handreamnet subgate security switch series
DESCRIPTION
Handreamnet is a leading network security solution provider with a competitive edge against global vendors in network security and traffic management markets. Internet usage patterns have changed and E-business volume is expanding, and so are the threats and damage caused by activities such as hacking, viruses, and worms, which are increasing in number. Handreamnet provides reliable solutions based on deep technology and expertise to secure network availability. Handreamnet is also making investments to solve the network overload traffic and to prohibit harmful traffic. For more information about Handreamnet please visit http://en.handream.net/main.phpTRANSCRIPT
HanDreamnet Co., Ltd.
Should you have any inquiries, feel free to contact us. We will respond as soon as possible.Product and sales inquiry : [email protected] / www.handream.net
L2/L3 Security Switch Visual IP ManagerVisual Node Manager
Visual Node Manager
#1209 MarioTower, 28, Digitalro-30-gil, Guro-Gu, Seoul 152-741 KoreaTEL : 82-2-890-6650 FAX : 82-2-890-6654www.handream.net E-mail : [email protected]
The World 1 stThe World 1 st Security Switch
Integrated Management System of IP Resource Control / Access Control
SG Security Switch Series
HanDreamnet acquired the world first L2 security switch patent with HanDreamnet's own technologies and will help to build more safe network.
The World 1st Security Switch
www.handream.netHanDreamnet Co., Ltd.
Detect / block malicious traffic caused by virus such asDoS/DDoS, Flooding or Scanning in IPv4/IPv6 environmentPrevent information leaking with blocking ARP spoofing and block internal information hackingGuarantee network continuity with Self Loop Detect functionProvide the network stability through patented MDS engine (ASIC)Supply integrated network management software (VNM)IPv6 Ready Logo
SG Security Switch Series
stThe world 1 Security SwitchThe world 1 Security Switchst
SG Security switch blocks malicious traffic in real time such as DoS/DDoS, Flooding, Scanning and Spoofing through packet analysis up to layer 4. SG Security switch blocks virus infection including Zero-Day attack. SG security series are essential to construct safe network environment.
No.1 in L2 security switch market shareSG Security Switch Series
L2/L3 Security Switch Visual Node Manager Visual IP Manager
Prevent trouble in advance by blocking malicious traffic like worm and virus in access levelIt detects and blocks malicious traffic by worm and virus to prevent network speed reduction and down in advance. The network administrator enables to carry out 'without service interruption’.
Protect confidential and financial information of individual / company / public institution from ARP Spoofing attackIncreasing IP phone tapping, financial information and ID/Password hacking cause a huge damage to privacy and banking. SG security switch series detect and block ARP Spoofing in real time and protect user’s confidential information.
Simultaneously detect / block malicious traffic in IPv4 and IPv6 networkSG security switch acquired IPv6 ready logo. SG security switch supports secure and stable network in IPv4 and IPv6 network.
Full wire speed with security functionMDS(Multi Dimension Security) engine is ASIC based hardware chip and carries out security function by analyzing traffic. MDS engine guarantees the full wire-speed while providing security features.
Smart protection (Block only malicious traffic)By blocking virus infected packet or service port only, it provides work continuity like web service, e-mail and groupware.
It enables to monitor/control whole network status and condition on a screen. It helps to figure out attacking history, detection/blocking log and history in a table which can be used as internal report.
Reliability and stability are proven by large security references in Korea & Overseas market.
