TP Link SG3428XMP JetStream 24-Port Gigabi and 4-Port 10GE SFP L2 Managed Switch with
Product Ref: TL-SG3428XMP
The TP-Link TL-SG3428XMP JetStream 24-Port Smart Managed Rackmount Gigabit PoE+ Switch provides high performance, powerful L2 and L2+ features like static routing, enterprise-level QoS, advanced security strategies and a bundle of ISP features. The IP-MAC-Port Binding (IMPB) and Access Control List (ACL) functions protect against broadcast storm, ARP and Denial-of-Service (DoS) attacks, etc. Quality of Service (QoS, L2 to L4) provides enhanced traffic management capabilities to move your data smoother and faster. The OAM function helps facilitate network management. Moreover, the easy-to-use web management interfaces, along with CLI, SNMP and Dual Image, mean faster setup and configuration with less downtime. The TL-SG3428XMP provides a reliable, secure solution for enterprise, campus and ISP networks.
Technical Specifications
Hardware Features
Interface
- 24 x 10/100/1000 Mbps RJ45 Ports
- 4 x 10G SFP+ Slots
- 1 x RJ45 Console Port
- 1 x Micro-USB Console Port
Fan Quantity
- 2
Power Supply
- 100-240 V AC~50/60 Hz
Dimensions (W x D x H)
- 440 x 330 x 44 mm (17.3 x 13.0 x 1.7 in.)
Mounting
- Rack Mountable
Max Power Consumption
- 34.4 W (110V/60Hz) (no PD device connected)
- 465.8 W (110V/60Hz) (with 384 W PD device connected)
Max Heat Dissipation
- 117.38 BTU/h (110 V/60 Hz) (no PD device connected)
- 1589.31 BTU/h (110 V/60 Hz) (with 384 W PD device connected)
Performance
Switching Capacity
- 128 Gbps
Packet Forwarding Rate
- 95.23 Mpps
MAC Address Table
- 16 K
Jumbo Frame
- 9 KB
Software Features
Quality of Service
- 8 priority queues
- 802.1p CoS/DSCP priority
- Queue scheduling
- SP (Strict Priority)
- WRR (Weighted Round Robin)
- SP+WRR
- Bandwidth Control
- Port/Flow based Rating Limiting
- Smoother Performance
- Action for Flows
- Mirror (to supported interface)
- Redirect (to supported interface)
- Rate Limit
- QoS Remark
L2 and L2+ Features
- Link Aggregation
- static link aggregation
- 802.3ad LACP
- Up to 8 aggregation groups, containing 8 ports per group
- Spanning Tree Protocol
- 802.1d STP
- 802.1w RSTP
- 802.1s MSTP
- STP Security: TC Protect, BPDU Filter, Root Protect
- Loopback Detection
- Port based
- VLAN based
- Flow Control
- 802.3x Flow Control
- HOL Blocking Prevention
- Mirroring
- Port Mirroring
- CPU Mirroring
- One-to-One
- Many-to-One
- Tx/Rx/Both
L2 Multicast
- IGMP Snooping
- IGMP v1/v2/v3 Snooping
- Fast Leave
- IGMP Snooping Querier
- IGMP Authentication
- IGMP Authentication
- MLD Snooping
- MLD v1/v2 Snooping
- Fast Leave
- MLD Snooping Querier
- Static Group Config
- Limited IP Multicast
- MVR
- Multicast Filtering: 256 profiles and 16 entries per profile
VLAN
- VLAN Group
- Max 4K VLAN Groups
- 802.1Q Tagged VLAN
- MAC VLAN: 7 Entries
- Protocol VLAN: Protocol Template 16, Protocol VLAN 16
- Private VLAN
- GVRP
- VLAN VPN (QinQ)
- Port-Based QinQ
- Selective QinQ
- Voice VLAN
Access Control List
- Time-based ACL
- MAC ACL
- Source MAC
- Destination MAC
- V
Security
- IP-MAC-Port Binding
- 512 Entries
- DHCP Snooping
- ARP Inspection
- IPv4 Source Guard: 100 Entries
- IPv6-MAC-Port Binding
- 512 Entries
- DHCPv6 Snooping
- ND Detection
- IPv6 Source Guard: 100 Entries
- DoS Defend
