ES-1528

28-port Web-managed Ethernet Switch

ExtraSmart Switch Empower "DoS Attack Preventive" & "VoIP Friendly" Networks


ElreturZyXEL environment policy Rhos
- Auto DoS Attack Prevention
- Auto VoIP
- 12.8 Gbps Non-Blocking Switching Fabric
- Flexible 4 GbE Uplink Interfaces
- IEEE 802.3ad static port aggregation
- Streamlined Web-based Interface
- IEEE 802.1Q VLAN
- Port security
- IEEE 802.1p with 4 Priority Queues
- WRR and SPQ Queuing Algorithms

Benefits

 
Robust Design Power SMB/SB Network
ZyXEL ES-1528 comes with 24 Fast Ethernet copper ports plus four Gigabit uplinks (two 1000Base-T ports and two SFP slots) that fire up the non-blocking connection power to 12.8Gbps on SMB/SB networks, and its multi-function design fits into copper or fiber networks easily. By utilizing 4G uplinks and port aggregation, bandwidth on critical paths can be expanded flexibly by merging multiple traffic pipelines into a logical one to dramatically improve network stability.
 
ExtraSmartTM- Evolution New Smart Power Â
While many legacy Web Smart switches improve manageability, complexity is still around. For most SMB/SB, inadequate IT expertise and complicated configuration are the major pains to overcome before getting connected. Powered by newest hardware platform with smart ACL technology behind, "Auto DoS Attack Prevention" and "Auto VoIP" empowers hassle-free operations required by a network with strict protection and VoIP-friendliness.
In addition, ZyXEL ES-1528 comes with a streamlined intuitive Web-GUI for features demanded by SMB/SB; such as 802.1Q VLAN, 802.1p traffic priority and static port aggregation. Without awkward configurations and bulky user guide, the ES-1528 gives real stuff for SMB/SB networks to enjoy the convenience.
 
Extra Secure - Auto DoS Attack Prevention
Security is the top priority for SMB/SB networks. Equipped with Auto DoS Attack Prevention, the ES-1528 is capable of fighting against ubiquitous DoS attacks. A few mouse clicks are all it takes to initiate the protection, complete the once-complicated ACL setting and reduce operating efforts dramatically. ES-1528 supports 802.1Q VLAN for traffic isolation, as well as Static MAC forwarding and dynamic ARP to establish a strictly protected network.
Â
Extra QoS – Auto VoIP OptimizationÂ
VoIP is a key to differentiate business competitiveness. It usually requires IT expertise to optimize a network for VoIP applications. With the emergence of the "Auto VoIP", however, the ES-1528 can identify VoIP packet patterns and grant the highest priority to establish a VoIP-friendly communication automatically.
 
Auto VoIP offers IP telephony without configuration headaches. Features like four priority queues and WFQ scheduling algorithm allow users to optimize network bandwidth usage and quality of services. In term of bandwidth management, users can choose from several options and pick the most appropriate with just a mouse click.
 

Specification

 

Standard Compliance

  • IEEE 802.3 10Base-T Ethernet
  • IEEE 802.3u 100 Base-Tx Ethernet
  • IEEE 802.ab 1000 Base-T Ethernet
  • IEEE802.3ah 1000Base-BX
  • IEEE 802.3z
  • IEEE 802.3x Flow control
  • IEEE 802.1p Class of service, priority protocols
  • IEEE 802.1Q VLAN tagging
  • IEEE 802.3ad static port aggregation

Performance

  • 12.8Gbps non-blocking switching fabric
  • Switching Forwarding Rate 9.6Mpps (1488000pps/1000Base-T/1000Base-X, 148800pps/100Base-TX)
  • Wire-speed performance

MAC and Packet Buffer

  • 8K MAC entries
  • 512KB Packet Buffer

Traffic Management and QoS

  • Rate Limiting: Port-based bandwidth control with 7 grades 64kbps, 256 kbps, 1Mbps, 10Mbps, 64Mbps, 100Mbps, 1Gbps)
  • Port-based egress traffic shaping
  • Broadcast Storm Control
  • Congestion control on all ports
  • IEEE 802.1p with 4 priority queues per port for different types of traffic
  • WRR (Weighted Round Robin)/SPQ scheduling algorithm