SG Security Switch
L2 PoE Security Switch Comparison
SG2124GXPoE Traditional PoE Switch
InternetInternet
UTM (Firewall, VPN, IPS)
TraditionalL2 Switch
L3 SecuritySwitch
Visual Node Manager
VNM Integrated Network
Management
IP Management (Unauthorized PC detection)
Block Zero-Day Attack(DoS/DDoS/Scanning/Flooding)
Block ARP Spoofing(Tapping and leaking personal information)
VIPMIP Resource & Access Control
SG2024SG2024SG2024
SG2024SG2024SG2024
SG2024SG2024SG2024
SG2024SG2024SG2024
Up to 32K MAC address support144G Switching Capacity131Mpps Throughput
Support internal power supply redundancy802.3af = 24port802.3at = 24port
IPv4/IPv6 network (Static IP & Dynamic IP)- Stable network by installing a patented MDS security engine- Real-time blocking malicious traffic such as DoS / DDoS, Flooding, Scanning- Secure network continuity by blocking selective malicious traffic- Prevent information leaking with blocking ARP spoofing- Easy management for malicious traffic
Real-time detect and block cable loopGuarantee network continuity
Integrated Network Management(VNM)- GUI based integrated network management system- Log and report output at integrated management system screen- Available to check IP, MAC and Network bandwidth in use
www.handream.net
Network Topology for Security Switch
Performance
PoE
Types of Blocking Malicious Traffic
Detect & BlockLooping
ManagementSystem
Up to 8K MAC address support176G Switching Capacity42Mpps Throughput
Support external power supply redundancy802.3af = 24port802.3at = 12port
IPv4/IPv6 network (Static IP & Dynamic IP)- Security engine not supported- Real-time blocking unavailable (only support storm control)- Malicious traffic blocking not supported- ARP spoofing blocking with static IP address not supported- Takes time to figure out cause of problem and trouble shooting
Unable to control cable loopNetwork downtime by cable loop available
Extra network management system required
L2 SecuritySwitch
L2 SecuritySwitch
SG8800 SG8800
Product Feature
SG security switch acquired IPv6 ready logo. It can block and detect malicious traffic in IPv6 as well as IPv4 network. It supports various IPv6 routing proto-col such as RIPng, OSPFv3, BGP4+ and supports various IPv6 management features.
It helps to get rid of hacking hazard by allowing communication between designated uplink port and terminal only in hotel and apartment. It blocks file sharing with NetBIOS.
Point!!
Point!!
Point!!
Strong privacy network
Ring topology support
Implementation of SG security switch helps IT administrator to have secure and reliable network.
Room1 Room2 Room4Room3
InternetInternet
Secondary(Blocking)
Primary(Forwarding)
SG2124GX PoE
SG2124GX PoE
SG2124GX PoE
SG2124GX PoE
www.handream.net
Secure and reliable IPv6 network
SG security switch supports ERP(Ethernet Ring Pro-tection) protocol for ring topology. So, it can extend its value to carrier or metro ethernet area with powerful security feature.
SG security switch makes possible to build more safe network by checking various network attacks in access level through behavior based blocking.
Real-time detect / block malicious traffic in IPv4/IPv6 networkFull wire speed in all ports with security function
MDS developed by HanDreamnet adopts behavior based blocking method which does not require signa- ture file update like other pattern matching(IPS/IDS) products. It blocks only malicious traffic through analyzing traffic up to layer 4 in real-time, so guaran-tees the safe and reliable network.
Point !!
Real-time block malicious trafficPrevent network overload caused by malicious traffic
Point!!
Real-time detection and blocking of malicious traffic such as DoS/DDoS,
Flooding and Scanning
Point!!Secure service continuity of normal traffic by blocking malicious traffic onlySmart protection in security switch vs IP/Port blocking in other traditional switch
Blocking only malicious traffic through smart protection
Normal traffic
Malicious traffic
Product Feature
Stable network through embedded MDS security engine
It secures work continuity without service interrup-tion by blocking malicious traffic only in PC, smart phone, and IP phone.
L2/L3 Security Switch Visual Node Manager Visual IP Manager
MDS security engine blocks worm spread so that it prevents secondary damage. SG security switch blocks malicious packet under each stacks in real-time to keep network safety. It is good for financial institu-tions and ISP that have to carry out guaranteed traffic.
SG security switch detects and blocks the network problems in advance to provide reliable network service.
Prevent entire network downtime by cable loopProvide real-time log in case of cable loop
Network continuity with Self Loop Detect function
The entire network service is often down by users mistake during the operation. SG security switch detects and blocks cable loop so provides the reliable network.
