COMMANDO Soldier C2000 48GE PoE+,

SKU: C2000-48GP+8CF
In Stock
UGX 2,827,000
In Stock
Add to Wishlist
Add to Wishlist
Add to Wishlist
Add to Wishlist
Compare

COMMANDO Soldier C2000 48GE PoE+, 4GE/4SFP Combo Uplinks, 800W, Managed Switch.

Description

COMMANDO Soldier C2000 Series Switches are fully managed, perpetual PoE/PoE+/PoE++ IEEE 802.2af/at/bt (15.4W, 30W, 90W) compliant Gigabit Ethernet L2+ switches having power budget up to 800 W with network resiliency and high availability, delivering robust performance with intelligent switching, scheduling and distribution of Power as per requirement of PD which make PoE/PoE+/PoE++ available on maximum ports despite lower PoE power budget and perpetual PoE/PoE+/PoE++ for no power downtime required for growing networks. This series switches are easy to deploy, use, manage and designed exclusively for the networking needs of growing businesses. The security features equipped with today’s advance networking hardware and software technology. This Series switches can be deployed in harsh environments to deliver hassle free mission-critical network services and surveillance requirements.

COMMANDO Soldier C2000 Series Switches are fixed configuration, with flexible 1G or 10G Fiber/ 1GE or 10GE copper Ethernet fixed Uplink that provide enterprise-class access for campus and branch applications. Designed for the digital workplace, these are optimized for today’s mobile and IoT needs. These switches are powerful and flexible enough for users to deploy PoE++/PoE+/PoE standard supplies up to 90W/30W/15.4W per port with power budget up to 800W, Backward compatible power per port which is ideal for PD applications using high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting devices over longer distances up to 250 meters. The 90W PoE++, IEEE 802.3bt technology drives high-power infrastructure for smart building systems, safe cities, thin clients, and a lot more. Facility managers and building owners can adopt the standard perpetual PoE/PoE+/PoE++ to make network future-proof all PoE/PoE+/PoE++ networks requirements. With outcome lower installation and wiring costs without changing network hardware. It provides easy device rack and wall-mounting, on boarding, configuration, monitoring, and troubleshooting. These fully managed switches can provide advanced L2+ and basic Layer 3 features as well as supports IEEE 802.3af compliant PoE (Power over Ethernet), 802.3at compliant PoE+ (Power over Ethernet plus) and IEEE802.3bt type-4 Ultra PoE++ (Power over Ethernet plus plus). Each switchport is capable to deliver 15.4W PoE/ 30W PoE+ or 15.4W PoE/ 30W PoE+/90W PoE++ power on all ports as per switch model with power budget up to 800W along with automated power (ON/OFF) scheduling. Switches are PoE/PoE+/PoE++ capable to provide power across all access ports for wireless APs, security cameras, and other IoT devices. Designed for operational simplicity to lower total cost of ownership, they enable scalable, secure, and energy-efficient business operations with intelligent and automated services.

It also provides a convenient and cost-efficient wired access rack and wall mountable solution that can be quickly set up with Zero Touch Provisioning. These switches deliver enhanced application, visibility, network reliability, network resiliency and high availability.

It has wire-speed back haul bandwidth capacity with fixed uplinks 1GE or 10GE copper/ 1G or 10G Fiber. This series also offers robust QoS to optimize traffic on your business network, these switches provide (Port-based/802.1p/DSCP) QoS to keep latency-sensitive video and voice traffic jitter-free moving smoothly. Additionally, Port-based, Tag-based VLAN, Voice VLANs, Surveillance VLAN can improve QoS and enhance security to meet network requirements. This series switches also have provisioning of QoS, Static routing, IPV6 features, multicasting, and Security. Moreover, with its innovative energy-efficient technology, can save up to 58% of power consumption, making it an Eco-friendly perfect solution for your business network.

Product Highlights

COMMANDO Soldier C2000 Series Switches contain 8, 24 and 48 Gigabit Ethernet perpetual PoE/PoE+/PoE++ models as well as non-PoE port-based models along with 1/10GE Ethernet Copper-based or 1/10G Fiber Ports (SFP/SFP+) fix Uplinks. This series also has 8, 24 & 48 Fiber SFP Ports models. Switches in COMMANDO Soldier C2000 Series Switches contains 24 & 48 Gigabit Ethernet PoE/PoE+/PoE++ models have up to 90W Per Port power budget and this series switches have total power budget 600W and 800W to meet enhance PoE/PoE+/PoE++ requirement of IP Phone/AP/LWAP/Wi-Fi Access Point and any other PoE/PoE+/PoE++ enabled devices. This series offers various Layer 2+ Ethernet functions (VLAN, QoS, MAC ACL, Port Security, IPv6, LACP, port mirroring, GVRP and many more). These Gigabit Ethernet switch enables home and office users to easily connect and supply power to high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting. It also provides the opportunity to add additional Ethernet devices like computers, printers, and Network Attached Storage (NAS) onto a network. This compact PoE/PoE+/PoE++ switch operates quietly, making it ideal for use in virtually any room or office.

L3 Highlights

•Layer 3 Static Routing up to 512 static route entries along with DHCP server.
•DHCP server, Client, Relay along with DHCP Snooping, DHCP Snooping option82.
•L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication.
• SNMP v1/v2c/v3 and RMON remote monitoring.
• IGMP v1/v2/v3 and MLD v1/v2 snooping, providing advanced multicast filtering and optimization.
•Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications.
•Provides IP-MAC Binding, Port Security, Storm control and DHCP Snooping which protect against broadcast storms, ARP attacks.
•Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
•Auto “denial-of-service” (DoS) prevention.
•Easily troubleshoot any problem in network with Ping, trace route, various show and debug command and WEB GUI based real time status of device.

L2+/L2 Highlights

•Store-and-forward Switching Scheme.
•Solid performance with non-blocking architecture, up to 8000 entries MAC Address Table for 8, 24 ports Switch models and 16K-entry L2 MAC table 48 port Switch models.
•with 4-way hashing algorithm, 4094 VLANs, 1024 to 2K+256 ACL entries, 512 static routes, Maximum packet length 10000 bytes and Jumbo frames of 10000 to 12000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•Security with 802.1X, Serial Port Analyzer (SPAN) and Bridge Protocol Data Unit (BPDU) Guard.
•Independent 512 to 4000-entry L2/IP Multicast table for multicast function.
•Advanced L2+ switching and security features like IP-MAC-Port-VID Binding, Static/Dynamic Port Security (MAC-based), DoS defend feature, Dynamic ARP Inspection.
•Advanced VLAN support for better network segmentation.
•Port mirroring with 4-sets of port mirrors for network monitoring.

Other Highlights

•8, 24 and 48 ports with auto-negotiation 10/100/1000Mbps perpetual and intelligent PoE/PoE+/PoE++ & Non PoE Models along with 8, 24 and 48 Fiber SFP Ports Models.
•Extra 2/4/6 Ports with fixed uplinks 1G or 10G Fiber/ 1GE or 10GE Copper.
•Additional DC input power to enable UPS to mitigate power supply failures and support critical network infrastructure
•90W (PoE/PoE+/PoE++) or 30W(PoE/PoE+) Max Per port with backward compatible power.
•Perpetual PoE/PoE+/PoE++ provides non-stop PoE/PoE+/PoE++ power. Switch can continue to provide power during configuration and reboot, the PDs will not loss power while reloading.
•Intelligent PoE/PoE+ power supply transmission is more reliable as well as more PDs can be connected due to design of robust network transformer which uses high current.
•Various power budget options of 600W/800W for 24 & 48 ports PoE/PoE+/PoE++ Switch models.
•All ports capable of PoE/PoE+/PoE++ up to 48 ports of full Power over Ethernet capability.
•PD detection will automatically detect and provide required power for your PoE/PoE+/PoE++ devices.
•Easily configurable PoE/PoE+/PoE++ scheduling to automate the PoE/PoE+/PoE++ requirements in networks.
•Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis.
•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB for 8, 16, 24 ports switch models and CPU Dual Core having frequency 700 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 12MB for 48 ports switch models.
•All ports capable of Gigabit Ethernet speed.
•Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX).
•Surge Protection up to ±6KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control Fan to optimize cooling and noise. Automatic Temperature Controlled Fan speed using temperature sensor with bilateral heat dissipation.
•Long life electrolytic capacitance to increase the operational life of switches.
•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Rack and Wall mount design that enables to mounts in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with device. Which enables horizontal surface mounting, wall mounting and having durable robust metal body.
•RJ45 Gold plated with 3U thickness, power and ports status/ activity and PoE Max indicator LED lights.
•Supports Energy Efficient Ethernet (IEEE802.3az), Innovative energy-efficient technology which saves up to 56% of power consumption for energy saving in the future.
•Easy to manage device with Web based Graphical User Interface (GUI), Command-Line Interface (CLI) – Telnet / SSH / HTTPS with RJ45 or console cables.
•With Zero Touch Provisioning: A simple, secure, unified plug and play.
•Dual image feature for reduced down-time when the firmware is being upgraded or downgraded or image file getting corrupted.
•WEB/CLI managed modes, SNMP, RMON bring abundant management features
•Supports Cable Diagnostics by Web GUI as well as CLI.
•Watchdog function used to protect the system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.
•RoHS Compliant with most of the packaging material can be recycled and reused.
• Comes with up to Five years extended warranty.

 

Features And Benefits

DHCP Server

Multiple IPv4 DHCP pools with Inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.

Intelligent PoE/ PoE+/PoE++ with Automated Scheduling

It automates the PoE/PoE+ /PoE++ requirements in networks on per port basis. Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+/PoE++ as per Scheduled time which makes them intelligent.

Perpetual POE/PoE+

With Perpetual PoE/PoE+, no power downtime to connected PD devices. PD devices remains power ON even when any software process is not running on the switch. Provides non-stop PoE/PoE+ power and continue to provide power during configuration and reboot, the PDs will not lose power while reloading. The Perpetual POE provides uninterrupted power to connected powered device (PD) even when the switch is booting to make it highly available network without any interruptions.

Ultra PoE++ (IEEE 802.3bt 90W)

COMMANDO BT series Switches with PoE+/Ultra PoE++ standard supplies up to 90W of power per port ideal for applications using high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting, which is useful for small to medium-sized businesses, Internet cafes, hotels, schools, and others. They are easy to install and maintain and provide PoE+/Ultra PoE++ power to high power demanding devices, helping customers build secure, reliable, and high-performance networks. It is an economical way for SOHO and Small-to-Medium Businesses (SMB) to take advantage of Gigabit Ethernet speeds with copper/fiber ports as well as built-in PoE+/Ultra PoE++ IEEE 802.3at/IEEE802.3bt type-4 (90W) while reducing energy consumption and minimizing noise with built-in PoE+/Ultra PoE++ IEEE 802.3at/IEEE802.3bt type-4 (90W) with circuit protection preventing power interference between ports. In a nutshell, 90W PoE++ means affordable power for more power-hungry devices, more business and future ready.

Dual Image

It can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.

Watchdog Function

This ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

L3 Features

This series is having L3 features with IPv4/IPv6 with 512 static routing entries, QoS, ACLs (Port based/ IP based/ MAC Based), DHCP Server and Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay.

L2+/L2 Features

This series is having advance L2+/L2 features like Port aggregation up to 8 ports, VLAN, Voice VLAN, GVRP, 802.1X authentication, centralized MAC authentication, Guest VLAN, RADIUS authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, Preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Flexible Software features provides wide range of Layer 2 functions like VLAN, Multicasting, Quality of Service (QoS), Security.

Secure Networking

IEEE 802.1X port-based access control with surveillance VLAN, Port Security, Protected Port which also Prevent ARP Spoofing. L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication. ACL, L4 to L2 feature restricts access to sensitive network resources. DHCP Snooping ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP. IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms. The switches support ARP attack and DoS attack prevention to safeguard the network.

Multicast

IGMP Snooping (v1, v2, v3), Multicast Listener Discovery (MLD) (v1/v2), Multicast VLAN Registration (MVR) designed for distribution of multicast traffic across segregated access networks which enables more efficient distribution of multicast streams in Layer 2 network.

QoS Features

Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications. Access Control List based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

10G Uplinks

10G copper/fiber Uplink supports high speed networking requirement and reduces copper cabling investment for LACP and LAGs and improves network backbone. It supports high-speed access to the network backbone or data center environment. This provides great resiliency, relieves congestion associated with bandwidth-intensive applications, and guarantees smooth hassle-free data transmission.

Easy Management with CLI

With familiar and popular Command Line interface (CLI), there is no need for engineers to be hired or additional resources to be spent on training and/or learning the switch CLI. The command set are familiar and well known in the industry. Web Graphical User Interface (Web GUI), Command Line interface (CLI), RADIUS/TACACS+ with industry standard CLI and easy to use Web GUI. Management is made easy via a Web GUI or industry-standard Command Line Interface (CLI), with administration traffic protected via SSL or SSH encryption. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur.

Easy to Use

It easy to use and manage and Plug-and-Play that requires no configuration, so setup is simple and hassle-free. Auto MDI/MDI-X crossover on all ports eliminate the need for crossover cables or uplink ports. The switches range from 24 & 48 Gigabit Ethernet perpetual PoE/PoE+/Ultra PoE++ models as well as non-PoE models along with 1G/10GE copper-based or 1G/10G Fiber Ports Uplinks. This series also has 8, 24 & 48 Fiber SFP Ports models. It contains 24 & 48 Gigabit Ethernet PoE/PoE+/Ultra PoE++ models have up to 30W (PoE/PoE+) or 90W Ultra PoE++ Per Port power budget and this series switches have total power budget up to 800W to meet PoE/PoE+/Ultra PoE++ needs. Its compact size makes it ideal for rackmount/wall-mount with limited space. Dynamic LED lights provide real-time work status display and basic fault diagnosis.

Lifetime Free Software Licensing and Upgrades

SoldierOS Software license and Upgrades are free for lifetime. Users do not have to worry about switch license expiring and software getting outdated (which is constant concern and worry of few other brands). This series has improved HTTP base firmware upgrade as well as CLI based upgrades which are freely available to all users without any cost or license fee for lifetime. COMMANDO Soldier C2000 Series Switches are easy to install, configure, monitor, and troubleshoot. It significantly reduces cost of administration and Total Cost of Ownership (TCO).

Auto MDIX Capabilities

Auto sensing/Auto PoE/PoE+/PoE++ 10/100/1000 ports with auto MDIX capabilities which also removes speed and duplex mismatches automatically as well as covers larger physical distance with copper pairs compared to other brands best switches.

Flexible Service Control

With various ACLs to flexibly control ports. It also supports Port-based VLAN assignment, MAC address-based VLAN assignment, Protocol-based VLAN assignment, and Network segment-based VLAN assignment. These secure and flexible VLAN assignment modes are used in networks where users move frequently. It also supports GARP VLAN Registration Protocol (GVRP), which dynamically distributes, registers, and propagates VLAN attributes to ensure correct VLAN configuration and reduce network administrator workloads. This series switches supports SSH v1/v2/v3, RMON, port-based traffic statistics, LLDP/LLDP-MED.

Compact Design with Flexibility of additional ports

The switches provide additional deployment flexibility, fiber connectivity as well as combo options for easy expansion of your networks. So, you can directly connect to a high-performance storage server or deploy a long-distance uplink to another switch.

Perfect for Noise-Sensitive Environments

These are the ideal solution for the most advanced small and medium organizations looking for the best combination of features, performance, and value. These switches are purposely designed for converged networks where voice, video, data are all carried on a single network platform. This series comes with fan/fan-less switches models along with Small form-factor, fan/fan-less design for silent operation. Perfect for noise sensitive environments. Fan based Switches have Temperature- and load-based fan-speed control combines accurate monitoring with minimized system acoustic noise. The Fan based switches also feature built-in smart fans that monitor and detect temperature changes, adjusting the fan speed for maximum efficiency. At lower temperatures, the fans run at a lower speed, reducing both the power consumption and noise output of the switch.

Zero Maintenance

Cost efficient switches, with a reasonable PoE/PoE+/PoE++ power budget up to 800W along with PoE/PoE+/PoE++ configurable scheduler to automated Power ON/OFF connected PoE/PoE+/PoE++ devices as per scheduled timing with Cost of ownership is less compared to other products of same features as well as zero maintenance. Maximum power reduction for ongoing operation cost savings.

Easy Debugging and Troubleshooting

Ping, Traceroute, SNMP, RMON, Web based real time Switch ports monitoring with WEBUI and CLI can easily troubleshoot any problem in network with various show and debug commands.

Longer Distance Coverage

State of art quality switches that can serve real time high-speed performance which covers longer physical distance up to 250 meters with copper pairs compared to other brands.

Warranty:

The switches come with up to Five-year extended warranty.

 

Software

The COMMANDO SoldierOS IP Base switches provides advanced L2 switching and security features along with ACLs (MAC/IP/Port) based IPV4 and IPV6, L4/L3/L2 QoS , Static Routing up to 512 static route entries, Spanning Tree Protocol (IEEE802.1D STP , IEEE802.1w RSTP, IEEE802.1s MSTP) SNMP v1/v2c/v3, IGMP and MLD snooping, QinQ and selective QinQ, VLAN mapping, Voice VLAN, GVRP, Advanced multicast filtering, and IGMP snooping that optimize voice and video applications, DHCP Server, DHCP Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay, RADIUS/TACACS+ authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding.

Management is made easy via a web-based Graphical User Interface (GUI) access via HTTP/HTTPS or industry-standard Command Line Interface (CLI) via Console/ Telnet with administration traffic protected via SSL or SSH encryption. This CLI is well known and understood by all professionals in networking field. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur.

It provides a complete set of security features including L4/L3/L2 multi-layer Access Control Lists and 802.1x user authentication via TACACS+ and RADIUS servers. This ensures the network is protected from unauthorized access. It also offers extensive VLAN support including GVRP and 802.1Q VLAN to enhance security and performance. A robust set of L4/L3/L2 based QoS/CoS solutions help ensure that critical network services such as VoIP and video conferencing are served with priority. Bandwidth Control can be flexibly set for each port using predefined thresholds to assure a committed level of service for end users. For advanced applications, flow-based bandwidth control allows easy fine-tuning of service types based on specific IPV4/IPV6 addresses or protocols that provides Security, Performance & Availability.

Access control lists (ACLs) perform operation of filtering (IPv4/IPv6) Packet/MAC/port-based filtering to control the movement of segments/packets/frames through a network. ACL filtering provides security by limiting the access of traffic into a network, restricting user and device access to a network, and preventing traffic from leaving a network. Time range-based ACL, VLAN-based ACL, Bidirectional ACL. Packet filtering at Layer 4 through layer 2 Traffic classification based on source IPv4/IPv6 addresses and source MAC addresses, destination MAC addresses.

L4/L3/L2 Quality of service (QoS) refers to any technology that manages data traffic to reduce packet loss, latency, and jitter on the network. QoS controls and manages network resources by setting priorities for specific types of data on the network.

Static routing is a form of routing that occurs when these switches use a manually configured 512 IPV4 static routing entries. Static routing has three primary uses:

•Ease of routing table maintenance in smaller networks with little growth or change. Routing to and from connected networks.
•A network accessed by a single route, and the router has only one neighbor.
•Single default route to represent a path to any network.

It provides GUI based PoE/PoE+/PoE++ scheduling Premium feature. PoE/PoE+ /PoE++ Scheduling is a feature which allows you to specify the amount of time that power is delivered to a PoE/PoE+/PoE++ port automatically. This can be used to save power when devices are not in use, or as a security feature to prevent wireless access from being available outside of business hours. It is possible to set a schedule PoE/PoE+/PoE++ at a start time, an end time and which ports the PoE/PoE+/PoE++ schedule applies to. The PoE/PoE+/PoE++ device turn ON and OFF as per the PoE/PoE+/PoE++ schedule time.

Software Highlights:

• DHCP Server for multiple IPv4 DHCP pools with inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.
• Intelligent PoE/ PoE+/PoE++ with Intelligent scheduling to automate the PoE/PoE+/PoE++ requirements in networks. Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+/PoE++ as per Scheduled time which makes them intelligent.
• Perpetual POE/PoE+/PoE++ for no power downtime to connected PD devices even when any software process is not running on the switch. Provides non-stop PoE/PoE+/PoE++ power and continue to provide power during configuration and reboot.
• Dual Image can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.
• Watchdog function ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

Layer 3 Switching

• Static ARP as manually added IP network address to the hardware MAC address of a device as well dynamic ARP entries.
• Static Route, Default route and Dynamic connected route learning. Static Route, Default route, connected route up to 512 route entries are supported.
• Access Control List Access Control Lists (ACLs) can be used to deny and allow packets and provides flexible access control based on Standard IPV4, IPV6, MAC based, Management and also Port based Filtering.
• Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
• QoS Features like Scheduling Mode: WRR, SP, which are Based on Port based on 802.1p DSCP (DiffServ), COS and DSCP.

Advanced L2/L2+ Switching

• Auto Port Configuration, Auto-Negotiation for port speed and duplex mode. Flow Control for IEEE802.3x full-duplex and half-duplex backpressure.
• Rate Limit enable to slow down traffic on a port to keep it from exceeding the limit set.
• Link Aggregation with LAG static and IEEE802.3ad Link Aggregation Control Protocol (LACP) increases bandwidth by automatically aggregating several physical links together as a logical trunk and providing load balancing and fault tolerance for uplink connections. Up to 8 maximum aggregation groups.
• Link Layer Discovery Protocol (LLDP) neighbor discovery protocol that allows devices to advertise device information to their directly connected peers/neighbors.
• Unidirectional Link Detection protocol (UDLD) that detects and disables one-way connections before they create undesired situation such as network failure, Spanning Tree loops and broadcast storm.
• Spanning Tree Protocol (STP) eliminates Layer 2 loops in a network by selectively blocking specific links. STP also enables link redundancy. Support IEEE 802.1D (STP), from which IEEE 802.1W (RSTP) and IEEE 802.1s (MSTP 64 to 256 instance).
• Loopback Detection also has BPDU Filter, BPDU Guard.
• IGMP Snooping listening to Internet Group Management Protocol network traffic to control delivery of IP multicast. Network switches with IGMP snooping listen in on the IGMP conversation between hosts and layer 3 devices and maintain a map of which links need which IP multicast transmission.
• Static MAC address, MAC Configuration for MAC binding, MAC Address Filter.
• 4094 VLAN Configuration with advanced VLAN support for better network segmentation, VLAN Based on 802.1Q, MAC-Based VLAN, IP-Based VLAN, Protocol-Based VLAN, Voice VLAN, Guest VLAN, Private VLAN – Support 1:1 VLAN Mapping basic QinQ, Surveillance VLAN.

Secure Networking

• MAC address limiting to enhanced Security. Port Security ensures access to switch ports based on MAC address to limit the total number of devices from using a switch port and protects against MAC flooding attacks, SYN Flood, ICMP Flood attack and prevention of DOS, BPDU Guard and Root Guard which avoid accidental network topology loops and prevent illegal edge devices become root to cause unnecessary flapping.
• IEEE 802.1X Port-based Access Control ensures all users are authorized before being granted access to the network. User authentication is carried out using any standard-based RADIUS server. 802.1x – RADIUS, AAA – MAC-based 802.1X authentication also Support 802.1x surveillance VLAN, Port Security, Protected Port and also Prevent ARP Spoofing.
• L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication. IP, MAC, Ports based Access Control Lists (ACL, L4 to L2) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports and even VLAN ID.
• DHCP Snooping feature ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP.
• IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms.
• ARP attacks prevention prevent typical DoS attacks can protect these attacks more easily ever than before.

Multicast

• IGMP Snooping (v1, v2, v3) transmits data on demand on data link layer by analyzing IGMP packets between the IGMP querier and the users, to build and maintain Layer 2 multicast forwarding table.
• Snooping Multicast Listener Discovery (MLD) snooping (v1/v2) constrains the flooding of IPv6 multicast traffic on VLANs. MLD snooping performs the same function as IGMP snooping with the only difference being that MLD snooping is for IPv6 and IGMP snooping for IPv4 environments.
• Multicast VLAN Registration (MVR) is designed for distribution of multicast traffic on a dedicated multicast VLAN across segregated access networks, while allowing subscribers who are on different VLANs to join and leave the multicast groups carried in the Multicast VLAN. Multicast VLAN registration (MVR) enables more efficient distribution of IPTV multicast streams across an Ethernet ring-based Layer 2 network.

