24/48-port GbE Layer 3 Access Switch with 10GbE Uplink

XGS2210 Series

Item Features
Layer 3 Static Routing
  • IPv4/v6 Static Route
  • IPv4/v6 default Route
Standard Compliance
  • IEEE 802.3 10BASE-T Ethernet
  • IEEE 802.3u 100BASE-TX Ethernet
  • IEEE 802.3ab 1000BASE-T Ethernet
  • IEEE 802.3z 1000BASE-X
  • IEEE 802.3af PoE
  • IEEE 802.3at PoE plus
  • IEEE 802.3az EEE
  • IEEE 802.3x ow control
  • IEEE 802.3ad LACP aggregation
  • IEEE 802.1AB LLDP/LLDP-MED
  • IEEE 802.1D Spanning Tree Protocol (STP)
  • IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)
  • IEEE 802.1s Multiple Spanning TreeProtocol (MSTP)
  • IEEE 802.1Q VLAN tagging
  • IEEE 802.1p Class of Service (CoS) prioritization
  • IEEE 802.1X port authentication
Resilience and Availability
  • IEEE 802.1D Spanning Tree Protocol (STP)
  • IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)
  • IEEE 802.1s Multiple Spanning Tree Protocol (MSTP)
  • IEEE 802.3ad LACP
  • Loop guard
  • Root guard
  • BPDU guard
  • ErrDisable recovery
  • MRSTP (Zyxel Proprietary)
  • Dual configuration les
  • Dual images
  • Physical stacking
Traffic Control
  • 802.1Q static VLANs/dynamic VLANs: 1 K/4 K
  • New for V4.70 VLAN isolation
  • Vendor ID based VLAN
  • Port-based VLAN
  • Protocol-based VLAN
  • IP subnet-based VLAN
  • MAC-based VLAN
  • Private VLAN
  • Voice VLAN
  • VLAN ingress filtering
  • LACP algorithm of source/destination IP or MAC
  • GVRP
  • L2PT
  • VLAN mapping
Security
  • 802.1X
  • Port security
  • Layer 2 MAC filtering
  • Layer 3 IP filtering
  • Layer 4 TCP/UDP socket filtering
  • Static MAC forwarding
  • Multiple RADIUS servers
  • Multiple TACACS+ servers
  • 802.1x VLAN and 802.1p assignment by RADIUS
  • New for V4.70 Compound authentication
  • Login authentication by RADIUS
  • Login authentication by TACACS+
  • TACACS+ accounting
  • Authorization on RADIUS
  • Authorization on TACACS+
  • SSH v1/v2
  • SSL
  • Intrusion lock
  • MAC freeze
  • DHCP snooping
  • ARP inspection
  • Static IP-MAC-Port binding
  • Policy-based security filtering
  • Port isolation
  • IP source guard (IPv4/IPv6)
  • MAC search
  • Guest VLAN
  • ACL packet filtering (IPv4/IPv6)
  • CPU protection
  • Interface related trap enable/disable (by port)
  • MAC-based authentication per VLAN
Quality of Service (QoS)
  • No. of hardware queues per port: 8
  • Storm control: Broadcast, multicast, unknown unicast (DLF)
  • Port-based rate limiting (ingress/egress)
  • Rate limiting per IP/TCP/UDP per port
  • Policy-based rate limiting
  • 802.3x ow control
  • 802.1p Class of Service (SPQ, WFQ, WRR, hybrid-SPQ combination capable)
  • DiffServ (DSCP)
Layer 2 Multicast
  • L2 multicast
  • IGMP snooping (v1, v2, v3)
  • IGMP snooping fast leave
  • Configurable IGMP snooping timer and priority
  • IGMP snooping statistics
  • IGMP throttling
  • MVR support
  • IGMP filtering
  • IGMP snooping immediate leave
  • IGMP proxy mode & snooping mode selection
  • MLD snooping
Routing (XGS2210 Series only)
  • Static route
  • IP port moving
  • Assigned DHCP relay with specific source IP interface
Manageability
  • SNMP v1, v2c, v3
  • SNMP trap group
  • RMON (1, 2, 3, 9)
  • ICMP echo/echo reply
  • Syslog
  • IEEE 802.1AB LLDP
  • IEEE 802.1AB LLDP-MED
  • Custom default
  • Syslog (IPv4/IPv6)
  • Display port utilization
IPv6 Management
  • IPv6 over Ethernet (RFC 2464)
  • IPv6 addressing architecture (RFC 4291)
  • Dual stack (RFC 4213)
  • ICMPv6 (RFC 4443)
  • Path MTU (RFC 1981)
  • Minimum path MTU size of 1280 (RFC 5095)
  • Encapsulation for maximum PMTU of 1500
  • Neighbor discovery (RFC 4861)
  • DHCPv6 relay
  • Default DHCP client mode
Device Management
  • Zyxel iStacking™
  • Web interface
  • Management through Console, Telnet, SNMP
  • Remote firmware upgrade by FTP/Web/TFTP
  • New for V4.70 Networked AV mode by Web Interface
  • Configuration saving and retrieving
  • Multiple logins supported
  • Con gure clone
  • Multilevel CLI
  • CLI (Cisco-like)
  • DHCP relay per VLAN
  • DHCP client
  • DHCP option 82
  • DHCP relay MAC proxy
  • New for V4.70 DHCP server guard
  • Daylight saving
  • NTP supports IPv4/ IPv6
  • NTP
  • Port mirroring
  • RS-232 out-of-band console port
  • Flow-based mirroring
  • VLAN-based mirroring
  • Scheduled PoE
  • PoE default consumption mode
  • sFlow
MIB
  • Zyxel new private MIB
  • RFC 1066 TCP/IP-based MIB
  • RFC 1213, 1157 SNMPv2c/v3 MIB
  • RFC 1493 bridge MIB
  • RFC 1643 Ethernet MIB
  • RFC 1757 RMON group 1, 2, 3, 9
  • RFC 2011, 2012, 2013 SNMPv2 MIB
  • RFC 2233 SMIv2 MIB
  • RFC 2358 Ethernet-like MIB
  • RFC 2674 bridge MIB extension
  • RFC 2819, 2925 remote management MIB
  • RFC 3621 power Ethernet MIB
  • RFC 4022 management information base for transmission control protocol
  • RFC 4113 management information base for user datagram protocol
  • RFC 4292 IP forwarding table MIB
  • RFC 4293 Management Information Base (MIB) for IP
  • Cable diagnostic MIB
Certifications

Safety

  • LVD
  • BSMI

EMC

  • FCC Part 15 (Class A)
  • CE EMC (Class A)
  • BSMI EMC

RoHS

  • Level A
Zyxel One Network

ZON Utility

  • Discovery of Zyxel switches, APs and gateways
  • Centralized and batch configurations
    • IP configuration
    • IP renew
    • Device factory reset
    • Device reboot
    • Device locating
    • Web GUI access
    • Password configuration
    • One-click quick association with Zyxel AP Configurator (ZAC)

Smart Connect

  • Discover neighboring devices
  • One-click remote management access to the neighboring Zyxel devices
  • Reset neighboring devices remotely to factory defaults
  • Power cycle neighboring powered devices (PoE switches only)
Warranty

Limited life-time warranty

  • Warranty terms, service availability, and service response times may vary from country or region to country or region.

*All specifications are subject to change without notice.