SG security switch detects and blocks attacks using internal information. It prevents users to steal personal information in advance.
Point !!
Prevent IPT/UC tappingPrevent personal information and company confidential resources to be leaked by hacking
Point!!
Prevent information leaking with blocking ARP Spoofing
SG security switch provides various redundancy feature. It prevents network suspension due to cable trouble, port trouble, and switch trouble.
SSR: Smart Switch RedundancySPR: Smart Port Redundancy
Redundancy feature
SG2124GX PoE
SG2124GX PoE
SG2124GX PoE
SG2124GX PoE
SG2124GX PoE
SG2124GXPoE SG2124GXPoE
Master Slave
SSRSSR
SPRSPR
L2/L3 Security Switch Visual Node Manager Visual IP Manager
Point!!
Product Feature
www.handream.net
Effective IPT network with LLDP-MED
SG security switch supports Voice VLAN and Auto QoS feature with LLDP-MED for IPT network. So regardless of network congestion, it can guarantee voice quality.
SG security switch supports built-in dual power supply in 1U size. So it supports 15.4W to all 48 ports, and 30W to all 24 ports.
Power for unused port is reduced to cut off power consumption significantly. And SG2100/3100 series can support EEE(Energy Efficient Ethernet). It enables to make green IT network through CO2 reduction.
Point!!
Save power consumption up to 50%Minimize port power according to port con-nection
Point!!
Point!!
Internal power supply redundancy for reliabilitySupport sufficient PoE/PoE+
802.3af/at support with maximum 740W PoE power budget
Green IT network environment by reducing power consumption
IPT Wizzard helps to build IPT networkEasy configuration of Voice VLAN based on LLDP-MED
Implementation of SG security switch can support an optimal IPT net-work.
2 1Power supply Power supply
SG security switch power supply
Internal power supply redundancy
EnergyEfficientEthernet
Product Feature
www.handream.net
SG security switch provides N:N monitoring capabili-ties instead of expensive extra TAP. With TFM, it supports improved monitoring feature.
Point!!
Point!!Improved monitoring feature1:N, N:N monitoring capabilities support with TFM
TFM(Traffic Flow Monitoring)
Powerful IPv4/IPv6 managementFirmware upgrade support with USB interface
FTP, SFTPFirmware Upgrade
Firmware UpgradeUSB
SG security switch provides various management feature for administra-tor convenience.
By supporting Multi OS and USB interface, the admini-strator easily manages switch firmware. Also, it supports sFlow and IPv6 management feature for the purpose of management convenience.
Product Feature
Management enhancements
InternetInternet
SG8800 SG8800
Anti VirusIntrusionDetection
Network Traffic Analysis Tool
User Access Control
Network Security
L2/L3 Security Switch Visual Node Manager Visual IP Manager
SG security switch supports powerful authentication function with embedded RADIUS server and external VIPM server. It blocks an unauthorized users and support user access control.
Point !!
It sends alert pop-up message to the user through web browser in case of malicious traffic. So users can do self-check for virus and windows update.
Point!!
User notification for malicious traffic (MDS Web Alert)
RADIUS Server / VIPM
IDPass *********
hdn123 Mac AddressF4:1C:XX:12:XX
IP Address 192.168.0.254
Mac Address+
IP Address+
Port
SG security switch detects/blocks malicious traffic, and blocks unauthorized users to access the network, and also support user notification function.
Product Feature
Blocks unauthorized users to access the internal network
Loop Prevention
Integrated Manage-
ment
VNM(Visual Node Manager)
Integrated Network Management SoftWareIntegrated Network Management SoftWare
VNM supports network status analysis, traffic usage, IP usage and malicious traffic tracking.
Switches and 3rd party products can be configured in the topology map. The administrator can monitor individual devices or groups in topology map.
VNM supports malicious traffic monitoring in many security switches.
