TP-LINK's newly developed NS series 10 Gigabit uplink Layer 3 managed PoE switches adopt a new generation of high-performance hardware and software platform, provide flexible and cost-effective full Gigabit access and uplink ports, support Layer 3 routing protocol, complete security protection mechanism, perfect ACL/QoS policy and rich VLAN functions, easy to manage and maintain, meet users' requirements for easy management, high security and low cost networking of network equipment, and are suitable for network access and aggregation of campuses, hotels and enterprise campuses, core a variety of application scenarios.
- 48 x 10/100/1000Base-T RJ45 ports, PoE+ power supply
- 6 independent SFP+ ports
- It supports remote management of TP-LINK commercial cloud platform and mobile APP management
- It supports intelligent deployment, automatic configuration networking, and graphical topology display
- The maximum PoE power supply power of the whole machine is 495W, and the maximum PoE power supply power of a single port is 30W
- Supports dynamic RIP routing, static routing, and ARP proxy
- DHCP server, DHCP relay, and DHCP snooping are supported
- Supports quaternary binding, ARP/IP/DoS protection, and 802.1X authentication
- VLANs, QoS, ACLs, spanning trees, multicast listening, and IPv6 are supported
Full Gigabit ports
- The whole series supports the combination of "Ethernet port + optical port", which is convenient for users to flexibly network and meet the networking needs of various scenarios.
- Provide 8/16/24/48 multi-specification port products, all ports have gigabit wire-speed forwarding capabilities to meet the needs of different users.
Strong business processing capabilities
- It supports the RIP dynamic routing protocol, dynamically generates and updates routing tables, and solves the routing problem of small and medium-sized networks after subnets are divided.
- Static routes are supported, and the administrator manually configures route entries to achieve simple, efficient, and reliable communication between different network segments.
- DHCP servers are supported, which assign IP addresses to hosts in the network.
- DHCP trunking is supported, and switches in different interfaces or subnets can also obtain IP addresses, reducing the number of DHCP servers.
- Proxy ARP is supported, so that hosts in different physical networks on the same network segment can communicate normally.
- IEEE 802.1Q VLAN, MAC VLAN, protocol VLAN, and private VLAN are supported, allowing users to flexibly divide VLANs according to different requirements.
- GVRP is supported to implement dynamic distribution, registration, and attribute propagation of VLANs, reducing the amount of manual configuration and ensuring the correctness of configuration.
- The VLAN VPN function encapsulates the outer VLAN tag for the user's private network packets at the public network access end, so that the packets carry two layers of VLAN tags across the public network.
- It supports QoS, three priority modes based on port, 802.1P-based and DSCP-based, and four queue scheduling algorithms of Equ, SP, WRR, and SP+WRR.
- ACLs are supported to filter packets by configuring matching rules, processing operations, and time permissions, providing flexible security access control policies.
- It supports IGMP V1/V2 multicast protocols, MLD snooping, and IGMP snooping to meet the requirements of multi-terminal HD video surveillance and video conferencing access.
- IPv6 is supported to meet the requirements of network transition from IPv4 to IPv6.
Complete security protection mechanism
- Supports IP address, MAC address, VLAN, and port quaternary binding to filter data packets.
- Supports ARP protection against ARP spoofing and ARP flood attacks, such as gateway spoofing and man-in-the-middle attacks, which are common in LANs.
- IP source protection is supported to prevent illegal address spoofing, including MAC address spoofing, IP spoofing, and MAC/IP spoofing.
- DoS protection is supported, and attacks such as Land Attack, Scan SYNFIN, Xmascan, and Ping Flooding are supported.
- It supports 802.1X authentication, provides authentication functions for LAN computers, and controls the authorization status of controlled ports according to the authentication results.
- Port security is supported, which stops learning when the number of MAC addresses learned on a port reaches the maximum number to prevent MAC address attacks and control port network traffic.
- Support DHCP Snooping, effectively eliminate private DHCP servers, and ensure the legitimacy of DHCP servers.
Versatile reliability protection
- Supports STP/RSTP/MSTP SPANNING TREE protocol to eliminate Layer 2 loops and implement link backup.
- Spanning tree security functions are supported to prevent devices in a spanning tree network from various forms of malicious attacks.
- Static aggregation and dynamic aggregation are supported, effectively increasing link bandwidth, implementing load balancing, link backup, and improving link reliability.