- Static/Dynamic Port Security
- Up to 64 MAC addresses per port
- Broadcast/Multicast/Unicast Storm Control
- kbps/ratio control mode
- 802.1X
- Port base authentication
- Mac base authentication
- VLAN Assignment
- MAB
- Guest VLAN
- Support Radius authentication andaccountability
- AAA (including TACACS+)
- Port Isolation
- Secure web management through HTTPS with SSLv3/TLS 1.2
- Secure Command Line Interface (CLI) management with SSHv1/SSHv2
- IP/Port/MAC based access control
IPv6
- IPv6 Dual IPv4/IPv6
- Multicast Listener Discovery (MLD) Snooping
- IPv6 ACL
- IPv6 Interface
- Static IPv6 Routing
- IPv6 neighbour discovery (ND)
- Path maximum transmission unit (MTU) discovery
- Internet Control Message Protocol (ICMP) version 6
- TCPv6/UDPv6
- IPv6 applications
- DHCPv6 Client
- Ping6
- Tracert6
- Telnet (v6)
- IPv6 SNMP
- IPv6 SSH
- IPv6 SSL
- Http/Https
- IPv6 TFTP
L3 Features
- 16 IPv4/IPv6 Interfaces
- Static Routing
- 48 static routes
- Static ARP
- 128 Static Entries
- Proxy ARP
- Gratuitous ARP
- DHCP Server
- DHCP Relay
- DHCP Interface Relay
- DHCP VLAN Relay
- DHCP L2 Relay
Management
- Web-based GUI
- Command Line Interface (CLI) through the console port, telnet
- SNMP v1/v2c/v3
- Trap/Inform
- RMON (1,2,3,9 groups)
- SDM Template
- DHCP/BOOTP Client
- 802.1ab LLDP/LLDP-MED
- DHCP AutoInstall
- Dual Image, Dual Configuration
- CPU Monitoring
- Cable Diagnostics
- EEE
- Password Recovery
- SNTP
- System Log
Advanced Features
- Support Omada Hardware Controller (OC200/OC300 - sold separately, see accessories tab), Software Controller, Cloud-Based Controller
- Automatic Device Discovery
- Batch Configuration
- Batch Firmware Upgrading
- Intelligent Network Monitoring
- Abnormal Event Warnings
- Unified Configuration
- Reboot Schedule
- ZTP (Zero-Touch Provisioning)
MIBs
- MIB II (RFC1213)
- Interface MIB (RFC2233)
- Ethernet Interface MIB (RFC1643)
- Bridge MIB (RFC1493)
- P/Q-Bridge MIB (RFC2674)
- RMON MIB (RFC2819)
- RMON2 MIB (RFC2021)
- Radius Accounting Client MIB (RFC2620)
- Radius Authentication Client MIB (RFC2618)
- Remote Ping, Traceroute MIB (RFC2925)
- Support TP-Link private MIB
Other Specifications
Certification
- CE, FCC, RoHS
Environment
- Operating Temperature: 0ºC – 45ºC (32ºF
- IP-MAC-Port Binding
Product Features
- Gigabit Ports
Twenty-four (24) 10/100/1000 Mbps RJ45 Ports ensure high-speed data transfer. - 10GbE Lightning-Fast Uplink
Four (4) 10 Gbps SFP+ slots enable high-bandwidth connectivity and non-blocking switching capacity. - 384 W PoE Budget
Twenty-four (24) 802.3at/af-compliant PoE+ ports with a total power supply of 384 W. - Integrated into Omada SDN
Features include Zero-Touch Provisioning (ZTP), Centralised Cloud Management, and Intelligent Monitoring. - Centralised Management
Cloud access and Omada app for ultra convenience and easy management. - Static Routing
Helps route internal traffic for more efficient use of network resources. - Robust Security Strategies
IP-MAC-Port Binding, ACL, Port Security, DoS Defend, Storm control, DHCP Snooping, 802.1X, Radius Authentication, and more. - Optimise Voice and Video Applications
L2/L3/L4 QoS and IGMP snooping. - Standalone Management
Web, CLI (Console Port, Telnet, SSH), SNMP, RMON, and Dual Image bring powerful management capabilities.