VNM supports real-time monitoring about IP address/ MAC address/Port information of users. Additional information such as department and name can be added.
Network status analysis Network Topology
Real time malicious traffic monitoring Real time user status monitoring
VNM, integrated network management software is provided as a bundle. It helps to monitor switch and traffic status.
L2/L3 Security Switch Visual Node Manager Visual IP Manager www.handream.net
VNM applies the policy to the individual switch or group.
VNM with auto config feature can set IP address, gateway and SNMP community to the new security switch without console access.
VNM can save up to 10 configuration files per switch. With this feature when a failure occurs, you can easily recover the switch configuration.
VNM supports firmware upgrade without additional program.
VNM provides network status & malicious traffic status to operator based on daily/weekly/monthly. It also supports the feature of scheduling report.
Switch Auto Config
Switch Configuration Backup Switch Firmware Upgrade
Special Report VNM server installation
Should open TCP 8085~8087 and UDP 161~162 service port in firewall.
Visual Node Manager
Group Policy
Window XP 32Bit (SP2/3)
Window 7 32Bit higher
2003 Server, Vista
Intel Dual Core 2GHz higher
2GB higher
200GB higher
Window XP 32Bit (SP2/3)
Window 7 32Bit higher
2003 Server, Vista
Intel Core i7 higher
4GB higher
500GB higher
OS
CPU
Memory
HDD
Minimum requirements (Under 50 devices)
Recommended requirements (More than 50 devices)
Product Feature
www.handream.net
VIPM enables to monitor IP/MAC status at a look and prevents IP change, tapping or collision.
Network access control with IP/MAC/Port
VIPM can allow access to the device through VIPM and restrict direct access to device. VIPM supports powerful management by assigning banned words, and tracking command history.
VIPM supports a special report for network status and malicious traffic monitoring. Scheduling report and finding features are also supported.
IP resource management Powerful authentication feature
Integrated Access Management Special Report
VIPM Redundancy feature Product Configuration:
SG2000 Series
SG2100 Series
SG3000 Series
SG3100 Series
- Network access control with IP/MAC/Port- Monitor and control IP/MAC condition
- Periodically report- Powerful security feature by restricting direct access
- Reliable IP resource management
SG2000 S i
VIPM supports redundancy feature for entire hardware, and power supply to ensure IP resource management.
ted Access Maatted Access MaMaed Access Mraaatt Med Access Matted Access M
InternetInternet
SG8800 SG8800
SG2024GSG2024G SG2024G
Telnet/SSH direct access is restricted
SSH VIPM access
Telnet/SSH access is allowed
through VIPM
VRRPVRRPVRRPVRRP
Administrator
Product Feature
- Max 50,000 users- Raid 1 support (option)- Dual power supply (option)
Dedicated ApplianceOnly for VIPM
VIPM(Visual IP Manager)
How many resources are accessed?
Who, when and where accessed?
How many traffic does it have?
IP resource authorized?
Are there malicious traffic inside network?
Are there any information leaking or hacking by internal user?
Are there any network troubles by IP resources?
Is batch upgrade of switch firmware available?
Network status analysis Malicious traffic and device monitoring
VIPM monitors current status of switch including IP usage, traffic usage and malicious traffic detect/block status per each port.
VIPM monitors network status in real-time such as network topology, IP address usage status, and malicious traffic detect/block status.
The network which you manage...
VIPM in conjunction with SG security switch, supports IP resource control, NMS, authentica-tion system and network access control capabilities.