QoS features

• Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based.
• L4/L3/L2 QoS optimize voice and video applications with ACL based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

User friendly Maintenance Management

• With Zero Touch Provisioning: A simple, secure, unified plug and play.
• CLI / Web GUI / SNMP Management with industry standard CLI and Web GUI based device-management tool that provides the ability to provision the device, to simplify device deployment and manageability, and to enhance the user experience. It comes with the software Image 0 can also have Image 1 (Dual image) simultaneously. There is no need to enable anything or install any license on the device. Then Web GUI can be used to build configurations, and to monitor and troubleshoot the device without having CLI expertise.
• Support Multi-user management at the same time.
• With RADIUS and TACACS+ server authentication can be performed locally or on a RADIUS/TACACS+ server can also control access to your network through Switch by using authentication methods such as 802.1X, MAC Based and Web Based.
• Configuration Download/Upload Upgrade Firmware by HTTP and TFTP.

Debugging and troubleshooting feature

• PING, TRACEROUTE, SNMP, RMON, Web based real time switch ports monitoring with WEBUI can easily troubleshoot any problem in network with Ping, trace route, various show, debug command and WEBUI based real time status of device.
• Cable Diagnostics by WEB GUI as well as CLI.
• Maintenance & Operation Management via TFTP/FTP, CLI, Telnet, Console, Web GUI /SSL (IPv4/IPv6), SSH (IPv4/IPv6).
• Port Mirroring for network monitoring. Port mirroring is used on a network device to send a copy of network packets seen on one switch port, multiple other ports, or on to network monitoring connection on another port on the switch.
• SNMP v1/v2c/v3, management station, can monitor the performance of network devices. With SNMP, network managers can view or modify network device information, and troubleshoot according to notifications sent by those devices in a timely manner. Public and Private Management Information Base (MIB) interface
• RMON (Remote Network Monitoring) together with the SNMP system allows the network manager to monitor remote network devices efficiently. RMON reduces traffic flow between the NMS and managed devices, which is convenient to manage large networks.

Software Licensing and Upgrades

• Free Software Upgrades and patching supports with enhanced functionality, which provides fixes for critical bugs and security vulnerabilities between regular maintenance releases. This free software upgrades and licenses support lets you add patches, new features, protocols, and functionality without having to spend a single dollar. This reduces TCO.
• Protected Ports ensure no exchange of unicast, broadcast, or multicast traffic between the protected ports on the switch, thereby improving the security of your converged network.
• Dynamic VLAN Assignment (RADIUS/TACACS+): IP phones and PCs can authenticate on the same port but under different VLAN assignment policies. Users are free to move around and enjoy the same level of network access regardless of their physical location on the network.
• Port Mirroring and Cable Test Many-to-one port mirroring for better and quicker network diagnostics and troubleshooting. Cable test easily identifies bad Ethernet cables.
• Firmware updates and backup procedure by uploading/downloading file to PC/TFTP/FTP.

Table 1. COMMANDO SoldierOS IP Base Software at a Glance

Ethernet Protocols
(IEEE )
L2 Switching Features Quality of Service (QoS) Security Management
802.3i
802.3u 802.3ab 802.3z 802.3av 802.3ad
802.3ae
802.3ak
802.3x 802.1p 802.1q
802.1v 802.1d 802.1s 802.1w 802.1x
802.3x
Link Aggregation, LACP,
Spanning Tree Protocols,
Multicasting, VLANs, ACL, Voice VLAN, GVRP,
Port isolation,
Port security,
MAC address learning limit, DHCP Server,
IP Source guard,
Dynamic ARP inspection,
IP /Port/MAC binding
L4, L3, L2, ingress/ Egress Access Control List (ACL), 802.1x authentication AAA / RADIUS/TACACS+ Web GUI management mode,
Support Command Line Interface (CLI) through console port,
Telnet, SNMP v1/v2c/v3 and
RMON

Table 2. Performance of COMMANDO SoldierOS IP Base

VLAN 4094
MAC Table entries 8000 to 16000
ACL 1024 to 2K+256
Multicast Group 512 to 4K
Jumbo Frame 10000 to 12000
Multicast IGMP Group 16
Multiple User Account 8
Static Route 512
MSTP 16 to 256
Aggregation Trunks/Ports Per Trunk 8/8 to 8/16
TACACS+/RADIUS Servers 8

Software Features

1. L3 Features

•Static ARP up to 1K
•Supports Gratuitous ARP
•IPv6 Neighbor Discovery (ND)
•Static Routing

•Max. 512 IPv4 entries
•Max. 512 IPv6 entries
•Supports Default Routing

2. L2 Switching Features

Basic L2 Switching Features

•MAC Address Table with 8K to 16 K entries
•802.3x Flow Control when using full duplex
•Back Pressure when using half-duplex
•HOL Blocking Prevention
•Jumbo Frame Up to 10,000 to 12000 bytes
•ERPS (Ethernet Ring Protection Switching)
•Port Mirroring Supports One-to-One, Many-to-One, Supports Mirroring for Tx/Rx/Both, Supports 4 mirroring groups
•Flow Mirroring supports One-to-One, Many-to-One, Supports Mirroring for Rx, Supports 4 mirroring groups
•RSPAN mirroring
•Loopback Detection
•L2 Protocol Tunneling

Link Aggregation

•Support static link aggregation
•Support 802.3ad LACP
•Up to 8 aggregation groups, containing 8 ports per group for 8, 24 & 48 ports Switches and 8 aggregation groups, containing 16 ports per group for 48 ports Switches.

Spanning Tree Protocol (STP)

•IEEE 802.1D Spanning Tree Protocol
•IEEE 802.1s Multiple Spanning Tree Protocol
•IEEE 802.1w Rapid Spanning Tree Protocol
•STP Security: Loop back detection, TC Protect, BPDU Filter/Protect, Root Protect

Multicast

•Support IGMP Snooping V1/V2/V3, with 256 groups to Independent 4K entry Multicast table for L2/IP multicast function
•Support multicast VLANs, IGMP Immediate Leave, Unknown IGMP Throttling, IGMP Filtering, Static Multicast IP
•L2 Multicast Filtering Forwards all groups, forwards all unregistered groups, Filters all unregistered groups
•MLD Snooping, MLD v1/v2 Snooping
•PIM Snooping

VLAN

•Support IEEE802.1Q with 4K VLAN groups and 4K VIDs
•Support Port VLAN, Protocol VLAN and MAC-based VLAN
•Support GARP/GVRP feature

Quality of Service (QoS)

•Support 802.1p CoS/DSCP priority
•Support 4 priority queues
•Queue scheduling: SP, WRR, SP+WRR
•Port/Flow- based Rate Limiting
•Voice VLAN assure voice applications have excellent performance

Advanced Security

•IP-MAC-Port-VID Binding
•Static/Dynamic Port Security (MAC-based)
•DoS defend feature
•Dynamic ARP Inspection

802.1x authentication

•Support 802.1x port/MAC based authentication
•Support Radius authentication and accountability
•Guest VLAN
•RADIUS/TACACS+

Access Control List (ACL)

•L2~L4 package filtering based on source and destination MAC address, IP address, TCP/UDP ports, 802.1p, DSCP, protocol and VLAN ID.
•Time based ACL
•Support Broadcast, Multicast and Unknown unicast Storm Control
•Secure web management through HTTPS and SSLv2/v3/TLSv1
•Secure remote command line interface (CLI) management with SSH v1/V2

Management

•Support Web-based GUI management mode
•Support Command Line Interface (CLI) through console port, telnet management mode
•SNMP v1/v2c/v3
•RMON (1, 2, 3, 9 groups)
•DHCP Server
•DHCP/BOOTP Client
•DHCP Snooping
•DHCP Option 82
•CPU Monitoring
•Port Mirroring (Many to One)
•Cable Diagnostics feature
•Ping/Tracert feature
•SNTP
•System Log

3. Ethernet Protocols

•IEEE 802.3i 10BASE-T
•IEEE 802.3u 100BASE-TX/FX
•IEEE 802.3ab 1000BASE-T
•IEEE 802.3z 1000BASE-X
•IEEE 802.3ae 10GEBASE-T
•IEEE 802.3ak 10GBASE-X
•IEEE 802.3av GVRP
•IEEE 802.3ad Link Aggregation
•IEEE 802.3x Flow control
•IEEE 802.1p QoS
•IEEE 802.1q VLANs / VLAN tagging
•IEEE 802.1v Protocol VLAN
•IEEE 802.1d Spanning Tree Protocol (STP)
•IEEE 802.1s Multiple Spanning Tree (MSTP)
•IEEE 802.1w Rapid Spanning Tree (RSTP)
•IEEE 802.1x Network Login Security
•IEEE 802.3x flow control for Full Duplex mode and back pressure for Half Duplex mode

4. MIBs (Management Information Base)

•Ethernet-like MIB (RFC 3635)
•Interface Group MIB (RFC 2863)
•RMON (RFC 2819)
•Bridge MIB (RFC 1493)
•Bridge MIB Extension (RFC 2674)

Table 3. Key software function of COMMANDO SoldierOS IP Base

Features Protocols
IEEE Standards IEEE 802.3x (Full Duplex), Back-Pressure (Half-duplex)
IEEE 802.3, IEEE 802.3u, IEEE 802.3ab, IEEE 802.3z
IEEE 802.3ad
IEEE 802.3q, IEEE 802.3q/p
IEEE 802.1w, IEEE 802.1d, IEEE 802.1S
MAC Address 8000 to 16000 MAC addresses table entries
Jumbo Frame 10000 to 12000 bytes with automatic MAC address learning and aging
Energy Efficient Ethernet EEE (802.3az)
VLAN Up to 4094 VLAN
Port-based VLAN up to 8 groups
IEEE 802.1Q Tagged-based
MAC-based VLAN up to 256
Voice VLAN static up to 256
QoS for each Voice VLAN Data
Voice VLAN OUI Mode (Auto/Manual) maximum 16 OUI
Multicast VLAN Registration (MVR) IPV4 Based
Surveillance VLAN OUI Mode (Auto/Manual) maximum 16 OUI
VLAN QinQ (IEEE 802.1ad)
GARP VLAN Registration Protocol (GVRP) GVRP As per IEEE 802.1Q specification
Spanning Tree IEEE 802.1D (STP)
EEE 802.1w (RSTP)
EEE 802.1s (MSTP) maximum 64 to 256 instances
uto Edge Port
BPDU Filtering
BPDU Guard
Self-Loop Detection
UDLD
Link Aggregation IEEE 802.3ad LACP,
Max 8 Aggregation Groups trunk,
Maximum 8 to 16 ports per Trunk
Static Trunk Aggregation and Dynamic Aggregation
Traffic Load Balancing
Port Mirror Many-to-one port mirroring
Port flow control Half duplex based back pressure control
Full duplex based on PAUSE frames
Line Rate Support Port based Input/Output Bandwidth Management
IP Binding Support Static ARP
DHCP DHCP Server, DHCP Client mode
DNS DNS Client mode
Static Routing Support Static routing
IGMP Snooping IGMP v1/v2
IGMP v3 Basic (BISS)
IGMP v2/v3 Querier
MLD Snooping MLD v1/v2
IPv6 IPv6 Host – Auto Configuration, Static IPv6 Address and Prefix Length,
Static IPv6 Default Gateway, IPv6 Neighbor Discovery (ND),
IPv6 Duplicate Address Detection, ICMPv6
IPv6 Application Supported – HTTP/HTTPS, TELNET, SSH,
SNMP, TFTP, Syslog, PING, DHCPv6
Multicast Multicast Groups up to 256 to 4000
Immediate Leave
Static/Forbidden Router Port
Static/Forbidden Forward Port
Filtering up to 128 profiles
Throttling
Storm suppression Storm Control Broadcast
Unknown Multicast
Unknown Unicast
Storm Suppression of Broadcast type
Storm suppression based on bandwidth tuning and storm filtering
Access Control List (ACL) Access Rules Maximum 1024 to 2K+256
ACL Type-L2/L3/L4
ACL IPv4-based Up to 1024 to 2K+256
ACL IPv6-based
Security AAA (Authentication, Authorization and Accounting)
TACACS+ (Terminal Access Controller Access Control Server)
Maximum up to 8 servers.
RADIUS (Remote Authentication Dial-In User Service)
Maximum up to 8 servers.
Authentication Manager – IEEE 802.1X, MAC Auth, Web Auth,
Guest VLAN, Port-based, Host-based.
Port Security Using Dynamic Lock maximum 256
Protected Port (Port Isolation)
Black Hole MAC
CPU Defense Engine
DoS Prevention
DHCP Snooping (with Option 82)
Dynamic ARP Inspection
IP Source Guard maximum 256
IP/MAC/Port Binding (IMPB)
QoS Features 802.1p port queue priority algorithm
Teams that support 4 different priorities per port
Queue Scheduling – WRR, WFQ, Strict Priority,
Hybrid (WRR+SP or WFQ+SP)
WRR (Weighted Round Robin) Weighted priority rotation
Algorithm, WRR, SP, WFQ, 3 priority scheduling models
Class of Service – Port-based, 802.1p, IP TOS Precedence,
IP DSCP, trusted QoS
Support based on port, MAC, 802.1Q, DSCP classification
Rate Limit – Port-based (Ingress/Egress)
Account Manager Local Authentication
Multiple User Account Up to 8
Multilevel Security
Password Recovery Procedures
System maintenance Upgrade firmware feature via TFTP/FTP/HTTP.
Support Upload/Download Configuration files
through WEB Support
Multi-user management
GUI/ CLI based Restore Factory Configuration
Line Management Console
Telnet (RFC854)
SSH v1/v2
Management and Maintenance Management by CLI – Console, Telnet (RFC854) up to 3 sessions
Management by GUI – HTTP, HTTPS
Management Based on Remote Configuration and Maintenance Using Telnet, SNMP V1/V2C/V3,
SSH V1/V2, RMON V1/V2
Software Reset to default setting
Management Access Management VLAN
Management ACL Up to 1024 to 2K+256
File Management Firmware Upgrade/Backup
Dual Images
Configuration Download/Backup
Multiple Configurations
Upload/Download using TFTP (RFC783)
HTTP (Hyper Text Transfer Protocol)
UART (Universal Asynchronous Receiver/Transmitter)
Time Management Locally using sync with PC option.
NTP (Network Time Protocol)
Port Management Friendly Port Name (Port Description)
Error Disabled Recovery
Secure Sockets Layer (SSL) Secure Sockets Layer (SSL)- SSLv2, SSLv3
Transport Layer Security (TLS)- TLSv1
Neighbor Discovery IEEE 802.1AB Link Layer Discovery Protocol (LLDP)
ANSI/TIA-1057 LLDP Media Endpoint Discovery (LLDP-MED)
Remote Monitoring Management RMON Up to 32 entries / type
MIB MIB-II (RFC 1213)
Ethernet-like MIB (RFC 3635)
Interface Group MIB (RFC 2863)
RMON (RFC 2819)
Bridge MIB (RFC 1493)
Bridge MIB Extension (RFC 2674)
Diagnostics Mirroring 4 sets
Port-based (Many to One) Up to 32 entries / type
Syslog (RFC3164) with Local RAM, Local Flash,
Remote Server up to maximum 8.
System Diagnostics with CPU Utilization, Memory Utilization,
Port Utilization
Port Diagnostics with Cable Test, Fiber Module Status
Network Diagnostics with Ping Test, Traceroute

Convergence Time

By default, RSTP used for all COMMANDO SoldierOS and it takes less than 10 seconds for entire network to converge. RSTP converges faster because it uses a handshake mechanism based on point-to-point links instead of the timer-based process used by STP.

IP multicast snooping and IGMP automatically prevent flooding of IP multicast traffic.

IEEE 802.1AB Link Layer Discovery Protocol (LLDP) facilitates easy mapping using network management applications with LLDP automated device discovery protocol

LLDP-MED (Media Endpoint Discovery) defines a standard extension of LLDP that stores values for parameters such as QoS and VLAN to configure automatically network devices such as IP phones.

STP/RSTP/MSTP for loop free network, IEEE 802.1s Multiple Spanning Tree provides high link availability by allowing multiple spanning trees; provides legacy support for IEEE 802.1d and IEEE 802.1w

IEEE 802.3ad Link Layer Discovery Protocol (LACP) and port trunking support up to 8 static, dynamic, or distributed trunks with each trunk having up to 8 to 16 links (ports) per static trunk. Lag links provides easy-to-configure link redundancy of active and standby links.

Security

The AAA feature allows you to verify the identity of, grant access to, and track the actions of users. The COMMANDO Soldier C2000 Series Switches support Remote Access Dial-In User Service (RADIUS) or Terminal Access Controller Access-Control System Plus (TACACS+) protocols.

Based on the user ID and password combination that you provide, the COMMANDO Soldier C2000 Series Switches perform local authentication or authorization using the local database or remote authentication or authorization using one or more AAA servers. A pre-shared secret key provides security for communication between the COMMANDO Soldier C2000 Series Switches and AAA servers. You can configure a common secret key for all AAA servers or for only a specific AAA server.

COMMANDO Soldier C2000 Series Switches Multiple user authentication methods

•Uses an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server to authenticate in accordance with industry standards
•Supports web-based authentication
•Supports MAC-based authentication
•Multiple IEEE 802.1X users per port provides authentication of multiple devices on a single port; prevents a user from piggy backing on another user’s IEEE 802.1X authentication
•Concurrent IEEE 802.1X, Web, and MAC authentication schemes per port switch port will accept up to 8 sessions of IEEE 802.1X, Web, and MAC authentications
•Access control lists (ACLs) provide IP Layer 3 filtering based on source and destination IP address or subnet or source and destination TCP/UDP port number
•Source-port filtering allows only specified ports to communicate with each other
•RADIUS/TACACS+ eases switch management security administration by using a password authentication server
•Secure shell encrypts all transmitted data for secure remote CLI access over IP networks
•Secure Sockets Layer (SSL) encrypts all HTTP traffic, allowing secure access to the browser-based management GUI in the switch
•Port security allows access only to specified MAC addresses, which can be learned or specified by the administrator
•MAC address lockout prevents particular configured MAC addresses from connecting to the network
•Secure FTP allows secure file transfer to and from the switch; protects against unwanted file downloads or unauthorized copying of a switch configuration file
•Switch management logon security helps secure switch CLI logon by optionally requiring either RADIUS or TACACS+ authentication
•Custom banner displays security policy when users log in to the switch
•STP BPDU port protection blocks Bridge Protocol Data Units (BPDUs) on ports that do not require BPDUs, preventing forged BPDU attacks
•DHCP protection blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks
•Dynamic ARP protection blocks ARP broadcasts from unauthorized hosts, preventing eavesdropping or theft of network data
•Dynamic IP lockdown works with DHCP protection to block traffic from unauthorized hosts, preventing IP source address spoofing
•STP root guard protects the root bridge from malicious attacks or configuration mistakes
•Identity-driven ACL enables implementation of a highly granular and flexible access security policy and VLAN assignment specific to each authenticated network user
•Per-port broadcast throttling configures broadcast control selectively on heavy traffic port uplinks
•Monitor and diagnostics digital optical monitoring of SFP and 1000BASE-T transceivers allow detailed monitoring of the transceiver settings and parameters

Effective Management

COMMANDO SoldierOS offers network monitoring for users to observe traffic behavior with Port Mirroring, Loop Prevention and DHCP snooping features, can identify and even locate connection problems on your business network.

•Administrators can designate the priority of the traffic based on Port Priority, 802.1P and DSCP Priority, to ensure that voice and video are always clear, smooth and lag-free.
•Voice VLAN, port-based VLAN and 802.1Q-based VLAN functions. COMMANDO is an upgrade from the plug-and-play Unmanaged Switch, delivering great value while empowering your network and similarly delivering great value to the end user.
•RMON provide advanced monitoring and reporting capabilities for statistics, history, alarms, and events.
•Troubleshooting ingress and egress port monitoring enable more efficient problem solving.
•Unidirectional Link Detection (UDLD) monitors the link between two switches and blocks the ports on both ends of the link if the link goes down at any point between the two devices.

Table 4. COMMANDO Soldier C2000 Series Switches PoE/PoE+/PoE++ Power Budget and slots

Model Max Power Budget (Watt) Total physical slots (Ports) on device
C2000-24G+8CF 32
C2000-24GP+8CF 600W 32
C2000-48GP+8CF 800W 56
C2000-8SFP+4CF 12
C2000-48SFP+4GE 52

PoE/PoE+/PoE++ Flexibility

COMMANDO SoldierOS Power over Ethernet (PoE/PoE+/PoE++) enabled switches with a total power budget of up to 800W for different kinds of PoE/PoE+/PoE++ devices over a long-range copper cable length up to 250m, provides power and network connectivity for PoE/PoE+/PoE++ powered devices over a single network cable with schedule time as per time set by network administrator. PoE/PoE+/PoE++ devices range from wireless access points, IP cameras, VoIP phones, PoE LED lighting, PoE speakers to IoT doorbells and other IoT, Wireless Access Points, Wireless Bridges, or other standards compliant PoE/PoE+/PoE++ all end devices with Scheduling of power on each port to fully automate network. This series switches provide a quick, safe and cost-efficient IEEE 802.3af/at/bt PoE/PoE+/PoE++ network solution for small businesses and enterprise. By default, the switches automatically detect IEEE 802.3af/at/bt devices so they automatically receive PoE/PoE+/PoE++ power.

Table 5. COMMANDO Soldier C2000 Series Switches LED Indication

LED Indication on Switch LED Status
Power Green OFF:
No power on the switch.
Green ON:
The switch powered on
Link/Act LINK/ACT bi-color LED:
OFF:
Port disconnected or link fail.
Green ON:
1000Mbps connected.
Amber ON:
10/100Mbps connected.
Green Flashing:
1G/10G connected and Data in transit
Amber Flashing:
10/100Mbps connected and Data in transit
System Green OFF:
The system is starting, please wait
Green ON:
The system is up and running
PoE OFF:
PoE/PoE+ power is not provided on port
Blue ON:
PoE/PoE+ power is provided on port
PoE MAX PoE MAX OFF:
PoE Power budget is available in switch
Red ON:
PoE Power budget is 95%

Power Budget According to Cable Length

Ideally, shorter cables would use less power because of less power degradation over their length This is not the case with most devices as they will use the same amount of power across the cable regardless of whether it is 10 or 100 meters in length. These switches analyze the length of the Ethernet cable connected and adjusts the power usage accordingly, rather than keeping the power consumption in a conventional solution.

Table 6. COMMANDO Soldier C2000 Series Switches Cable Lengths

Connection Cable Type Category and Speed Maximum Cable Distance Supported
Unshielded Twisted Pair cable 10/100Base-TX:
UTP category 5/5e/6 cables (Maximum 100m)
1000Base-T:
UTP Category 5/5e/6 cable (Maximum 100m)
100M
Shielded Twisted Pair cable 10/100Base-TX:
STP category 5/5e/6 cables (Maximum 250m)
1000Base-T:
UTP Category 5/5e/6 cable (Maximum 100m)
100M
Optical Fiber Cable 550M~120KM depending on SFP 120KM

 

Hardware

COMMANDO Soldier C2000 Series Switches has 4.1 to 12 Mbit SRAM Packet Buffer memory with Packet length of 10K bytes. L2 MAC Function with 8K entries for MAC address learning for 8, 24 port Switch models and 16K-entry L2 MAC table 48 port Switch models with the 4-way hash L2 table and searching with two hash algorithms. Independent 512- 4K entry L2/IP Multicast table for multicast function, 2-hash algorithm selection for L2 table searching/learning. Aging timer ranges from 0.2s to 1600000s. It has a 4K-entry VLAN table and provides a 64-entry filtering database for 802.1Q port-based, protocol- and-port-based, 802.1Q-based, IP-subnet-based, and ACL Rules-based VLAN operation to separate logical connectivity from physical connectivity with IVL (Independent VLAN Learning), SVL (Shared VLAN Learning), and IVL/SVL (both Independent and Shared VLAN Learning) for flexible network topology architecture. The mode used depends on the FID (Filtering Identifier) setting. It also has a 1.5K to 2K+256 entry Access Control List (ACL) that parses various protocol packet types and performs configurable actions, e.g., Permit/Drop, redirect, and traffic policing.

It has per-port ingress/egress bandwidth control and per- queue egress bandwidth control. It has 8 physical queues in each port. It also has three types of packet scheduling, SP (Strict Priority), WFQ (Weighted Fair Queuing), and WRR (Weighted Round Robin). Each queue provides a leaky bucket (LB) to shape the incoming traffic into the average rate behavior. Port-based 802.1X and MAC-based 802.1X authentication prevent unauthorized users. It also has port isolation to enhance port security.

It has 4-set port mirror configuration to mirror ingress and egress traffic for network management purposes, complete MIB counter support reflects the switch status in real time. Link aggregation static and dynamic to increase link redundancy and increase linear bandwidth.

