Overview
Agile L2 Access Switch Solution for Converged Data, Video and Voice Networking
48-port GbE L2 Switch
Incorporating data, video and voice communications into a single IP network provides more effective communications, centralized IT management, and lower overall deployment cost for the entire organization. This is why an increasing amount of businesses, educational institutions, and hotels are adopting such IP-based services as VoIP, video conferencing, IP surveillance, and IPTV. Yet such converged deployments pose many challenges to the IP network. IT staff need to ensure consistent performance for critical applications, provide sufficient isolation and network security, and shape network traffic to meet the demands of diverse deployments.
GS2210-48 is fully featured Layer 2 Gigabit access switches designed to meet these converged data, video and voice networking challenges. It comes in 44 x GbE RJ-45 ports, 2 x GbE SFP ports, and 4 x GbE combo (RJ-45/SFP) ports. With rich traffic shaping, network isolation, and security features, the GS2210 Series is the perfect L2 access switch solution for converged data, video and voice networking.
Features
Versatility and flexibility for different needs
GS2210-48 is a L2 switch with 44 gigabit ports and uplink to flexibly extend network deployment, especially for high-power devices such as Wi-Fi APs, IP cams and IP phones. ZyXEL GS2210-48 gigabit L2 switches take web-managed switches to the next level and combine fully managed features with the latest chipset technology.
Agile traffic control for converged networking applications
Designed for access layer converged data, video and voice applications, GS2210-48 has a rich Layer 2 feature set that can shape the traffic for diverse VoIP, video conference, IPTV and IP surveillance deployments. Supporting L2 multicast and IGMP snooping, GS2210-48 can support large IPTV deployments, while using bandwidth efficiently by directing multicast traffic to the subscribers only. The Multicast VLAN Registration (MVR) function ensures better network security by allowing a single multicast VLAN to be shared in the network while subscribers remain in separate VLANs. In terms of voice, GS2210-48 uses OUI to detect compliant IP phones, and then assigns the delay-sensitive VoIP traffic to a dedicated voice VLAN with appropriate QoS prioritization. These advanced traffic control features of GS2210-48 provide hotels, businesses and educational institutions greater agility and more effective traffic management for the converged applications of today.
Avoiding network errors with easy management
GS2210-48 is equipped with advanced management features to make the network stable and secure: loop protection that prevents network flooding, dual images to provide a backup FW if one crashes and storm control to ensure network efficiency, friendly on/off DoS with simple click to enable/disable instead of several setup pages, while SSL ensures the management frames are well encrypted when the device is accessed. GS2210-48 provides network error prevention features and integrated network security for reduced risk and improved data streaming.
High level network and access security
Equipped with an extensive array of access security, traffic security and network storm protection features, GS2210-48 offers enhanced control and isolation for improved convergence of video, voice and data. Such advanced defense mechanisms as IP source guard, DHCP snooping, and ARP inspection can detect and block intentional network attacks. The CPU protection function ensures normal switch operation by preventing malicious traffic from trying to shut down the switch. Combining multiple L2, L3 and L4 filtering mechanisms with such education- and hospitality-friendly features as MAC freeze, port isolation and guest VLAN, GS2210-48 Series offers a high level of security, flexibility and control for diverse access layer deployments.
Future-proof connectivity for evolving networks
GS2210-48 helps businesses and organizations stay ahead and get ready for future IPv6 networks. It supports dual stack (IPv4 and IPv6) and IPv6 host that allows businesses and organizations to deploy the GS2210 switch at the network edge today, and easily migrate to the next-generation Internet Protocol in the future. With support for IPv6 ACL packet filtering, a L2 Gigabit switch can create secured IPv6 networks that are protected from illegal IPv6 clients. GS2210-48 is designed with a comprehensive set of IPv6 management features that include ICMPv6, neighbor discovery and DHCPv6 relay, which facilitate the migration to next-generation networking applications without an extensive equipment upgrade.
Deployment
Integrated with Zyxel wireless access points, GS2210-48, a L2 switch, introduces an affordable solution recommended for offices, hypermarkets, hotels, schools, and sales spots to manage workplaces properly and increase business efficiency.