PoE power supply function
- The PoE model supports PoE+ power supply and follows the IEEE 802.3af/at standard to meet the requirements of PoE power supply in scenarios such as visual security, teleconferencing systems, and wireless coverage.
- You can set the power supply control of PoE ports based on user-defined time periods on the web management interface.
- You can configure the PoE port priority on the web management interface, and when the remaining power is insufficient, the power supply of the high-priority port is guaranteed.
- In PoE models, the maximum PoE output power per port can reach 30W, and users can set the maximum power that can be provided by the port on the web management interface.
Easy operation and maintenance
- Supports multiple management and maintenance methods, such as web management, CLI command line (console, Telnet), and SNMP (V1/V2/V3).
- Supports HTTPS, SSL V3, TLSV1, SSHV1/V2 and other encryption methods for safer management.
- RMON, system logs, and port traffic statistics are supported, which is convenient for network optimization and transformation.
- Supports cable detection, ping detection, and Tracert detection operations to easily analyze faulty network nodes.
- It supports LLDP, which is convenient for the network management system to query and judge the communication status of the link.
- CPU monitoring, memory monitoring, ping detection, Tracert detection, and cable detection are supported.
Hardware specifications
Network standards | - IEEE 802.3、IEEE 802.3u、IEEE 802.3ab、IEEE 802.3z、IEEE 802.1d、IEEE 802.1w、IEEE 802.1s 、IEEE 802.1Q、IEEE 802.1p、IEEE 802.3x、IEEE802.3af、IEEE802.3at
|
Port | - 48 x 10/100/1000Mbps RJ45 ports
- 6 independent 10GSFP+ fiber ports
|
PoE power supply | - 48 Gigabit RJ45 ports support PoE power supply
- The maximum power supply of the whole machine is 495W
- The maximum power supply per port is 30W
|
Exchange capacity | |
Packet forwarding rate | |
Light | - Each Gigabit RJ45 port has 1 Link/Ack or PoE indicator
- Each 10 Gigabit SFP+ port has 1 Link/Ack indicator
- Each device has 1 Power, System, PoE Max, Master, and Stack indicators
|
Performance | |
MAC address depth | |
Enter the power supply | |
Use environment | - Operating temperature: 0°C~40°C
- Storage temperature: -40°C~70°C
- Operating humidity: 10%~90% RH non-condensing
- Storage humidity: 5%~90% RH non-condensing
|
Dimensions(L×W×H) | |
Software Specifications
Routing | - Support for RIP
- Static routes are supported
- ARP proxies are supported
|
VLAN | - 802.1Q VLAN、MAC VLAN、Private VLAN、Protocol Based VLAN、Voice VLAN
- VLAN VPN
- GARP/GVRP
|
Address table | - MAC address display/query, MAC address filtering
- Static MAC address setting and dynamic MAC address management
- Support for IVL
|
Spanning trees | - STP (802.1d)、RSTP (802.1w)、MSTP (802.1s)
- Spanning tree security
|
Multicast management | - IGMP V1/V2/V3
- Multicast address management, multicast VLANs, multicast routing ports, and static multicast addresses
- Unknown Multicast Drop, Multicast Filtering, Fast Leave
|
QoS | - 8 port queues
- Supports port-based, 802.1P, and DSCP/ToS prioritization
- It supports four priority scheduling modes: Equ, SP, WRR, and SP+WRR
|
System maintenance | - Supports configuring import and export and system time settings
- Cable detection, ping, and tracert detection
- Display/filter system logs, log servers
|
System administration | - Web management based on HTTP, SSL (v2/v3/TLSv1), and CLI management based on Telnet, Console, and SSH (v1/v2) are supported
- SNMP V1/V2/V3(TP-LINK MIBs)
- Free software upgrades
|
Security management | - Supports security management based on ports, MAC addresses, and IP addresses
|
PoE power management | - Port PoE is enabled/disabled
- Port PoE priority
- Based on time period
- The maximum power consumption value of the system is set
- Port maximum power consumption value setting
|
Access control | - Supports L2~L4 packet filtering based on time period
- Flow-based rate limiting, destination port redirection, and QoS remarking are supported
- Policies can be delivered based on ports and VLANs
|
Safety features | - IP-MAC-Port-VID quaternary binding
- ARP protection, DoS protection, and port security
|
admin - September 12, 2018
roadthemes