It supports VLAN Function with IVL, SVL, and IVL/SVL, IEEE 802.1Q VLAN with 4K-entry VLAN Table, Port-based VLAN, Port-and-protocol-based VLAN, ACL-based VLAN. Limited learned L2 MAC entry on each port and each VLAN. Supports flexible Q-in-Q and VLAN Tag function.

It Supports up to 64-256 spanning tree instances for MSTP (IEEE 802.1s), RSTP, and STP with Automatic loop detection and isolation (RLPP/RLDP). L3 Unicast Routing with 512 next hop MAC. IEEE 802.3az Energy Efficient Ethernet (EEE). IGMPv1/2/3 and MLDv1/2 snooping. It also Supports Reserved Multicast Addresses processing and L2 Miscellaneous Functions like Supports broadcast, multicast, unknown- multicast, and unknown-unicast packet suppression control, IEEE 802.1x, Port Mirroring with 4-sets of port mirrors, Flow-based mirror function, RSPAN function for remote mirroring.

It supports Link Aggregation (IEEE 802.3ad) for 8 groups of link aggregators with up to 8 ports per-group, Port isolation function to enhance port security. It also has Attack Prevention, Land attack, Blat attack, TCP control flag attack, Ping attack, Packet length attack.

It supports Access Control List (ACL) Function with 1.5K-entry to 2K+256 shared entry for ingress and egress ACL. ACL table and L4/L3/L2 format (e.g., DMAC, SMAC, and Ether-Type), IPv6 Parsing and Per-flow traffic policing with 16-entry VID range checking. It also supports 8-entry IPv4 or 2-entry IPv6 range checking. 256 to 512 leaky buckets for flow traffic policing.

It supports QoS Functions with 8 physical queues per port, Strict Priority (SP) and Weighted Fair Queue (WFQ), Weighted Round Robin (WRR) packet scheduling, QoS remarking for 802.1p and DSCP (includes IPv4/IPv6) also Supports average packet rate control leaky bucket per queue, in 16Kbps steps up to 1Gbps maximum. Ingress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. Egress port bandwidth control, in 16Kbps steps up to 1Gbps maximum.

It supports MIB Functions with 256 to 2K 32-bit packet-based or 1K 64-bit byte-based log counters to enhance MIB counter log counters to enhance MIB count functionality. It also supports Ethernet-like MIB (RFC 3635), Interface Group MIB (RFC 2863), RMON (RFC 2819), Bridge MIB (RFC 1493), Bridge MIB Extension (RFC 2674).

It has Hardware Watchdog support which guard against certain types of system hangs. Watchdog timer is used to escape from if something goes wrong. Based on the situation, the Switches can automatically reset itself, or recover from the failure and generate an error message in the console logs. Long life electrolytic capacitance. High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process. Rack mount design, Mounts in an EIA-standard 19-inch telco rack or equipment cabinet (Rack-mounting kit available); horizontal surface mounting; wall mounting with durable robust metal body. Bilateral heat dissipation. Power and ports status/ activity indicator LED lights. RJ45 Gold plated with 3U thickness.

It also supports has IEEE 802.3az Energy Efficient Ethernet (EEE) for 100Base-TX in full duplex operation and supports 10Base-Te for 10Base-T in full/half duplex. The Energy Efficient Ethernet (EEE) operational mode combines the IEEE 802.3 Media Access Control (MAC) Sub-layer with a family of Physical Layers defined to support operation in Low Power Idle (LPI) Mode. When Low Power Idle Mode is enabled, systems on both sides of the link can disable portions of the functionality and save power during periods of low link utilization. 10Mbps PHY with reduced transmit amplitude requirements in EEE operational mode. This new PHY is fully interoperable with legacy 10Base-T PHYs over 100m of Class-D (Category 5) or better cabling.

Now is the Time to Upgrade to 90W Ultra PoE++

Ultra PoE++ offers a robust, end-to-end high power PoE solution with up-front cost savings. Fortunately, transitioning to the new standard won’t necessarily be a costly affair for users and installers or network seeking to deliver more power to, standard CAT 5 and 6 Ethernet cables are IEEE compatible So, you can add and move devices by moving these cables. Wiring and equipment costs remain down as there’s usually no need to move AC sources physically. Safety measures ensure up to 90W of power is safely delivered. Ultra PoE++, satisfies this hunger by extending the PoE and PoE+ specifications to 90W of PD delivered power. Ultra PoE++ capabilities of this standard expand the field of Ethernet-powered applications by several orders of magnitude, enabling entirely new classes of PDs, such as power-hungry picocells, base stations or heaters for pan-tilt-zoom cameras and these critical devices stay up during load shed. New IEEE 802.3bt Standard Boosts the Technology for IoT Applications. The first and the most important improvement in the 802.3bt standard is the capability to transfer much more power to edge devices (powered devices or PDs) 71.3 W, while sending 90 W from the power sourcing equipment (PSE) side enable in numerous new IoT and especially IIoT (Industrial IoT) power hungry and high-speed devices to be powered by PoE technology.

•Expanding Ultra PoE++ Use Cases with the Adoption of High-Power IEEE.
•Safe Cities with PTZ Camara
•Smart Building Systems with Ultra PoE++ Powered LED Lighting
•High-Performance Wireless Access Points
•Intercoms, TVs, and Video Conferencing

Hardware Highlights

Solid performance with non-blocking architecture

•CPU Dual Core having frequency 500 to 700 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB to 12 MB.
•All ports capable of Gigabit Ethernet speed. Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Solid performance with non-blocking architecture, 8000 to 16000 entries MAC Address Table with 4-way hashing algorithm
•4094 VLANs can be created
•1024 to 2K+256 ACL entries
•Up to 512 static routes
•Independent 512 to 4K entry L2/IP Multicast table for multicast function.
•Maximum packet length 10000 bytes
•Jumbo frames of 10000 to 12000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•L2/L3/L4 QoS optimize voice and video applications with 256 leaky buckets for flow traffic policing.
•Switching Capacity: 216Gbps
•Forwarding Capacity: 191Mpps
•Store-and-forward Switching Scheme.
•VLAN L3 Interface: 16
•Port Queues: 8
•PoE Budget up to 800W depending on models

Physical Ports and Networking Interfaces

•Up to 48 x 1GE or SFP Ports with 2/4/6 10G (SFP/SFP+) ports uplinks or 2/4/6 10GE ports Uplink or 8 combo ports 4 GE (RJ-45) or 4 SFP Uplinks. 8, 24 & 48 ports PoE (PoE+) & SFP/SFP+ models.
•Management Interface: Console, Mini USB.
•LED Indicators: Power, Link/Act, PoE Max.
•Additional DC input power to enable UPS to mitigate power supply failures and support critical network infrastructure.

IEEE 802.3af/at Compliant Power over Ethernet

•Various power budget of 600W and 800W for 8, 24 and 48 ports perpetual PoE/PoE+/PoE++ Switch models. 90W Max Per port (PoE/PoE+/PoE++). POE power supply transmission is more reliable due to design of robust network transformer which uses high current. All PoE/PoE+/PoE++ ports are IEEE 802.3af-compliant PoE, IEEE802.3at-compliant PoE+ and IEEE 802.3bt-compliant PoE++. Each port delivers 15.4 W PoE, 30 W PoE+, 90W PoE++ power capacity with backward compatibility.
•PD detection will automatically detect and provide required power for your PoE/PoE+/PoE++ devices.

Extra Long operational life

•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Support temperature range 0° C to 55° C
•Surge protection up to ±6KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Long life electrolytic capacitance to increase the operational life of switches. RJ45 Gold plated with 15U thickness.
•Rack and wall mount design enables to mount the switch in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with the device. It enables horizontal surface mounting, wall mounting with durable robust metal body.

Green Energy and Silent operation

•Comply with IEEE 802.3az (Energy-Efficient Ethernet) standard, reduces power consumption up to 58% and reduce the noise pollution. Energy Efficient Ethernet (EEE) on the RJ-45 ports and low-power operations for industry best-in-class power management and power consumption capabilities. The ports support reduced power modes so that ports not in use can move into a lower power utilization state.
•Automatic Temperature Controlled fans with Temperature Sensor. Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control fan to optimize cooling and noise with bilateral heat dissipation.

Ethernet Protocols

•Supports wide range of IEEE 802.3i, 10BASE-T IEEE 802.3u, 100BASE-TX/FX IEEE 802.3ab, 1000BASE-T IEEE 802.3z, 1000BASE-X, 10GEBASE-T, 10GBASE-X, IEEE 802.3av, GVRP, IEEE 802.3ad, Link Aggregation, IEEE 802.3x, Flow control, IEEE 802.1p, QoS IEEE 802.1q, VLANs / VLAN tagging IEEE 802.1v Protocol, IEEE 802.1d Spanning Tree Protocol (STP), IEEE 802.1s Multiple Spanning Tree (MSTP), IEEE 802.1w Rapid Spanning Tree (RSTP), IEEE 802.1x Network Login Security, IEEE802.3af, IEEE802.3at.

Highly reliable and Enterprise design

•High Quality as for all Mean Time Before Failure of system, MTBF > 200,000 hours
•Stability: 64bit packet, time delay < 10us, packet loss rate: 0
•Restorability of Network shaking or device breakdown, restart (recovery) time < 60 sec.
•RoHS Compliant with most of the packaging material can be recycled and reused.

Specifications

There are other important specifications outlined in the subsequent sections.

Table 7. COMMANDO Soldier C2000 Series Switches Hardware Specifications

Hardware Parameter Hardware Specification
CPU Frequency Dual Core 500 MHz and 700MHz
CPU Memory DRAM (GB) 1GB
Flash 256 MB
Packet Buffer memory 4.1MB to 12 MB
8/24/48 x 10/100/1000 Base-T all ports (PoE/PoE+/PoE++) capable.
2/4/6/8 Separate or Combo Copper 1GE/1G or 10GE/10G SFP / SFP+ ports;
PoE standards supported IEEE802.3af/IEEE802.3at/IEEE802.3bt type-4 (90W) power on all fixed ports.
Console Port 2 (mini–USB Console, RJ45 Console)
Reset Button 1
Additional DC input power from UPS 1
Maximum Fan Quantity Fan-less to 4 depending on model
Enclosure Type (Rack-mountable) Rack/Wall mountable - 1U
Max PoE+/PoE++ Output Power (single port) 30W/90W
Total Power Consumption 24W~800W
PoE Pin-out 1/2(+),3/6(-); Customized 4/5(+),7/8(-)
Switching Capacity 20Gbps~216Gbps
Forwarding Mode Store and forward
MAC Address Table Size 8000 and 16000 entries with 4-way hashing algorithm. Support auto-update, two-way learning
Jumbo frames (Bytes) 10000 for 8,16 and 24 ports models and 12000 for 48 ports models.
VLAN IDs 4094
ACL 1.5K to 2K+256 shared entry for ingress and egress ACL
Link Aggregation 8
Maximum packet length 10000bytes
Total number of IPv4 routes (ARP plus learned routes) 512
10M:14880 pps/port
100M:148809 pps/port
1000M:1488095 pps/port
10G:14880095 pps/port
Operation Temperature 0°C to 55°C
Storage Temperature -20° to 70°C
Operating Humidity (relative, noncondensing) 10% to 90% (non-condensing)
Storage Humidity 5% to 90%(non-condensing)
Dimensions 440(L)*280(W)*44(H)mm
Input Power Supply 100~240V AC, 50/60Hz
External Input DC Power: 12V/4A and 54V/15A
Lightning Protection ±6KV
Weight <8Kg
LED Indicator Power, System, Link/Act, PoE, PoE MAX
Energy Saving EEE Compliant with IEEE802.3az
Standards and Protocols IEEE 802.3ae
IEEE 802.3ak
IEEE 802.3ad, Static or Dynamic Link Aggregation
IEEE 802.3x, Full-Duplex Flow Control
IEEE 802.3az, EEE (Energy Efficient Ethernet)
IEEE 802.1q, VLAN
IEEE 802.1p, QoS/CoS
IEEE 802.1d, STP (Spanning Tree Protocol)
IEEE 802.1w, Rapid Spanning Tree Protocol
Port-based VLANs
4K-entry VLAN Table
VLANs based on IEEE 802.1q
Support Rapid Spanning Tree Protocol (Default Setting)
Support Spanning Tree Protocol,
Support Multiple spanning Tree
Support 8 aggregation groups, and a maximum of 8 to 16 ports in each aggregation group
Static aggregation and LACP
Support bi-direction port mirroring
RSPAN function for remote mirroring
VLAN Port-based VLANs
4K-entry VLAN Table
VLANs based on IEEE 802.1q
Spanning Tree Support Rapid Spanning Tree Protocol (Default Setting)
Support Spanning Tree Protocol,
Support Multiple spanning Tree
Link Aggregation Support 8 aggregation groups, and a maximum of 8 to 16 ports in each aggregation group
Static aggregation and LACP
Port Mirroring Support bi-direction port mirroring
RSPAN function for remote mirroring
Port Isolation Isolation between downlink ports without influence the communication between downlink and uplink ports
Port Flow Control Back-pressure traffic control under Half-Duplex mode
IEEE 802.3x traffic control under Full-Duplex mode
Port Rate Restriction Port-based ingress or egress rate limiting
DHCP DHCP Server, DHCP Client, DHCP Snooping
Storm Suppression Support the suppression of broadcast storm based on forwarding rate
Multicast Control Support IGMPv1/2/3 and MLDv1/2 Snooping;
Security Attack Prevention (Land attack/Blat attack/Ping attack/TCP control flag attack)
MAC & Port based Security
IP, MAC, Port based ACL, VLAN ACL
ARP binding
TCP/UDP port-based Security
QoS 802.1p (Port Queuing Priority)
WRR (Weighted Round Robin)
Cos/Tos, QoS
PoE PoE/PoE+/PoE++ (IEEE 802.3af / IEEE 802.3at / IEEE 802.3bt)
Intelligent restart for PoE Scheduling
Timed restart as per Scheduled time
Physical Medium 10/100Base-TX: STP category 5/5e/6 cables (Maximum 250m)
10/100Base-TX: UTP category 5/5e/6 cables (Maximum 100m)
1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m)
10GBase-T: UTP Category 6e/7 cable (Maximum 30m/100m)
1000Base-SX: Fiber with 850nm wavelength, supports a max transmission distance of 550m
1000Base-LX: Fiber with 1310nm / 1550nm wavelength, supports a max transmission distance of 40km
10GBASE-LR: Single mode Fiber with a laser wavelength of 1310 nm to provide communications up to 10 km.
10GBASE-ER: Single mode Fiber with a laser wavelength of 1550 nm to cover distances up to 40 km.
1000Base-LX: Fiber with 1490nm / 1550nm wavelength, supports a max transmission distance of 120km
Network Cable Deployment Support Auto-MDIX function, automatically identify straight forward cable and cross-over cable
Negotiation Pattern Support port auto-negotiation function (automatically negotiate transmission rate and Duplex modes)
Maintenance Detect the connectivity of network cables
Uploading or downloading of the configuration data
Uploading of firmware upgrade patch
Support system logs
WEB-based reset to factory defaults
Management WEB-based management
CLI Management (Command Line Interface)
Telnet
SNMP

Table 8.  COMMANDO Soldier C2000 Series basic Hardware Specifications

Product Code Enclosure Type Fan
C2000-24G+8CF Rack/Wall mountable - 1U Fan-less
C2000-24GP+8CF Rack/Wall mountable - 1U 3
C2000-48GP+8C Rack/Wall mountable - 1U 4
C2000-8SFP+4CF Desktop, Rack/Wall mountable - 1U Fan-less
C2000-8SFP+4CF Desktop, Rack/Wall mountable - 1U Fan-less
C2000-48SFP+4GE Rack/Wall mountable - 1U 2

Table 9. COMMANDO Soldier C2000 Series ports specifications

Product Code Ports Main Interface Uplink Interfaces
C2000-24G+8CF 24 x 10/100/1000M ports
4 x 1GE or 4x 1G SFP Uplink slots
24 GE 4 GE or 4 SFP Combo
C2000-24GP+8CF 24 x 10/100/1000M PoE+ ports
4 x 1GE or 4x 1G SFP Uplink slots
24 GE 4 GE or 4 SFP Combo
C2000-48GP+8CF 48 x 10/100/1000M PoE+ ports
4 x 1GE or 4 * 1G SFP Uplink slots
48 GE 4 GE or 4 SFP Combo
C2000-8SFP+4CF 8 x 1G SFP ports
2x 1GE and 2x 1G SFP Uplink slots
8 SFP 2 GE and 2 SFP
C2000-48SFP+4GE 48 x 1G SFP ports
4 x 1GE Uplink slots
48 SFP 4 GE

COMMANDO Soldier C2000 Series Switches has AC as well as additional DC input power to enable UPS to mitigate power supply failures. It automatically senses when the internal power supply of a connected device fails and provides power to that device, preventing loss of network traffic and support critical network infrastructure. These series Switches protect from power surges through their inline power supply automatically and have in build Surge protection of ±6KV. With this feature protect on cost and the impact to your business by losing these network devices and thus the users/servers connected to them.

Table 10. COMMANDO Soldier C2000 Series Power Specifications

Product Code Power Budget Voltage Range
(100 to 240V AC), Dual Power input (AC+ DC), Frequency (50 to 60 Hz), Current
C2000-24G+8CF - 12V to 2A
C2000-24GP+8CF 600W 52V to 5.1A; 12V to 2.1A
C2000-48GP+8CF 800W 52V to 14A; 12V to 4A
C2000-8SFP+4CF - 12V to 2A
C2000-48SFP+4GE - 12V to 4A

Table 11. COMMANDO Soldier E2000 Series PoE/PoE+/PoE++ specifications

Product Code No. of PoE++ (IEEE 802.3bt) Ports No. of PoE+/ PoE++ (IEEE 802.3at) Ports No. of PoE (IEEE 802.3af) Ports
C2000-24G+8CF - - -
C2000-24GP+8CF - 17 ports up to 30W All ports up to 15.4W
C2000-48GP+8CF - 24 ports up to 30W All ports up to 15.4W
C2000-8SFP+4CF - - -
C2000-48SFP+4GE - - -

Note: Due to Intelligent PoE/PoE+ Power distribution number of PDs Supported may varies.

Bandwidth Specifications

COMMANDO Soldier C2000 Series Switches use Store-and-forward switching which means that the LAN switch copies each complete frame into the switch memory buffers and computes a cyclic redundancy check (CRC) for errors. The switching capacity (backplane bandwidth) of a switch refers to the maximum amount of data that can be transmitted between a switch interface processor or interface card and a data bus. The switching capacity indicates the total data exchange capability of the switch, in Gbps. The Forwarding Rate is a measure of how many packets per second the switch can process for certain sized packets. Forwarding rate, refers to the number of network packets that can be processed by switch. The Forwarding rate is measured in million packets per second (Mpps).

Table 12. Switching Capacity and Packet Forwarding rate COMMANDO Soldier C2000 Series Switches

Product Code Switching Capacity (Gbps) Packet Filtering Forwarding Rates (64-byte packet size Mpps)
C2000-24G+8CF 56 41.66
C2000-24GP+8CF 56 41.66
C2000-48GP+8CF 104 77.37
C2000-8SFP+4CF 24 17.59
C2000-48SFP+4GE 104 77.37

Table 13. Switching Capacity and Packet Forwarding rate COMMANDO Soldier C2000 Series Switches

Product Code Mean time between failures MTBF (hours) Heat dissipation (BTU/hr)
C2000-24G+8CF 219665 81.89
C2000-24GP+8CF 311414 989.52
C2000-48GP+8CF 205156 2047.28
C2000-8SFP+4CF 315641 2047.28
C2000-48SFP+4GE 356115 2729.71

Environmental Properties and Specifications

Environmental properties include those physical properties which relate to the environment. Moisture, heat conductivity, the physical effect of heat, Altitude, Humidity and electrical properties depend on the environmental conditions surrounding the device.

Table 14. Environmental properties of COMMANDO Soldier C2000 Series Switches

Property Description
Operation Temperature 0°C to 55°C
Operating temperature and altitudes: -5°C to +50°C, up to 5000 feet (1500m)
-5°C to +45°C, up to 10,000 feet (3000m)
Minimum ambient temperature for cold start is 32°F (0°C)
Short-term* exceptional conditions:
-5°C to +50°C, up to 5000 feet (1024m)
-5°C to +45°C, up to 10,000 feet (3000m)
-5°C to +45°C, at sea level with single fan failure
Not more than following in one-year period: 96 consecutive hours, or 360 hours total, or 15 days
Storage Temperature -20° to 70°C
Operating Humidity (relative, noncondensing) 10% to 90% (non-condensing)
Storage Humidity 5% to 90%(non-condensing)
Altitude 0 to 13,123 ft (0 to 4000m)

Weight and Dimension

Soldier C2000 Series Switches offers best in class from package dimensions to weight, destination, value, and shipment type.

Soldier C2000 Series Switches Model Dimensions specifications are suitable for Industry standard Rack/Wall mounting. Industry Standard Rack/Wall mounted describes a unit of electronic equipment that is housed in a metal framework called an equipment rack. Usually, an equipment rack contains multiple "bays," each designed to hold a unit of equipment of standard dimensions.

Table 15. Weight and Dimension of COMMANDO Soldier C2000 Series Switches

Product Code Weight
Kg
Weight
Pounds
Dimension
Inches (H x D x W)
Dimension
Centimeters (H x D x W)
C2000-24G+8CF 5.8Kg 11.0lb 1.75 x 14.5 x 17.5 4.5 x 36.8 x 44.5
C2000-24GP+8CF 5.8Kg 12.8lb 1.75 x 14.5 x 17.5 4.5 x 36.8 x 44.5
C2000-48GP+8CF 5.8Kg 12.8lb 1.75 x 14.5 x 17.5 4.5 x 36.8 x 44.5
C2000-8SFP+4CF 5.8Kg 12.8lb 1.75 x 14.5 x 17.5 4.5 x 36.8 x 44.5
C2000-48SFP+4GE 7.8Kg 17.9lb 1.75 x 14.5 x 17.5 4.5 x 36.8 x 44.5

SFP Slots Specifications

The SFP transceiver is a compact, hot-swappable device that plugs into a physical port of a network device. SFP/SFP+ optics are used in communication networks and have a transmitting side (Tx) and a receiving side (Rx). The different SFP transceivers work with different wavelengths at an appointed distance.

Soldier C2000 Series Switches mostly use extra, separate ports for 1GSFP/ 10GSFP+ and 1GE/10GE copper Uplinks to have that extra advantage of using copper and fiber ports at same time to increase the port capacity of switch as well as combo port options in some models, also known as optoelectronic multiplexing interface, is the photoelectric composite port (panel) with two kinds of Ethernet interfaces (RJ45 port and SFP port) on an Ethernet switch. Usually, the RJ45 port is connected by the twisted pairs while the SFP port needs copper or optical modules and patch cables. The obvious merit of combo as well as separate interface is that you still have more flexibility in terms of choosing your network connectivity type without taking up too much space.

Table 16. SFP Slots Specifications for COMMANDO Soldier C2000 Series Switches

SOLDIER C2000 Switch SFP/SFP+ COMBO port Indication SFP Separate Copper and fiber ports Indication
C2000-8GP 2/4 SFP 2 = 2GE or 2SFP
4 = 4GE or 4SFP
C2000-24GP 2/4/6/8 SFP/SFP+ 2=2GE or 2SFP
4 = 4GE/4 10GE or 4SFP/SFP+
6 =6GE/6 10GE or 6SFP/SFP+
8 = 4GE / 4SFP
C2000-48GP 4/6/8 SFP/SFP+ 4 = 4GE/4 10GE or 4SFP/SFP+
6 =6GE/6 10GE or 6 SFP/SFP+
8 = 4GE / 4SFP

Power Supply Specifications

Table 17. Power supply specifications COMMANDO Soldier C2000 Series Switches

Description Specifications
Input-voltage range and frequency 100V to 240 V 50 to 60 Hz 52V to 10.6A 12V to 4.1A
12V to 4.1A AC DC DC

Included in the bundle/box

All Soldier C2000 Series Switches are made available for use globally along with accessories in the bundle to facilitate or enhance operations.

The switch box comes included with the following accessories:

•1x COMMANDO Soldier C2000 Series Managed Switch
•1x Power cable
•1x Console cable
•1x Grounding Cable
•1x Rack/Wall mountable Kit

Reviews

There are no reviews yet.