Specification
Standard Compliance
- IEEE 802.3 10BASE-T Ethernet
- IEEE 802.3u 100BASE-TX Ethernet
- IEEE 802.3ab 1000BASE-T Ethernet
- IEEE 802.3z 1000BASE-X
- IEEE 802.3az EEE
- IEEE 802.3x flow control
- IEEE 802.3ad LACP aggregation
- IEEE 802.1AB LLDP/LLDP-MED
- IEEE 802.1D Spanning Tree Protocol (STP)
- IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)
- IEEE 802.1s Multiple Spanning Tree Protocol (MSTP)
- IEEE 802.1Q VLAN Tagging
- IEEE 802.1p Class of Service (CoS) Prioritization
- IEEE 802.1X port authentication
Resilience and Availability
- IEEE 802.1D Spanning Tree Protocol (STP)
- IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)
- IEEE 802.1s Multiple Spanning Tree Protocol (MSTP)
- IEEE 802.3ad LACP (Max # Trunks/Links per Trunk): 8/8
- Loop guard
- New Root guard
- New BPDU guard
- ErrDisable recovery
- MRSTP (ZyXEL proprietary)
- Dual configuration files
- Dual images
Traffic Control
- 802.1Q Static VLANs/Dynamic VLANs: 1 K/4 K
- Port-based VLAN
- Protocol-based VLAN
- IP Subnet-based VLAN
- MAC-based VLAN
- Private VLAN
- Voice VLAN
- VLAN ingress filtering
- LACP algorithm of source/destination MAC/IP
- GVRP
- L2PT
Security
- 802.1X
- Port security
- Layer 2 MAC filtering
- Layer 3 IP filtering
- Layer 4 TCP/UDP socket filtering
- Static MAC forwarding
- Multiple RADIUS servers
- Multiple TACACS+ servers
- 802.1x VLAN and 802.1p assignment by RADIUS
- Login authentication by RADIUS
- Login authentication by TACACS+
- TACACS+ accounting
- Authorization on RADIUS
- Authorization on TACACS+
- SSL v1/v2
- SSL
- Instrusion lock
- MAC freeze
- DHCP snooping
- ARP inspection
- Static IP-MAC-Port binding
- Policy-based security filtering
- Port isolation
- New IP source guard (IPv4/IPv6)
- IP source guard
- MAC search
- Guest VLAN
- ACL packet filtering (IPv4/IPv6)
- CPU protection
- Interface related trap enable/disable (by port)
- New MAC-based authentication per VLAN
Quality of Service (QoS)
- No. of hardware queues per port: 8
- 802.1p queuing methods: SPQ, WRR, WFQ
- Storm control: broadcast, multicast, unknown unicast (DLF)
- Port-based rate limiting (ingress/egress)
- Rate limiting per IP/TCP/UDP per port
- Policy-based rate limiting
- 802.3x flow control
- 802.1p Class of Service (SPQ, WFQ, SPQ/WFQ combination capable)
- DiffServ (DSCP)
Layer 2 Multicast
- L2 multicast
- IGMP snooping (v1, v2, v3)
- IGMP snooping Fast Leave
- Configurable IGMP snooping timer and priority
- IGMP snooping statistics
- IGMP throttling
- MVR support
- IGMP filtering
- IGMP snooping immediate leave
- IGMP proxy mode & snooping mode selection
- MLD snooping
Manageability
- SNMP v1, v2c, v3
- SNMP trap group
- RMON (1, 2, 3, 9)
- ICMP echo/echo reply
- Syslog
- IEEE 802.1AB LLDP
- IEEE 802.1AB LLDP-MED
IPv6 Management
- IPv6 over Ethernet (RFC 2464)
- IPv6 addressing architecture (RFC 4291)
- Dual stack (RFC 4213)
- ICMPv6 (RFC 4443)
- Path MTU (RFC 1981)
- Minimum path MTU size of 1280 (RFC 5095)
- Encapsulation for maximum PMTU of 1500
- Neighbor discovery (RFC 4861)
- DHCPv6 relay
- New Default DHCP client mode
Device Management
- ZyXEL iStackingTM
- Web interface
- Management through Console, Telnet, SNMP
- Firmware upgarde by FTP
- Remote firmware upgarde by FTP/Web
- Configuration saving and retrieving
- Multiple logins supported
- Configure clone
- Multilevel CLI
- CLI (Cisco-like)
- DHCP relay per VLAN
- DHCP client
- DHCP option 82
- Daylight saving
- NTP
- Port mirroring
- RS-232 out-of-band console port
MIB
- ZyXEL private common MIB
- RFC 1066 TCP/IP-based MIB
- RFC 1213, 1157 SNMPv2c/v3 MIB
- RFC 1493 bridge MIB
- RFC 1643 Ethernet MIB
- RFC 1757 RMON Group 1, 2, 3, 9
- RFC 2011, 2012, 2013 SNMPv2 MIB
- RFC 2233 SMIv2 MIB
- RFC 2358 Ethernet-like MIB
- RFC 2674 bridge MIB extension
- RFC 2819, 2925 remote management MIB
- RFC 3621 power Ethernet MIB
- RFC 4022 management information base for transmission control protocol
- RFC 4113 management information base for user datagram protocol
- RFC 4292 IP forwarding table MIB
- RFC 4293 Management Information Base (MIB) for IP
Certifications
- Safety
o LVD
o BSMI
- EMC
o FCC Part 15 (Class A)
o CE EMC (Class A)
o BSMI ENC
- RoHS
o Level A
Accessories
Transceivers (Optional)
Model |
Speed |
Connector |
Wavelength |
Max. Distance |
DDMI |
SFP-1000T |
Gigabit |
RJ-45 |
- |
100 m (109 yd) |
- |
SFP-BX1310-10-D |
Gigabit |
LC |
1310 nm (Tx) |
10 km (10936 yd) |
Yes |
SFP-BX1490-10-D |
Gigabit |
LC |
1490 nm (Tx) |
10 km (10936 yd) |
Yes |
SFP-LHX1310-40-D |
Gigabit |
LC |
1310 nm |
40 km (43744 yd) |
Yes |
SFP-LX-10-D |
Gigabit |
LC |
1310 nm |
10 km (10936 yd) |
Yes |
SFP-SX-D |
Gigabit |
LC |
850 nm |
550 m (601 yd) |
Yes |
FP-ZX-80-D |
Gigabit |
LC |
1550 nm |
80 km (87488 yd) |
Yes |
SFP-100BX1310-20-D |
Fast Ethernet |
LC |
1310 nm (Tx) |
20 km (21872 yd) |
Yes |
SFP-100BX1550-20-D |
Fast Ethernet |
LC |
1550 nm (Tx) |
20 km (21872 yd) |
Yes |
SFP-100FX-2 |
Fast Ethernet |
LC |
1310 nm |
2 km (2187 yd) |
- |
SFP-100LX-20 |
Fast Ethernet |
LC |
1310 nm |
20 km (21872 yd) |
- |