Current location - Plastic Surgery and Aesthetics Network - Plastic surgery and beauty - Functions, advantages and disadvantages of hubs, routers and switches
Functions, advantages and disadvantages of hubs, routers and switches
Hub has no advantage. If it's cheap, I'm afraid it's hard to get it now.

The switch tells you the function of the switch.

● Flexible port expansion meets long-distance high-speed transmission.

RG-S2 126 has two expansion interface slots besides the 24 RJ45 ports of 10/ 100M, which can provide up to two single/multimode optical fiber interfaces or electrical ports of 100m/ Gigabit, and can provide users with high-speed network access capability over a long distance.

● Ultra-high speed backplane bandwidth supports non-blocking switching.

Backplane bandwidth is as high as 12.8Gbps, which can ensure the full-line speed non-blocking transmission capacity of all ports in high traffic load environment, meet the requirements of high traffic data forwarding in access layer or convergence layer, and can also be directly used as the core equipment of small and medium-sized networks.

● High-security intelligent ACL function can prevent viruses and network attacks.

RG-S2 126 has built-in rich intelligent traffic identification technology and hardware-implemented ACL (Access Control List) features, including IP standard ACL, IP extended ACL and MAC extended ACL, which can effectively prevent virus spread and hacker attacks, and has the ability to prevent vicious incidents such as Dos attacks, hacker scanning and virus scanning. Its advanced expert ACL function can control access to any combination of MAC address, IP address, VLAN number, TCP/UDP port number, protocol type and time, and fully defend against network security threats such as red queue, shock wave, synflood attack and ARP attack. At the same time, RG-S2 126 can constantly evolve defense strategies according to the endless network attacks and viruses, update the ability to identify security issues by flexibly setting ACL functions, and help users filter illegal intranet attacks from the network access layer, thus protecting network service resources and backbone equipment from paralysis caused by local users infected with viruses or passive malicious attacks.

Low ternary binding based on switch to achieve unique user identity.

RG-S2 126 is the first in the industry to introduce the only ternary binding technology based on switch hardware. For users with limited investment, the triple binding function of switch port, user's IP address and user's MAC address can be obtained without additional investment and deployment of any security authentication system, which can effectively avoid IP address conflict, prevent illegal users from impersonating legitimate ports to spoof and invade the intranet, completely locate the uniqueness of legitimate users' identities, and improve the security of the intranet. In addition, its unique MAC address filtering and dynamic address locking functions can also achieve security restrictions when connecting multiple users through a single port, so it is not necessary to be careful that uncontrollable downlink users appear in the network, threatening the security of network information.

● Six-element binding based on 802. 1X authentication system to ensure network security, operation and billing.

For departments or industries with high security requirements, such as financial system, security technology department, military industry, e-government, hotel broadband system, etc., it has become the primary task of network equipment besides exchanging data to effectively realize high and reliable network security, network operation management and network billing.

RG-S2 126 switch supports Ruijie Network 802. 1X authentication system (SAM), which has been applied in many industries. It is the first in the industry to realize the arbitrary binding technology of six elements of user characteristics (user account, MAC address, IP address, VLAN number, switch port and switch IP address) based on authentication, which completely guarantees the uniqueness of legitimate users. The binding function of online detection can also prevent illegal users from passing authentication. Accurate identity authentication enables each user to obtain corresponding rights when surfing the Internet, and flexible authorization mode can adjust each user's access rights at any time. Combined with the background authentication and billing system, the network behavior and billing situation of each user can be perceived in real time. Whether RG-S2 126 is in the network access layer or convergence layer, it can accurately locate and control the user's authority, which has become an important guarantee function for building an enterprise-level high-security network.

Multilayer stacking provides high density exchange and elastic expansion.