Be the first to review “COMMANDO Soldier C2000 48GE PoE+,”

Your email address will not be published. Required fields are marked *

Quick Comparison

SettingsCOMMANDO Soldier C2000 48GE PoE+, removeTP LINK AX1500 Wi-Fi 6 Router removeCOMMANDO Soldier C3000 48GE PoE+, removeCOMMANDO Soldier E2000 16GE PoE+ removeCOMMANDO Soldier E2000 24GE PoE+ removeAC1200 Whole-Home Mesh Wi-Fi System remove
Image
SKUC2000-48GP+8CFArcher AX10C3000-48GP+6XE2000-16GP+8CFE2000-24GP+8CFDeco E4(3-Pack)
Rating
PriceUGX 2,827,000UGX 265,000UGX 3,913,000UGX 1,199,000UGX 1,356,000UGX 497,000
Stock
In Stock
In Stock
In Stock
In Stock
In Stock
In Stock
AvailabilityIn StockIn StockIn StockIn StockIn StockIn Stock
Add to cart

Add to cart

Add to cart

Add to cart

Add to cart

Add to cart

Add to cart

DescriptionCOMMANDO Soldier C2000 48GE PoE+, 4GE/4SFP Combo Uplinks, 800W, Managed Switch.
  • Works with all internet service providers, such as AT&T, Verizon, Xfinity, Spectrum, RCN, Cox, CenturyLink, Frontier, etc.( a modem is required for most internet service providers)
COMMANDO Soldier C3000 48GE PoE+, 6x 10G SFP+ Uplinks, 800W Max, Fiber Routing Switch.COMMANDO Soldier E2000 16GE PoE+, 4GE/4SFP Combo Uplinks, 260W, Managed Switch.
  • Deco uses a system of units to achieve seamless whole-home Wi-Fi coverage — eliminate weak signal areas once and for all!
  • With advanced Deco Mesh Technology, units work together to form a unified network with a single network name. Devices automatically switch between Decos as you move through your home for the fastest possible speeds.
  • A Deco E4 three-pack delivers Wi-Fi to an area of up to 4,000 square feet (EU version). And if that’s not enough, simply add more Decos to the network anytime to increase coverage.
  • Deco E4 provides fast and stable connections with speeds of up to 1167 Mbps and works with the major internet service provider (ISP) and modem.
  • Deco can handle traffic from even the busiest of networks, providing lag-free connections for up to 100 devices.
  • Parental Controls limits online time and block inappropriate websites according to unique profiles created for each family member.
  • Setup is easier than ever with the Deco app there to walk you through every step.
Content
COMMANDO Soldier C2000 Series Switches are fully managed, perpetual PoE/PoE+/PoE++ IEEE 802.2af/at/bt (15.4W, 30W, 90W) compliant Gigabit Ethernet L2+ switches having power budget up to 800 W with network resiliency and high availability, delivering robust performance with intelligent switching, scheduling and distribution of Power as per requirement of PD which make PoE/PoE+/PoE++ available on maximum ports despite lower PoE power budget and perpetual PoE/PoE+/PoE++ for no power downtime required for growing networks. This series switches are easy to deploy, use, manage and designed exclusively for the networking needs of growing businesses. The security features equipped with today’s advance networking hardware and software technology. This Series switches can be deployed in harsh environments to deliver hassle free mission-critical network services and surveillance requirements. COMMANDO Soldier C2000 Series Switches are fixed configuration, with flexible 1G or 10G Fiber/ 1GE or 10GE copper Ethernet fixed Uplink that provide enterprise-class access for campus and branch applications. Designed for the digital workplace, these are optimized for today’s mobile and IoT needs. These switches are powerful and flexible enough for users to deploy PoE++/PoE+/PoE standard supplies up to 90W/30W/15.4W per port with power budget up to 800W, Backward compatible power per port which is ideal for PD applications using high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting devices over longer distances up to 250 meters. The 90W PoE++, IEEE 802.3bt technology drives high-power infrastructure for smart building systems, safe cities, thin clients, and a lot more. Facility managers and building owners can adopt the standard perpetual PoE/PoE+/PoE++ to make network future-proof all PoE/PoE+/PoE++ networks requirements. With outcome lower installation and wiring costs without changing network hardware. It provides easy device rack and wall-mounting, on boarding, configuration, monitoring, and troubleshooting. These fully managed switches can provide advanced L2+ and basic Layer 3 features as well as supports IEEE 802.3af compliant PoE (Power over Ethernet), 802.3at compliant PoE+ (Power over Ethernet plus) and IEEE802.3bt type-4 Ultra PoE++ (Power over Ethernet plus plus). Each switchport is capable to deliver 15.4W PoE/ 30W PoE+ or 15.4W PoE/ 30W PoE+/90W PoE++ power on all ports as per switch model with power budget up to 800W along with automated power (ON/OFF) scheduling. Switches are PoE/PoE+/PoE++ capable to provide power across all access ports for wireless APs, security cameras, and other IoT devices. Designed for operational simplicity to lower total cost of ownership, they enable scalable, secure, and energy-efficient business operations with intelligent and automated services. It also provides a convenient and cost-efficient wired access rack and wall mountable solution that can be quickly set up with Zero Touch Provisioning. These switches deliver enhanced application, visibility, network reliability, network resiliency and high availability. It has wire-speed back haul bandwidth capacity with fixed uplinks 1GE or 10GE copper/ 1G or 10G Fiber. This series also offers robust QoS to optimize traffic on your business network, these switches provide (Port-based/802.1p/DSCP) QoS to keep latency-sensitive video and voice traffic jitter-free moving smoothly. Additionally, Port-based, Tag-based VLAN, Voice VLANs, Surveillance VLAN can improve QoS and enhance security to meet network requirements. This series switches also have provisioning of QoS, Static routing, IPV6 features, multicasting, and Security. Moreover, with its innovative energy-efficient technology, can save up to 58% of power consumption, making it an Eco-friendly perfect solution for your business network.

Product Highlights

COMMANDO Soldier C2000 Series Switches contain 8, 24 and 48 Gigabit Ethernet perpetual PoE/PoE+/PoE++ models as well as non-PoE port-based models along with 1/10GE Ethernet Copper-based or 1/10G Fiber Ports (SFP/SFP+) fix Uplinks. This series also has 8, 24 & 48 Fiber SFP Ports models. Switches in COMMANDO Soldier C2000 Series Switches contains 24 & 48 Gigabit Ethernet PoE/PoE+/PoE++ models have up to 90W Per Port power budget and this series switches have total power budget 600W and 800W to meet enhance PoE/PoE+/PoE++ requirement of IP Phone/AP/LWAP/Wi-Fi Access Point and any other PoE/PoE+/PoE++ enabled devices. This series offers various Layer 2+ Ethernet functions (VLAN, QoS, MAC ACL, Port Security, IPv6, LACP, port mirroring, GVRP and many more). These Gigabit Ethernet switch enables home and office users to easily connect and supply power to high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting. It also provides the opportunity to add additional Ethernet devices like computers, printers, and Network Attached Storage (NAS) onto a network. This compact PoE/PoE+/PoE++ switch operates quietly, making it ideal for use in virtually any room or office.

L3 Highlights

•Layer 3 Static Routing up to 512 static route entries along with DHCP server.
•DHCP server, Client, Relay along with DHCP Snooping, DHCP Snooping option82.
•L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication.
• SNMP v1/v2c/v3 and RMON remote monitoring.
• IGMP v1/v2/v3 and MLD v1/v2 snooping, providing advanced multicast filtering and optimization.
•Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications.
•Provides IP-MAC Binding, Port Security, Storm control and DHCP Snooping which protect against broadcast storms, ARP attacks.
•Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
•Auto “denial-of-service” (DoS) prevention.
•Easily troubleshoot any problem in network with Ping, trace route, various show and debug command and WEB GUI based real time status of device.

L2+/L2 Highlights

•Store-and-forward Switching Scheme.
•Solid performance with non-blocking architecture, up to 8000 entries MAC Address Table for 8, 24 ports Switch models and 16K-entry L2 MAC table 48 port Switch models.
•with 4-way hashing algorithm, 4094 VLANs, 1024 to 2K+256 ACL entries, 512 static routes, Maximum packet length 10000 bytes and Jumbo frames of 10000 to 12000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•Security with 802.1X, Serial Port Analyzer (SPAN) and Bridge Protocol Data Unit (BPDU) Guard.
•Independent 512 to 4000-entry L2/IP Multicast table for multicast function.
•Advanced L2+ switching and security features like IP-MAC-Port-VID Binding, Static/Dynamic Port Security (MAC-based), DoS defend feature, Dynamic ARP Inspection.
•Advanced VLAN support for better network segmentation.
•Port mirroring with 4-sets of port mirrors for network monitoring.

Other Highlights

•8, 24 and 48 ports with auto-negotiation 10/100/1000Mbps perpetual and intelligent PoE/PoE+/PoE++ & Non PoE Models along with 8, 24 and 48 Fiber SFP Ports Models.
•Extra 2/4/6 Ports with fixed uplinks 1G or 10G Fiber/ 1GE or 10GE Copper.
•Additional DC input power to enable UPS to mitigate power supply failures and support critical network infrastructure
•90W (PoE/PoE+/PoE++) or 30W(PoE/PoE+) Max Per port with backward compatible power.
•Perpetual PoE/PoE+/PoE++ provides non-stop PoE/PoE+/PoE++ power. Switch can continue to provide power during configuration and reboot, the PDs will not loss power while reloading.
•Intelligent PoE/PoE+ power supply transmission is more reliable as well as more PDs can be connected due to design of robust network transformer which uses high current.
•Various power budget options of 600W/800W for 24 & 48 ports PoE/PoE+/PoE++ Switch models.
•All ports capable of PoE/PoE+/PoE++ up to 48 ports of full Power over Ethernet capability.
•PD detection will automatically detect and provide required power for your PoE/PoE+/PoE++ devices.
•Easily configurable PoE/PoE+/PoE++ scheduling to automate the PoE/PoE+/PoE++ requirements in networks.
•Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis.
•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB for 8, 16, 24 ports switch models and CPU Dual Core having frequency 700 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 12MB for 48 ports switch models.
•All ports capable of Gigabit Ethernet speed.
•Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX).
•Surge Protection up to ±6KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control Fan to optimize cooling and noise. Automatic Temperature Controlled Fan speed using temperature sensor with bilateral heat dissipation.
•Long life electrolytic capacitance to increase the operational life of switches.
•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Rack and Wall mount design that enables to mounts in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with device. Which enables horizontal surface mounting, wall mounting and having durable robust metal body.
•RJ45 Gold plated with 3U thickness, power and ports status/ activity and PoE Max indicator LED lights.
•Supports Energy Efficient Ethernet (IEEE802.3az), Innovative energy-efficient technology which saves up to 56% of power consumption for energy saving in the future.
•Easy to manage device with Web based Graphical User Interface (GUI), Command-Line Interface (CLI) - Telnet / SSH / HTTPS with RJ45 or console cables.
•With Zero Touch Provisioning: A simple, secure, unified plug and play.
•Dual image feature for reduced down-time when the firmware is being upgraded or downgraded or image file getting corrupted.
•WEB/CLI managed modes, SNMP, RMON bring abundant management features
•Supports Cable Diagnostics by Web GUI as well as CLI.
•Watchdog function used to protect the system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.
•RoHS Compliant with most of the packaging material can be recycled and reused.
• Comes with up to Five years extended warranty.
 

Features And Benefits

DHCP Server

Multiple IPv4 DHCP pools with Inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.

Intelligent PoE/ PoE+/PoE++ with Automated Scheduling

It automates the PoE/PoE+ /PoE++ requirements in networks on per port basis. Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+/PoE++ as per Scheduled time which makes them intelligent.

Perpetual POE/PoE+

With Perpetual PoE/PoE+, no power downtime to connected PD devices. PD devices remains power ON even when any software process is not running on the switch. Provides non-stop PoE/PoE+ power and continue to provide power during configuration and reboot, the PDs will not lose power while reloading. The Perpetual POE provides uninterrupted power to connected powered device (PD) even when the switch is booting to make it highly available network without any interruptions.

Ultra PoE++ (IEEE 802.3bt 90W)

COMMANDO BT series Switches with PoE+/Ultra PoE++ standard supplies up to 90W of power per port ideal for applications using high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting, which is useful for small to medium-sized businesses, Internet cafes, hotels, schools, and others. They are easy to install and maintain and provide PoE+/Ultra PoE++ power to high power demanding devices, helping customers build secure, reliable, and high-performance networks. It is an economical way for SOHO and Small-to-Medium Businesses (SMB) to take advantage of Gigabit Ethernet speeds with copper/fiber ports as well as built-in PoE+/Ultra PoE++ IEEE 802.3at/IEEE802.3bt type-4 (90W) while reducing energy consumption and minimizing noise with built-in PoE+/Ultra PoE++ IEEE 802.3at/IEEE802.3bt type-4 (90W) with circuit protection preventing power interference between ports. In a nutshell, 90W PoE++ means affordable power for more power-hungry devices, more business and future ready.

Dual Image

It can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.

Watchdog Function

This ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

L3 Features

This series is having L3 features with IPv4/IPv6 with 512 static routing entries, QoS, ACLs (Port based/ IP based/ MAC Based), DHCP Server and Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay.

L2+/L2 Features

This series is having advance L2+/L2 features like Port aggregation up to 8 ports, VLAN, Voice VLAN, GVRP, 802.1X authentication, centralized MAC authentication, Guest VLAN, RADIUS authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, Preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Flexible Software features provides wide range of Layer 2 functions like VLAN, Multicasting, Quality of Service (QoS), Security.

Secure Networking

IEEE 802.1X port-based access control with surveillance VLAN, Port Security, Protected Port which also Prevent ARP Spoofing. L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication. ACL, L4 to L2 feature restricts access to sensitive network resources. DHCP Snooping ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP. IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms. The switches support ARP attack and DoS attack prevention to safeguard the network.

Multicast

IGMP Snooping (v1, v2, v3), Multicast Listener Discovery (MLD) (v1/v2), Multicast VLAN Registration (MVR) designed for distribution of multicast traffic across segregated access networks which enables more efficient distribution of multicast streams in Layer 2 network.

QoS Features

Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications. Access Control List based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

10G Uplinks

10G copper/fiber Uplink supports high speed networking requirement and reduces copper cabling investment for LACP and LAGs and improves network backbone. It supports high-speed access to the network backbone or data center environment. This provides great resiliency, relieves congestion associated with bandwidth-intensive applications, and guarantees smooth hassle-free data transmission.

Easy Management with CLI

With familiar and popular Command Line interface (CLI), there is no need for engineers to be hired or additional resources to be spent on training and/or learning the switch CLI. The command set are familiar and well known in the industry. Web Graphical User Interface (Web GUI), Command Line interface (CLI), RADIUS/TACACS+ with industry standard CLI and easy to use Web GUI. Management is made easy via a Web GUI or industry-standard Command Line Interface (CLI), with administration traffic protected via SSL or SSH encryption. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur.

Easy to Use

It easy to use and manage and Plug-and-Play that requires no configuration, so setup is simple and hassle-free. Auto MDI/MDI-X crossover on all ports eliminate the need for crossover cables or uplink ports. The switches range from 24 & 48 Gigabit Ethernet perpetual PoE/PoE+/Ultra PoE++ models as well as non-PoE models along with 1G/10GE copper-based or 1G/10G Fiber Ports Uplinks. This series also has 8, 24 & 48 Fiber SFP Ports models. It contains 24 & 48 Gigabit Ethernet PoE/PoE+/Ultra PoE++ models have up to 30W (PoE/PoE+) or 90W Ultra PoE++ Per Port power budget and this series switches have total power budget up to 800W to meet PoE/PoE+/Ultra PoE++ needs. Its compact size makes it ideal for rackmount/wall-mount with limited space. Dynamic LED lights provide real-time work status display and basic fault diagnosis.

Lifetime Free Software Licensing and Upgrades

SoldierOS Software license and Upgrades are free for lifetime. Users do not have to worry about switch license expiring and software getting outdated (which is constant concern and worry of few other brands). This series has improved HTTP base firmware upgrade as well as CLI based upgrades which are freely available to all users without any cost or license fee for lifetime. COMMANDO Soldier C2000 Series Switches are easy to install, configure, monitor, and troubleshoot. It significantly reduces cost of administration and Total Cost of Ownership (TCO).

Auto MDIX Capabilities

Auto sensing/Auto PoE/PoE+/PoE++ 10/100/1000 ports with auto MDIX capabilities which also removes speed and duplex mismatches automatically as well as covers larger physical distance with copper pairs compared to other brands best switches.

Flexible Service Control

With various ACLs to flexibly control ports. It also supports Port-based VLAN assignment, MAC address-based VLAN assignment, Protocol-based VLAN assignment, and Network segment-based VLAN assignment. These secure and flexible VLAN assignment modes are used in networks where users move frequently. It also supports GARP VLAN Registration Protocol (GVRP), which dynamically distributes, registers, and propagates VLAN attributes to ensure correct VLAN configuration and reduce network administrator workloads. This series switches supports SSH v1/v2/v3, RMON, port-based traffic statistics, LLDP/LLDP-MED.

Compact Design with Flexibility of additional ports

The switches provide additional deployment flexibility, fiber connectivity as well as combo options for easy expansion of your networks. So, you can directly connect to a high-performance storage server or deploy a long-distance uplink to another switch.

Perfect for Noise-Sensitive Environments

These are the ideal solution for the most advanced small and medium organizations looking for the best combination of features, performance, and value. These switches are purposely designed for converged networks where voice, video, data are all carried on a single network platform. This series comes with fan/fan-less switches models along with Small form-factor, fan/fan-less design for silent operation. Perfect for noise sensitive environments. Fan based Switches have Temperature- and load-based fan-speed control combines accurate monitoring with minimized system acoustic noise. The Fan based switches also feature built-in smart fans that monitor and detect temperature changes, adjusting the fan speed for maximum efficiency. At lower temperatures, the fans run at a lower speed, reducing both the power consumption and noise output of the switch.

Zero Maintenance

Cost efficient switches, with a reasonable PoE/PoE+/PoE++ power budget up to 800W along with PoE/PoE+/PoE++ configurable scheduler to automated Power ON/OFF connected PoE/PoE+/PoE++ devices as per scheduled timing with Cost of ownership is less compared to other products of same features as well as zero maintenance. Maximum power reduction for ongoing operation cost savings.

Easy Debugging and Troubleshooting

Ping, Traceroute, SNMP, RMON, Web based real time Switch ports monitoring with WEBUI and CLI can easily troubleshoot any problem in network with various show and debug commands.

Longer Distance Coverage

State of art quality switches that can serve real time high-speed performance which covers longer physical distance up to 250 meters with copper pairs compared to other brands.

Warranty:

The switches come with up to Five-year extended warranty.
 

Software

The COMMANDO SoldierOS IP Base switches provides advanced L2 switching and security features along with ACLs (MAC/IP/Port) based IPV4 and IPV6, L4/L3/L2 QoS , Static Routing up to 512 static route entries, Spanning Tree Protocol (IEEE802.1D STP , IEEE802.1w RSTP, IEEE802.1s MSTP) SNMP v1/v2c/v3, IGMP and MLD snooping, QinQ and selective QinQ, VLAN mapping, Voice VLAN, GVRP, Advanced multicast filtering, and IGMP snooping that optimize voice and video applications, DHCP Server, DHCP Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay, RADIUS/TACACS+ authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Management is made easy via a web-based Graphical User Interface (GUI) access via HTTP/HTTPS or industry-standard Command Line Interface (CLI) via Console/ Telnet with administration traffic protected via SSL or SSH encryption. This CLI is well known and understood by all professionals in networking field. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur. It provides a complete set of security features including L4/L3/L2 multi-layer Access Control Lists and 802.1x user authentication via TACACS+ and RADIUS servers. This ensures the network is protected from unauthorized access. It also offers extensive VLAN support including GVRP and 802.1Q VLAN to enhance security and performance. A robust set of L4/L3/L2 based QoS/CoS solutions help ensure that critical network services such as VoIP and video conferencing are served with priority. Bandwidth Control can be flexibly set for each port using predefined thresholds to assure a committed level of service for end users. For advanced applications, flow-based bandwidth control allows easy fine-tuning of service types based on specific IPV4/IPV6 addresses or protocols that provides Security, Performance & Availability. Access control lists (ACLs) perform operation of filtering (IPv4/IPv6) Packet/MAC/port-based filtering to control the movement of segments/packets/frames through a network. ACL filtering provides security by limiting the access of traffic into a network, restricting user and device access to a network, and preventing traffic from leaving a network. Time range-based ACL, VLAN-based ACL, Bidirectional ACL. Packet filtering at Layer 4 through layer 2 Traffic classification based on source IPv4/IPv6 addresses and source MAC addresses, destination MAC addresses. L4/L3/L2 Quality of service (QoS) refers to any technology that manages data traffic to reduce packet loss, latency, and jitter on the network. QoS controls and manages network resources by setting priorities for specific types of data on the network. Static routing is a form of routing that occurs when these switches use a manually configured 512 IPV4 static routing entries. Static routing has three primary uses:
•Ease of routing table maintenance in smaller networks with little growth or change. Routing to and from connected networks.
•A network accessed by a single route, and the router has only one neighbor.
•Single default route to represent a path to any network.
It provides GUI based PoE/PoE+/PoE++ scheduling Premium feature. PoE/PoE+ /PoE++ Scheduling is a feature which allows you to specify the amount of time that power is delivered to a PoE/PoE+/PoE++ port automatically. This can be used to save power when devices are not in use, or as a security feature to prevent wireless access from being available outside of business hours. It is possible to set a schedule PoE/PoE+/PoE++ at a start time, an end time and which ports the PoE/PoE+/PoE++ schedule applies to. The PoE/PoE+/PoE++ device turn ON and OFF as per the PoE/PoE+/PoE++ schedule time.

Software Highlights:

• DHCP Server for multiple IPv4 DHCP pools with inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.
• Intelligent PoE/ PoE+/PoE++ with Intelligent scheduling to automate the PoE/PoE+/PoE++ requirements in networks. Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+/PoE++ as per Scheduled time which makes them intelligent.
• Perpetual POE/PoE+/PoE++ for no power downtime to connected PD devices even when any software process is not running on the switch. Provides non-stop PoE/PoE+/PoE++ power and continue to provide power during configuration and reboot.
• Dual Image can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.
• Watchdog function ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

Layer 3 Switching

• Static ARP as manually added IP network address to the hardware MAC address of a device as well dynamic ARP entries.
• Static Route, Default route and Dynamic connected route learning. Static Route, Default route, connected route up to 512 route entries are supported.
• Access Control List Access Control Lists (ACLs) can be used to deny and allow packets and provides flexible access control based on Standard IPV4, IPV6, MAC based, Management and also Port based Filtering.
• Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
• QoS Features like Scheduling Mode: WRR, SP, which are Based on Port based on 802.1p DSCP (DiffServ), COS and DSCP.

Advanced L2/L2+ Switching

• Auto Port Configuration, Auto-Negotiation for port speed and duplex mode. Flow Control for IEEE802.3x full-duplex and half-duplex backpressure.
• Rate Limit enable to slow down traffic on a port to keep it from exceeding the limit set.
• Link Aggregation with LAG static and IEEE802.3ad Link Aggregation Control Protocol (LACP) increases bandwidth by automatically aggregating several physical links together as a logical trunk and providing load balancing and fault tolerance for uplink connections. Up to 8 maximum aggregation groups.
• Link Layer Discovery Protocol (LLDP) neighbor discovery protocol that allows devices to advertise device information to their directly connected peers/neighbors.
• Unidirectional Link Detection protocol (UDLD) that detects and disables one-way connections before they create undesired situation such as network failure, Spanning Tree loops and broadcast storm.
• Spanning Tree Protocol (STP) eliminates Layer 2 loops in a network by selectively blocking specific links. STP also enables link redundancy. Support IEEE 802.1D (STP), from which IEEE 802.1W (RSTP) and IEEE 802.1s (MSTP 64 to 256 instance).
• Loopback Detection also has BPDU Filter, BPDU Guard.
• IGMP Snooping listening to Internet Group Management Protocol network traffic to control delivery of IP multicast. Network switches with IGMP snooping listen in on the IGMP conversation between hosts and layer 3 devices and maintain a map of which links need which IP multicast transmission.
• Static MAC address, MAC Configuration for MAC binding, MAC Address Filter.
• 4094 VLAN Configuration with advanced VLAN support for better network segmentation, VLAN Based on 802.1Q, MAC-Based VLAN, IP-Based VLAN, Protocol-Based VLAN, Voice VLAN, Guest VLAN, Private VLAN - Support 1:1 VLAN Mapping basic QinQ, Surveillance VLAN.

