Configuration Guide Vol. 1


1.1 Features of this device

The Switch is a Gigabit Ethernet-compatible Layer 2 switch with a variety of functions, including a full range of authentication functions. Provides consistent operability as a AX series. It covers edges as a low-end Ethernet Layer 2 switch.

This machine has the following features.

<Structure of this section>

(1) Preserve connectivity and interoperability with AX series-

<>Layer 2 VLAN function
  • Equipped with port VLAN, protocol VLAN, and MAC VLAN functionality

  • Enables purpose-built VLANs

<>Spanning tree protocol
  • Supports the Spanning Tree Protocol (IEEE 802.1D), the Rapid Spanning Tree Protocol (IEEE 802.1w), PVST+, and Multiple Spanning Tree (IEEE 802.1s)

<>VLAN tunneling to achieve L2-VPN

<>Quality-of-communication assurance through QoS
  • High-performance hardware-based QoS processing

  • Precise QoS control by specification of detailed parameters (L2, L3, and L4 headers)

  • Wide range of QoS control functionality

    L2-QoS (including IEEE 802.1p, bandwidth controls, priority controls, and drop controls) and IP-QoS (including Diff-Serv, bandwidth controls, priority controls, and drop controls)

  • Wealth of the hierarchical shaper functionality for an integrated voice and data network

    Prioritize VoIP packets. Provide clear audio.

<>To build a variety of redundant networks
  • High-speed path switching

    High-reliability networks with redundancy can be built using standardized functions such as link aggregation (IEEE 802.3AX) and high-speed spanning tree (IEEE 802.1w,IEEE 802.1s), as well as unique functions such as GSRP aware and Autonomous Extensible Ring Protocol (hereinafter referred to as Ring Protocol). It also supports uplink redundancy, which enables redundant configurations without using spanning tree.

(2) Stacking capability to build fault-tolerant networks

<>Cost reduction through unification of management
  • Centralized management can be achieved by operating multiple switches as one switch.

<>Communication restoration in case of failure
  • By configuring multiple devices, communication can continue and be recovered quickly even if a part of the system fails.

<>Extensibility
  • Large-scale network expansion is possible by combining AX series FT switching and L3 stacking /VRS(Virtual Redundant System functions.

(3) Superior network management, maintenance and operation

<>Network management
  • Offers IPv4/v6 Dual Stack and full network management functionality for IPv6 environments, including SNMP over IPv6.

  • In addition to the basic MIB-II, supports a wide range of MIBs including IPv6 MIB and RMON.

<>USB memory card* adopted
  • Configuration backup and error information collection can be easily performed.

  • Maintenance tasks are simplified.

#: In this series of manuals, the term "MC" is used to describe how to operate and display USB memory card.

<>MC mode of operation
  • Batch storage of software and equipment information in MC, and starting from software and equipment information saved in MC can be easily executed.

<>Zero touch provisioning
  • By linking with AX-Network-Manager*, equipment can be replaced in the event of a failure without requiring a console or MC.

    #: For details on operating and setting AX-Network-Manager, see AX-Network-Manager documentation.

<>High reliability as a single unit by power supply redundancy

(4) 10G uplink support

<>10G uplink support
  • Combined with AX series in a campus network, it provides a high-performance 10G network.

  • An SFP+ transceiver can be used as a 10G Ethernet transceiver, which is compatible with both 1G and 10G Ethernet ports. SFP+/SFP shared port allows a smooth transition from 1G Ethernet to 10G Ethernet.

(5) Strong security features

<>Secure Boot
  • Implemented a security function that detects tampering with the software running on the Switch and suppresses the activation of the Switch in the event of an error.

<>Authentication and quarantine solutions
  • With the Layer 2 authentication function (IEEE802.1X,Web authentication, MAC authentication), one PC1 can be authenticated and subscribed to VLAN while maintaining the degree of freedom in the physical configuration of the edges.

  • Support for multi-step authentication, which allows the use of the network only when allowed by a combination of terminal authentication and user authentication

<>Elimination of illegal DHCP servers/fixed IP addressing terminals
  • Unauthorized DHCP servers and terminals with fixed IP addresses can be blocked using DHCP snooping.

(6) PoE support

<>Contains PD (powered equipment) such as IP telephones and radio LAN AP
  • Eliminating power line wiring work and reducing the burden of increasing the number of cables, as well as reducing power line wiring costs and shortening the construction period

  • IEEE802.3af/IEEE802.3at Compliance

<>Distribution of PoE power supply at startup of equipment
  • Reducing the peak-to-peak power consumption of the whole system by setting the waiting period from the start of the equipment to the start of PoE power supply and distributing the start of PoE power supply

<>Increased power supply expands PoE power supply

(7) Compactness, reduced environmental impact, and energy savings

<>Compact housing
  • Compact 1U chassis

  • High port density, accommodating a maximum of 48 10BASE-T, 100BASE-TX, and 1000BASE-T ports

<>Reducing Environmental Impact by Responding to RoHS

<>EEE (Energy Efficient Ethernet)
  • Power saving is realized by reducing the power supply when there is no communication on Ethernet.

  • IEEE 802.3az Compliance