provides conformance and interoperability of IPv6 products.
D-Link Green Technology
D-Link is striving to take the lead in developing innovative and power-saving technology that does not sacrifice operational performance or functionality.The DGS-3120 Series implements the D-Link Green Technology, which includes a power saving mode, smart fan, reduced heat dissipation, and cable length detection. The power saving feature automatically powers down ports that have no link or link partner. The Smart Fan feature allows for the built-in fans to automatically turn on at a certain temperature, providing continuous, reliable and ecofriendly operation of the switch.
Manageability
D-Link’s Single IP Management (SIM) simplifies and speeds up management tasks, allowing multiple switches to be configured, monitored and maintained from any workstation running a web browser through one unique IP address. This virtual stack is managed as a single object, having all units maintained by one IP address. The DGS-3120 Series also supports standard-based management protocols such as SNMP, RMON, Telnet, Console, Web-based GUI and
SSH/SSL security authentication.
מאפיינים כללים
• Interface
+ 44 10/100/1000BASE-T
+ 4 Combo ports 10/100/1000BASE-T/SFP
• Redundant Power Supply: DPS-700
• Management console port: RJ-45
• 2 ports for stacking
• 1 slot for SD-cards
Performance
• Switching matrix 136 Gbit / s
• The speed of forward 64-byte packets: 101,19 Mpps
• Buffer packets: 2 MB
• Flash-Memory: 32 MB
PoE
• The standard PoE
+ 802.3af and 802.3at
• Budget for PoE power
+ 370 W
+ 740 W (with DPS-700 RPS)
Stacking
• Physical Stacking
+ Bandwidth for stacking up to 40 Gb / s
+ Up to 6 units, combined in a stack
• Virtual stacking:
+ D-Link Single IP Management (SIM)
+ Up to 32 devices in the virtual stack
Layer 2 features
• MAC-address table: 16K
• Flow Control
+ 802.3x Flow Control
+ HOL Blocking Prevention
• Jumbo-frame up to 13 Kbytes
• Spanning Tree
+ 802.1D STP
+ 802.1w RSTP
+ 802.1s MSTP
+ Filtering BDPU
+ Root Restriction
• The Loopback Detection
• 802.3ad Link Aggregation
+ Max. 32 groups per device / 8 ports per group
• Port Mirroring
+ One-to-One
+ Many-to-One
+ Based on the flow
+ RSPAN
Multicast Layer 2
• IGMP Snooping
+ IGMP v1/v2/v3 Snooping
+ Support 1024 IGMP-group
+ Fast Leave on the port / flow
+ Report Suppression
• Restricting multicast to IP-addresses
+ Up to 24 profiles filtering IGMP, 32 address range on the profile
• MLD Snooping
+ MLD v1/v2 Snooping
+ Supports up to 1024 groups
+ Fast Leave on the port / flow
VLAN
• Group VLAN
+ Max. 4K VLAN groups
• GVRP
+ Support for dynamic VLAN-255 groups
• 802.1Q Tagged VLAN
• VLAN-based port
• 802.1v Protocol VLAN
• Voice VLAN
• VLAN based on MAC-address
• ISM VLAN
• Assymetric VLAN
• Private VLAN
• VLAN Trunking
Quality of Service (QoS)
• 802.1p
• 8 queues per port
• Queue management
+ Strict Priority
+ Weighted Round Robin (WRR)
+ Strict + WRR
• CoS-based
+ Switch port
+ VLAN ID
+ 802.1p priority queues
+ MAC-address
+ IPv4-address
+ DSCP
+ Type of protocol
+ TCP / UDP-ports
+ Content of the package, a user-defined
+ IPv6-address
+ IPv6-class traffic
+ IPv6 flow label
• Support for the following streams
+ Tagging 802.1p priority
+ Add a tag priority TOS / DSCP
+ Bandwidth Management
• Bandwidth Management
+ Port-based (incoming / outgoing, min. Step up to 64 kbit / s)
+ Flow based (incoming / outgoing, min. Step up to 64 kbit / s)
Access Control Lists (ACL)
• Supports up to 1,5 K Access Rules
• ACL based on:
+ 802.1p Priority
+ VLAN ID
+ MAC-address
+ Ether Type
+ IPv4-address