Secure Networking

• MAC address limiting to enhanced Security. Port Security ensures access to switch ports based on MAC address to limit the total number of devices from using a switch port and protects against MAC flooding attacks, SYN Flood, ICMP Flood attack and prevention of DOS, BPDU Guard and Root Guard which avoid accidental network topology loops and prevent illegal edge devices become root to cause unnecessary flapping.
• IEEE 802.1X Port-based Access Control ensures all users are authorized before being granted access to the network. User authentication is carried out using any standard-based RADIUS server. 802.1x - RADIUS, AAA - MAC-based 802.1X authentication also Support 802.1x surveillance VLAN, Port Security, Protected Port and also Prevent ARP Spoofing.
• L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication. IP, MAC, Ports based Access Control Lists (ACL, L4 to L2) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports and even VLAN ID.
• DHCP Snooping feature ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP.
• IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms.
• ARP attacks prevention prevent typical DoS attacks can protect these attacks more easily ever than before.

Multicast

• IGMP Snooping (v1, v2, v3) transmits data on demand on data link layer by analyzing IGMP packets between the IGMP querier and the users, to build and maintain Layer 2 multicast forwarding table.
• Snooping Multicast Listener Discovery (MLD) snooping (v1/v2) constrains the flooding of IPv6 multicast traffic on VLANs. MLD snooping performs the same function as IGMP snooping with the only difference being that MLD snooping is for IPv6 and IGMP snooping for IPv4 environments.
• Multicast VLAN Registration (MVR) is designed for distribution of multicast traffic on a dedicated multicast VLAN across segregated access networks, while allowing subscribers who are on different VLANs to join and leave the multicast groups carried in the Multicast VLAN. Multicast VLAN registration (MVR) enables more efficient distribution of IPTV multicast streams across an Ethernet ring-based Layer 2 network.

QoS features

• Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based.
• L4/L3/L2 QoS optimize voice and video applications with ACL based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

User friendly Maintenance Management

• With Zero Touch Provisioning: A simple, secure, unified plug and play.
• CLI / Web GUI / SNMP Management with industry standard CLI and Web GUI based device-management tool that provides the ability to provision the device, to simplify device deployment and manageability, and to enhance the user experience. It comes with the software Image 0 can also have Image 1 (Dual image) simultaneously. There is no need to enable anything or install any license on the device. Then Web GUI can be used to build configurations, and to monitor and troubleshoot the device without having CLI expertise.
• Support Multi-user management at the same time.
• With RADIUS and TACACS+ server authentication can be performed locally or on a RADIUS/TACACS+ server can also control access to your network through Switch by using authentication methods such as 802.1X, MAC Based and Web Based.
• Configuration Download/Upload Upgrade Firmware by HTTP and TFTP.

Debugging and troubleshooting feature

• PING, TRACEROUTE, SNMP, RMON, Web based real time switch ports monitoring with WEBUI can easily troubleshoot any problem in network with Ping, trace route, various show, debug command and WEBUI based real time status of device.
• Cable Diagnostics by WEB GUI as well as CLI.
• Maintenance & Operation Management via TFTP/FTP, CLI, Telnet, Console, Web GUI /SSL (IPv4/IPv6), SSH (IPv4/IPv6).
• Port Mirroring for network monitoring. Port mirroring is used on a network device to send a copy of network packets seen on one switch port, multiple other ports, or on to network monitoring connection on another port on the switch.
• SNMP v1/v2c/v3, management station, can monitor the performance of network devices. With SNMP, network managers can view or modify network device information, and troubleshoot according to notifications sent by those devices in a timely manner. Public and Private Management Information Base (MIB) interface
• RMON (Remote Network Monitoring) together with the SNMP system allows the network manager to monitor remote network devices efficiently. RMON reduces traffic flow between the NMS and managed devices, which is convenient to manage large networks.

Software Licensing and Upgrades

• Free Software Upgrades and patching supports with enhanced functionality, which provides fixes for critical bugs and security vulnerabilities between regular maintenance releases. This free software upgrades and licenses support lets you add patches, new features, protocols, and functionality without having to spend a single dollar. This reduces TCO.
• Protected Ports ensure no exchange of unicast, broadcast, or multicast traffic between the protected ports on the switch, thereby improving the security of your converged network.
• Dynamic VLAN Assignment (RADIUS/TACACS+): IP phones and PCs can authenticate on the same port but under different VLAN assignment policies. Users are free to move around and enjoy the same level of network access regardless of their physical location on the network.
• Port Mirroring and Cable Test Many-to-one port mirroring for better and quicker network diagnostics and troubleshooting. Cable test easily identifies bad Ethernet cables.
• Firmware updates and backup procedure by uploading/downloading file to PC/TFTP/FTP.

Table 1. COMMANDO SoldierOS IP Base Software at a Glance

Ethernet Protocols (IEEE ) L2 Switching Features Quality of Service (QoS) Security Management
802.3i 802.3u 802.3ab 802.3z 802.3av 802.3ad 802.3ae 802.3ak 802.3x 802.1p 802.1q 802.1v 802.1d 802.1s 802.1w 802.1x 802.3x Link Aggregation, LACP, Spanning Tree Protocols, Multicasting, VLANs, ACL, Voice VLAN, GVRP, Port isolation, Port security, MAC address learning limit, DHCP Server, IP Source guard, Dynamic ARP inspection, IP /Port/MAC binding L4, L3, L2, ingress/ Egress Access Control List (ACL), 802.1x authentication AAA / RADIUS/TACACS+ Web GUI management mode, Support Command Line Interface (CLI) through console port, Telnet, SNMP v1/v2c/v3 and RMON

Table 2. Performance of COMMANDO SoldierOS IP Base

VLAN 4094
MAC Table entries 8000 to 16000
ACL 1024 to 2K+256
Multicast Group 512 to 4K
Jumbo Frame 10000 to 12000
Multicast IGMP Group 16
Multiple User Account 8
Static Route 512
MSTP 16 to 256
Aggregation Trunks/Ports Per Trunk 8/8 to 8/16
TACACS+/RADIUS Servers 8

Software Features

1. L3 Features

•Static ARP up to 1K
•Supports Gratuitous ARP
•IPv6 Neighbor Discovery (ND)
•Static Routing
•Max. 512 IPv4 entries
•Max. 512 IPv6 entries
•Supports Default Routing

2. L2 Switching Features

Basic L2 Switching Features

•MAC Address Table with 8K to 16 K entries
•802.3x Flow Control when using full duplex
•Back Pressure when using half-duplex
•HOL Blocking Prevention
•Jumbo Frame Up to 10,000 to 12000 bytes
•ERPS (Ethernet Ring Protection Switching)
•Port Mirroring Supports One-to-One, Many-to-One, Supports Mirroring for Tx/Rx/Both, Supports 4 mirroring groups
•Flow Mirroring supports One-to-One, Many-to-One, Supports Mirroring for Rx, Supports 4 mirroring groups
•RSPAN mirroring
•Loopback Detection
•L2 Protocol Tunneling

Link Aggregation

•Support static link aggregation
•Support 802.3ad LACP
•Up to 8 aggregation groups, containing 8 ports per group for 8, 24 & 48 ports Switches and 8 aggregation groups, containing 16 ports per group for 48 ports Switches.

Spanning Tree Protocol (STP)

•IEEE 802.1D Spanning Tree Protocol
•IEEE 802.1s Multiple Spanning Tree Protocol
•IEEE 802.1w Rapid Spanning Tree Protocol
•STP Security: Loop back detection, TC Protect, BPDU Filter/Protect, Root Protect

Multicast

•Support IGMP Snooping V1/V2/V3, with 256 groups to Independent 4K entry Multicast table for L2/IP multicast function
•Support multicast VLANs, IGMP Immediate Leave, Unknown IGMP Throttling, IGMP Filtering, Static Multicast IP
•L2 Multicast Filtering Forwards all groups, forwards all unregistered groups, Filters all unregistered groups
•MLD Snooping, MLD v1/v2 Snooping
•PIM Snooping

VLAN

•Support IEEE802.1Q with 4K VLAN groups and 4K VIDs
•Support Port VLAN, Protocol VLAN and MAC-based VLAN
•Support GARP/GVRP feature

Quality of Service (QoS)

•Support 802.1p CoS/DSCP priority
•Support 4 priority queues
•Queue scheduling: SP, WRR, SP+WRR
•Port/Flow- based Rate Limiting
•Voice VLAN assure voice applications have excellent performance

Advanced Security

•IP-MAC-Port-VID Binding
•Static/Dynamic Port Security (MAC-based)
•DoS defend feature
•Dynamic ARP Inspection

802.1x authentication

•Support 802.1x port/MAC based authentication
•Support Radius authentication and accountability
•Guest VLAN
•RADIUS/TACACS+

Access Control List (ACL)

•L2~L4 package filtering based on source and destination MAC address, IP address, TCP/UDP ports, 802.1p, DSCP, protocol and VLAN ID.
•Time based ACL
•Support Broadcast, Multicast and Unknown unicast Storm Control
•Secure web management through HTTPS and SSLv2/v3/TLSv1
•Secure remote command line interface (CLI) management with SSH v1/V2

Management

•Support Web-based GUI management mode
•Support Command Line Interface (CLI) through console port, telnet management mode
•SNMP v1/v2c/v3
•RMON (1, 2, 3, 9 groups)
•DHCP Server
•DHCP/BOOTP Client
•DHCP Snooping
•DHCP Option 82
•CPU Monitoring
•Port Mirroring (Many to One)
•Cable Diagnostics feature
•Ping/Tracert feature
•SNTP
•System Log

3. Ethernet Protocols

•IEEE 802.3i 10BASE-T
•IEEE 802.3u 100BASE-TX/FX
•IEEE 802.3ab 1000BASE-T
•IEEE 802.3z 1000BASE-X
•IEEE 802.3ae 10GEBASE-T
•IEEE 802.3ak 10GBASE-X
•IEEE 802.3av GVRP
•IEEE 802.3ad Link Aggregation
•IEEE 802.3x Flow control
•IEEE 802.1p QoS
•IEEE 802.1q VLANs / VLAN tagging
•IEEE 802.1v Protocol VLAN
•IEEE 802.1d Spanning Tree Protocol (STP)
•IEEE 802.1s Multiple Spanning Tree (MSTP)
•IEEE 802.1w Rapid Spanning Tree (RSTP)
•IEEE 802.1x Network Login Security
•IEEE 802.3x flow control for Full Duplex mode and back pressure for Half Duplex mode

4. MIBs (Management Information Base)

•Ethernet-like MIB (RFC 3635)
•Interface Group MIB (RFC 2863)
•RMON (RFC 2819)
•Bridge MIB (RFC 1493)
•Bridge MIB Extension (RFC 2674)

Table 3. Key software function of COMMANDO SoldierOS IP Base

Features Protocols
IEEE Standards IEEE 802.3x (Full Duplex), Back-Pressure (Half-duplex) IEEE 802.3, IEEE 802.3u, IEEE 802.3ab, IEEE 802.3z IEEE 802.3ad IEEE 802.3q, IEEE 802.3q/p IEEE 802.1w, IEEE 802.1d, IEEE 802.1S
MAC Address 8000 to 16000 MAC addresses table entries Jumbo Frame 10000 to 12000 bytes with automatic MAC address learning and aging
Energy Efficient Ethernet EEE (802.3az)
VLAN Up to 4094 VLAN Port-based VLAN up to 8 groups IEEE 802.1Q Tagged-based MAC-based VLAN up to 256 Voice VLAN static up to 256 QoS for each Voice VLAN Data Voice VLAN OUI Mode (Auto/Manual) maximum 16 OUI Multicast VLAN Registration (MVR) IPV4 Based
Surveillance VLAN OUI Mode (Auto/Manual) maximum 16 OUI
VLAN QinQ (IEEE 802.1ad)
GARP VLAN Registration Protocol (GVRP) GVRP As per IEEE 802.1Q specification
Spanning Tree IEEE 802.1D (STP) EEE 802.1w (RSTP) EEE 802.1s (MSTP) maximum 64 to 256 instances uto Edge Port BPDU Filtering BPDU Guard Self-Loop Detection UDLD
Link Aggregation IEEE 802.3ad LACP, Max 8 Aggregation Groups trunk, Maximum 8 to 16 ports per Trunk Static Trunk Aggregation and Dynamic Aggregation Traffic Load Balancing
Port Mirror Many-to-one port mirroring
Port flow control Half duplex based back pressure control Full duplex based on PAUSE frames
Line Rate Support Port based Input/Output Bandwidth Management
IP Binding Support Static ARP
DHCP DHCP Server, DHCP Client mode
DNS DNS Client mode
Static Routing Support Static routing
IGMP Snooping IGMP v1/v2 IGMP v3 Basic (BISS) IGMP v2/v3 Querier
MLD Snooping MLD v1/v2
IPv6 IPv6 Host - Auto Configuration, Static IPv6 Address and Prefix Length, Static IPv6 Default Gateway, IPv6 Neighbor Discovery (ND), IPv6 Duplicate Address Detection, ICMPv6 IPv6 Application Supported - HTTP/HTTPS, TELNET, SSH, SNMP, TFTP, Syslog, PING, DHCPv6
Multicast Multicast Groups up to 256 to 4000 Immediate Leave Static/Forbidden Router Port Static/Forbidden Forward Port Filtering up to 128 profiles Throttling
Storm suppression Storm Control Broadcast Unknown Multicast Unknown Unicast Storm Suppression of Broadcast type Storm suppression based on bandwidth tuning and storm filtering
Access Control List (ACL) Access Rules Maximum 1024 to 2K+256 ACL Type-L2/L3/L4 ACL IPv4-based Up to 1024 to 2K+256 ACL IPv6-based
Security AAA (Authentication, Authorization and Accounting) TACACS+ (Terminal Access Controller Access Control Server) Maximum up to 8 servers. RADIUS (Remote Authentication Dial-In User Service) Maximum up to 8 servers. Authentication Manager - IEEE 802.1X, MAC Auth, Web Auth, Guest VLAN, Port-based, Host-based. Port Security Using Dynamic Lock maximum 256 Protected Port (Port Isolation) Black Hole MAC CPU Defense Engine DoS Prevention DHCP Snooping (with Option 82) Dynamic ARP Inspection IP Source Guard maximum 256 IP/MAC/Port Binding (IMPB)
QoS Features 802.1p port queue priority algorithm Teams that support 4 different priorities per port Queue Scheduling - WRR, WFQ, Strict Priority, Hybrid (WRR+SP or WFQ+SP) WRR (Weighted Round Robin) Weighted priority rotation Algorithm, WRR, SP, WFQ, 3 priority scheduling models Class of Service - Port-based, 802.1p, IP TOS Precedence, IP DSCP, trusted QoS Support based on port, MAC, 802.1Q, DSCP classification Rate Limit - Port-based (Ingress/Egress)
Account Manager Local Authentication Multiple User Account Up to 8 Multilevel Security Password Recovery Procedures
System maintenance Upgrade firmware feature via TFTP/FTP/HTTP. Support Upload/Download Configuration files through WEB Support Multi-user management GUI/ CLI based Restore Factory Configuration
Line Management Console Telnet (RFC854) SSH v1/v2
Management and Maintenance Management by CLI - Console, Telnet (RFC854) up to 3 sessions Management by GUI - HTTP, HTTPS Management Based on Remote Configuration and Maintenance Using Telnet, SNMP V1/V2C/V3, SSH V1/V2, RMON V1/V2 Software Reset to default setting
Management Access Management VLAN Management ACL Up to 1024 to 2K+256
File Management Firmware Upgrade/Backup Dual Images Configuration Download/Backup Multiple Configurations Upload/Download using TFTP (RFC783) HTTP (Hyper Text Transfer Protocol) UART (Universal Asynchronous Receiver/Transmitter)
Time Management Locally using sync with PC option. NTP (Network Time Protocol)
Port Management Friendly Port Name (Port Description) Error Disabled Recovery
Secure Sockets Layer (SSL) Secure Sockets Layer (SSL)- SSLv2, SSLv3 Transport Layer Security (TLS)- TLSv1
Neighbor Discovery IEEE 802.1AB Link Layer Discovery Protocol (LLDP) ANSI/TIA-1057 LLDP Media Endpoint Discovery (LLDP-MED)
Remote Monitoring Management RMON Up to 32 entries / type
MIB MIB-II (RFC 1213) Ethernet-like MIB (RFC 3635) Interface Group MIB (RFC 2863) RMON (RFC 2819) Bridge MIB (RFC 1493) Bridge MIB Extension (RFC 2674)
Diagnostics Mirroring 4 sets Port-based (Many to One) Up to 32 entries / type Syslog (RFC3164) with Local RAM, Local Flash, Remote Server up to maximum 8. System Diagnostics with CPU Utilization, Memory Utilization, Port Utilization Port Diagnostics with Cable Test, Fiber Module Status Network Diagnostics with Ping Test, Traceroute

Convergence Time

By default, RSTP used for all COMMANDO SoldierOS and it takes less than 10 seconds for entire network to converge. RSTP converges faster because it uses a handshake mechanism based on point-to-point links instead of the timer-based process used by STP. IP multicast snooping and IGMP automatically prevent flooding of IP multicast traffic. IEEE 802.1AB Link Layer Discovery Protocol (LLDP) facilitates easy mapping using network management applications with LLDP automated device discovery protocol LLDP-MED (Media Endpoint Discovery) defines a standard extension of LLDP that stores values for parameters such as QoS and VLAN to configure automatically network devices such as IP phones. STP/RSTP/MSTP for loop free network, IEEE 802.1s Multiple Spanning Tree provides high link availability by allowing multiple spanning trees; provides legacy support for IEEE 802.1d and IEEE 802.1w IEEE 802.3ad Link Layer Discovery Protocol (LACP) and port trunking support up to 8 static, dynamic, or distributed trunks with each trunk having up to 8 to 16 links (ports) per static trunk. Lag links provides easy-to-configure link redundancy of active and standby links.

Security

The AAA feature allows you to verify the identity of, grant access to, and track the actions of users. The COMMANDO Soldier C2000 Series Switches support Remote Access Dial-In User Service (RADIUS) or Terminal Access Controller Access-Control System Plus (TACACS+) protocols. Based on the user ID and password combination that you provide, the COMMANDO Soldier C2000 Series Switches perform local authentication or authorization using the local database or remote authentication or authorization using one or more AAA servers. A pre-shared secret key provides security for communication between the COMMANDO Soldier C2000 Series Switches and AAA servers. You can configure a common secret key for all AAA servers or for only a specific AAA server. COMMANDO Soldier C2000 Series Switches Multiple user authentication methods
•Uses an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server to authenticate in accordance with industry standards
•Supports web-based authentication
•Supports MAC-based authentication
•Multiple IEEE 802.1X users per port provides authentication of multiple devices on a single port; prevents a user from piggy backing on another user’s IEEE 802.1X authentication
•Concurrent IEEE 802.1X, Web, and MAC authentication schemes per port switch port will accept up to 8 sessions of IEEE 802.1X, Web, and MAC authentications
•Access control lists (ACLs) provide IP Layer 3 filtering based on source and destination IP address or subnet or source and destination TCP/UDP port number
•Source-port filtering allows only specified ports to communicate with each other
•RADIUS/TACACS+ eases switch management security administration by using a password authentication server
•Secure shell encrypts all transmitted data for secure remote CLI access over IP networks
•Secure Sockets Layer (SSL) encrypts all HTTP traffic, allowing secure access to the browser-based management GUI in the switch
•Port security allows access only to specified MAC addresses, which can be learned or specified by the administrator
•MAC address lockout prevents particular configured MAC addresses from connecting to the network
•Secure FTP allows secure file transfer to and from the switch; protects against unwanted file downloads or unauthorized copying of a switch configuration file
•Switch management logon security helps secure switch CLI logon by optionally requiring either RADIUS or TACACS+ authentication
•Custom banner displays security policy when users log in to the switch
•STP BPDU port protection blocks Bridge Protocol Data Units (BPDUs) on ports that do not require BPDUs, preventing forged BPDU attacks
•DHCP protection blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks
•Dynamic ARP protection blocks ARP broadcasts from unauthorized hosts, preventing eavesdropping or theft of network data
•Dynamic IP lockdown works with DHCP protection to block traffic from unauthorized hosts, preventing IP source address spoofing
•STP root guard protects the root bridge from malicious attacks or configuration mistakes
•Identity-driven ACL enables implementation of a highly granular and flexible access security policy and VLAN assignment specific to each authenticated network user
•Per-port broadcast throttling configures broadcast control selectively on heavy traffic port uplinks
•Monitor and diagnostics digital optical monitoring of SFP and 1000BASE-T transceivers allow detailed monitoring of the transceiver settings and parameters

Effective Management

COMMANDO SoldierOS offers network monitoring for users to observe traffic behavior with Port Mirroring, Loop Prevention and DHCP snooping features, can identify and even locate connection problems on your business network.
•Administrators can designate the priority of the traffic based on Port Priority, 802.1P and DSCP Priority, to ensure that voice and video are always clear, smooth and lag-free.
•Voice VLAN, port-based VLAN and 802.1Q-based VLAN functions. COMMANDO is an upgrade from the plug-and-play Unmanaged Switch, delivering great value while empowering your network and similarly delivering great value to the end user.
•RMON provide advanced monitoring and reporting capabilities for statistics, history, alarms, and events.
•Troubleshooting ingress and egress port monitoring enable more efficient problem solving.
•Unidirectional Link Detection (UDLD) monitors the link between two switches and blocks the ports on both ends of the link if the link goes down at any point between the two devices.

Table 4. COMMANDO Soldier C2000 Series Switches PoE/PoE+/PoE++ Power Budget and slots

Model Max Power Budget (Watt) Total physical slots (Ports) on device
C2000-24G+8CF - 32
C2000-24GP+8CF 600W 32
C2000-48GP+8CF 800W 56
C2000-8SFP+4CF - 12
C2000-48SFP+4GE - 52

PoE/PoE+/PoE++ Flexibility

COMMANDO SoldierOS Power over Ethernet (PoE/PoE+/PoE++) enabled switches with a total power budget of up to 800W for different kinds of PoE/PoE+/PoE++ devices over a long-range copper cable length up to 250m, provides power and network connectivity for PoE/PoE+/PoE++ powered devices over a single network cable with schedule time as per time set by network administrator. PoE/PoE+/PoE++ devices range from wireless access points, IP cameras, VoIP phones, PoE LED lighting, PoE speakers to IoT doorbells and other IoT, Wireless Access Points, Wireless Bridges, or other standards compliant PoE/PoE+/PoE++ all end devices with Scheduling of power on each port to fully automate network. This series switches provide a quick, safe and cost-efficient IEEE 802.3af/at/bt PoE/PoE+/PoE++ network solution for small businesses and enterprise. By default, the switches automatically detect IEEE 802.3af/at/bt devices so they automatically receive PoE/PoE+/PoE++ power.

Table 5. COMMANDO Soldier C2000 Series Switches LED Indication

LED Indication on Switch LED Status
Power Green OFF: No power on the switch. Green ON: The switch powered on
Link/Act LINK/ACT bi-color LED: OFF: Port disconnected or link fail. Green ON: 1000Mbps connected. Amber ON: 10/100Mbps connected. Green Flashing: 1G/10G connected and Data in transit Amber Flashing: 10/100Mbps connected and Data in transit
System Green OFF: The system is starting, please wait Green ON: The system is up and running
PoE OFF: PoE/PoE+ power is not provided on port Blue ON: PoE/PoE+ power is provided on port
PoE MAX PoE MAX OFF: PoE Power budget is available in switch Red ON: PoE Power budget is 95%

Power Budget According to Cable Length

Ideally, shorter cables would use less power because of less power degradation over their length This is not the case with most devices as they will use the same amount of power across the cable regardless of whether it is 10 or 100 meters in length. These switches analyze the length of the Ethernet cable connected and adjusts the power usage accordingly, rather than keeping the power consumption in a conventional solution.

