TP Link SG3428XF Omada 24-Port SFP L2+ Managed Switch with 4-Port SFP+
Product Ref: TL-SG3428XF
- 10G Lightning-Fast Uplink
Four (4) 10 Gbps SFP+ slots enable high-bandwidth connectivity and non-blocking switching capacity. - Gigabit Fibre Speeds
Twenty (20) gigabit SFP ports and four (4) gigabit SFP/RJ45 Combo ports offer high-speed and reliable connections to other switches and devices. - Integrated into Omada
Zero-Touch Provisioning (ZTP), Centralised Cloud Management, and Intelligent Monitoring. - Centralised Management
Cloud access and Omada app for ultra convenience and easy management. - Static Routing
Helps route internal traffic for more efficient use of network resources. - Robust Security Strategies
IP-MAC-Port Binding, ACL, Port Security, DoS Defend, Storm control, DHCP Snooping, 802.1X, Radius Authentication, and more. - Optimise Voice and Video Applications
L2/L3/L4 QoS and IGMP snooping. - Standalone Management
Web, CLI (Console Port, Telnet, SSH), SNMP, RMON, and Dual Image bring powerful management capabilities.
Technical Specifications
Hardware Features
Interface
- 20 x Gigabit SFP Ports
- 4 x Gigabit SFP/RJ45 Combo Ports
- 4 x 10G SFP+ Slots
- 1 x RJ45 Console Port
- 1 x Micro-USB Console Port
Fan Quantity
- 1 Fan
Power Supply
- Dual Redundant Power Supplies
- 100-240 V AC~50/60 Hz
Dimensions (W x D x H)
- 440 x 220 x 44 mm (17.3 x 8.7 x 1.7 in.)
Mounting
- Rack Mountable
Max Power Consumption
- 35.7 W (110 V/60 Hz)
Max Heat Dissipation
- 121.81 BTU/hr (110 V/60 Hz)
Performance
Switching Capacity
- 128 Gbps
Packet Forwarding Rate
- 95.23 Mpps
MAC Address Table
- 16 K
Packet Buffer Memory
- 12 Mbit
Jumbo Frame
- 9 KB
Software Features
Quality of Service
- 8 priority queues
- 802.1p CoS/DSCP priority
- Queue scheduling
- SP (Strict Priority)
- WRR (Weighted Round Robin)
- SP+WRR
- Bandwidth Control
- Port/Flow based Rating Limiting
- Smoother Performance
- Action for Flows
- Mirror (to supported interface)
- Redirect (to supported interface)
- Rate Limit
- QoS Remark
L2 and L2+ Features
- Link Aggregation
- Static link aggregation
- 802.3ad LACP
- Up to 8 aggregation groups, containing 8 ports per group
- Spanning Tree Protocol
- 802.1d STP
- 802.1w RSTP
- 802.1s MSTP
- STP Security: TC Protect, BPDU Filter, Root Protect
- Loopback Detection
- Port based
- VLAN based
- Flow Control
- 802.3x Flow Control
- HOL Blocking Prevention
- Mirroring
- Port Mirroring
- CPU Mirroring
- One-to-One
- Many-to-One
- Tx/Rx/Both
L2 Multicast
- IGMP Snooping
- IGMP v1/v2/v3 Snooping
- Fast Leave
- IGMP Snooping Querier
- IGMP Authentication
- IGMP Authentication
- MLD Snooping
- MLD v1/v2 Snooping
- Fast Leave
- MLD Snooping Querier
- Static Group Config
- Limited IP Multicast
- MVR
- Multicast Filtering: 256 profiles and 16 entries per profile
VLAN
- VLAN Group
- Max 4K VLAN Groups
- 802.1Q Tagged VLAN
- MAC VLAN: 30 Entries
- Protocol VLAN: Protocol Template 16, Protocol VLAN 16
- Private VLAN
- GVRP
- VLAN VPN (QinQ)
- Port-Based QinQ
- Selective QinQ
- Voice VLAN
Access Control List
- Time-based ACL
- MAC ACL
- Source MAC
- Destination MAC
- VLAN ID
- User Priority
- Ether Type
- IP ACL
- Source IP
- Destination IP
- Fragment
- IP Protocol
- IP-MAC-Port Binding
- 512 Entries
- DHCP Snooping
- ARP Inspection
- IPv4 Source Guard: 100 Entries
- IPv6-MAC-Port Binding
- 512 Entries
- DHCPv6 Snooping
- ND Detection
- IPv6 Source Guard: 100 Entries
- DoS Defend
- Static/Dynamic Port Security
- Up to 64 MAC addresses per port
- Broadcast/Multicast/Unicast Storm Control
- Kbps/ratio control mode
- 802.1X
- Port base authentication
- Mac base authentication
- VLAN Assignment
- MAB
- Guest VLAN
- Support Radius authentication and accountability
- AAA (including TACACS+)
- Port Isolation
- Secure web management through HTTPS with SSLv3/TLS 1.2
- Secure Command Line Interface (CLI) management with SSHv1/SSHv2
- IP/Port/MAC based access control
- IPv6 Dual IPv4/IPv6
- Multicast Listener Discovery (MLD) Snooping
- IPv6 ACL
- IPv6 Interface
- Static IPv6 Routing
- IPv6 neighbour discovery (ND)
- Path maximum transmission unit (MTU) discovery
- Internet Control Message Protocol (ICMP) version 6
- TCPv6/UDPv6
- IPv6 applications
- DHCPv6 Client
- Ping6
- Tracert6
- Telnet (v6)
- IPv6 SNMP
- IPv6 SSH
- IPv6 SSL
- Http/Https
- IPv6 TFTP
- 16 IPv4/IPv6 Interfaces
- Static Routing
- 48 static routes
- Static ARP
- 128 Static Entries
- Proxy ARP
- Gratuitous ARP
- DHCP Server
- DHCP Relay
- DHCP Interface Relay
- DHCP VLAN Relay
- DHCP L2 Relay
- Automatic Device Discovery
- Batch Configuration
- Batch Firmware Upgrading
- Intelligent Network Monitoring
- Abnormal Event Warnings
- Unified Configuration
- Reboot Schedule
- MIB II (RFC1213)
- Interface MIB (RFC2233)
- Ethernet Interface MIB (RFC1643)
- Bridge MIB (RFC1493)
- P/Q-Bridge MIB (RFC2674)
- RMON MIB (RFC2819)
- RMON2 MIB (RFC2021)
- Radius Accounting Client MIB (RFC2620)
- Radius Authentication Client MIB (RFC2618)
- Remote Ping, Traceroute MIB (RFC2925)
- Support TP-Link private MIB
- Yes, requires OC300/OC200 (sold separately), Omada Cloud-Based Controller, or Omada Software Controller
- Omada Cloud-Based Controller
- Omada Hardware Controller (OC300/OC200 - sold separately)
- Omada Software Controller
- Yes, requires OC300/OC200 (sold separately), Omada Cloud-Based Controller, or Omada Software Controller
- Yes (requires Omada Cloud-Based Controller)
- Web-based GUI
- Command Line Interface (CLI) through the console port, telnet
- SNMP v1/v2c/v3
- Trap/Inform
- RMON (1,2,3,9 groups)
Security
IPv6
L3 Features
Advanced Features
MIBs
Management
Omada App
Centralised Management
Cloud Access
Zero-Touch Provisioning
Management Features