Description
Enterprise switch with 10G uplink
4 × 10 Gbps SFP+ slots provide non-blocking switching performance and ultra-low latency, so reliable, ultra-fast connections to the server and other switches are easily built.
- Ultra-Fast 10G Uplink: 4x 10Gbps SFP+ slots enable high-bandwidth connectivity and non-blocking switching capability.
- Gigabit Speeds: 24 × gigabit RJ45 ports provide reliable, high-speed connections to other switches and devices.
- Integrated into Omada SDN: Zero-Touch Provisioning (ZTP) * , centralized cloud management, and intelligent monitoring.
- Centralized Management: Access to the cloud and Omada app for maximum convenience and easy management.
- Static Routing – Helps route internal traffic for more efficient use of network resources.
- Strong security strategies: IP-MAC port binding, ACL, port security, DoS defense, storm control, DHCP snooping, 802.1X, Radius authentication and more.
- Optimize voice and video applications: L2/L3/L4 QoS and IGMP snooping.
- Standalone Management: Web, CLI (console port, Telnet, SSH), SNMP, RMON, and dual image provide powerful management capabilities
Software-defined networking (SDN) with cloud access
Omada’s Software Defined Networking (SDN) platform integrates network devices including access points, switches, and gateways, providing 100% centralized cloud management. Omada creates a highly scalable network, all controlled from a single interface. Seamless wired and wireless connections are provided, ideal for use in hospitality, education, retail, offices, and more.
L3 Advanced Features
A wealth of L2+ and L3 features are supported to help build a robust and highly scalable network, providing a reliable and efficient solution for enterprises, campuses, and ISPs.
Secure networks
Security features include IP-MAC-Port-VID binding, port security, storm control, and DHCP snooping to defend against a variety of network threats. A built-in list of common DoS attacks is available, making it easier than ever to prevent them. Additionally, the Access Control Lists (ACL, L2 to L4) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports, or VLAN ID. User network access can be controlled using 802.1X authentication, which works with a RADIUS/Tacacs+ server to grant access only when valid user credentials are provided.
Enterprise-grade features
A full line of L2+ features are supported, including 802.1Q VLANs, port mirroring, STP/RSTP/MSTP, Link Aggregation Control Protocol, and 802.3x flow control. Advanced IGMP Snooping ensures that the switch intelligently forwards multicast broadcasts to only the appropriate subscribers, eliminating unnecessary traffic, while IGMP throttling and filtering restrict each subscriber at a port level to prevent unauthorized multicast access. Static routing is a simple way to segment your network and internally routes traffic through the switch to improve efficiency.
Advanced QoS
Voice and video traffic can be prioritized based on IP address, MAC address, TCP port number, UDP port number, and more. With QoS (Quality of Service), voice and video services remain smooth, even when bandwidth is at a premium.
ISP Features **
IGMP authentication and PPPoE ID insertion sFlow, QinQ, L2PT functions are provided, developed with service providers in mind. 802.3ah OAM and Device Link Discovery Protocol (DLDP) offer easy Ethernet link monitoring and troubleshooting.
IPv6 Support
IPv6 features such as dual IPv4/IPv6 stack, MLD snooping, IPv6 ACL, DHCPv6 snooping, IPv6 interface, Path Maximum Transmission Unit (PMTU) discovery, and IPv6 neighbor discovery ensure your network is ready for Next Generation Network (NGN) without upgrading your hardware.
- HARDWARE FEATURES
- Interface
- 24 × 10/100/1000 Mbps RJ45 ports
- 4 10G SFP+ slots
- 1 RJ45 console port
- 1 micro-USB console port
- Number of Fans
- Without fan
- Power Supply
- 100-240V AC~50/60Hz
- Dimensions
- 17.3 × 7.1 × 1.7 in (440 × 180 × 44 mm)
- Mounting
- Rack Mount
- Maximum Power Consumption
- 23.6 W (110V/60Hz)
- Max Heat Dissipation
- 80,353 BTU/h (110V/60Hz)
- PERFORMANCE
- Switching Capacity
- 128 Gbps
- Packet Forwarding Rate
- 95.23 Mpps
- MAC Address Table
- 16 K
- Jumbo Frame
- 9 KB
- SOFTWARE FEATURES
- Quality of Service
- 8 priority queues
- 802.1p CoS/DSCP Priority
- Queue scheduling
- SP (strict priority)
- WRR (Weighted Round Robin)
- SP + WRR
- Bandwidth Control
- Port/flow based classification limit
- Smoother performance
- Action for flows