Table 6. COMMANDO Soldier C2000 Series Switches Cable Lengths

Connection Cable Type Category and Speed Maximum Cable Distance Supported
Unshielded Twisted Pair cable 10/100Base-TX: UTP category 5/5e/6 cables (Maximum 100m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Shielded Twisted Pair cable 10/100Base-TX: STP category 5/5e/6 cables (Maximum 250m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Optical Fiber Cable 550M~120KM depending on SFP 120KM
 

Hardware

COMMANDO Soldier C2000 Series Switches has 4.1 to 12 Mbit SRAM Packet Buffer memory with Packet length of 10K bytes. L2 MAC Function with 8K entries for MAC address learning for 8, 24 port Switch models and 16K-entry L2 MAC table 48 port Switch models with the 4-way hash L2 table and searching with two hash algorithms. Independent 512- 4K entry L2/IP Multicast table for multicast function, 2-hash algorithm selection for L2 table searching/learning. Aging timer ranges from 0.2s to 1600000s. It has a 4K-entry VLAN table and provides a 64-entry filtering database for 802.1Q port-based, protocol- and-port-based, 802.1Q-based, IP-subnet-based, and ACL Rules-based VLAN operation to separate logical connectivity from physical connectivity with IVL (Independent VLAN Learning), SVL (Shared VLAN Learning), and IVL/SVL (both Independent and Shared VLAN Learning) for flexible network topology architecture. The mode used depends on the FID (Filtering Identifier) setting. It also has a 1.5K to 2K+256 entry Access Control List (ACL) that parses various protocol packet types and performs configurable actions, e.g., Permit/Drop, redirect, and traffic policing. It has per-port ingress/egress bandwidth control and per- queue egress bandwidth control. It has 8 physical queues in each port. It also has three types of packet scheduling, SP (Strict Priority), WFQ (Weighted Fair Queuing), and WRR (Weighted Round Robin). Each queue provides a leaky bucket (LB) to shape the incoming traffic into the average rate behavior. Port-based 802.1X and MAC-based 802.1X authentication prevent unauthorized users. It also has port isolation to enhance port security. It has 4-set port mirror configuration to mirror ingress and egress traffic for network management purposes, complete MIB counter support reflects the switch status in real time. Link aggregation static and dynamic to increase link redundancy and increase linear bandwidth. It supports VLAN Function with IVL, SVL, and IVL/SVL, IEEE 802.1Q VLAN with 4K-entry VLAN Table, Port-based VLAN, Port-and-protocol-based VLAN, ACL-based VLAN. Limited learned L2 MAC entry on each port and each VLAN. Supports flexible Q-in-Q and VLAN Tag function. It Supports up to 64-256 spanning tree instances for MSTP (IEEE 802.1s), RSTP, and STP with Automatic loop detection and isolation (RLPP/RLDP). L3 Unicast Routing with 512 next hop MAC. IEEE 802.3az Energy Efficient Ethernet (EEE). IGMPv1/2/3 and MLDv1/2 snooping. It also Supports Reserved Multicast Addresses processing and L2 Miscellaneous Functions like Supports broadcast, multicast, unknown- multicast, and unknown-unicast packet suppression control, IEEE 802.1x, Port Mirroring with 4-sets of port mirrors, Flow-based mirror function, RSPAN function for remote mirroring. It supports Link Aggregation (IEEE 802.3ad) for 8 groups of link aggregators with up to 8 ports per-group, Port isolation function to enhance port security. It also has Attack Prevention, Land attack, Blat attack, TCP control flag attack, Ping attack, Packet length attack. It supports Access Control List (ACL) Function with 1.5K-entry to 2K+256 shared entry for ingress and egress ACL. ACL table and L4/L3/L2 format (e.g., DMAC, SMAC, and Ether-Type), IPv6 Parsing and Per-flow traffic policing with 16-entry VID range checking. It also supports 8-entry IPv4 or 2-entry IPv6 range checking. 256 to 512 leaky buckets for flow traffic policing. It supports QoS Functions with 8 physical queues per port, Strict Priority (SP) and Weighted Fair Queue (WFQ), Weighted Round Robin (WRR) packet scheduling, QoS remarking for 802.1p and DSCP (includes IPv4/IPv6) also Supports average packet rate control leaky bucket per queue, in 16Kbps steps up to 1Gbps maximum. Ingress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. Egress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. It supports MIB Functions with 256 to 2K 32-bit packet-based or 1K 64-bit byte-based log counters to enhance MIB counter log counters to enhance MIB count functionality. It also supports Ethernet-like MIB (RFC 3635), Interface Group MIB (RFC 2863), RMON (RFC 2819), Bridge MIB (RFC 1493), Bridge MIB Extension (RFC 2674). It has Hardware Watchdog support which guard against certain types of system hangs. Watchdog timer is used to escape from if something goes wrong. Based on the situation, the Switches can automatically reset itself, or recover from the failure and generate an error message in the console logs. Long life electrolytic capacitance. High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process. Rack mount design, Mounts in an EIA-standard 19-inch telco rack or equipment cabinet (Rack-mounting kit available); horizontal surface mounting; wall mounting with durable robust metal body. Bilateral heat dissipation. Power and ports status/ activity indicator LED lights. RJ45 Gold plated with 3U thickness. It also supports has IEEE 802.3az Energy Efficient Ethernet (EEE) for 100Base-TX in full duplex operation and supports 10Base-Te for 10Base-T in full/half duplex. The Energy Efficient Ethernet (EEE) operational mode combines the IEEE 802.3 Media Access Control (MAC) Sub-layer with a family of Physical Layers defined to support operation in Low Power Idle (LPI) Mode. When Low Power Idle Mode is enabled, systems on both sides of the link can disable portions of the functionality and save power during periods of low link utilization. 10Mbps PHY with reduced transmit amplitude requirements in EEE operational mode. This new PHY is fully interoperable with legacy 10Base-T PHYs over 100m of Class-D (Category 5) or better cabling.

Now is the Time to Upgrade to 90W Ultra PoE++

Ultra PoE++ offers a robust, end-to-end high power PoE solution with up-front cost savings. Fortunately, transitioning to the new standard won’t necessarily be a costly affair for users and installers or network seeking to deliver more power to, standard CAT 5 and 6 Ethernet cables are IEEE compatible So, you can add and move devices by moving these cables. Wiring and equipment costs remain down as there’s usually no need to move AC sources physically. Safety measures ensure up to 90W of power is safely delivered. Ultra PoE++, satisfies this hunger by extending the PoE and PoE+ specifications to 90W of PD delivered power. Ultra PoE++ capabilities of this standard expand the field of Ethernet-powered applications by several orders of magnitude, enabling entirely new classes of PDs, such as power-hungry picocells, base stations or heaters for pan-tilt-zoom cameras and these critical devices stay up during load shed. New IEEE 802.3bt Standard Boosts the Technology for IoT Applications. The first and the most important improvement in the 802.3bt standard is the capability to transfer much more power to edge devices (powered devices or PDs) 71.3 W, while sending 90 W from the power sourcing equipment (PSE) side enable in numerous new IoT and especially IIoT (Industrial IoT) power hungry and high-speed devices to be powered by PoE technology.
•Expanding Ultra PoE++ Use Cases with the Adoption of High-Power IEEE.
•Safe Cities with PTZ Camara
•Smart Building Systems with Ultra PoE++ Powered LED Lighting
•High-Performance Wireless Access Points
•Intercoms, TVs, and Video Conferencing

Hardware Highlights

Solid performance with non-blocking architecture

•CPU Dual Core having frequency 500 to 700 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB to 12 MB.
•All ports capable of Gigabit Ethernet speed. Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Solid performance with non-blocking architecture, 8000 to 16000 entries MAC Address Table with 4-way hashing algorithm
•4094 VLANs can be created
•1024 to 2K+256 ACL entries
•Up to 512 static routes
•Independent 512 to 4K entry L2/IP Multicast table for multicast function.
•Maximum packet length 10000 bytes
•Jumbo frames of 10000 to 12000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•L2/L3/L4 QoS optimize voice and video applications with 256 leaky buckets for flow traffic policing.
•Switching Capacity: 216Gbps
•Forwarding Capacity: 191Mpps
•Store-and-forward Switching Scheme.
•VLAN L3 Interface: 16
•Port Queues: 8
•PoE Budget up to 800W depending on models

Physical Ports and Networking Interfaces

•Up to 48 x 1GE or SFP Ports with 2/4/6 10G (SFP/SFP+) ports uplinks or 2/4/6 10GE ports Uplink or 8 combo ports 4 GE (RJ-45) or 4 SFP Uplinks. 8, 24 & 48 ports PoE (PoE+) & SFP/SFP+ models.
•Management Interface: Console, Mini USB.
•LED Indicators: Power, Link/Act, PoE Max.
•Additional DC input power to enable UPS to mitigate power supply failures and support critical network infrastructure.

IEEE 802.3af/at Compliant Power over Ethernet

•Various power budget of 600W and 800W for 8, 24 and 48 ports perpetual PoE/PoE+/PoE++ Switch models. 90W Max Per port (PoE/PoE+/PoE++). POE power supply transmission is more reliable due to design of robust network transformer which uses high current. All PoE/PoE+/PoE++ ports are IEEE 802.3af-compliant PoE, IEEE802.3at-compliant PoE+ and IEEE 802.3bt-compliant PoE++. Each port delivers 15.4 W PoE, 30 W PoE+, 90W PoE++ power capacity with backward compatibility.
•PD detection will automatically detect and provide required power for your PoE/PoE+/PoE++ devices.

Extra Long operational life

•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Support temperature range 0° C to 55° C
•Surge protection up to ±6KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Long life electrolytic capacitance to increase the operational life of switches. RJ45 Gold plated with 15U thickness.
•Rack and wall mount design enables to mount the switch in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with the device. It enables horizontal surface mounting, wall mounting with durable robust metal body.

Green Energy and Silent operation

•Comply with IEEE 802.3az (Energy-Efficient Ethernet) standard, reduces power consumption up to 58% and reduce the noise pollution. Energy Efficient Ethernet (EEE) on the RJ-45 ports and low-power operations for industry best-in-class power management and power consumption capabilities. The ports support reduced power modes so that ports not in use can move into a lower power utilization state.
•Automatic Temperature Controlled fans with Temperature Sensor. Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control fan to optimize cooling and noise with bilateral heat dissipation.

Ethernet Protocols

•Supports wide range of IEEE 802.3i, 10BASE-T IEEE 802.3u, 100BASE-TX/FX IEEE 802.3ab, 1000BASE-T IEEE 802.3z, 1000BASE-X, 10GEBASE-T, 10GBASE-X, IEEE 802.3av, GVRP, IEEE 802.3ad, Link Aggregation, IEEE 802.3x, Flow control, IEEE 802.1p, QoS IEEE 802.1q, VLANs / VLAN tagging IEEE 802.1v Protocol, IEEE 802.1d Spanning Tree Protocol (STP), IEEE 802.1s Multiple Spanning Tree (MSTP), IEEE 802.1w Rapid Spanning Tree (RSTP), IEEE 802.1x Network Login Security, IEEE802.3af, IEEE802.3at.

Highly reliable and Enterprise design

•High Quality as for all Mean Time Before Failure of system, MTBF > 200,000 hours
•Stability: 64bit packet, time delay < 10us, packet loss rate: 0
•Restorability of Network shaking or device breakdown, restart (recovery) time < 60 sec.
•RoHS Compliant with most of the packaging material can be recycled and reused.
  • One Mesh Compatible Router - Form a seamless WiFi when working with TP-Link One Mesh WiFi Extenders
  • Wi-Fi 6 Router: Archer AX10 comes equipped with the latest wireless technology WiFi6 featuring OFDMA 1024-QAM, drastically increasing the speed and efficiency of the entire network.
  • Next-gen Dual Band router - 300 Mbps on 2. 4 GHz (802. 11n) plus 1201 Mbps on 5 GHz (802. 11ax)
  • Connect more devices than ever before - Wi-Fi 6 technology simultaneously communicates more data to more devices using OFDMA and MU-MIMO while reducing lag dramatically
  • Triple-core processing - the 1. 5 GHz tri-core processor ensures communications between your router and all connected devices are smooth and Buffer-Free
  • More coverage with less interference - achieve the strongest most reliable Wi-Fi coverage with Archer AX10 as it focuses signal strength to your devices using Beamforming technology.
  • Backward compatible - Archer AX10 supports all previous 802. 11 standards and all Wi-Fi devices
Wi-fi 6 router AX1500 Wi-Fi 6 delivers a huge boost in speed and total capacity. Get on the latest WiFi technology to wipe out all the annoying slowdown, and enjoy the future network that loads faster and connects more. The latest 1024-QAM and higher symbol rate work to boost speeds for newer devices to the Gigabit level. Connect to a 1 Gbps WiFi network with your phone or laptop, and enjoy speeds comparable to plugging in an Ethernet cable. Add more WiFi devices without dragging down performance. OFDMA allows multiple devices to use one band at the same time, enabling your WiFi to bear more devices compared to the same speed level Wi-Fi 5 router. Wi-Fi 6 increases the efficiency of transmits data, cutting the lag. Enjoy flawless video and audio chats, better gaming speeds, and instantaneous video loading on different devices—all at the same time. Beamforming technology and 4 high-gain antennas combine to generate strong, reliable Wi-Fi signal throughout your home, delivering smooth and stable connections for all your devices. The Gigabit Ethernet ports allow you to take full advantage of your broadband speed up to 1 Gbps. Plug your PCs, smart TVs, and game consoles into one of the four Gigabit Ethernet LAN ports for fast, reliable wired connections.

SOFTWARE FEATURE SET

 

L3 Features

• Static Route
• Dynamic Routing, RIPv1/v2, OSPF v1/v2
• Policy-based Routing (PBR) for IPv4 and IPv6
• VRRP
• IGMP v1/v2/v3, IGMP Proxy
• Static Multicast Route
• Multicast Receive Control
• Illegal Multicast Source Detect
• ARP Guard, Local ARP proxy, Proxy ARP, ARP Binding, Gratuitous ARP, ARP Limit
• Dynamic ARP Inspection (DAI)
• DNS Server, Client, DNS Relay
 

IPv6 Features

• ICMPv6, ND, DNSv6
• MLD Snooping, IPv6 Multicast VLAN
• MLDv1/v2, IPv6 ACL, IPv6 QoS
 

QoS

• 13 Queues
• SP, WRR
• Traffic Classification Based on 802.1p COS, ToS, DiffServ DSCP, ACL, port number
• Traffic Policing
• PRI Mark/Remark
• Surveillance VLAN
 

ACL

• IP ACL, MAC ACL, IP-MAC ACL
• Standard and Expanded ACL Based on source/destination IP or MAC, IP Protocol,
• TCP/UDP port, DSCP, ToS, IP Precedence), VLAN, Tag/Untag, CoS
• REDIRECT and Accounting based ACL
• Rules can be configured to port, VLAN, VLAN routing interfaces
• Time Ranged ACL
 

Security

• 802.1x AAA
• Port, MAC based authentication
• Accounting based on time length and traffic
• Guest VLAN and auto VLAN
• RADIUS for IPv4 and IPv6
• TACACS+ for IPv4 and IPv6
 

DHCPv4/v6 Traffic Monitor

• DHCP Server/Client for IPv4/IPv6
• DHCP Relay/Option 82
• DHCP Snooping/Option 82
 

Tunneling

• L3 GRE
• 6 to 4
• ISATAP
• IP-in-IP
• Configured Tunnel
 

L1, L2 Features

• IEEE802.3(10Base-T)
• IEEE802.3u(100Base-TX)
• IEEE802.3z(1000BASE-X)
• IEEE802.3ab(1000Base-T)
• IEEE802.3ae(10GBase), IEEE802.3x
• IEEE802.3an (10GBASE-T)
• Port loopback detection
• LLDP and LLDP-MED
• UDLD
• 802.3ad LACP, 26 Trunk group with max 8 ports
• LACP load balance
• N:1 Port Mirroring
• RSPAN
• ERSPAN
• IEEEE802.1d(STP)
• IEEEE802.1w(RSTP)
• IEEEE802.1s(MSTP)
• Root Guard
• BPDU Guard
• BPDU Tunnel
• IP Source Guard
• 802.1Q, 4K VLAN
• MAC VLAN, Voice VLAN, Protocol VLAN, Multicast VLAN
• QinQ, Selective QinQ, Flexible QinQ
• GVRP
• N:1 VLAN Translation
• Broadcast / Multicast / Unicast Storm Control
• IGMP v1/v2/v3 Snooping and L2 Query
• ND Snooping
• MLDv1/v2 Snooping
• Port Security
• Flow Control: HOL, IEEE802.3x
• Bandwidth Control
 

Traffic Monitor

• sFlow Traffic Analysis
 

Security Network Management

• CLI, WEB, Telnet, SNMPv1/v2c/v3 through IPv4 and IPv6
• Syslog and external Syslog Server HTTP SSL
• SNMP MIB, SNMP TRAP
• FTP/TFTP
• SNTP/NTP
• RMON 1,2,3,9
• Authentication by Radius/TACACS
• SSH v1/v2
• Dual firmware images/ Configuration files
 

GREEN Features

• IEEE 802.3az (Energy Efficient Ethernet)
• Auto FAN Speed Control, Temperature Alarm
• LED Shut-Off
 

MIB (Management Information Base) counters

• TCP/IP-based MIB-II (RFC 1213)
• Ethernet-like MIB (RFC 3635)
• Interface Group MIB (RFC 2863)
• RMON (Remote Network Monitoring) MIB (RFC 2819)
• Bridge MIB (RFC 1493)
• Bridge MIB Extension (RFC 2674)

Product Overview

COMMANDO Soldier E2000 Series Switches are fully managed, perpetual PoE/PoE+ IEEE 802.3af/at compliant Gigabit Ethernet L2+ switches with network resiliency and high availability, delivering robust performance with intelligent switching, scheduling and distribution of PoE/PoE+ Power as per requirement of PD which make PoE+ available on maximum ports despite lower PoE power budget and perpetual PoE/PoE+ for no power downtime required for growing networks. This series switches are easy to deploy, use, manage and designed exclusively for the networking needs of growing businesses. The security features equipped with today’s advance networking hardware and software technology. This Series switches can be deployed in harsh environments to deliver hassle free mission-critical network services and surveillance requirements. COMMANDO Soldier E2000 Series Switches are fixed configuration, with flexible 1G Fiber and/or 1GE copper fixed uplink that provide enterprise-class access for campus and branch applications. Designed for the digital workplace, these are optimized for today’s mobile and IoT needs. These switches are powerful and flexible enough for users to deploy wireless access points, surveillance cameras, IP phones and other PoE supported devices over longer distances up to 250 meters with power budget up to 450W. It is available in Desktop as well as Rack/Wall mounting casing. These fully managed switches can provide advanced Layer 2 and basic Layer 3 features. It has IEEE 802.3af-compliant PoE (Power over Ethernet) and 802.3at-compliant PoE+ (Power over Ethernet plus) along with high availability to the PD devices by powering them even when a software process is not running on the switch. Each switchport is capable to deliver 15.4W PoE or 30W PoE+ power on all ports along with automated power (ON/OFF) scheduling. All Switches are PoE/PoE+ capable to provide power across all access ports for wireless APs, security cameras, and other IoT devices. Designed for operational simplicity to lower total cost of ownership, they enable scalable, secure, and energy-efficient business operations with intelligent and automated services. It provides a convenient and cost-efficient wired access rack and wall mountable solution that can be quickly set up with Zero Touch Provisioning. These switches deliver enhanced application, visibility, network reliability, network resiliency and high availability. This series also offers robust QoS to optimize traffic on your business network, these switches provide (Port-based/802.1p/DSCP) QoS to keep latency-sensitive video and voice traffic jitter-free moving smoothly. Additionally, Port-based, Tag-based VLAN, Voice VLANs, Surveillance VLAN can improve QoS and enhance security to meet network requirements. This series switches also have provisioning of QoS, Static routing, IPV6 features, multicasting, and Security. Moreover, with its innovative energy-efficient technology, can save up to 58% of power consumption, making it an Eco-friendly perfect solution for your business network.

Product Highlights

COMMANDO Soldier E2000 Series Switches contain 8 & 24 Gigabit Ethernet Perpetual PoE/PoE+ models as well as non-PoE models along with 1GE Copper-based or 1G Fiber Ports (SFP) Uplinks. . All switches COMMANDO Soldier E2000 Series Switches contains 8 & 24 Gigabit Ethernet PoE/PoE+ models have up to 30W (PoE/PoE+) Per Port power budget and this series switches have total power budget range from 150W and 450W to meet enhance PoE/PoE+ requirement of IP Phone/AP/LWAP/Wi-Fi Access Point and any other PoE (PoE+) enabled devices with non-stop PoE/PoE+ power and intelligent power distribution make it suitable for more number of PoE device attached simultaneously as compared top brand PoE switches with same power budget. This series offers various layer 2 Ethernet functions (VLAN, QoS, MAC ACL, Port Security, IPv6, LACP, port mirroring, GVRP and many more). These Gigabit Ethernet switch enables home and office users to easily connect and supply power to Power over Ethernet (PoE) devices such as wireless access points (APs), IP cameras, and IP phones. It also provides the opportunity to add additional Ethernet devices like computers, printers, and Network Attached Storage (NAS) onto a network. This compact PoE switch operates quietly, making it ideal for use in rack, virtually any room or office.

L3 Highlights

•Layer 3 Static Routing up to 512 static route entries along with DHCP server.
•DHCP server, Client, Relay along with DHCP Snooping, DHCP Snooping option82.
•L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication.
•SNMP v1/v2c/v3 and RMON remote monitoring.
•IGMP v1/v2/v3 and MLD v1/v2 snooping, providing advanced multicast filtering and optimization.
•Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications.
•Provides IP-MAC Binding, Port Security, Storm control and DHCP Snooping which protect against broadcast storms, ARP attacks.
•Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
•Auto “denial-of-service” (DoS) prevention.
•Easily troubleshoot any problem in network with Ping, trace route, various show and debug command and WEB GUI based real time status of device.

L2+/L2 Highlights

•Store-and-forward Switching Scheme.
•Solid performance with non-blocking architecture, up to 8000 entries MAC Address Table.
•with 4-way hashing algorithm, 4094 VLANs, 1024 ACL entries, 512 static routes, Maximum packet length 10000 bytes and Jumbo frames of 10000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•Security with 802.1X, Serial Port Analyzer (SPAN) and Bridge Protocol Data Unit (BPDU) Guard.
•Independent 512 entry L2/IP Multicast table for multicast function.
•Advanced L2+ switching and security features like IP-MAC-Port-VID Binding, Static/Dynamic Port Security (MAC-based), DoS defend feature, Dynamic ARP Inspection.
•Advanced VLAN support for better network segmentation.
•Port mirroring with 4-sets of port mirrors for network monitoring.

Other Highlights

•8 & 24 ports with auto-negotiation 10/100/1000Mbps Perpetual and intelligent PoE/PoE+ & Non PoE Models.
•Extra 2/4 Ports with fixed 1G Fiber/ 1GE Copper fixed Switchports / Uplinks.
•Advanced per port PoE/PoE+ power scheduling controls for power management to automate ON/OFF of PoE/PoE+ capable devices on particular specified timing per port basis.
•Perpetual PoE/PoE+ Provides non-stop PoE/PoE+ power. Switch can continue to provide power during configuration and reboot, the PDs will not lose power while reloading.
•Intelligent PoE/PoE+ power supply transmission is more reliable as well as more PDs can be connected due to design of robust network transformer which uses high current.
•All ports capable of PoE/PoE+. Various power budget options like 150W & 450W for 8 & 24 ports PoE/PoE+ with 30W Max Per port (PoE/PoE+).
•PD detection will automatically detect and provide intelligently required power for your PoE/PoE+ devices as per need.
•Easily configurable PoE/PoE+ scheduling to automate the PoE/PoE+ requirements in networks.
•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB , Flash memory of 256 MB and Packet Buffer memory of 4.1MB.
•All ports capable of Gigabit Ethernet speed.
•Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Surge protection up to ±4KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control Fan to optimize cooling and noise. Automatic Temperature Controlled Fan speed using Temperature Sensor.
•Long life electrolytic capacitance to increase the operational life of switches.
•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process
•Rack and Wall mount design that enables to mounts in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with device. Which enables horizontal surface mounting, wall mounting and having durable robust metal body.
•Bilateral heat dissipation.
•Power and ports status/ activity and PoE Max indicator LED lights.
•RJ45 Gold plated with 3U thickness.
•Supports Energy Efficient Ethernet (IEEE802.3az), Innovative energy-efficient technology which saves up to 56% of power consumption for energy saving in the future.
•Easy to manage device with Web based Graphical User Interface (WEB GUI), Command-Line Interface (CLI) - Telnet / SSH / HTTPS with RJ45 or console cables.
•With Zero Touch Provisioning: A simple, secure, unified plug and play.
•Dual image feature for reduced down-time when the firmware is being upgraded or downgraded or image file getting corrupted.
•WEB/CLI managed modes, SNMP, RMON bring abundant management features
•Supports Cable Diagnostics by Web GUI as well as CLI.
•Watchdog function used to protect the system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.
•RoHS Compliant with most of the packaging material can be recycled and reused.
•Comes with up to Three years extended warranty.
 

Features And Benefits

DHCP Server

Multiple IPv4 DHCP pools with Inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.

Intelligent PoE/ PoE+ with Automated Scheduling

It automates the PoE/PoE+ requirements in networks on per port basis. Advanced per port PoE/PoE+ controls for power management to automate ON/OFF of PoE/PoE+ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+ as per Scheduled time which makes them intelligent. PoE/PoE+ power supply transmission is more reliable as well as allows more PDs can be connected with lower PoE budget switch due to design of robust network transformer which uses high current.