Auto VoIP

Auto VoIP module empowered by smart ACL to explicitly matches VoIP streams and assign the highest priority for following VoIP packets

  •  SIP–Session Initiation Protocol
  •  MGCP–Media Gateway Control Protocol
  •  SCCP–Skinny Client Control Protocol

Link Aggregation

  • IEEE 802.3ad static port aggregation
  • Up to 6 aggregation groups, per group supports up to 8 ports

User Security and Authentication

  • Specific MAC forwarding per port: only specified MAC addresses can access the network (Port Security)
  • IEEE 802.1Q tagged VLAN
  • 256 static VLAN, up to 4K dynamic VLAN
  • Dynamic ARP

Auto DoS Attack Prevention

Denial of Service (DoS) attacks try to disable a device or network so users no longer have access to network resources. Auto DoS Attack Prevention module empowered by smart ACL to explicitly matches attack types in switches and prevent network outrage
 
Types of DoS Attacks can be prevented
  • Land Attacks – These attacks result from sending a specially crafted packet to a machine where the source host IP address is the same as the destination host IP address. The system attempts to reply to itself, resulting in system lockup.
  • Blat Attack – These switch result from sending a specially crafted packet to a machine where the source host port is the same as the destination host port. The system attempts to reply to itself, resulting in system lockup.
  • SYNFIN scans – SYNchronization (SYN, ACKnowledgement (ACK) and FINish (FIN) packets are used to initiate, acknowledge and conclude TCP/IP communication sessions. The following scans exploit weakness in the TCP/IP specification and try to illicit a response from a host to identify ports for an attack:
    • Scan SYNFIN –SYN and FIN bits are set in the packet.
    • Xmascan – TCP sequence number is zero and the FIN, URG and PSH bits are set.
    • NULL scan – TCP sequence number is zero and all control bits are zeros.
    • SYN with port ‹ 1024 – SYN packets with source port less than 1024.
  • Smurf Attacks – This attack uses Internet Control Message Protocol (ICMP) echo requests packets (pings) to cause network congestion or outrages.
  • Ping Flooding – This attack floods the target network with ICMP packets.
  • SYN/SYN-ACK Flooding – This attack floods the target network with SYN or SYN/ACK packets.

Network Administration Security

  • Password required for administrators

Network Management

  • Web-based management
  • SNMP v1, v2Â
  • IP management: static IP
  • RMON
  • Port mirroring: supports Source/Destination/Both port mirroring
  • Cable Diagnostic

MIB Information

  • RFC1213MIBII (System, Interface)
  • RFC1398 (Ether-like)

Hardware Specifications

  • Support of auto-negotiation
  • Support of auto MDI/MDI-X,
  • Â Ports: 24 10/100BASE-T, RJ-45 ports, 2 1000Base-T ports and 2 SFP open slots

Power Requirements

  • Input voltage of AC: 100-240VAC, 50/60Hz
  • Max power rating of AC: 11.6 Watt

Physical Specifications

  • Â Dimensions: 438 (W) x 130 (D) x 44.5 (H) mm
  • Â Weight: 1.95kg 

Environmental Specifications

  • Operating temperature: 0°C ~ 45°C
  • Storage temperature: - 10 °C~ 70°C
  • Operating humidity: 10% ~ 90%, (non-condensing)

Certification

  • UL 60950-1
  • CSA 60950-1
  • EN 60950-1
  • IEC 60950-1
 
GO TOP
ZyXEL Communications, Finlandsgatan 18, 164 74 Kista, Telefon: 08-55776060 , Fax: 08-55776061, Organisationsnummer 516402-8507

Copyright 1995-2009 Communication Corp. All rights reserved. Sitemap

ZyXEL Hem