VLAN |
VLAN ID range 0 to 4095(Total 4096)
Access/Trunk/Hybrid VLAN
Port-based VLAN
MAC-based VLAN
IP subnet-based VLAN
Protocol-based VLAN
IEEE 802.1P(CoS priority)
Super VLAN
Private VLAN
Voice VLAN
QinQ(802.1Q-in-802.1Q)
Vlan mapping
Static/Dynamic/Blackhole/Multiport unicast MAC
MAC automatic learning and aging
Port-based/VLAN-based MAC learning limit
MAC filter
Port isolation
IEEE 802.3x flow control (full duplex)
Storm suppression based on port rate percentage
PPS -based storm suppression
bps -based storm suppression
Loop detection(VLAN and VXLAN network)
MVRP(Multiple VLAN Registration Protocol)
GVRP(Generic VLAN Registration Protocol)
STP(Spanning tree protocol )
RSTP(Rapid Spanning Tree Protocol)
MSTP(Multiple Spanning Tree Protocol)
PVST(Per-VLAN Spanning Tree) (compatible with PVST+/RPVST+)
BPDU/root/loop/TC-BPDU/PVST BPDU/disputeloopback guard
BPDU filter
role/TC-BPDU transmission restriction
LLDP(Link Layer Discovery Protocol) and LLDP-MED(Link Layer Discovery Protocol Media Endpoint Discovery)
DCBX(Data Center Bridging Exchange Protocol)
Broadcast/multicast/unknown unicast storm constrain
Jumbo frame
Store-and-forward(Default)
Cut-through-forward
|
Ethernet link aggregation |
Static aggregation
Dynamic aggregation
S-MLAG(Simple multichassis link aggregation)
10GE/25G/40GE/100GE port aggregation
LACP(Link Aggregation Control Protocol)
M-LAG(Multichassis Link Aggregation)
|
IP Services |
Static/Dynamic/Gratuitous/proxy ARP
ARP snooping/fast-reply/direct route advertisement/ping
ARP attack detection
ARP source suppression
Ping, Tracert
DHCP(Dynamic Host Configuration Protocol)
DHCP Server/relay agent/client/snooping
DHCP Option 43, Option 82, and Option 184,
DNS(Domain Name System)
DDNS(Dynamic Domain Name System)
mDNS(Multicast Domain Name System)
IRDP(ICMP Router Discovery Protocol)
UDP helper
ND(Neighbor Discovery)
ND snooping/proxy/direct route advertisement/ping
DHCPv6 Server/relay agent/client/snooping/guard
GRE(Generic Routing Encapsulation)
HTTP redirect
GRE tunneling
VXLAN tunneling and VXLAN-DCI tunneling
IPv4/IPv6 over IPv4 tunneling, and IPv4/IPv6 over IPv6 tunneling
IPv4/IPv6 Fast Forwarding
|
Routing |
Static routing, RIP, OSPF, IS-IS, and BGP
IPv6 static routing, RIPng, OSPFv3, IS-ISv6, and BGP4+
IPv4/IPv6 dual stack
IPv4/IPv6 ECMP(Equal-cost multi-path routing)
IPv4/IPv6 PBR(Policy-based routing)
IPv4/IPv6 Routing policy
Pingv6, Telnetv6, FTPv6, TFTPv6, DNSv6, ICMPv6
Dual-stack PBR(policy-based routing)
|
Multicast |
PIM-DM, PIM-SM, PIM-SSM, and Any-RP
PIM snooping
MSDP(Multicast Source Discovery Protocol)
IGMPv1/IGMPv2/IGMPv3
IGMP proxying
IGMP Snooping
IGMP snooping proxying
IGMP Filter and IGMP Fast leave
IPv6 PIM-DM, PIM-SM, PIM-SSM, and Any-RP
IPv6 PIM snooping
MLDv1/MLDV2
MLD proxying
MLD Snooping
MLD snooping proxying
Multicast routing and forwarding
Multicast VLAN
MVPN(Multicast VPN)
Multicast policy and Multicast QoS
|
ACL/QoS |
ACL(Access Control List)
advanced ACL
User-defined ACL
Ingress and Egress ACL
Ingress/Egress CAR
Diff-Serv QoS
Eight queues each interface
802.1P/DSCP Priority marking and remarking
802.1p, TOS, DSCP, and EXP priority mapping
Flexible queue scheduling algorithms including SP, WRR, SP+WRR, WFQ, SP+WRR
Traffic shaping
Time ranges
Traffic classification based on source MAC, destination MAC, source IP, destination IP, port, protocol, and VLAN
Congestion avoidance, Tail-Drop, RED(Random Early Detection) and WRED(Weighted Random Early Detection)
|
MPLS |
Static LSP(label switched path)
LDP(Label Distribution Protocol)
IPv6 LDP
Tunnel policies
VRF(Virtual Routing and Forwarding)
MPLS L2VPN
MPLS L3VPN
MPLS Ping/Tracert
MCE(Multi-VPN Instance Customer Edge)
IPv6 MCE
MPLS OAM
|
Security |
RBAC(Role-based access control)
AAA(Authentication, Authorization, and Accounting)
RADIUS(Remote Authentication Dial-In User Service)( includeDHCP, Radius,LLDP)
TACACS(Terminal Access Controller Access Control System)
HWTACACS(HW Terminal Access Controller Access Control System) (Same authentication processes and implementations with TACACS+)
User hierarchical management and password protection
802.1X authentication
Portal authentication
MAC authentication
Web authentication
Triple authentication
Guest VLAN