Perpetual POE/PoE+

With Perpetual PoE/PoE+, no power downtime to connected PD devices. PD devices remains power ON even when any software process is not running on the switch. Provides non-stop PoE/PoE+ power and continue to provide power during configuration and reboot, the PDs will not lose power while reloading. The Perpetual POE provides uninterrupted power to connected powered device (PD) even when the switch is booting to make it highly available network without any interruptions.

Dual Image

It can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.

Watchdog Function

This ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

L3 Features

This series is having L3 features with IPv4/IPv6 with 512 static routing entries, QoS, ACLs (Port based / IP based / MAC Based), DHCP Server and Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay.

L2+/L2 Features

This series is having advance L2+/L2 features like Port aggregation up to 8 ports, VLAN, Voice VLAN, GVRP, 802.1X authentication, centralized MAC authentication, Guest VLAN, RADIUS authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, Preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Flexible Software features provides wide range of Layer 2 functions like VLAN, Multicasting, Quality of Service (QoS), Security.

Secure Networking

IEEE 802.1X port-based access control with surveillance VLAN, Port Security, Protected Port which also Prevent ARP Spoofing. L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication. ACL, L4 to L2 feature restricts access to sensitive network resources. DHCP Snooping ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP. IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms. The switches support ARP attack and DoS attack prevention to safeguard the network.

Multicast

IGMP Snooping (v1, v2, v3), Multicast Listener Discovery (MLD) (v1/v2), Multicast VLAN Registration (MVR) designed for distribution of multicast traffic across segregated access networks which enables more efficient distribution of multicast streams in Layer 2 network.

QoS Features

Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications. Access Control List based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

Easy Management with CLI

With familiar and popular Command Line interface (CLI), there is no need for engineers to be hired or additional resources to be spent on training and/or learning the switch CLI. The command set are familiar and well known in the industry. Web Graphical User Interface (Web GUI), Command Line interface (CLI), RADIUS/TACACS+ with industry standard CLI and easy to use Web GUI. Management is made easy via a Web GUI or industry-standard Command Line Interface (CLI), with administration traffic protected via SSL or SSH encryption. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur.

Easy to Use

It easy to use and manage and Plug-and-Play that requires no configuration, so setup is simple and hassle-free. Auto MDI/MDI-X crossover on all ports eliminate the need for crossover cables or uplink ports. The switches range from 8 to 24 Gigabit Ethernet PoE/PoE+ models as well as non-PoE models along with 1G/1GE fixed uplinks. It contains 8 to 24 Gigabit Ethernet PoE/PoE+ models has up to 30W (PoE/PoE+) Per Port power budget and this series switches has total power budget range from 150W & 450W along with intelligent and perpetual PoE/PoE+ to meet needs. Its compact size makes it ideal for rackmount/wall-mount with limited space. Dynamic LED lights provide real-time work status display and basic fault diagnosis.

Lifetime Free Software Licensing and Upgrades

SoldierOS Software license and Upgrades are free for lifetime. Users do not have to worry about switch license expiring and software getting outdated (which is constant concern and worry of few other brands). This series has improved HTTP base firmware upgrade as well as CLI based upgrades which are freely available to all users without any cost or license fee for lifetime. COMMANDO Soldier E2000 Series Switches are easy to install, configure, monitor, and troubleshoot. It significantly reduces cost of administration and Total Cost of Ownership (TCO).

Auto MDIX Capabilities

Auto sensing/Auto PoE/PoE+ 10/100/1000 ports with auto MDIX capabilities which also removes speed and duplex mismatches automatically as well as speed setting as per physical distance with copper pairs compared to other brands best switches.

Flexible Service Control

With various ACLs to flexibly control ports. It also supports Port-based VLAN assignment, MAC address-based VLAN assignment, Protocol-based VLAN assignment, and Network segment-based VLAN assignment. These secure and flexible VLAN assignment modes are used in networks where users move frequently. It also supports GARP VLAN Registration Protocol (GVRP), which dynamically distributes, registers, and propagates VLAN attributes to ensure correct VLAN configuration and reduce network administrator workloads. This series switches supports SSH v1/v2/v3, RMON, port-based traffic statistics, LLDP/LLDP-MED.

Compact Design with Flexibility of additional ports

The switches provide additional deployment flexibility, fiber connectivity as well as combo options for easy expansion of your networks. So, you can directly connect to a high-performance storage server or deploy a long-distance uplink to another switch.

Perfect for Noise-Sensitive Environments

These are the ideal solution for the most advanced small and medium organizations looking for the best combination of features, performance, and value. These switches are purposely designed for converged networks where voice, video, data are all carried on a single network platform. This series comes with fan/fan-less switches models along with Small form-factor, fan/fan-less design for silent operation. Perfect for noise sensitive environments. Fan based Switches have Temperature- and load-based fan-speed control combines accurate monitoring with minimized system acoustic noise. The Fan based switches also feature built-in smart fans that monitor and detect temperature changes, adjusting the fan speed for maximum efficiency. At lower temperatures, the fans run at a lower speed, reducing both the power consumption and noise output of the switch.

Zero Maintenance

Cost efficient switches, with a reasonable PoE/PoE+ power budget up to 450W along with PoE/PoE+ configurable scheduler to automated Power ON/OFF connected PoE/PoE+ devices as per scheduled timing with Cost of ownership is less compared to other products of same features as well as zero maintenance. Maximum power reduction for ongoing operation cost savings.

Easy Debugging and Troubleshooting

Ping, Traceroute, SNMP, RMON, Web based real time switch ports monitoring with WEBUI and CLI can easily troubleshoot any problem in network with various show and debug commands.

Longer Distance Coverage

State of art quality switches that can serve real time high-speed performance which covers longer physical distance up to 250 meters with copper pairs compared to other brands.
 

Software

The COMMANDO SoldierOS IP Base switches provides advanced L2 switching and security features along with ACLs (MAC/IP/Port) based IPV4 and IPV6, L4/L3/L2 QoS , Static Routing up to 512 static route entries, Spanning Tree Protocol (IEEE802.1D STP , IEEE802.1w RSTP, IEEE802.1s MSTP) SNMP v1/v2c/v3, IGMP and MLD snooping, QinQ and selective QinQ, VLAN mapping, Voice VLAN, GVRP, Advanced multicast filtering, and IGMP snooping that optimize voice and video applications, DHCP Server, DHCP Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay, RADIUS/TACACS+ authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Management is made easy via a web-based Graphical User Interface (GUI) access via HTTP/HTTPS or industry-standard Command Line Interface (CLI) via Console/Telnet with administration traffic protected via SSL or SSH encryption. This CLI is well known and understood by all professionals in networking field. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur. It provides a complete set of security features including L4/L3/L2 multi-layer Access Control Lists and 802.1x user authentication via TACACS+ and RADIUS servers. This ensures the network is protected from unauthorized access. It also offers extensive VLAN support including GVRP and 802.1Q VLAN to enhance security and performance. A robust set of L4/L3/L2 based QoS/CoS solutions help ensure that critical network services such as VoIP and video conferencing are served with priority. Bandwidth Control can be flexibly set for each port using predefined thresholds to assure a committed level of service for end users. For advanced applications, flow-based bandwidth control allows easy fine-tuning of service types based on specific IPV4/IPV6 addresses or protocols that provides Security, Performance & Availability. Access control lists (ACLs) perform operation of filtering (IPv4/IPv6) Packet/MAC/port-based filtering to control the movement of segments/packets/frames through a network. ACL filtering provides security by limiting the access of traffic into a network, restricting user and device access to a network, and preventing traffic from leaving a network. Time range-based ACL, VLAN-based ACL, Bidirectional ACL. Packet filtering at Layer 4 through layer 2 Traffic classification based on source IPv4/IPv6 addresses and source MAC addresses, destination MAC addresses. L4/L3/L2 Quality of service (QoS) refers to any technology that manages data traffic to reduce packet loss, latency, and jitter on the network. QoS controls and manages network resources by setting priorities for specific types of data on the network. Static routing is a form of routing that occurs when these switches uses a manually configured 512 IPV4 static routing entries. Static routing has three primary uses:
•Ease of routing table maintenance in smaller networks with little growth or change. Routing to and from connected networks.
•A network accessed by a single route, and the router has only one neighbor.
•Single default route to represent a path to any network.
It provides GUI based PoE/PoE+ scheduling Premium feature. PoE/PoE+ Scheduling is a feature which allows you to specify the amount of time that power is delivered to a PoE/PoE+ port automatically. This can be used to save power when devices are not in use, or as a security feature to prevent wireless access from being available outside of business hours. It is possible to set a schedule PoE/PoE+ at a start time, an end time and which ports the PoE/PoE+ schedule applies to. The PoE/PoE+ device turn ON and OFF as per the PoE/PoE+ schedule time.

Software Highlights:

• DHCP Server for multiple IPv4 DHCP pools with inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.
• Intelligent PoE/ PoE+ with Intelligent scheduling to automate the PoE/PoE+ requirements in networks. Advanced per port PoE/PoE+ controls for remote power management to automate ON/OFF of PoE/PoE+ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+ as per Scheduled time which makes them intelligent.
• Dual Image can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.
• Watchdog function ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

Layer 3 Switching

• Static ARP as manually added IP network address to the hardware MAC address of a device as well dynamic ARP entries.
• Static Route, Default route and Dynamic connected route learning. Static Route, Default route, connected route up to 512 route entries are supported.
• Access Control List Access Control Lists (ACLs) can be used to deny and allow packets and provides flexible access control based on Standard IPV4, IPV6,MAC based , Management and also Port based Filtering.
• Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
• QoS Features like Scheduling Mode: WRR, SP, which are Based on Port based on 802.1p DSCP (DiffServ), COS and DSCP.

Advanced L2/L2+ Switching

• Auto Port Configuration, Auto-Negotiation for port speed and duplex mode. Flow Control for IEEE802.3x full-duplex and half-duplex backpressure.
• Rate Limit enable to slow down traffic on a port to keep it from exceeding the limit set.
• Link Aggregation with LAG static and IEEE802.3ad Link Aggregation Control Protocol (LACP) increases bandwidth by automatically aggregating several physical links together as a logical trunk and providing load balancing and fault tolerance for uplink connections. Up to 8 maximum aggregation groups.
• Link Layer Discovery Protocol (LLDP) neighbor discovery protocol that allows devices to advertise device information to their directly connected peers/neighbors.
• Unidirectional Link Detection protocol (UDLD) that detects and disables one-way connections before they create undesired situation such as network failure, Spanning Tree loops and broadcast storm.
• Spanning Tree Protocol (STP) eliminates Layer 2 loops in a network by selectively blocking specific links. STP also enables link redundancy. Support IEEE 802.1D (STP), from which IEEE 802.1W (RSTP) and IEEE 802.1s (MSTP 64 instance).
• Loopback Detection also has BPDU Filter, BPDU Guard.
• IGMP Snooping listening to Internet Group Management Protocol network traffic to control delivery of IP multicast. Network switches with IGMP snooping listen in on the IGMP conversation between hosts and layer 3 devices and maintain a map of which links need which IP multicast transmission.
• Static MAC address, MAC Configuration for MAC binding, MAC Address Filter.
• 4094 VLAN Configuration with advanced VLAN support for better network segmentation, VLAN Based on 802.1Q, MAC-Based VLAN, IP-Based VLAN, Protocol-Based VLAN, Voice VLAN, Guest VLAN, Private VLAN - Support 1:1 VLAN Mapping basic QinQ, Surveillance VLAN.

Secure Networking

• MAC address limiting to enhanced Security. Port Security ensures access to switch ports based on MAC address to limit the total number of devices from using a switch port and protects against MAC flooding attacks, SYN Flood, ICMP Flood attack and prevention of DOS, BPDU Guard and Root Guard which avoid accidental network topology loops and prevent illegal edge devices become root to cause unnecessary flapping.
• IEEE 802.1X Port-based Access Control ensures all users are authorized before being granted access to the network. User authentication is carried out using any standard-based RADIUS server. 802.1x - RADIUS, AAA - MAC-based 802.1X authentication also Support 802.1x surveillance VLAN, Port Security, Protected Port and also Prevent ARP Spoofing.
• L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication. IP, MAC, Ports based Access Control Lists (ACL, L4 to L2) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports and even VLAN ID.
• DHCP Snooping feature ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP.
• IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms.
• ARP attacks prevention prevent typical DoS attacks can protect these attacks more easily ever than before.

Multicast

• IGMP Snooping (v1, v2, v3) transmits data on demand on data link layer by analyzing IGMP packets between the IGMP querier and the users, to build and maintain Layer 2 multicast forwarding table.
• Snooping Multicast Listener Discovery (MLD) snooping (v1/v2) constrains the flooding of IPv6 multicast traffic on VLANs. MLD snooping performs the same function as IGMP snooping with the only difference being that MLD snooping is for IPv6 and IGMP snooping for IPv4 environments.
• Multicast VLAN Registration (MVR) is designed for distribution of multicast traffic on a dedicated multicast VLAN across segregated access networks, while allowing subscribers who are on different VLANs to join and leave the multicast groups carried in the Multicast VLAN. Multicast VLAN registration (MVR) enables more efficient distribution of IPTV multicast streams across an Ethernet ring-based Layer 2 network.

QoS features

• Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based.
• L4/L3/L2 QoS optimize voice and video applications with ACL based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

User friendly Maintenance Management

• With Zero Touch Provisioning: A simple, secure, unified plug and play.
• CLI / Web GUI / SNMP Management with industry standard CLI and Web GUI based device-management tool that provides the ability to provision the device, to simplify device deployment and manageability, and to enhance the user experience. It comes with the software Image 0 can also have Image 1 (Dual image) simultaneously. There is no need to enable anything or install any license on the device. Then Web GUI can be used to build configurations, and to monitor and troubleshoot the device without having CLI expertise.
• Support Multi-user management at the same time.
• With RADIUS and TACACS+ server authentication can be performed locally or on a RADIUS/TACACS+ server can also control access to your network through Switch by using authentication methods such as 802.1X, MAC Based and Web Based.
• Configuration Download/Upload Upgrade Firmware by HTTP and TFTP.

Debugging and troubleshooting feature

• PING, TRACEROUTE, SNMP, RMON, Web based real time Switch ports monitoring with WEB GUI can easily troubleshoot any problem in network with Ping, trace route, various show, debug command and WEB GUI based real time status of device.
• Cable Diagnostics by Web GUI as well as CLI.
• Maintenance & Operation Management via TFTP/FTP, CLI, Telnet, Console, Web GUI /SSL (IPv4/IPv6), SSH (IPv4/IPv6).
• Port Mirroring for network monitoring. Port mirroring is used on a network device to send a copy of network packets seen on one switch port, multiple other ports, or on to network monitoring connection on another port on the switch.
• SNMP v1/v2c/v3, management station, can monitor the performance of network devices. With SNMP, network managers can view or modify network device information, and troubleshoot according to notifications sent by those devices in a timely manner. Public and Private Management Information Base (MIB) interface
• RMON (Remote Network Monitoring) together with the SNMP system allows the network manager to monitor remote network devices efficiently. RMON reduces traffic flow between the NMS and managed devices, which is convenient to manage large networks.

Software Licensing and Upgrades

• Free Software Upgrades and patching supports with enhanced functionality, which provides fixes for critical bugs and security vulnerabilities between regular maintenance releases. This free software upgrades and licenses support lets you add patches, new features, protocols, and functionality without having to spend a single dollar. This reduces TCO.
• Protected Ports ensure no exchange of unicast, broadcast, or multicast traffic between the protected ports on the switch, thereby improving the security of your converged network.
• Dynamic VLAN Assignment (RADIUS/TACACS+): IP phones and PCs can authenticate on the same port but under different VLAN assignment policies. Users are free to move around and enjoy the same level of network access regardless of their physical location on the network.
• Port Mirroring and Cable Test Many-to-one port mirroring for better and quicker network diagnostics and troubleshooting. Cable test easily identifies bad Ethernet cables.
• Firmware updates and backup procedure by uploading/downloading file to PC/TFTP/FTP.

Table 1. COMMANDO SoldierOS IP Base Software at a Glance

Ethernet Protocols (IEEE) L2 Switching Features Quality of Service (QoS) Security Management
802.3i 802.3u 802.3ab 802.3z 802.3av 802.3ad 802.3x 802.1p 802.1q 802.1v 802.1d 802.1s 802.1w 802.1x 802.3x Link Aggregation, LACP, Spanning Tree Protocols, Multicasting, VLANs, ACL, Voice VLAN, GVRP, Port isolation, Port security, MAC address learning limit, DHCP Server, IP Source guard, Dynamic ARP inspection, IP /Port/MAC binding L2, L3, L4, ingress/ Egress Access Control List (ACL), 802.1x authentication AAA / RADIUS/TACACS+ Web GUI management mode, Support Command Line Interface (CLI) through console port, Telnet, SNMP v1/v2c/v3 and RMONs

Table 2. Performance of COMMANDO SoldierOS IP Base

Features Maximum Supported
VLAN 4094
MAC Table entries 8000
ACL 1024
Multicast Group 512
Jumbo Frame 10000
Multicast IGMP Group 16
Multiple User Account 8
Static Route 512
MSTP 16
Aggregation Trunks/Ports Per Trunk 8/8
TACACS+/RADIUS Servers 8

Software Features

1. L3 Features

•Static ARP up to 1K
•Supports Gratuitous ARP
•IPv6 Neighbor Discovery (ND)
•Static Routing
•Max. 512 IPv4 entries
•Max. 512 IPv6 entries
•Supports Default Routing

2. L2 Switching Features

Basic L2 Switching Features

•MAC Address Table with 8K.
•802.3x Flow Control when using full duplex
•Back Pressure when using half-duplex
•HOL Blocking Prevention
•Jumbo Frame Up to 10,000 bytes
•ERPS (Ethernet Ring Protection Switching)
•Port Mirroring Supports One-to-One, Many-to-One, Supports Mirroring for Tx/Rx/Both, Supports 4 mirroring groups
•Flow Mirroring supports One-to-One, Many-to-One, Supports Mirroring for Rx, Supports 4 mirroring groups
•RSPAN mirroring
•Loopback Detection
•L2 Protocol Tunneling

Link Aggregation

•Support static link aggregation
•Support 802.3ad LACP
•Up to 8 aggregation groups, containing 8 ports per group

Spanning Tree Protocol (STP)

•IEEE 802.1D Spanning Tree Protocol
•IEEE 802.1s Multiple Spanning Tree Protocol
•IEEE 802.1w Rapid Spanning Tree Protocol
•STP Security: Loop back detection, TC Protect, BPDU Filter/Protect, Root Protect

Multicast

•Support IGMP Snooping V1/V2/V3, up to 512 groups
•Support multicast VLANs, IGMP Immediate Leave,

Unknown IGMP Throttling, IGMP Filtering, Static Multicast IP

•L2 Multicast Filtering Forwards all groups, forwards all unregistered groups, Filters all unregistered groups
•MLD Snooping, MLD v1/v2 Snooping
•PIM Snooping

VLAN

•Support IEEE802.1Q with 4K VLAN groups and 4K VIDs
•Support Port VLAN, Protocol VLAN and MAC-based VLAN
•Support GARP/GVRP feature

Quality of Service (QoS)

•Support 802.1p CoS/DSCP priority
•Support 8 physical queues per port.
•Queue scheduling: SP, WRR, SP+WRR
•Port/Flow- based Rate Limiting
•Voice VLAN assure voice applications have excellent performance

Advanced Security

•IP-MAC-Port-VID Binding
•Static/Dynamic Port Security (MAC-based)
•DoS defend feature
•Dynamic ARP Inspection

802.1x authentication

•Support 802.1x port/MAC based authentication
•Support Radius authentication and accountability
•Guest VLAN
•RADIUS/TACACS+

Access Control List (ACL)

•L2~L4 package filtering based on source and destination MAC address, IP address, TCP/UDP ports, 802.1p, DSCP, protocol and VLAN ID.
•Time based ACL
•Support Broadcast, Multicast and Unknown unicast Storm Control
•Secure Web management through HTTPS and SSLv2/v3/TLSv1
•Secure remote command line interface (CLI) management with SSH v1/V2

Management

•Support Web GUI management mode
•Support Command Line Interface (CLI) through console port, telnet management mode
•SNMP v1/v2c/v3
•RMON (1, 2, 3, 9 groups)
•DHCP Server
•DHCP/BOOTP Client
•DHCP Snooping
•DHCP Option 82
•CPU Monitoring
•Port Mirroring (Many to One)
•Cable Diagnostics feature
•Ping/Tracert feature
•SNTP
•System Log

3. Ethernet Protocols

•IEEE 802.3i 10BASE-T
•IEEE 802.3u 100BASE-TX/FX
•IEEE 802.3ab 1000BASE-T
•IEEE 802.3z 1000BASE-X
•IEEE 802.3av GVRP
•IEEE 802.3ad Link Aggregation
•IEEE 802.3x Flow control
•IEEE 802.1p QoS
•IEEE 802.1q VLANs / VLAN tagging
•IEEE 802.1v Protocol VLAN
•IEEE 802.1d Spanning Tree Protocol (STP)
•IEEE 802.1s Multiple Spanning Tree (MSTP)
•IEEE 802.1w Rapid Spanning Tree (RSTP)
•IEEE 802.1x Network Login Security
•IEEE 802.3x flow control for Full Duplex mode and back pressure for Half Duplex mode

4. MIBs

•Ethernet-like MIB (RFC 3635)
•Interface Group MIB (RFC 2863)
•RMON (RFC 2819)
•Bridge MIB (RFC 1493)
•Bridge MIB Extension (RFC 2674)