L2/L3 Security Switch Visual Node Manager Visual IP Manager
Integrated Network ManagementIntegrated Network Management
- Real-time monitoring of switch status- Real-time monitoring of whole network status
Non PoE Switch Physical Features
PoE Switch Physical Features
L2 Security Switch SG2000 SeriesProduct Specification
L2/L3 Security Switch Visual Node Manager Visual IP Manager
192.0
142.9
32
1+1
256
64 (256)
N/A
48
4 (Combo)
98.8
440
44
350
4.8 (5.5)
28.8
13.1
8
1
256
16 (32)
24
2
2 (Combo)
34.7
440
44
220
3.0
48.0
71.4
32
1+1
256
64 (256)
N/A
24
4 (Combo)
64.8
440
44
350
4.7 (5.2)
20.0
29.8
16
1
256
64 (256)
N/A
10
2 (Combo)
25.3
265
38
190
1.8
48.0
71.4
32
1+1
256
64 (256)
N/A
12 (Combo)
24
67.7
440
44
350
4.8 (5.4)
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
SG2024 SG2024G SG2048G SG2024GF SG2008G
SG2024P SG2024GPoE SG2048GPoE SG2008GPoE
Performance
Hardware
Interface
Materials
Performance
Hardware
Interface
PoE
Materials
28.8
13.1
8
1+1
256
16 (32)
24
2
2 (Combo)
740
PoE
65.2
440
44
410
6.5 (7.9)
48.0
71.4
32
1+1
256
64 (256)
N/A
24
4 (Combo)
740
PoE
74.7
440
44
428
6.8 (8.6)
192.0
142.9
32
1+1
256
64 (256)
N/A
48
4 (Combo)
740
PoE
143.1
440
44
428
7.3 (9.2)
20.0
29.8
16
1
256
64 (256)
N/A
10
2 (Combo)
124
PoE
36.0
265
44
265
2.8
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
Total PoE power budget (W)
PoE/PoE+
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
www.handream.net
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
10G
Total PoE power budget (W)
PoE/PoE+
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
28.8
19.0
16
1+1
512
64 (256)
24
2
2
N/A
740
PoE/PoE+
65.2
440
44
428
6.8 (8.6)
57.6
26.2
16
2
512
64 (256)
48
2
2
N/A
740
PoE/PoE+
102.9
440
44
428
8.8
96.0
71.4
32
1+1
512
64 (256)
N/A
24
4 (Combo)
N/A
740
PoE/PoE+
74.0
440
44
438
7.1 (8.9)
144.0
131.0
32
1+1
512
64 (256)
N/A
24
4 (Combo)
2
740
PoE/PoE+
81.5
440
44
438
7.2 (8.9)
288.0
202.4
32
2
512
64 (256)
N/A
48
2 (Combo)
2
740
PoE/PoE+
138.6
440
44
438
9.2
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
10G
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
28.8
19.0
16
1+1
512
64 (256)
24
2
2
N/A
30.3
440
44
350
4.3 (4.6)
57.6
26.2
16
1+1
512
64 (256)
48
2
2
N/A
41.2
440
44
350
4.4 (4.7)
96.0
71.4
32
1+1
512
64 (256)
N/A
24
4 (Combo)
N/A
59.6
440
44
350
4.7 (5.2)
144.0
131.0
32
1+1
512
64 (256)
N/A
12 (Combo)
24
2
66.5
440
44
350
4.8 (5.4)
288.0
202.4
32
1+1
512
64 (256)
N/A
48
2 (Combo)
2
88.7
440
44
360
5.1 (5.6)
144.0
131.0
32
1+1
512
64 (256)
N/A
24
4 (Combo)
2
70.2
440
44
350
4.7 (5.3)
Non PoE Switch Physical Features
PoE Switch Physical Features
L2 Security Switch SG2100 SeriesProduct Specification
SG2124 SG2148 SG2124G SG2124GX SG2124GXF SG2148GX
SG2124PoE SG2148PoE SG2124GPoE SG2124GXPoE SG2148GXPoE
