COMMANDO Soldier C3000 24GE PoE+,

SKU: C3000-24GP+4X
UGX 3,911,000
In Stock
Add to Wishlist
Add to Wishlist
Add to Wishlist
Add to Wishlist
Compare
Other people want this. 5 people have this in their carts right now.
SKU: C3000-24GP+4X Categories: , , ,

COMMANDO Soldier C3000 24GE PoE+, 4x 10G SFP+ Uplinks, 600W Max, Routing Switch.

Description

HARDWARE HIGHLIGHTS

• SOFTWARE FEATURE SET

L3 Features

• Static Route
• Dynamic Routing, RIPv1/v2, OSPF v1/v2
• Policy-based Routing (PBR) for IPv4 and IPv6
• VRRP
• IGMP v1/v2/v3, IGMP Proxy
• Static Multicast Route
• Multicast Receive Control
• Illegal Multicast Source Detect
• ARP Guard, Local ARP proxy, Proxy ARP, ARP Binding, Gratuitous ARP, ARP Limit
• Dynamic ARP Inspection (DAI)
• DNS Server, Client, DNS Relay

IPv6 Features

• ICMPv6, ND, DNSv6
• MLD Snooping, IPv6 Multicast VLAN
• MLDv1/v2, IPv6 ACL, IPv6 QoS

QoS

• 13 Queues
• SP, WRR
• Traffic Classification Based on 802.1p COS, ToS, DiffServ DSCP, ACL, port number
• Traffic Policing
• PRI Mark/Remark
• Surveillance VLAN

ACL

• IP ACL, MAC ACL, IP-MAC ACL
• Standard and Expanded ACL Based on source/destination IP or MAC, IP Protocol,
• TCP/UDP port, DSCP, ToS, IP Precedence), VLAN, Tag/Untag, CoS
• REDIRECT and Accounting based ACL
• Rules can be configured to port, VLAN, VLAN routing interfaces
• Time Ranged ACL

Security

• 802.1x AAA
• Port, MAC based authentication
• Accounting based on time length and traffic
• Guest VLAN and auto VLAN
• RADIUS for IPv4 and IPv6
• TACACS+ for IPv4 and IPv6

DHCPv4/v6 Traffic Monitor

• DHCP Server/Client for IPv4/IPv6
• DHCP Relay/Option 82
• DHCP Snooping/Option 82

Tunneling

• L3 GRE
• 6 to 4
• ISATAP
• IP-in-IP
• Configured Tunnel

L1, L2 Features

• IEEE802.3(10Base-T)
• IEEE802.3u(100Base-TX)
• IEEE802.3z(1000BASE-X)
• IEEE802.3ab(1000Base-T)
• IEEE802.3ae(10GBase), IEEE802.3x
• IEEE802.3an (10GBASE-T)
• Port loopback detection
• LLDP and LLDP-MED
• UDLD
• 802.3ad LACP, 26 Trunk group with max 8 ports
• LACP load balance
• N:1 Port Mirroring
• RSPAN
• ERSPAN
• IEEEE802.1d(STP)
• IEEEE802.1w(RSTP)
• IEEEE802.1s(MSTP)
• Root Guard
• BPDU Guard
• BPDU Tunnel
• IP Source Guard
• 802.1Q, 4K VLAN
• MAC VLAN, Voice VLAN, Protocol VLAN, Multicast VLAN
• QinQ, Selective QinQ, Flexible QinQ
• GVRP
• N:1 VLAN Translation
• Broadcast / Multicast / Unicast Storm Control
• IGMP v1/v2/v3 Snooping and L2 Query
• ND Snooping
• MLDv1/v2 Snooping
• Port Security
• Flow Control: HOL, IEEE802.3x
• Bandwidth Control

Traffic Monitor

• sFlow Traffic Analysis

Security Network Management

• CLI, WEB, Telnet, SNMPv1/v2c/v3 through IPv4 and IPv6
• Syslog and external Syslog Server HTTP SSL
• SNMP MIB, SNMP TRAP
• FTP/TFTP
• SNTP/NTP
• RMON 1,2,3,9
• Authentication by Radius/TACACS
• SSH v1/v2
• Dual firmware images/ Configuration files

GREEN Features

• IEEE 802.3az (Energy Efficient Ethernet)
• Auto FAN Speed Control, Temperature Alarm
• LED Shut-Off

