24-Port 10/100/1000BASE-T Gigabit RJ45 copper 4 100/1000BASE-X mini-GBIC/SFP slots RJ45 console interface for switch basic management and setup Reset button for system factory default Switching: Hardware-based 10/100Mbps, half/full duplex and 1000Mbps full duplex mode, flow control and auto-negotiation, and auto MDI/MDI-X Features Store-and-Forward mode with wire-speed filtering and forwarding rates IEEE 802.3x flow control for full duplex operation and back pressure for half duplex operation 10K jumbo frame Automatic address learning and address aging Supports CSMA/CD protocol Layer 2 Features: Prevents packet loss with back pressure (half-duplex) and IEEE 802.3x pause frame flow control (full-duplex) High performance Store and Forward architecture, broadcast storm control, runt/CRC filtering eliminates erroneous packets to optimize the network bandwidth Supports VLAN IEEE 802.1Q tagged VLAN Provider Bridging (VLAN Q-in-Q) support (IEEE 802.1ad) Protocol VLAN Voice VLAN Private VLAN Management VLAN GVRP Supports Spanning Tree Protocol STP (Spanning Tree Protocol) RSTP (Rapid Spanning Tree Protocol) MSTP (Multiple Spanning Tree Protocol) STP BPDU Guard, BPDU Filtering and BPDU Forwarding Supports Link Aggregation IEEE 802.3ad Link Aggregation Control Protocol (LACP) Cisco ether-channel (Static Trunk) Maximum 8 trunk groups, up to 8 ports per trunk group Provides port mirror (many-to-1) Loop protection to avoid broadcast loops Quality of Service: Ingress/Egress Rate Limit per port bandwidth control Storm Control support Broadcast/Unknown-Unicast/Unknown-Multicast Storm Control support Broadcast/Unknown-Unicast/Unknown-Multicast Traffic classification IEEE 802.1p CoS TOS / DSCP/IP Precedence of IPv4/IPv6 packets Strict priority and Weighted Round Robin (WRR) CoS policies Multicast: Supports IPv4 IGMP snooping v2 and v3 Supports IPv6 MLD snooping v1, v2 IGMP querier mode support IGMP snooping port filtering MLD snooping port filtering Security: Authentication IEEE 802.1X Port-based network access authentication Built-in RADIUS client to co-operate with the RADIUS servers DHCP Option 82 RADIUS/TACACS+ login user access authentication Access Control List IPv4/IPv6 IP-based ACL IPv4/IPv6 IP-based ACE MAC-based ACL MAC-based ACE MAC Security Static MAC MAC Filtering Port Security for Source MAC address entries filtering DHCP Snooping to filter distrusted DHCP messages Dynamic ARP Inspection discards ARP packets with invalid MAC address to IP address binding IP Source Guard prevents IP spoofing attacks DoS Attack Prevention SSH/SSL Management: IPv4 and IPv6 dual stack management Switch Management Interface Web switch management Console/Telnet Command Line Interface SNMP v1 and v2c switch management SSHv2, TLSv1.2 and SNMP v3 secure access SNMP Management Four RMON groups (history, statistics, alarms, and events) SNMP trap for interface Link Up and Link Down notification User Privilege Levels Control Built-in Trivial File Transfer Protocol (TFTP) client BOOTP and DHCP for IP address assignment System Maintenance Firmware upload/download via HTTP/TFTP Configuration upload / download through Web interface Dual Images Hardware reset button for system reboot or reset to factory default SNTP Network Time Protocol Network Diagnostic ICMPv6/ICMPv4 Remote Ping Cable Diagnostics Link Layer Discovery Protocol (LLDP) Protocol and LLDP-MED Event message logging to remote Syslog server PLANET NMS System and Smart Discovery Utility for deployment management Redundant Power System (GS-4210-24T4SR): Redundant 100~240V AC/36-72V DC dual power