ExtraSmart tm Switch Delivers Auto DoS Prevention
and Auto VoIP to SMB.SB Networks

| ZyXEL Product |
Part Number |
|
| ZyXEL ES-1528 |
| ES-1528 28-port Web-managed Ethernet Switch |
#ES1528
List Price: $219.99
Our Price: $171.00 |
|
Features:
- Auto DoS attack prevention
- Auto VoIP
- 12.8 Gbps non-blocking switching fabric
- Flexible 4 GbE uplink interfaces
- IEEE 802.3ad static port aggregation
- Streamlined web-based interface
- IEEE 802.1Q VLAN
- Port security
- IEEE 802.1p with 4 priority queues
- WRR and SPQ queuing algorithms
Benefits:
Robust Design Powers SMB/SB Networks
ZyXEL ES-1528 comes with 24 Fast Ethernet copper ports plus four
Gigabit uplinks (two 1000Base-T ports and two SFP slots) that fire
up the non-blocking connection power to 12.8Gbps on SMB/SB networks,
and its multi-function design fits into copper or fiber networks
easily. By utilizing 4G uplinks and port aggregation, bandwidth
on critical paths can be expanded flexibly by merging multiple traffic
pipelines into a logical one to dramatically improve network stability.
ExtraSmartTM- Evolution New Smart Power
While many legacy Web Smart switches improve manageability, complexity
is still a challenge. For most SMBs, inadequate IT expertise and
complicated configurations are the major obstacles to overcome before
getting connected. Powered by the newest hardware platform with
smart ACL technology, "Auto DoS Attack Prevention" and "Auto VoIP"
provides hassle-free operations required by a network with strict
security protection and VoIP-friendliness. In addition, the ZyXEL
ES-1528 comes with a streamlined and intuitive Web-GUI for features
demanded by SMB; such as 802.1Q VLAN, 802.1p traffic priority and
static port aggregation. Requiring no awkward configurations or
bulky user guide, the ES-1528 provides valuable features and convenience
for SMBs.
Extra Secure - Auto DoS Attack Prevention
ZyXEL is highly aware that network security is a top priority
for SMBs and have therefore enable the ES-1528/ES1552 to effectively
combat DoS attacks. Security is the top priority for SMB/SB networks.
Equipped with Auto DoS Attack Prevention, the ES-1528 is capable
of fighting against ubiquitous DoS attacks. A few mouse clicks is
all it takes to initiate protection, handling the once-complicated
ACL setting and dramatically reducing operational issues. Operating
efforts dramatically. ES-1528 supports 802.1Q VLAN for traffic isolation,
as well as Static MAC forwarding and dynamic ARP to establish a
strictly protected network.
Extra QoS – Auto VoIP Optimization
VoIP is a key to differentiate business competitiveness. It usually
requires IT expertise to optimize a network for VoIP applications.
With the emergence of the "Auto VoIP", however, the ES-1528 can
identify VoIP packet patterns and grant the highest priority to
establish a VoIP-friendly communication automatically.
Auto VoIP offers IP telephony without configuration headaches.
Features like four priority queues and a WFQ scheduling algorithm
allows users to optimize network bandwidth usage and Quality of
Services. In terms of bandwidth management, users can choose from
several options and pick the most appropriate with just a mouse
click.