+ DSCP
+ Type of protocol
+ Number of TCP / UDP-ports
+ Content of the package, a user-defined
+ IPv6-address
+ IPv6 flow label
+ IPv6-class traffic
• ACL-based time
• Filter interface CPU
Security
• SSH v2
• SSL v1/v2/v3
• Port Security
+ Up to 64 MAC-address on a port / VLAN
• Control of Broadcast / много-адресных/одноадресных storms
• Segmentation of Traffic
• D-Link Safeguard Engine
• Filtering NetBIOS / NetBEUI
• DHCP Server Screening
• Prevent attacks ARP Spooofing
• Protection against attacks BDPU
AAA
• 802.1X
+ Access control based on port
+ Control access based on host
+ Identity-Driven Policy (VLAN, ACL or QoS)
+ Authentication Database Failover
• Access control based on the Web (WAC):
+ Access control based on port
+ Based Access Control host
+ Identity-Driven Policy (VLAN, ACL or QoS)
+ Authentication Database Failover
• Access control based on MAC-address (MAC):
+ Access control based on port
+ Control access based on host
+ Identity-Driven Policy (VLAN, ACL or QoS)
+ Authentication Database Failover
• Japanese Web-based management (JWAC) 4
• Guest VLAN
• Microsoft ® NAP
+ Support for 802.1X NAP
+ Support for DHCP NAP
• Maintaining RADIUS accounting
• RADIUS and TACACS authentication for access control
• Accounts with 4 levels of privilege
D-Link Green
• Compliance with the RoHS Directive
• Power on the status of the connection
• Power cable length
• PoE on vremeni5
Performing Operations, Administration and Management (OAM)
• Diagnosis of cable
Management
• Management of Web-based interface (Supports IPv4)
• Command Line Interface CLI
• Server Telnet (support IPv4)
• Client Telnet (support IPv4)
• Client TFTP (Supports IPv4)
• ZModem
• SNMP v1/v2c/v3
• SNMP Traps
• System Log
• RMON v1:
+ Support groups 1,2,3,9
• RMON v2:
+ Support Group ProbeConfig
• LLDP
• BootP / DHCP-client
• Automatic configuration DHCP
• DHCP Relay
• DHCP Relay Option 12
• DHCP Relay Option 82
• Flash File System
• Support for multiple versions of software
• Support for multiple versions of configurations
• CPU Monitoring
• Debug Command
• SNTP
• Password Recovery
• Password Encryption
• A trusted host
• Microsoft ® NLB (Network Load Balancing)
MIB
• RFC 1213 MIB II
• RFC 4188 Bridge MIB
• RFC 1157, 2571-2576 SNMP MIB
• RFC 1907 SNMPv2 MIB
• RFC 1757 RMON MIB 2819
• RFC 2021 RMONv2 MIB
• RFC 1398, 1643, 1650, 2358, 2665 Ether-like MIB
• RFC 2674 802.1p MIB
• RFC 2233, 2863 IF MIB
• RFC 2618 RADIUS Authentication Client MIB
• RFC 2620 RADIUS Accounting Client MIB
• RFC 2925 Ping & Traceroute MIB
• RFC 2674, 4363 802.1p MIB
• RFC 1215 MIB Traps Convention
Compliance with standards RFC
• RFC 768 UDP
• RFC 791 IP
• RFC 792, 2463, 4443 ICMP
• RFC 793 TCP
• RFC 826 ARP
• RFC 3513, 4291, IPv6 Addressing Architecture
• RFC 2893, 4213 IPv4/IPv6 dual stack function
• RFC 2463, 4443 ICMPv6
• RFC 2462, 4862 IPv6 Stateless Address Auto
Confguration
• RFC 2464 IPv6 Ethernet and definition
• RFC 1981 Path MTU Discovery for IPv6
• RFC 2460 IPv6
• RFC 2461, 4861 Neighbor Discovery for IPv6
• RFC 783 TFTP
• RFC 854 Telnet
• RFC 951 BootP 1542
• RFC 2068 HTTP
• RFC 1492 TACACS
• RFC 2866 RADIUS Accounting
• RFC 2474, 3260 DiffServ
• RFC 1321, 2284, 2865, 3580, 3748 Extensible
Authentication Protocol (EAP)
• RFC 2571, 2572, 2573, 2574, SNMP
• IPv6 Ready Logo Phase 2
Functions of the expanded version of Layer 2 features
• Ethernet Ring Protection Switching (ERSP)
Management
• SNMP v1/v2c/v3
+ SNMP over IPv6
• sFlow
• ICMPv6
• Web-interface (Support for IPv6)
• Server Telnet (support IPv6)
• Client Telnet (support IPv6)
• TFTP-Client (Support for IPv6)