Table 3. Key software function of COMMANDO SoldierOS IP Base

Features Protocols
IEEE Standards IEEE 802.3x (Full Duplex), Back-Pressure (Half-duplex) IEEE 802.3, IEEE 802.3u, IEEE 802.3ab, IEEE 802.3z IEEE 802.3ad IEEE 802.3q, IEEE 802.3q/p IEEE 802.1w, IEEE 802.1d, IEEE 802.1S
MAC Address 8000 MAC addresses table entries Jumbo Frame 10000 bytes with automatic MAC address learning and aging
Energy Efficient Ethernet EEE (802.3az)
VLAN Up to 4094 VLAN Port-based VLAN up to 8 groups IEEE 802.1Q Tagged-based MAC-based VLAN up to 256 Voice VLAN static up to 256 QoS for each Voice VLAN Data Voice VLAN OUI Mode (Auto/Manual) maximum 16 OUI Multicast VLAN Registration (MVR) IPV4 Based
Surveillance VLAN OUI Mode (Auto/Manual) maximum 16 OUI
Stacked VLAN QinQ (IEEE 802.1ad)
GARP VLAN Registration Protocol (GVRP) GVRP As per IEEE 802.1Q specification
Spanning Tree IEEE 802.1D (STP) IEEE 802.1w (RSTP) IEEE 802.1s (MSTP) maximum 16 instances Auto Edge Port BPDU Filtering BPDU Guard Self-Loop Detection UDLD
Link Aggregation IEEE 802.3ad LACP, Max 8 Aggregation Groups trunk, Maximum 8 ports per Trunk Static Trunk Aggregation and Dynamic Aggregation Traffic Load Balancing
Port Mirror Many-to-one port mirroring
Port flow control Half duplex based back pressure control Full duplex based on PAUSE frames
Line Rate Support Port based Input / Output Bandwidth Management
IP Binding Support Static ARP
DHCP DHCP Server, DHCP Client mode
DNS DNS Client mode
Static Routing Support Static routing
IGMP Snooping IGMP v1/v2 IGMP v3 Basic (BISS) IGMP v2/v3 Querier
MLD Snooping MLD v1/v2
IPv6 IPv6 Host - Auto Configuration, Static IPv6 Address and Prefix Length, Static IPv6 Default Gateway, IPv6 Neighbor Discovery (ND), IPv6 Duplicate Address Detection, ICMPv6 IPv6 Application Supported- HTTP/HTTPS, TELNET, SSH, SNMP, TFTP, Syslog, PING, DHCPv6
Multicast Multicast Groups up to 512 Immediate Leave Static/Forbidden Router Port Static/Forbidden Forward Port Filtering up to 256 profiles Throttling
Storm suppression Storm Control Broadcast Unknown Multicast Unknown Unicast Storm Suppression of Broadcast type Storm suppression based on bandwidth tuning and storm filtering
Access Control List (ACL) Access Rules 1024 ACL Type-L2/L3/L4 ACL IPv4-based Up to 1024 ACL IPv6-based
Security AAA (Authentication, Authorization and Accounting) TACACS+ (Terminal Access Controller Access Control Server) Maximum up to 8 servers. RADIUS (Remote Authentication Dial-In User Service) Maximum up to 8 servers.  Authentication Manager - IEEE 802.1X, MAC Auth, Web Auth, Guest VLAN, Port-based, Host-based. Port Security Using Dynamic Lock maximum 256 Protected Port (Port Isolation) Black Hole MAC CPU Defense Engine DoS Prevention DHCP Snooping (with Option 82) Dynamic ARP Inspection IP Source Guard maximum 256 IP/MAC/Port Binding (IMPB)
QoS Features 802.1p port queue priority algorithm Teams that support 4 different priorities per port Queue Scheduling - WRR, WFQ, Strict Priority, Hybrid (WRR+SP or WFQ+SP) WRR (Weighted Round Robin) Weighted priority rotation Algorithm, WRR, SP, WFQ, 3 priority scheduling models Class of Service - Port-based, 802.1p, IP TOS Precedence, IP DSCP, trusted QoS Support based on port, MAC, 802.1Q, DSCP classification Rate Limit - Port-based (Ingress/Egress)
Account Manager Local Authentication Multiple User Account Up to 8 Multilevel Security Password Recovery Procedures
System maintenance Upgrade firmware feature via TFTP/FTP/HTTP. Support Upload/Download Configuration files through Web Support Multi-user management Web GUI / CLI based Restore Factory Configuration
Line Management Console Telnet (RFC854) SSH v1/v2
Management and Maintenance Management by CLI - Console, Telnet (RFC854) up to 3 sessions Management by Web GUI - HTTP, HTTPS Management Based on Remote Configuration and Maintenance Using Telnet, SNMP V1/V2C/V3, SSH V1/V2, RMON V1/V2 Software Reset to default setting
Management Access Management VLAN Management ACL Up to 256
File Management Firmware Upgrade/Backup Dual Images Configuration Download/Backup Multiple Configurations Upload/Download using TFTP (RFC783) HTTP (Hyper Text Transfer Protocol) UART (Universal Asynchronous Receiver/Transmitter)
Time Management Locally using sync with PC option. NTP (Network Time Protocol)
Port Management Friendly Port Name (Port Description) Error Disabled Recovery
Secure Sockets Layer (SSL) Secure Sockets Layer (SSL)- SSLv2, SSLv3 Transport Layer Security (TLS)- TLSv1
Neighbor Discovery  IEEE 802.1AB Link Layer Discovery Protocol (LLDP) ANSI/TIA-1057 LLDP Media Endpoint Discovery (LLDP-MED)
Remote Monitoring Management RMON Up to 32 entries / type
MIB RFC1213 MIBII (System & Interface groups) RFC2819 RMON I (1,2,3, & 9 groups) RFC1215 Generic Traps RFC1493 Bridge RFC2674 Bridge MIB Extensions RFC2737 Entity RFC3635 Ethernet-Like RFC2863 Interface Group SNMP-Community-MIB SNMPv3
Diagnostics  Mirroring Port-based (Many to One) Up to 32 entries / type Syslog (RFC3164) with Local RAM, Local Flash, Remote Server up to maximum 8. System Diagnostics with CPU Utilization, Memory Utilization, Port Utilization Port Diagnostics with Cable Test, Fiber Module Status Network Diagnostics with Ping Test, Traceroute

Convergence Time

By default, RSTP used for all COMMANDO SoldierOS and it takes less than 10 seconds for the network to converge. RSTP converges faster because it uses a handshake mechanism based on point-to-point links instead of the timer-based process used by STP. IP multicast snooping and IGMP automatically prevent flooding of IP multicast traffic. IEEE 802.1AB Link Layer Discovery Protocol (LLDP) facilitates easy mapping using network management applications with LLDP automated device discovery protocol LLDP-MED (Media Endpoint Discovery) defines a standard extension of LLDP that stores values for parameters such as QoS and VLAN to configure automatically network devices such as IP phones. STP/RSTP/MSTP for loop free network, IEEE 802.1s Multiple Spanning Tree provides high link availability by allowing multiple spanning trees; provides legacy support for IEEE 802.1d and IEEE 802.1w IEEE 802.3ad Link Layer Discovery Protocol (LACP) and port trunking support up to 8 static, dynamic, or distributed trunks with each trunk having up to eight links (ports) per static trunk. Lag links provides easy-to-configure link redundancy of active and standby links.

Security

The AAA feature allows you to verify the identity of, grant access to, and track the actions of users. The COMMANDO Soldier E2000 Series Switches support Remote Access Dial-In User Service (RADIUS) or Terminal Access Controller Access-Control System Plus (TACACS+) protocols. Based on the user ID and password combination that you provide, the COMMANDO Soldier E2000 Series Switches perform local authentication or authorization using the local database or remote authentication or authorization using one or more AAA servers. A pre-shared secret key provides security for communication between the COMMANDO Soldier E2000 Series Switches and AAA servers. You can configure a common secret key for all AAA servers or for only a specific AAA server. COMMANDO Soldier E2000 Series Switches Multiple user authentication methods
•Uses an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server to authenticate in accordance with industry standards
•Supports web-based authentication
•Supports MAC-based authentication
•Multiple IEEE 802.1X users per port provides authentication of multiple devices on a single port; prevents a user from piggy backing on another user’s IEEE 802.1X authentication
•Concurrent IEEE 802.1X, Web and MAC authentication schemes per port switch port will accept up to 8 sessions of IEEE 802.1X, Web and MAC authentications
•Access control lists (ACLs) provide IP Layer 3 filtering based on source and destination IP address or subnet or source and destination TCP/UDP port number
•Source-port filtering allows only specified ports to communicate with each other
•RADIUS/TACACS+ eases switch management security administration by using a password authentication server
•Secure shell encrypts all transmitted data for secure remote CLI access over IP networks
•Secure Sockets Layer (SSL) encrypts all HTTP traffic, allowing secure access to the browser-based management GUI in the switch
•Port security allows access only to specified MAC addresses, which can be learned or specified by the administrator
•MAC address lockout prevents particular configured MAC addresses from connecting to the network
•Secure FTP allows secure file transfer to and from the switch; protects against unwanted file downloads or unauthorized copying of a switch configuration file
•Switch management logon security helps secure switch CLI logon by optionally requiring either RADIUS or TACACS+ authentication
•Custom banner displays security policy when users log in to the switch
•STP BPDU port protection blocks Bridge Protocol Data Units (BPDUs) on ports that do not require BPDUs, preventing forged BPDU attacks
•DHCP protection blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks
•Dynamic ARP protection blocks ARP broadcasts from unauthorized hosts, preventing eavesdropping or theft of network data
•Dynamic IP lockdown works with DHCP protection to block traffic from unauthorized hosts, preventing IP source address spoofing
•STP root guard protects the root bridge from malicious attacks or configuration mistakes
•Identity-driven ACL enables implementation of a highly granular and flexible access security policy and VLAN assignment specific to each authenticated network user
•Per-port broadcast throttling configures broadcast control selectively on heavy traffic port uplinks
•Monitor and diagnostics digital optical monitoring of SFP and 1000BASE-T transceivers allow detailed monitoring of the transceiver settings and parameters

Effective Management

COMMANDO SoldierOS offers Network Monitoring for users to observe traffic behavior with Port Mirroring, Loop Prevention and DHCP snooping features, can identify and even locate connection problems on your business network.
•Administrators can designate the priority of the traffic based on Port Priority, 802.1P and DSCP Priority, to ensure that voice and video are always clear, smooth and lag-free.
•Voice VLAN, port-based VLAN and 802.1Q-based VLAN functions. COMMANDO is an upgrade from the plug-and-play Unmanaged Switch, delivering great value while empowering your network and similarly delivering great value to the end user.
•RMON provide advanced monitoring and reporting capabilities for statistics, history, alarms, and events.
•Troubleshooting ingress and egress port monitoring enable more efficient problem solving.
•Unidirectional Link Detection (UDLD) monitors the link between two switches and blocks the ports on both ends of the link if the link goes down at any point between the two devices.

Table 4. COMMANDO Soldier E2000 Series Switches PoE+ Power Budget and slots

Model Max Power Budget (Watt) Total physical slots (Ports) on device
E2000-8G+4CF - 12
E2000-8GP+4CF 150W 12
E2000-24GP+8CF 450W 32

PoE/PoE+ Flexibility

The COMMANDO Soldier E2000 Series Switches models are available with 8, 24 and 48 PoE/PoE+ Gigabit Ethernet ports of perpetual and auto-sensing IEEE 802.3af/at. By default, the switches automatically detect IEEE 802.3af/at devices so they automatically receive PoE/PoE+ power.

Table 5. COMMANDO Soldier E2000 Series Switches LED Indication

LED Indication on Switch LED Status
Power Green OFF: No power on the switch. Green ON: The switch powered on
Link/Act LINK/ACT bi-color LED: OFF: Port disconnected or link fail. Green ON: 1000Mbps connected. Amber ON: 10/100Mbps connected. Green Flashing: 1000Mbps connected and Data in transit Amber Flashing: 10/100Mbps connected and Data in transit
System Green OFF: The system is starting, please wait Green ON: The system is up and running
PoE OFF: PoE/PoE+ power is not provided on port Blue ON: PoE/PoE+ power is provided on port
PoE MAX PoE MAX OFF: PoE Power budget is available in switch Red ON: PoE Power budget is exhausted to 95% and switch cannot connect any further PD.

Power Budget According to Cable Length

Ideally, shorter cables would use less power because of less power degradation over their length This is not the case with most devices as they will use the same amount of power across the cable regardless of whether it is 10 or 100 meters in length. These switches analyze the length of the Ethernet cable connected and adjusts the power usage accordingly, rather than keeping the power consumption in a conventional solution.

Table 6. COMMANDO Soldier E2000 Series Switches Cable Lengths

Connection Cable Type Category and Speed Maximum Cable Distance Supported
Unshielded Twisted Pair cable 10/100Base-TX: UTP category 5/5e/6 cables (Maximum 100m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Shielded Twisted Pair cable 10/100Base-TX: STP category 5/5e/6 cables (Maximum 250m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Optical Fiber Cable 550M~120KM depending on SFP 120KM
 

Hardware

COMMANDO Soldier E2000 Series Switches has 4.1 Mbit SRAM Packet Buffer memory with Packet length of 10K bytes . L2 MAC Function with 8K entries for MAC address learning with the 4-way hash L2 table and searching with two hash algorithms. Independent 512 entry L2/IP Multicast table for multicast function, 2-hash algorithm selection for L2 table searching/learning. Aging timer ranges from 0.2s to 1600000s. It has a 4K-entry VLAN table and provides a 64-entry filtering database for 802.1Q port-based, protocol- and-port-based, 802.1Q-based, IP-subnet-based, and ACL Rules-based VLAN operation to separate logical connectivity from physical connectivity with IVL (Independent VLAN Learning), SVL (Shared VLAN Learning), and IVL/SVL (both Independent and Shared VLAN Learning) for flexible network topology architecture. The mode used depends on the FID (Filtering Identifier) setting. It also has a 1.5K Access Control List (ACL) that parses various protocol packet types and performs configurable actions, e.g., Permit/Drop, redirect, and traffic policing. It has per-port ingress/egress bandwidth control and per- queue egress bandwidth control. It has 8 physical queues in each port. It also has three types of packet scheduling, SP (Strict Priority), WFQ (Weighted Fair Queuing), and WRR (Weighted Round Robin). Each queue provides a leaky bucket (LB) to shape the incoming traffic into the average rate behavior. Port-based 802.1X and MAC-based 802.1X authentication prevent unauthorized users. It also has port isolation to enhance port security. It has 4-set port mirror configuration to mirror ingress and egress traffic for network management purposes, complete MIB counter support reflects the switch status in real time. Link aggregation static and dynamic to increase link redundancy and increase linear bandwidth. It supports VLAN Function with IVL, SVL, and IVL/SVL, IEEE 802.1Q VLAN with 4K-entry VLAN Table, Port-based VLAN, Port-and-protocol-based VLAN, ACL-based VLAN. Limited learned L2 MAC entry on each port and each VLAN. Supports flexible Q-in-Q and VLAN Tag function. It supports up to 64 spanning tree instances for MSTP (IEEE 802.1s), RSTP, and STP with Automatic loop detection and isolation (RLPP/RLDP). L3 Unicast Routing with 512 next hop MAC. IEEE 802.3az Energy Efficient Ethernet (EEE). IGMPv1/2/3 and MLDv1/2 snooping. It also Supports Reserved Multicast Addresses processing and L2 Miscellaneous Functions like Supports broadcast, multicast, unknown- multicast, and unknown-unicast packet suppression control, IEEE 802.1x, Port Mirroring with 4-sets of port mirrors, Flow-based mirror function, RSPAN function for remote mirroring. It supports Link Aggregation (IEEE 802.3ad) for 8 groups of link aggregators with up to 8 ports per-group, Port isolation function to enhance port security. It also has Attack Prevention, Land attack, Blat attack, TCP control flag attack, Ping attack, Packet length attack. It supports Access Control List (ACL) Function with 1.5K-entry for ingress and egress ACL table and L4/L3/L2 format (e.g., DMAC, SMAC, and Ether-Type), IPv6 Parsing and Per-flow traffic policing with 16-entry VID range checking. It also supports 8-entry IPv4 or 2-entry IPv6 range checking. 256 leaky buckets for flow traffic policing. It supports QoS Functions with 8 physical queues per port, Strict Priority (SP) and Weighted Fair Queue (WFQ), Weighted Round Robin (WRR) packet scheduling, QoS remarking for 802.1p and DSCP (includes IPv4/IPv6) also Supports average packet rate control leaky bucket per queue, in 16Kbps steps up to 1Gbps maximum. Ingress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. Egress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. It supports MIB Functions with 256 32-bit packet-based or 1K 64-bit byte-based log counters to enhance MIB counter log counters to enhance MIB count functionality. It also supports Ethernet-like MIB (RFC 3635), Interface Group MIB (RFC 2863), RMON (RFC 2819), Bridge MIB (RFC 1493), Bridge MIB Extension (RFC 2674). It has Hardware watchdog support which guard against certain types of system hangs. Watchdog timer is used to escape from if something goes wrong. Based on the situation, the Switches can automatically reset itself, or recover from the failure and generate an error message in the console logs. Long life electrolytic capacitance. High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process. Rack mount design, Mounts in an EIA-standard 19-inch telco rack or equipment cabinet (Rack-mounting kit available); horizontal surface mounting; wall mounting with durable robust metal body. Bilateral heat dissipation. Power and ports status/ activity indicator LED lights. RJ45 Gold plated with 3U thickness. It also supports has IEEE 802.3az Energy Efficient Ethernet (EEE) for 100Base-TX in full duplex operation and supports 10Base-Te for 10Base-T in full/half duplex. The Energy Efficient Ethernet (EEE) operational mode combines the IEEE 802.3 Media Access Control (MAC) Sub-layer with a family of Physical Layers defined to support operation in Low Power Idle (LPI) Mode. When Low Power Idle Mode is enabled, systems on both sides of the link can disable portions of the functionality and save power during periods of low link utilization. 10Mbps PHY with reduced transmit amplitude requirements in EEE operational mode. This new PHY is fully interoperable with legacy 10Base-T PHYs over 100m of Class-D (Category 5) or better cabling.

Hardware Highlights

Solid performance with non-blocking architecture

•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB.
•All ports capable of Gigabit Ethernet speed. Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Solid performance with non-blocking architecture, 8000 entries MAC Address Table with 4-way hashing algorithm
•4094 VLANs can be created
•1024 ACL entries
•Up to 512 static routes
•Independent 512 entry L2/IP Multicast table for multicast function.
•Maximum packet length 10000 bytes
•Jumbo frames of 10000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•L2/L3/L4 QoS optimize voice and video applications with 256 leaky buckets for flow traffic policing.
•Switching Capacity: 20 up to 56 Gbps
•Forwarding Capacity: Up to 41.66 Mpps
•Store-and-forward Switching Scheme.
•VLAN L3 Interface: 16
•Port Queues: 8
•PoE Budget up to 450W depending on models

Physical Ports and Networking Interfaces

•Up to 24 x 10/100/1000 Mbps Rj45 Ethernet Ports
•Separate Extra ports with 2/4 Ports with fixed 1G Fiber SFP / 1GE Copper Switchports /Uplinks as per model.
•Management Interface: Console
•LED Indicators: Power, Link/Act, PoE Max.

IEEE 802.3af/at Compliant Power over Ethernet

•Various power budget options like 150W & 450W for 8 & 24 ports PoE/PoE+ Switch models. 30W Max Per port (PoE/PoE+) All PoE/PoE+ ports are IEEE 802.3af-compliant PoE, IEEE802.3at-compliant PoE+. Each port delivers 15.4 W PoE, 30 W PoE+ power capacity with backward compatibility.
•Intelligently distribute PoE/PoE+ power so to increase the PD capacity supported simultaneously. PoE power supply transmission is more reliable due to design of robust network transformer which uses high current.
•PD detection will automatically detect and provide required power for your PoE/PoE+ devices.
•Perpetual POE/PoE+ with no power downtime to the connected PD devices by powering them even when a software process is not running on the switch. Provides non-stop POE/PoE+ power.

Extra Long operational life

•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Support temperature range 0 ° C to 55 ° C.
•Surge protection up to ±4KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Long life electrolytic capacitance to increase the operational life of switches. RJ45 Gold plated with 15U thickness.
•Rack and wall mount design enables to mount the switch in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with the device. It enables horizontal surface mounting, wall mounting with durable robust metal body.

Green Energy and Silent operation

•Comply with IEEE 802.3az (Energy-Efficient Ethernet) standard, reduces power consumption up to 58% and reduce the noise pollution. Energy Efficient Ethernet (EEE) on the RJ-45 ports and low-power operations for industry best-in-class power management and power consumption capabilities. The ports support reduced power modes so that ports not in use can move into a lower power utilization state.
•Automatic Temperature Controlled fans with Temperature Sensor.Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control fan to optimize cooling and noise with bilateral heat dissipation.

Ethernet Protocols

•Supports wide range of IEEE 802.3i, 10BASE-T IEEE 802.3u, 100BASE-TX/FX IEEE 802.3ab, 1000BASE-T IEEE 802.3z, 1000BASE-X, IEEE 802.3av, GVRP, Link Aggregation LACP IEEE 802.3ad, , IEEE 802.3x, Flow control, IEEE 802.1p, QoS IEEE 802.1q, VLANs / VLAN tagging IEEE 802.1v Protocol, IEEE 802.1d Spanning Tree Protocol (STP), IEEE 802.1s Multiple Spanning Tree (MSTP), IEEE 802.1w Rapid Spanning Tree (RSTP), IEEE 802.1x Network Login Security, IEEE802.3af, IEEE802.3at.

Highly reliable and Enterprise design

•High Quality as for all Mean Time Before Failure of system, MTBF > 200,000 hours
•Stability: 64bit packet, time delay<10us, packet loss rate: 0
•Restorability of Network shaking or device breakdown, restart(recovery) time < 60 sec.
•RoHS Compliant with most of the packaging material can be recycled and reused.
 

Description

SOFTWARE FEATURE SET (SOLDIEROS L2+)

 

Highlights:

• DHCP Server
• Intelligent PoE Scheduling
• Watchdog Function
• Dual Image
• Automated Traffic Control
• Sflow
• Traffic Segmentation
• MAC Notification
 

L3 Features:

• L3 Static/Default Route
• Gratuitous ARP
• IPv6
 

L2 Features:

• MAC Table 8K to 16K
• 802.3x Flow Control
• Back Pressure
• HOL Blocking Prevention
• Jumbo Frame
• ERPS
• Port Mirroring
• RSPAN
• Auto Loopback Detection and Prevention
• L2 Protocol Tunneling
• Link Aggregation Static / 802.3ad LACP
• STP/RSTP/MSTP
• IGMP Snooping v1/v2/v3
• Multicast VLANs
• MLD v1/v2 Snooping
• PIM Snooping
• VLAN – IP Subnet / Protocol / Voice / Surveillance / MAC based / Q in Q / Guest
• IEEE802.1Q with 4K VLAN groups and 4K VIDs
• GARP/GVRP
• Auto-negotiation for Port speed, PoE Power and Duplex mode with Flow Control
• VLAN Trunking
• Traffic Segmentation
• IGMP Querier / Snooping v1, v2, v3 / Throttling / Filtering / Immediate Leave
• MVR
• Mirror – Port Based (One to One, Many to One) / VLAN based / MAC based
• Ethernet Ring Protection Switching
 

QoS Features:

• Queue Scheduling: SP, WRR, SP+WRR
• Traffic classification based on Port / IEEE 802.1p / DSCP
• Enhanced QoS (Shaping /Re-Marking)
• DiffServ
• Port based Egress / Igress Rate limiting
• Flow based Rate Limit
• Voice VLAN
• Surveillance VLAN
 

Security Features:

• IP-MAC-Port-VID Binding
• DoS Defend
• Dynamic ARP Inspection
• 802.1x Authentication
• RADIUS / TACACS+
• ACL L4 / L3 / L2 / ARP / Time
• Storm Control
• HTTPS / SSLv2 / v3 / TLSv1 Secure Web Access
• Secure Remote with SSH v1/V2
• MAC Authentication with Dynamic VLAN / Dynamic QoS / Authentication By-pass
• Web Authentication
• Port Security with Violation Action Trap and/or Shutdown
• AAA Model
• Local user database
• DHCP Snooping & Option 82
• ARP Inspection
• IP Source Guard
• IP Filter for Web, SNMP , TELNET
• Automatic Traffic Control (ATC) for Broadcast and Multicast
 

Management Features:

• User friendly Web GUI
• Feature rich and standard CLI
• SNMP v1/v2c/v3
• RMON (1, 2, 3, 9 Groups)
• DHCP Server / Client / Snooping / Option 82
• CPU Monitoring
• Cable Diagnostics
• Ping / Trace route
• SNTP
• System Log
• Login Banner
• CLI via Console port or Telnet/SSH
• SNMP v1, v2c, v3 with MAC Notification Trap
• Firmware Upgrade via TFTP/FTP/HTTP
• Configuration file Upload / Download via TFTP/FTP/HTTP
• BOOTP, DHCP Client
• SNTP
• LLDP (802.1ab) and LLDP-MED
• DNS
• Event/Error log / System log
• Remote Syslog
• SMTP Support for logs
• CPU and Memory Utilization Monitoring
• Ports Statistics and Chart
• Cable Diagnostic
• Scheduled Reload
• Reset to Factory Default
• Energy Efficient Ethernet IEEE 802.3az

Product Description

TP-Link Deco E4 is the simplest way to guarantee a strong Wi-Fi signal in every corner of your home up to 4,000 Square feet(3-pack,EU Version). Wireless connections and optional Ethernet backhaul work together to link Deco units, providing even faster network speeds and truly seamless coverage.

TP-Link Deco E4 Features

Seamless Roaming with One Wi-Fi Name TP-Link Mesh means Deco units work together to form one unified network. Your phone or tablet automatically connects to the fastest Deco as you move through your home, creating a truly seamless Wi-Fi experience. No More Buffering Network speeds three times faster than previous generation routers, thanks to 802.11ac wireless technology, make Deco capable of providing a lag-free connection to up to 100 devices. 2-in-1 Router and Access Point Modes Flexible and multifunctional, the Deco E4 includes a variety of features allowing it to serve as a router or access point. Just choose the mode for your actual network demands and experience the maximum wireless flexibility. Robust Parental Controls Simple, intuitive parental controls make it easy to keep your children safe while they’re online. All Decos Can Work Together Deco E4 is compatible with every other Deco model to form a Mesh network. Expand Mesh Wi-Fi coverage anytime by simply adding more Decos. Wi-Fi Made Easy
  • App-Based Setup
Installing Deco E4 is fast and easy. Just unpack the system, download the Deco app and follow its onscreen directions.
  • Easy Management
Manage your Wi-Fi at home or away in the Deco app, including seeing the connected devices, prioritizing your devices, setting up a guest network and more.
  • Voice Control
Pair with Alexa to control Deco E4 with simple voice commands. Enjoy the convenient life.
Weight
DimensionsN/AN/AN/AN/AN/AN/A
Additional information
Select the fields to be shown. Others will be hidden. Drag and drop to rearrange the order.
  • Image
  • SKU
  • Rating
  • Price
  • Stock
  • Availability
  • Add to cart
  • Description
  • Content
  • Weight
  • Dimensions
  • Additional information
  • Attributes
  • Custom attributes
  • Custom fields
Click outside to hide the comparison bar
Compare