Performance
Hardware
Interface
Materials
Performance
Hardware
Interface
PoE
Materials
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
Total PoE power budget (W)
PoE/PoE+
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
28.8
13.1
8
1+1
256
16 (32)
24
2
2 (Combo)
740
PoE
65.2
440
44
410
6.5 (7.9)
48.0
71.4
32
1+1
256
64 (256)
N/A
24
4 (Combo)
740
PoE
74.7
440
44
428
6.8 (8.6)
192.0
142.9
32
1+1
256
64 (256)
N/A
48
4 (Combo)
740
PoE
143.1
440
44
428
7.3 (9.2)
28.8
13.1
8
1
256
16 (32)
24
2
2 (Combo)
34.7
440
44
220
3.0
48.0
71.4
32
1+1
256
64 (256)
N/A
24
4 (Combo)
64.8
440
44
350
4.7 (5.2)
192.0
142.9
32
1+1
256
64 (256)
N/A
48
4 (Combo)
98.8
440
44
350
4.8 (5.5)
48.0
71.4
32
1+1
256
64 (256)
N/A
12 (Combo)
24
67.7
440
44
350
4.8 (5.4)
Non PoE Switch Physical Features
PoE Switch Physical Features
L2/L3 Security Switch Visual Node Manager Visual IP Manager
L3 Security Switch SG3000 SeriesProduct Specification
Performance
Hardware
Interface
Materials
Performance
Hardware
Interface
PoE
Materials
SG3024 SG3024G SG3048G SG3024GF
SG3024P SG3024GPoE SG3048GPoE
www.handream.net
Non PoE Switch Physical Features
PoE Switch Physical Features
L3 Security Switch SG3100 SeriesProduct Specification
SG3124 SG3148 SG3124G SG3124GX SG3124GXF SG3148GX
SG3124PoE SG3148PoE SG3124GPoE SG3124GXPoE SG3148GXPoE
Performance
Hardware
Interface
Materials
Performance
Hardware
Interface
PoE
Materials
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
10G
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
28.8
19.0
16
1+1
512
64 (256)
24
2
2
N/A
30.3
440
44
350
4.3 (4.6)
96.0
71.4
32
1+1
512
64 (256)
N/A
24
4 (Combo)
N/A
59.6
440
44
350
4.7 (5.2)
144.0
131.0
32
1+1
512
64 (256)
N/A
24
4 (Combo)
2
70.2
440
44
350
4.7 (5.3)
288.0
202.4
32
1+1
512
64 (256)
N/A
48
2 (Combo)
2
88.7
440
44
360
5.1 (5.6)
144.0
131.0
32
1+1
512
64 (256)
N/A
12 (Combo)
24
2
66.5
440
44
350
4.8 (5.4)
57.6
26.2
16
1+1
512
64 (256)
48
2
2
N/A
41.2
440
44
350
4.4 (4.7)
Switching Capacity (Gbps)
Throughput (Mpps)
MAC Capacity (k)
Power Supply
DRAM (MB)
Basic Flash-Max Flash (MB)
10/100 Base-T
10/100/1000 Base-T
1000 Base-X
10G
Total PoE power budget (W)
PoE/PoE+
Power usage (W)
Width (mm)
Height (mm)
Depth (mm)
Weight (kg) (Single/Dual)
28.8
19.0
16
1+1
512
64 (256)
24
2
2
N/A
740
PoE/PoE+
65.2
440
44
428
6.8 (8.6)
96.0
71.4
32
1+1
512
64 (256)
N/A
24
4 (Combo)
N/A
740
PoE/PoE+
74.0
440
44
438
7.1 (8.9)
144.0
131.0
32
1+1
512
64 (256)
N/A
24
4 (Combo)
2
740
PoE/PoE+
81.5
440
44
438
7.2 (8.9)
288.0
202.4
32
2
512
64 (256)
N/A
48
2 (Combo)
2
740
PoE/PoE+
138.6
440
44
438
9.2
57.6
26.2
16
2
512
64 (256)
48
2
2
N/A
740
PoE/PoE+
102.9
440
44
428
8.8
L3 Feature
Security
Features Description