It supports the formation of a stack of up to 8 RG-S2 126 devices, and can provide full-speed switching of up to1921100m ports centrally, and integrate the stack into a single device unit for network management. Each member switch in the stack can enjoy IP address management and synchronization software upgrade, and users can flexibly expand capacity according to network requirements. At the same time, it supports advanced port aggregation technology, which is the only one in the industry to realize the joint binding aggregation bandwidth of uplink ports of stacked member switches, and can communicate with uplink devices at high speed. The maximum throughput bandwidth is16 Gbps (when 8 devices are stacked), which effectively avoids the bottleneck problem between low uplink bandwidth and stacked high backplane capacity formed by traditional stacking technology, and truly realizes the high-speed integration of stacking into the whole network.

● End-to-end QoS (Quality of Service) policy ensures high availability of the network.

With the rapid development of modern enterprises, more and more complex LAN is needed, which can include voice, video, text and other applications. It is unreasonable to distribute the limited network bandwidth and responsiveness to all applications equally. Important and urgent applications (such as large-scale text transmission, high-speed FTP download, clear and smooth online video conference, etc.). ) often requires faster response, more stable processing and higher speed than ordinary applications (such as web browsing, email sending and receiving, etc.). ).

In view of this feature, RG-S2 126 switch fully supports 802. 1p and DSCP priority classification labels, which can distinguish different traffic flows in the network according to the combination of switch physical port, MAC address, IP address, TCP/UDP port number and protocol type. Through the perfect queue scheduling mechanism of SPQ (strict priority) and WRR (weighted round robin), the priority of different customers and applications in the network can be guaranteed, and the congestion or paralysis of network resources caused by disorderly occupation of resources of various services can be avoided.

● Flexible bandwidth limitation based on flow identification.

Traditional switches often achieve the purpose of flow control by limiting bandwidth based on physical ports. However, for enterprise networks with various business application types enabled, only limiting the total bandwidth flow of physical ports cannot reasonably provide reasonable bandwidth for various types of data exchange.

RG-S2 126 can limit the bandwidth based on the combination of switch physical port, MAC address, IP address, TCP/UDP port number and protocol type through advanced data flow identification technology, and the minimum limit granularity can reach 1Mbps. No matter whether RG-S2 126 is in the access layer of the network or convergence layer, different users and different applications can be restricted by different setting combinations. It not only provides bandwidth guarantee for important applications in the network, but also suppresses data traffic that seriously consumes network resources, such as illegal attacks or network virus attacks, thus ensuring the bandwidth resources of normal and legal data.

Rich spanning tree protocols provide high network reliability.

RG-S2 126 not only supports the traditional 802. 1d spanning tree protocol, but also supports 802. 1w (Fast Spanning Tree) and 802. 1S (Multi-VLAN Spanning Tree Protocol). On the basis of providing redundant backup of communication link, the convergence speed under complex network structure is greatly improved, and the spanning tree protocol based on VLAN is provided.

● IGMP source port inspection to improve multicast control capability.

There are often many multicast applications such as video services in enterprise-level network applications. Illegal multicast initiated by illegal users actively or passively will greatly affect the normal operation of legal multicast equipment and networks. To solve this problem, RG-S2 126 takes the lead in applying IGMP source port inspection technology in enterprise-level networks, which can completely limit the stable transmission of legal multicast in the network and effectively control illegal multicast sources, which not only improves the network transmission security, but also ensures the stable operation of normal legal multicast applications.

● Flexible VLAN division and PVLAN technology.

Enterprise-level networks often divide users in local area networks into many different VLAN according to standards such as network scale, department settings, user rights, and severity of network broadcast storms, so as to realize the confidentiality of network users' access and the stability of network operation. RG-S2 126 can support any VLAN division within the range of 4K VLAN ID. At the same time, through the advanced PVLAN (Private VLAN) technology, users in the same VLAN can be protected from port protection, and can be safely isolated without allocating and occupying VLAN ID, which not only saves network VID allocation resources, but also fully protects users' privacy rights.

● Various management methods.

RG-S2 126 switch supports SNMP v 1/v2/v3, Telnet, Web and Console ports, and also supports general network management platforms such as Ruijie StarView network management system and Open View. Users can manage equipment flexibly, conveniently and quickly according to different usage habits and network scale. At the same time, RG-S2 126 supports SSH(Secure Shell) technology, and users can access device management through a highly secure encrypted channel to prevent illegal users from invading and obtaining management resources and endangering the network. RG-S2 126 supports IP access lists, which can limit the remote IP addresses of switches that are allowed to access through Telnet and Web, and ensure the security of network management.