Port security
SSH1.x and SSH2.0(Secure Shell)
SSL(Secure Sockets Layer)
HTTPs
Public Key Infrastructure (PKI)
Control Plane Protection (CoPP), Wireless Intrusion Prevention System (WIPS)
Attack detection and prevention
TCP attack prevention
IPSG(IP source guard)
IPv6 RA Guard
ARP attack protection
ND attack protection
uRPF(Unicast Reverse Path Forwarding)
MFF(MAC-forced forwarding)
SAVI(Source Address Validation Improvement)
FIPS(Federal Information Processing Standards )
MACsec(Media Access Control Security) All ports AES256 MACsec
Microsegmentation
Hierarchical user management and password protection
EAD(Endpoint Admission Defense)
Basic and advanced ACLs for packet filtering
OSPF, RIPv2, BGPv4 plain text and MD5 authentication
|
High Availability |
Ethernet OAM(IEEE 802.3ah)
CFD(Connectivity Fault Detection)(IEEE 802.1ag and ITU-T Y.1731)
DLDP(Device Link Detection Protocol )
RRPP(Rapid Ring Protection Protocol)
ERPS( G.8032 Ethernet Ring Protection Switching )
Smart Link
Monitor Link
VRRPv2(Virtual Router Redundancy Protocol)
VRRPv3
BFD(Bidirectional forwarding detection)
Hardware BFD
BFD for VRRP/BGP/IS-IS/OSPF/RSVP/static routing, with a failover detection time less than 50 milliseconds
Track
Process redundancy/placement
CPU protection
Hot patching, online patch upgrade
Link aggregation
VCT(virtual cable test)
Smart-Link
ISSU(In-Service Software Upgrade )
|
Network Management |
NQA(Network quality analyzer)
iNQA(Intelligent Network Quality Analyzer)
eMDI(Enhanced Media Delivery Index)
performance management through gRPC or NETCONF
NTP(Network Time Protocol)
PTP(Precision Time Protocol) IEEE 1588 version 2/IEEE 802.1AS/SMPTE ST 2059-2/AES67-2015
SNMPv1/SNMPv2c/SNMPv3
RMON(Remote Network Monitoring) and groups 1,2,3 and 9
NETCONF/YANG
EAA(Embedded Automation Architecture)
Port mirroring SPAN(Switch Port Analyzer)/RSPAN(Remote SPAN)
Flow mirroring
N:9 port mirroring
local and remote port mirroring
NetStream/IPv6 NetStream, traffic analysis sampling ratio 1:1
sFlow
Information center
VCF(Virtual Converged Framework)
CWMP(CPE WAN Management Protocol/TR-069)
Fault alarm and automatic fault recovery
System logs
Alarming based on severity
Power, fan, and temperature alarming
Debugging information output
Device status monitoring mechanism, including the CPU engine, backplane, chips and other key components
Configuration through CLI, Telnet, and console port
Zero Touch Provisioning
Loading and upgrading through XModem/FTP/TFTP/SFTP/USB
Secure Boot
Embedded AC, maximum support management 2K AP
iMC network management system
SmartMC(embedded Smart Graphical Management Center)(built-inWebGUI)
|
Stacking |
IRF2(Intelligent Resilient Framework 2)
Distributed device management
Distributed link aggregation
Distributed resilient routing
Stacking through standard Ethernet ports
Local device stacking and remote device stacking
LACP-, BFD-, and ARP-based multi-active detection (MAD)
|
Automatic Configuration |
Server-based automatic configuration
USB-based automatic configuration
|
Programmability and Automation |
Ansible
Auto DevOps by using Python, NETCONF, TCL, and Restful APIs for automated network programming
|
Visualization |
gRPC(Google remote procedure call)
INT(Inband Telemetry)
Flow group
MOD(Mirror On Drop)
|
OpenFlow |
OpenFlow 1.3
Multiple controllers (EQUAL, master/slave)
Multiple tables flow
Group table
|
VXLAN |
VXLAN L2 switching
VXLAN L3 routing
Centralized VXLAN gateway
Distributed VXLAN gateway
VXLAN M-LAG
VXLAN-DCI
OVSDB(Open vSwitch Database)
VXLAN VTEP
MP-BGP EVPN control plane
EVPN VXLAN
EVPN M-LAG
|
Intelligent Lossless Network |
PFC(Priority-based Flow Control)
ECN(Explicit Congestion Notification )
|
Energy Saving |
Port automatic power down function
Port timing down function (Schedule job)
EEE(802.3az Energy Efficient Ethernet)
|
EMC |
FCC Part 15 Subpart B CLASS A
ICES-003 CLASS A
VCCI CLASS A
CISPR 32 CLASS A
EN 55032 CLASS A
CISPR 35
AS/NZS CISPR 32
EN 55035
EN 61000-3-2
EN 61000-3-3
EN 61000-4-2
EN 61000-4-3
EN 61000-4-4
EN 61000-4-5
EN 61000-4-6
EN 61000-4-11
ETSI EN 300 386
|
Safety |
UL 62368-1
CSA C22.2 No. 62368-1-14
IEC 62368-1
EN 62368-1
EN 60825-1
AS/NZS 62368-1
GB 4943.1
|
RoHS |
EU RoHS2.0 Directive
China RoHS 2.0
|