Thông số kỹ thuật Switch Juniper EX4300-32F-DC-TAA
Mã sản phẩm | EX4300-32F-DC-TAA |
Hardware Specifications | |
Switching Engine Model | Store and forward |
DRAM | 4 GB with ECC |
Flash | 4 GB |
CPU | 1.5 GHz Dual-Core PowerPC CPU |
GbE port density per system | 46 (32 host ports + four 10GbE ports + two 40GbE ports + optional eight-port 1/10GbE uplink module or two-port 40GbE uplink module) |
Packet-Switching Capacities (Maximum with 64-Byte Packets) | 464 Gbps |
Software Specifications | |
Layer 2/Layer 3 Throughput (Mpps) (Maximum with 64 Byte Packets) | 345 Mpps (wire speed) |
Security | • MAC limiting (per port and per VLAN) • Allowed MAC addresses configurable per port • Dynamic ARP inspection (DAI) • IP source guard • Local proxy ARP • Static ARP support • DHCP snooping • Captive portal • Persistent MAC address configurations • Distributed denial of service (DDoS) protection (CPU control path flooding protection) |
Layer 2 Features | • Maximum MAC addresses per system: 64,000 • Jumbo frames: 9216 Bytes • Number of VLANs supported: 4093 • Range of possible VLAN IDs: 1 to 4094 • Virtual Spanning Tree (VST) instances: 510 • Port-based VLAN • Voice VLAN • Physical port redundancy: Redundant trunk group (RTG) • Compatible with Per-VLAN Spanning Tree Plus (PVST+) • Routed VLAN Interface (RVI) • Uplink Failure Detection (UFD) • ITU-T G.8032: Ethernet Ring Protection Switching • IEEE 802.1AB: Link Layer Discovery Protocol (LLDP) • LLDP-MED with VoIP integration • Default VLAN and multiple VLAN range support • MAC learning disable • Persistent MAC learning (sticky MAC) • MAC notification • Private VLANs (PVLANs) • Explicit congestion notification (ECN) • Layer 2 protocol tunneling (L2PT) • IEEE 802.1ak: Multiple VLAN Registration Protocol (MVRP) • IEEE 802.1p: CoS prioritization • IEEE 802.1Q: VLAN tagging • IEEE 802.1X: Port Access Control • IEEE 802.1ak: Multiple Registration Protocol • IEEE 802.3: 10BASE-T • IEEE 802.3u: 100BASE-T • IEEE 802.3ab: 1000BASE-T • IEEE 802.3z: 1000BASE-X • IEEE 802.3ae: 10-Gigabit Ethernet • IEEE 802.3ba: 40-Gigabit Ethernet • IEEE 802.3af: Power over Ethernet • IEEE 802.3at: Power over Ethernet Plus • IEEE 802.3x: Pause Frames/Flow Control • IEEE 802.3ah: Ethernet in the First Mile |
Spanning Tree | • IEEE 802.1D: Spanning Tree Protocol • IEEE 802.1s: Multiple instances of Spanning Tree Protocol (MSTP) • Number of MST instances supported: 64 • Number of VLAN Spanning Tree Protocol (VSTP) instances supported: 510 • IEEE 802.1w: Rapid reconfiguration of Spanning Tree Protocol |
Link Aggregation | • IEEE 802.3ad: Link Aggregation Control Protocol • 802.3ad (LACP) support: – Number of LAGs supported: 128 – Maximum number of ports per LAG: 16 • LAG load-sharing algorithm bridged or routed (unicast or multicast) traffic: – IP: S/D IP – TCP/UDP: S/D IP, S/D Port – Non-IP: S/D MAC • Tagged ports support in LAG |
Layer 3 Features: IPv4 | • Maximum number of ARP entries: 64,000 • Maximum number of IPv4 unicast routes in hardware: 16,000 prefixes; 32,000 host routes • Maximum number of IPv4 multicast routes in hardware: 8000 multicast groups; 16,000 multicast routes • Routing protocols: RIPv1/v2, OSPF, BGP, IS-IS • Static routing • Routing policy • Bidirectional Forwarding Detection (BFD) • L3 redundancy: Virtual Router Redundancy Protocol (VRRP) |
Layer 3 Features: IPv6 | • Maximum number of Neighbor Discovery (ND) entries: 32,000 • Maximum number of IPv6 unicast routes in hardware: 4000 prefixes; 15,000 host routes • Maximum number of IPv6 multicast routes in hardware: 8000 multicast groups; 16,000 multicast routes • Routing protocols: RIPng, OSPFv3, IPv6, ISIS • Static routing |
Access control lists (ACLs) (Junos OS firewall filters) | • Port-based ACL (PACL): Ingress and egress • VLAN-based ACL (VACL): Ingress and egress • Router-based ACL (RACL): Ingress and egress • ACL entries (ACE) in hardware per system: – Port-based ACL (PACL) ingress: 3072 – VLAN-based ACL (VACL) ingress: 3500 – Router-based ACL (RACL) ingress: 7000 – gress shared across PACL and VACL: 512 – Egress across RACL: 1024 – ACL counter for denied packets • ACL counter for permitted packets • Ability to add/remove/change ACL entries in middle of list (ACL editing) • L2-L4 ACL |
Access Security | • 802.1X port-based • 802.1X multiple supplicants • 802.1X with VLAN assignment • 802.1X with authentication bypass access (based on host MAC address) • 802.1X with VoIP VLAN support • 802.1X dynamic ACL based on RADIUS attributes • 802.1X Supported Extensible Authentication Protocol (EAP types): Message Digest 5 (MD5), Transport Layer Security (TLS), Tunneled TLS (TTLS), Protected Extensible Authenticated Protocol (PEAP) • MAC authentication (RADIUS) • Control plane DoS protection • Radius functionality over IPv6 for authentication, authorization, and accounting (AAA) • DHCPv6 snooping • IPv6 neighbor discovery • IPv6 source guard • IPv6 RA guard • IPv6 Neighbor Discovery Inspection • Media Access Control security (MACsec) |
High Availability | • Redundant, hot-swappable power supplies • Redundant, field-replaceable, hot-swappable fans • Graceful Routing Engine switchover (GRES) for Layer 2 hitless forwarding and Layer 3 protocols on RE failover • Graceful protocol restart (OSPF, BGP) • Layer 2 hitless forwarding on RE failover • Nonstop bridging: LACP, xSTP • Nonstop routing: PIM, OSPF v2 and v3, RIP v2, RIPnG, BGP, BGPv6, ISIS, IGMP v1, v2, v3 • Online insertion and removal (OIR) uplink module |
Quality of Service (QoS) | • L2 QoS • L3 QoS • Ingress policing: 1 rate 2 color • Hardware queues per port: 12 • Scheduling methods (egress): Strict priority (SP), WDRR • 802.1p, DiffCode (DSCP)/IP precedence trust and marking • L2-L4 classification criteria: Interface, MAC address, Ethertype, 802.1p, VLAN, IP address, DSCP/IP precedence, TCP/UDP port numbers, and more • Congestion avoidance capabilities: Tail drop, weighted random early detection (WRED) |
Multicast | • IGMP: v1, v2, v3 • IGMP snooping • Multicast Listener Discovery (MLD) snooping • PIM-SM, PIM-SSM, PIM-DM |