|
Specifications
|
Standard
Compliance:
- IEEE 802.3 10Base-T Ethernet
- IEEE 802.3u 100 Base-Tx Ethernet
- IEEE 802.ab 1000 Base-T Ethernet
- IEEE802.3ah 1000Base-BX
- IEEE 802.3z
- IEEE 802.3x Flow control
- IEEE 802.1p Class of service, priority protocols
- IEEE 802.1Q VLAN tagging
- IEEE 802.3ad static port aggregation
Performance:
- 12.8Gbps non-blocking switching fabric
- Switching Forwarding Rate 9.6Mpps (1488000pps/1000Base-T/1000Base-X,
148800pps/100Base-TX)
- Wire-speed performance
MAC and Packet Buffer
- 8K MAC entries
- 512KB Packet Buffer
Traffic Management and Qos:
- Rate Limiting: Port-based bandwidth control
with 7 grades 64kbps, 256 kbps, 1Mbps, 10Mbps, 64Mbps,
100Mbps, 1Gbps)
- Port-based egress traffic shaping
- Broadcast Storm Control
- Congestion control on all ports
- IEEE 802.1p with 4 priority queues per port
for different types of traffic
- WRR (Weighted Round Robin)/SPQ scheduling algorithm
Auto VoIP
Auto VoIP module empowered by smart ACL to explicitly
matches VoIP streams and assign the highest priority
for following VoIP packets
- SIP–Session Initiation Protocol
- MGCP–Media Gateway Control Protocol
- SCCP–Skinny Client Control Protocol
Link Aggregation
- IEEE 802.3ad static port aggregation
- Up to 6 aggregation groups, per group supports
up to 8 ports
|
User Security
and Authentication
- Specific MAC forwarding per port: only
specified MAC addresses can access the network (Port
Security)
- IEEE 802.1Q tagged VLAN
- 256 static VLAN, up to 4K dynamic VLAN
- Dynamic ARP
Auto DoS Attack Prevention
Denial of Service (DoS) attacks try to disable a
device or network so users no longer have access to
network resources. Auto DoS Attack Prevention module
empowered by smart ACL to explicitly matches attack
types in switches and prevent network outrage
Types of DoS Attacks can be prevented
- Land Attacks – These attacks result from
sending a specially crafted packet to a machine
where the source host IP address is the same as
the destination host IP address. The system attempts
to reply to itself, resulting in system lockup.
- Blat Attack – These switch result from
sending a specially crafted packet to a machine
where the source host port is the same as the destination
host port. The system attempts to reply to itself,
resulting in system lockup.
- SYNFIN scans – SYNchronization (SYN,
ACKnowledgement (ACK) and FINish (FIN) packets are
used to initiate, acknowledge and conclude TCP/IP
communication sessions. The following scans exploit
weakness in the TCP/IP specification and try to
illicit a response from a host to identify ports
for an attack:
- Scan SYNFIN –SYN and FIN bits are set in
the packet.
- Xmascan – TCP sequence number is zero and
the FIN, URG and PSH bits are set.
- NULL scan – TCP sequence number is
zero and all control bits are zeros. SYN with
port ‹ 1024 –
- SYN packets with source port less than 1024.
- Smurf Attacks – This attack uses Internet
Control Message Protocol (ICMP) echo requests packets
(pings) to cause network congestion or outrages.
- Ping Flooding – This attack floods the
target network with ICMP packets.
- SYN/SYN-ACK Flooding – This attack floods
the target network with SYN or SYN/ACK packets.
|
Network Administration Security
- Password required for administrators
Network Management
- Web-based management
- SNMP v1, v2
- IP management: static IP
- RMON
- Port mirroring: supports Source/Destination/Both
port mirroring
- Cable Diagnostic
MIB Information
- RFC1213MIBII (System, Interface)
- RFC1398 (Ether-like)
Hardware Specifications
- Support of auto-negotiation
- Support of auto MDI/MDI-X,
- Ports: 24 10/100BASE-T, RJ-45 ports, 2 1000Base-T
ports and 2 SFP open slots
Power Requirements
- Input voltage of AC: 100-240VAC, 50/60Hz
- Max power rating of AC: 11.6 Watt
Physical Specifications
- Dimensions: 17" x 5" x 1.75" 4.3lbs, 438 (W)
x 130 (D) x 44.5 (H) mm
- Weight: 1.95kg
Environmental Specifications
- Operating temperature: 32°F~113°F, 50°F~158°,
F0°C~45°C
- Storage temperature: - 10°C~70°C Operating humidity:
10%~90%, (non-condensing)
Certification
- UL 60950-1
- CSA 60950-1
- EN 60950-1
- IEC 60950-1
|
| ZyXEL Product |
Part Number |
|
| ZyXEL ES-1528 |
| ES-1528 28-port Web-managed Ethernet Switch |
#ES1528
List Price: $219.99
Our Price: $171.00 |
|
|