MIB (Management Information Base) counters

• TCP/IP-based MIB-II (RFC 1213)
• Ethernet-like MIB (RFC 3635)
• Interface Group MIB (RFC 2863)
• RMON (Remote Network Monitoring) MIB (RFC 2819)
• Bridge MIB (RFC 1493)
• Bridge MIB Extension (RFC 2674)
 24 x 10/100/1000M GigE PoE+ ports
•  4 x 10G SFP+ Static Uplink slots
•  1 x RJ45 Console port
•  1 x USB Console port
•  1 x USB 2.0 Storage port
•  24 x IEEE802.3af 15.4W PoE ports
•  18 x IEEE802.3at 30W PoE+ ports
• 3 x Temperature Control Fan
• Thunder Protection: ±6 kV
• Switching Capacity: 128 Gbps
• Power Supply: Dual Power Supplies (AC + DC)
• AC: 100~240V 50/60Hz, DC: 54V 10.2A & 12V 4A
• SoldierOS L3 IP Base Software Feature Set
• L3 GigE PoE+ w/ 10G SFP+ Uplink Routing Switch
• 5 Year Extendable Warranty

 

Quick Comparison

SettingsCOMMANDO Soldier C3000 24GE PoE+, remove300Mbps Wi-Fi Range Extender with AC Passthrough  removeTP LINK 4G LTE Mobile Wi-Fi removeTP LINK AX1500 Wi-Fi 6 Router removeCOMMANDO Soldier C2000 48GE PoE+, removeCOMMANDO Soldier E2000 8GE PoE+ remove
NameCOMMANDO Soldier C3000 24GE PoE+, remove300Mbps Wi-Fi Range Extender with AC Passthrough  removeTP LINK 4G LTE Mobile Wi-Fi removeTP LINK AX1500 Wi-Fi 6 Router removeCOMMANDO Soldier C2000 48GE PoE+, removeCOMMANDO Soldier E2000 8GE PoE+ remove
Image
SKUC3000-24GP+4XTL-WA860REM7000Archer AX10C2000-48GP+8CFE2000-8GP+4CF
Rating
PriceUGX 3,911,000UGX 110,000UGX 193,000UGX 465,000UGX 3,676,000UGX 979,000
Stock
In Stock
In Stock
In Stock
In Stock
In Stock
In Stock
AvailabilityIn StockIn StockIn StockIn StockIn StockIn Stock
Add to cart

Add to cart

Add to cart

Add to cart

Add to cart

Add to cart

Add to cart

DescriptionCOMMANDO Soldier C3000 24GE PoE+, 4x 10G SFP+ Uplinks, 600W Max, Routing Switch.
  • Range Extender mode boosts wireless signal to previously unreachable or hard-to-wire areas flawlessly
  • Miniature size and wall-mounted design make it easy to deploy and move flexibly
  • Extra power socket making sure that no power outlet is going to waste
  • 2 fixed external antennas provide excellent Wi-Fi coverage and reliability
  • Easily expand wireless coverage at a push of Range Extender button

4G LTE Mobile Wi-Fi

  • Share with friends internet access for up to 10 devices simultaneously
  • 2000 mAh battery of usage
  • Supports the latest generation 4G FDD/TDD-LTE, compatible with the network of most countries and regions
  • Easy management with the tpMiFi App
  • Works with all internet service providers, such as AT&T, Verizon, Xfinity, Spectrum, RCN, Cox, CenturyLink, Frontier, etc.( a modem is required for most internet service providers)
COMMANDO Soldier C2000 48GE PoE+, 4GE/4SFP Combo Uplinks, 800W, Managed Switch.

COMMANDO Soldier E2000 8GE PoE+, 2GE+2SFP Uplinks, 150W, Managed Switch.