- Mirror (to compatible interface)
- Redirect (to supported interface)
- Rate limit
- QoS Observation
- L2 and L2+ Features
- Add a link
- static link aggregation
- LACP 802.3ad
- Up to 8 aggregation groups, containing 8 ports per group
- Spanning Tree Protocol
- 802.1d STP
- 802.1w RSTP
- MSTP 802.1s
- STP Security: TC Protect, BPDU Filter, Root Protect
- Loopback Detection
- Port based
- VLAN based
- Flow control
- 802.3x Flow Control
- HOL blocking prevention
- Reflection
- Port mirroring
- CPU duplication
- Twelve fifty-nine at night
- Many to one
- Tx / Rx / Both
- L2 Multicast
- IGMP Snooping
- IGMP v1/v2/v3 Snooping
- Quick exit
- IGMP Snooping Query
- IGMP Authentication
- IGMP Authentication
- MLD Inquiry
- MLD v1/v2 Inquiry
- Quick exit
- MLD Inquiry Consultation
- Static Group Configuration
- Limited IP Multicast
- • MVR
- • Multicast filtering: 256 profiles and 16 entries per profile
- VLAN• VLAN Group
- - Maximum VLAN groups 4K
- • 802.1Q tagged VLAN
- • MAC VLAN: 30 entries
- • VLAN Protocol: Protocol Template 16, VLAN Protocol 16
- • Private VLAN
- • GVRP
- • VLAN VPN (QinQ)
- - Port-based QinQ
- - Selective QinQ
- • Voice VLAN
- Access Control List
- Time-based ACL
- • MAC ACL
- - Source MAC
- - Destination MAC
- - VLAN ID
- - User priority
- - Type of ether
- • IP ACL
- -Source IP
- - Destination IP
- - Fragment
- - IP Protocol
- - TCP flag
- - TCP/UDP port
- - TOS DSCP / IP
- - User priority
- • Combined ACL
- • ACL packet content
- • IPv6 ACLs
- • Policy
- - Reflection
- - Redirect
- - Tariff limit
- - QoS Observation
- • ACL is applied to the port/VLAN
- Security
- IP-MAC Port Binding
- - 512 entries
- - DHCP Snooping
- - ARP Inspection
- - IPv4 source protection: 100 entries
- • IPv6-MAC-Port Link
- - 512 entries
- - DHCPv6 Snooping
- - ND Detection
- - IPv6 source protection: 100 entries
- • DoS Defense
- • Static/dynamic port security
- - Up to 64 MAC addresses per port
- • Broadcast/Multicast/Unicast storm control
- - kbps/ratio control mode
- • 802.1X
- - Port-based authentication
- - Mac base authentication
- - VLAN assignment
- - MAB
- - Guest VLAN
- - Radius authentication and accountability support
- • AAA (including TACACS+)
- • Port isolation
- • Secure web management via HTTPS with SSLv3 / TLS 1.2
- • Secure command line interface (CLI) management with SSHv1/SSHv2
- • Access control based on IP/Port/MAC
- IPv6
- IPv6 double IPv4 / IPv6
- • Multicast Listening Detection (MLD)
- • IPv6 ACLs
- • IPv6 interface
- • Static IPv6 routing
- • IPv6 Neighbor Discovery (ND)
- • Path Maximum Transmission Unit (MTU) Discovery
- • Internet Control Message Protocol (ICMP) version 6
- • TCPv6 / UDPv6
- • IPv6 applications
- - DHCPv6 Client
- - Ping6
- - Tracert6
- - Telnet (v6)
- - IPv6 SNMP
- - IPv6 SSH
- - SSL IPv6
- - Http / Https
- - TFTP IPv6
- L3 Features
- 16 IPv4/IPv6 interfaces
- • Static routing
- - 48 static routes
- • Static ARP
- - 128 static entries
- • Proxy ARP
- • Free ARP
- • DHCP Server
- • DHCP Relay
- - DHCP interface relay
- - DHCP VLAN Relay
- • L2 DHCP Relay
- Management• Web-based GUI
- • Command line interface (CLI) via console port, telnet
- • SNMP v1 / v2c / v3
- - Cheat / Report
- - RMON (1,2,3,9 groups)
- • SDM template
- • DHCP/BOOTP Client
- • 802.1ab LLDP / LLDP-MED
- • Automatic DHCP installation
- • Dual image, dual configuration
- • CPU monitoring
- • Cable diagnosis
- • EEE
- • Password recovery
- • SNTP
- • System log
- Advanced Features
- Support Omada hardware controller (OC200/OC300), software controller, cloud-based controller
- • Automatic device discovery
- • Batch configuration
- • Batch firmware update
- • Smart grid monitoring
- • Warnings of abnormal events
- • Unified configuration
- • Reset program
- • ZTP (zero-touch provisioning) *
- MIBs• MIB II (RFC1213)
- • MIB interface (RFC2233)
- • Ethernet MIB interface (RFC1643)
- • Bridge MIB (RFC1493)
- • P/Q-Bridge MIB (RFC2674)
- • RMON MIB (RFC2819)
- • RMON2 MIB (RFC2021)
- • Radius Accounting Client MIB (RFC2620)
- • Radius Authentication Client MIB (RFC2618)
- • Remote Ping, Traceroute MIB (RFC2925)
- • Supports TP-Link private MIB
- OTHERS
- Certifications
- CE, FCC, RoHS
- Package Contents
- Switch TL-SG3428X
- Power cable
- Quick Installation Guide
- Rack Mount Kit
- Rubber feet
- Environmental Factors
- Working temperature: 0–45℃(32–113℉);
- Storage temperature: -40–70 ℃ (-40–158 ℉)
- Operating Humidity: 10 to 90% relative humidity non-condensing
- Storage humidity: 5–90% relative humidity non-condensing