4K VLAN ID802.1Q Port based VLANProtocol/IP Subnet/MAC based VLANShared VLANHybrid VLANVoice VLAN802.1ad VLAN stacking (QinQ)STP/RSTP/MSTPPVSTPERP (Ethernet Ring Protection)Self Loop ProtectionSPR (Smart Port Redundancy)SSR (Smart Switch Redundancy)UDLDIEEE 802.3adTrunk groups (12, 24)Memebers per group - 8 portsPort Mirroring1:1, N:1, 1:N, N:N TFM (Traffic Flow Monitoring)IPv4 IGMP Snooping (v1/v2/v3) IPv6 MLD Snooping (v1/v2)8 queue per portRate Limit (Ingress/Egress)DiffservAuto QoSSP, WRR, DRRIPv6 QoSMax 740W PoE Power Budget802.3af / 802.3atPower off per PoE PortLLDP, LLDP-MEDRMON (Group 1,2,3,9)Local/Remote SyslogUSB Interface SupportMulti OSVNM(Visual Node Manager)IPv4/IPv6 Telnet / SSHSoftware Download:FTP, SFTP, TFTP, USBDHCP Server/RelayIPv4/IPv6 SNMPv1/v2/v3IPv4/IPv6 sFlow IPv4/IPv6 NTP/SNTPPower Saving802.3az EEE
VLAN
Resiliency
Link Aggregation
Monitoring
L2 Multicast
QoS
PoE
Management
Features Description
IPv4 Static RoutingRIPv1/v2, OSPF, BGPECMPVRRPPIM-SM/SSMIPv6 Static RoutingRIPng, OSPFv3, BGP4+IPv4/IPv6 Dual Stack6 to 4 Tunneling and ISATAPSecurity EngineDHCP SnoopingPort SecurityIP Source GuardIPv4/IPv6 ACL- L2/L3/L4 ACL- Time Base ACL- VLAN ACL- Ingress/Egress ACL- CPU-ACLIPv4/IPv6 DHCP/NetBIOS FilteringStorm ControlEmbedded RADIUS FeatureIP, MAC, IP+MAC Based AuthenticationAAA Authentication- Local, RADIUS, TACACS+ Authentication802.1x - Multiuser, MAC Bypass, Web-Auth, Guest-VLANIPv4/IPv6 Blocking Selective MaliciousTraffic- Attack block: DoS/DDoS Attack, DHCP Attack, ICMP Attack, ARP Attack- Flooding block: TCP Syn Flooding, UDP Flooding, MAC Flooding- Spoofing block: ARP Spoofing, IP Spoofing- Scanning block Host Scanning, Port Scanning- IPv6 DAD Attack block Automatically detect/block/QoS/Rate limit and releaseUser notification for malicious traffic
Some features can be limited per switch series
L2/L3 Security Switch Visual Node Manager Visual IP Manager
SG Security Switch FeaturesProduct Specification
www.handream.net
SG Security Switch Solution Guide
SG3000 Series SG3100 Series
SG2124/SG2124PoE
SG2148/SG2148PoE
SG2124G/SG2124GPoE
SG2124GX/SG2124GXPoE
SG2148GX/SG2148GXPoE
SG2124GXF
SG2024/SG2024P SG2008G/SG2008GPoE
SG2024G/SG2024GPoE
SG2048G/SG2084GPoE
SG2024GF
SG2000 Series SG2100 Series
Fast Ethernet Giga Ethernet Fast Ethernet Giga Ethernet
SG3024/SG3024P SG3024G/SG3024GPoE
SG3048G/SG3084GPoE
SG3024GF
SG3124/SG3124PoE
SG3148/SG3148PoE
SG3124G/SG3124GPoE
SG3124GX/SG3124GXPoE
SG3148GX/SG3148GXPoE
SG3124GXF
Fast Ethernet Giga Ethernet Fast Ethernet Giga Ethernet
L2 Security Switch
L3 Security Switch (Support IPv4/IPv6 Routing)
Improved hardware performance10G(SFP+) uplink support802.3at(PoE+) supportUSB interface support802.3az(EEE) support
Improved hardware performance10G(SFP+) uplink support802.3at(PoE+) supportUSB interface support802.3az(EEE) support