Content

HARDWARE HIGHLIGHTS

• SOFTWARE FEATURE SET

L3 Features

• Static Route
• Dynamic Routing, RIPv1/v2, OSPF v1/v2
• Policy-based Routing (PBR) for IPv4 and IPv6
• VRRP
• IGMP v1/v2/v3, IGMP Proxy
• Static Multicast Route
• Multicast Receive Control
• Illegal Multicast Source Detect
• ARP Guard, Local ARP proxy, Proxy ARP, ARP Binding, Gratuitous ARP, ARP Limit
• Dynamic ARP Inspection (DAI)
• DNS Server, Client, DNS Relay

IPv6 Features

• ICMPv6, ND, DNSv6
• MLD Snooping, IPv6 Multicast VLAN
• MLDv1/v2, IPv6 ACL, IPv6 QoS

QoS

• 13 Queues
• SP, WRR
• Traffic Classification Based on 802.1p COS, ToS, DiffServ DSCP, ACL, port number
• Traffic Policing
• PRI Mark/Remark
• Surveillance VLAN

ACL

• IP ACL, MAC ACL, IP-MAC ACL
• Standard and Expanded ACL Based on source/destination IP or MAC, IP Protocol,
• TCP/UDP port, DSCP, ToS, IP Precedence), VLAN, Tag/Untag, CoS
• REDIRECT and Accounting based ACL
• Rules can be configured to port, VLAN, VLAN routing interfaces
• Time Ranged ACL

Security

• 802.1x AAA
• Port, MAC based authentication
• Accounting based on time length and traffic
• Guest VLAN and auto VLAN
• RADIUS for IPv4 and IPv6
• TACACS+ for IPv4 and IPv6

DHCPv4/v6 Traffic Monitor

• DHCP Server/Client for IPv4/IPv6
• DHCP Relay/Option 82
• DHCP Snooping/Option 82

Tunneling

• L3 GRE
• 6 to 4
• ISATAP
• IP-in-IP
• Configured Tunnel

L1, L2 Features

• IEEE802.3(10Base-T)
• IEEE802.3u(100Base-TX)
• IEEE802.3z(1000BASE-X)
• IEEE802.3ab(1000Base-T)
• IEEE802.3ae(10GBase), IEEE802.3x
• IEEE802.3an (10GBASE-T)
• Port loopback detection
• LLDP and LLDP-MED
• UDLD
• 802.3ad LACP, 26 Trunk group with max 8 ports
• LACP load balance
• N:1 Port Mirroring
• RSPAN
• ERSPAN
• IEEEE802.1d(STP)
• IEEEE802.1w(RSTP)
• IEEEE802.1s(MSTP)
• Root Guard
• BPDU Guard
• BPDU Tunnel
• IP Source Guard
• 802.1Q, 4K VLAN
• MAC VLAN, Voice VLAN, Protocol VLAN, Multicast VLAN
• QinQ, Selective QinQ, Flexible QinQ
• GVRP
• N:1 VLAN Translation
• Broadcast / Multicast / Unicast Storm Control
• IGMP v1/v2/v3 Snooping and L2 Query
• ND Snooping
• MLDv1/v2 Snooping
• Port Security
• Flow Control: HOL, IEEE802.3x
• Bandwidth Control

Traffic Monitor

• sFlow Traffic Analysis

Security Network Management

• CLI, WEB, Telnet, SNMPv1/v2c/v3 through IPv4 and IPv6
• Syslog and external Syslog Server HTTP SSL
• SNMP MIB, SNMP TRAP
• FTP/TFTP
• SNTP/NTP
• RMON 1,2,3,9
• Authentication by Radius/TACACS
• SSH v1/v2
• Dual firmware images/ Configuration files

GREEN Features

• IEEE 802.3az (Energy Efficient Ethernet)
• Auto FAN Speed Control, Temperature Alarm
• LED Shut-Off

MIB (Management Information Base) counters

• TCP/IP-based MIB-II (RFC 1213)
• Ethernet-like MIB (RFC 3635)
• Interface Group MIB (RFC 2863)
• RMON (Remote Network Monitoring) MIB (RFC 2819)
• Bridge MIB (RFC 1493)
• Bridge MIB Extension (RFC 2674)

Product Description

The TP Link TL-WA860RE wall-mounted is designed to conveniently extend the coverage and improve the signal strength of your wireless network. With 300Mbps wireless N speeds, TL-WA860RE turns your ‘dead zones’ into connected zones, helping you keep mobile devices, media players, and computers connected to Wi-Fi with a reliable connection.

