Traditional intranet is a shared network, with no access control on terminals or mutual access among terminals. This vulnerability can be easily exploited by hackers to spread viruses and attacks. In case of intranet security incidents, it is impossible to locate and control the source of attack in the first place and extremely difficult to trace back. DPtech LSW5662-SE Series Self-Secure switches provide the network with security protection and exception disposal capabilities by taking advantage of intelligent computing technology. The built-in behavior model and baseline detection provides the Self-Secure switches with immunity to virus transmission, network attacks, and hacker penetration. With automatic policy deployment, self inspection and recovery of ring networks, and baseline detection, it can further extend its security protection to intranet, realizing threat suppression of key nodes of network, operation and maintenance of the entire network, and simplified network management.
- High performance port density scalability
With four 10-Gigabit optical interfaces and flexibly scalable Gigabit interfaces, the LSW5662 Series is a full wire-speed interconnection solution with the highest cost-effectiveness.
It supports a wide array of high performance expansion boards, including 40G expansion boards, 10G optical/electrical expansion boards, and flexible Gigabit optical/electrical expansion boards, it provides high performance scalability to meet the diverse networking needs of large-scale network convergence or small-scale network cores.
- Enhanced environmental adaptability
The LSW5662 Series adopts an environment-enhanced design, which provides features such as a wide range of operating temperature (i.e., 0~70℃) and pressure, and lightning protection. This helps ensure highly reliable operation in complex electrical environments (e.g., corridor equipment room) and air-conditioning free deployment environments.
A number of statuses and alarms can be provided, including environmental alarms, power supply and fan alarms, interface, and CPU status.
- Guaranteed high reliability
Compatible with fast ring network recovery protocol (FRRP) and fast link recovery protocol (FLRP), the LSW5662 Series provides a self-recovery performance of less than 20 milliseconds. Multiple services and heavy traffic will have no impact on convergence time, thus ensuring the normal business operation.
- Virtual Switching Matrix (VSM)
The LSW5662 Series adopts Virtual Switching Matrix (VSM) technology, which performs virtualization of multiple physical devices into a single logical device for unified configuration and management.
- Sound security control policy
The LSW5662 Series provides multiple centralized authentication modes based on MAC address, 802.1x, and Portal. With a built-in authentication server, it supports local access authentication for 1K users. It supports dynamic or static binding of user identity, such as user account, IP, MAC, VLAN, and interface. Dynamic distribution of policies is supported.
The LSW5662 Series is provided with enhanced ACL by supporting large-capacity ingress and egress ACLs. It also enables ACL distribution based on VLAN, which simplifies user configuration and avoids waste of ACL resources.
- Rich QoS policy
The LSW5662 Series supports L2~L4 packet filtering and traffic detection on ports. It provides multiple stream classifications based on source MAC address, destination MAC address, source IP address, destination IP address, TCP/UDP port number, protocol type, and VLAN. With priority queues based on hardware, it is compatible with multiple queue scheduling algorithms such as SP, WRR, and SP+WPP. Support congestion management and rate limits on interfaces.
- Full support of IPV4/IPv6 dual stack
The LSW5662 Series supports IPv4/IPv6 dual stack and IPv6 over IPv4 Tunnel (including manual Tunnel, 6to4 Tunnel, ISATAP Tunnel) as well as IPv6 layer 3 wire-speed forwarding. It can be flexibly deployed on a network with only IPv4 or IPv6, or with both IPv4 and IPv6, thus satisfying the transition requirements from IPv4 to IPv6.
|Service interface||20 Gigabit electrical interfaces + 8 Gigabit Combo + 4 10-Gigabit optical interfaces (SFP+)||48 Gigabit electrical interfaces + 4 10-Gigabit optical interfaces (SFP+)||16 Gigabit optical interfaces (SFP) + 8 Gigabit Combo + 4 10-Gigabit optical interfaces (SFP+)||48 Gigabit optical interfaces (SFP) + 4 10-Gigabit optical interfaces (SFP+)|
|Management interfaces||1 RJ-45 port, 1 RJ-45 Console port, 1 USB port, 1 Mini USB Console port||1 RJ-45 Console port|
|Packet forwarding rate||342Mpps/450Mpps||372Mpps/485Mpps||342Mpps/450Mpps||372Mpps/485Mpps|
|Expansion Slots||1 pieces|
|Interface Module||2-port 40G optical interface module (QSFP), 1-port 40G optical interface module (QSFP), 8-port 10-Gigabit optical interface module (SFP+), 8-port 10-Gigabit Ethernet interface module, 4-port 10-Gigabit optical interface module (SFP+), 2-port 10-Gigabit optical interface module (SFP+), 8-port Gigabit optical interface module (SFP), 8-port Gigabit electrical interface module, 4-port Gigabit optical interface module (SFP) + 4-port Gigabit electrical interface module|
|Dimension (width * depth * height: mm)||440×400×44||440×400×44||440×400×44||440×400×44|
|Power supply||hot-plug, modular dual power supply Support AC/DC||hot-plug, modular dual power supply
|hot-plug, modular dual power supply
|hot-plug, modular dual power supply
|Operating environment||0℃～70℃, interface lightning protection|
|VXLAN||Support VXLAN layer 2 switching Support VXLAN routing Support VXLAN gateway Support VxLAN centralized console of OpenFlow+Netconf|
|MAC||Support 96K MAC entries Support static MAC, dynamic MAC, black hole MAC and source MAC address filtering|
|VLAN||Support 4K VLAN Support VLAN based on MAC/ IP subnet/authentication policy/interface VLAN Support Voice VLAN Support QinQ|
|Port features||Support port aggregation, port mirroring, port isolation, port traffic identification, RSPAN|
|Spanning tree||Support STP, RSTP, MSTP|
|DHCP||upport DHCP Client, DHCP Relay, DHCP Snooping|
|Virtualization||Support VSM virtualization|
|IP routing||Support static routing Support RIPv1/v2, OSPF, BGP, VRRP Support RIPng, OSPFv3, BGP4+ for IPv6, and VRRPv3 Support policy-go-together|
|Multicast||Support IGMP Snooping and IGMP Proxy Support GMRP Support PIM-SM, PIM-SSM, PIM-DM|
|ACL||Support ACL rules based on VLAN, MAC address, IP address, TCP/UDP port number|
|QoS||Support 8 priority queues per port Support traffic classification based on 802.1p/DSCP/TOS Support speed limit on ports and streams Support SP, WRR, SP + WRR queue scheduling|
|Security features||Support local and centralized authentication based on MAC address Support local and centralized authentication based on 802.1x Support local and centralized authentication based on Portal Support dynamic ARP detection, one-click ARP binding, authorized ARP, ARP source suppression, ARP source address inspection Support port isolation, port security Support broadcast storm suppression Support SSH2.0|
|Management and Maintenance||Support MON Support NTP Support real-time temperature detection and alarm Support SNMP, CLI, Web management, and Unified Management Center (UMC) Support local and remote output of system logs, operation logs, debugging information|
*These specifications apply only to DPtech products available on the international market.