RG-S2 126 is a high-performance, high-security, stackable network management Ethernet switch designed by Ruijie Network to meet the extensive needs of enterprise-level network security and global intelligent management. Full-line speed design based on high backplane provides intelligent traffic classification, perfect quality of service (QoS) and multicast management features, enabling it to implement flexible and diverse ACL access control and security precautions in various applications of enterprise-level networks; At the same time, with the help of flexible stacking function, local high-density ports can be intelligently managed at any time, which is convenient for large-scale network users to manage access layer data; In addition, according to different management methods, SNMP, Telnet, Web and console ports are provided respectively. RG-S2 126 provides a cost-effective end-to-end data security access solution at the price of ordinary network management switches, which is especially suitable for applications with high security and efficient management requirements, such as enterprise network construction, broadband community, e-government network, military informationization, medical data informationization, and hotel broadband billing.

router

High data processing ability

Advanced PowerPC communication processor, 2G bandwidth PCI bus technology, smaller packet forwarding delay, and efficient data processing ability supporting high-density ports ensure network application in high-speed environment.

High convergence ability

R3740 can plug in four NM- 1CPOS-STM 1 modules at the same time, and each module provides 63 channels of 2M access, with a maximum of 252 channels of 2M access.

The main control board has solidified two fast Ethernet ports of10/100/1000 m, and the optical ports are optional.

Two 10/ 1000m fast Ethernet ports are solidified on the main control board. The optical port or electrical port module can be selected according to the actual situation, and broadband interconnection can be realized without purchasing any module.

The main control board can be removed and replaced, and the router can be upgraded by upgrading the main control board in the future.

high reliability

Hot plug of key components: all power supplies and fans support hot plug function, which fully meets the needs of network maintenance, upgrade and optimization;

Support backup technologies such as link backup and routing backup to improve the reliability of the whole network;

Support VRRP hot backup protocol to realize redundant backup of lines and equipment.

RPS redundant power supply support.

Modular structural design

RG-R3740 has four network/voice module slots, which support a wide range of network/voice modules with complete functions and high density, and can realize more combined applications.

Good voice support function

Support G.7 1 1, G.723, G.729 and other speech coding formats, support H.323 protocol stack, and interoperate with devices of many VOIP vendors;

Support real-time fax function;

Support voice gatekeeper function.

Good VPN function

Support IPSec VPN function;

VPN function supporting GRE;

VPDN applications supporting L2TP/PPTP;

Under NAT application, L2TP/PPTP penetration function is supported.

Perfect QoS policy

Support PQ, CQ, FIFO, WFQ, CBWFQ, LLQ, rt PQ and other congestion management queuing strategies;

Congestion avoidance strategy supporting WRED and RED;

Support GTS traffic shaping strategy;

Support the automobile traffic supervision strategy;

Support QOS strategies such as CTCP and CRTP to improve link efficiency;

Support setting voice packet priority, which can provide a multi-functional service platform that meets the requirements and has high cost performance for small and medium-sized enterprises.

High security

Perfect firewall technology, supporting access list control strategy based on source and destination IP, protocol, port and time period;

Support the binding of IP and MAC address, effectively prevent the deception of IP address;

AAA authentication technology supporting authentication, authorization and user information recording, and Radius authentication protocol;

Support routing information authentication technology in dynamic routing protocol to ensure the security and reliability of routing information in dynamic routing network;

Support PAP, CHAP authentication and callback technology in PPP protocol;

Easy to use and manage.

Using standard CLI interface, the operation is simpler;

Support SNMP protocol, TFTP upload and download configuration files to facilitate network management;

Support Telnet/Console, which is convenient for remote management and control;

Various online upgrades to reserve space for future function expansion;

Reference /ProductDetail.aspx? productid=76#