TP-Link TL-WA850RE Features

Flexible Placement & Extra Power Socket The TL-WA860RE’s miniature size and wall-mounted design make it easy to deploy and move flexibly. Once connected with an existing router, you can simply unplug and plug the Range Extender back in anywhere without the need to configure it again. Moreover, its integrated power socket ensures that no power outlet goes to waste.
Plug and Play Just plug and play. That’s all you need to do to extend your wireless network. With no new wires or cables, within range of their existing wireless network, users can easily extend wireless coverage at a push of the WPS button on their router followed by the Range Extender button on the TL-WA860RE. Wireless Router
Superior Range with External Antennas With 2 external antennas combined with higher quality antenna technology, you can experience excellent WiFi coverage and reliability no matter where you connect in your home.
Ethernet Bridge Turn wired devices into wireless one The TL-WA860RE’s single Ethernet port allows the Extender to function as a wireless adapter to connect wired devices like Blu-ray® players, gaming consoles, DVRs and Internet TVs. At the same time, the device can also share the wireless network.
Smooth Streaming The TL-WA860RE provides fast connectivity for lag-free HD/3D video streaming, online gaming and internet calling with 300Mbps wireless N speeds.
Smart Signal Indicator Smart signal lights show the strength of signal that TL-WA860RE receives from the existing router, which can help to find the best location for optimal WiFi coverage.

Go Anywhere Connect Everywhere

LTE Mobile Wi-Fi

M7000

Do More with A Faster Connection

The M7000 supports the latest generation 4G FDD/TDD-LTE networks, providing convenient carry-on Wi-Fi in most countries and regions. Now you can enjoy lag-free HD video, fast file downloads, and stable video chats regardless of where life takes.

Share with Friends Internet Access for up to 10 Devices Simultaneously

This compact device works seamlessly with an impressive range of wireless gadgets. The M7000 can easily share a 4G/3G connection with up to 10 wireless devices like tablets, laptops, and mobile phones at the same time.

Power through Your Day with up to 8 Hours of Sharable 4G

With its powerful 2000mAh battery, the M7000 can provide up to 8 hours of wireless connectivity, making it the perfect companion for travel, business trips, outdoor activities, and more.

8

hours

* Battery life may vary in accordance with environmental conditions

Get Your Network Up and Running in Seconds

M7000 features a compact and user-friendly design, all you need is to insert a SIM card and press the power button. Your high-speed 4G hotspot will be operational within a half-minute.
Battery SIM card

Easy Management with the tpMiFi App

With the tpMiFi App, you can easily access and manage the M7000 from your connected iOS/Android devices. The tpMiFi app allows you to establish data limits, control which devices can access your Wi-Fi and send messages.
  • One Mesh Compatible Router - Form a seamless WiFi when working with TP-Link One Mesh WiFi Extenders
  • Wi-Fi 6 Router: Archer AX10 comes equipped with the latest wireless technology WiFi6 featuring OFDMA 1024-QAM, drastically increasing the speed and efficiency of the entire network.
  • Next-gen Dual Band router - 300 Mbps on 2. 4 GHz (802. 11n) plus 1201 Mbps on 5 GHz (802. 11ax)
  • Connect more devices than ever before - Wi-Fi 6 technology simultaneously communicates more data to more devices using OFDMA and MU-MIMO while reducing lag dramatically
  • Triple-core processing - the 1. 5 GHz tri-core processor ensures communications between your router and all connected devices are smooth and Buffer-Free
  • More coverage with less interference - achieve the strongest most reliable Wi-Fi coverage with Archer AX10 as it focuses signal strength to your devices using Beamforming technology.
  • Backward compatible - Archer AX10 supports all previous 802. 11 standards and all Wi-Fi devices
Wi-fi 6 router AX1500 Wi-Fi 6 delivers a huge boost in speed and total capacity. Get on the latest WiFi technology to wipe out all the annoying slowdown, and enjoy the future network that loads faster and connects more. The latest 1024-QAM and higher symbol rate work to boost speeds for newer devices to the Gigabit level. Connect to a 1 Gbps WiFi network with your phone or laptop, and enjoy speeds comparable to plugging in an Ethernet cable. Add more WiFi devices without dragging down performance. OFDMA allows multiple devices to use one band at the same time, enabling your WiFi to bear more devices compared to the same speed level Wi-Fi 5 router. Wi-Fi 6 increases the efficiency of transmits data, cutting the lag. Enjoy flawless video and audio chats, better gaming speeds, and instantaneous video loading on different devices—all at the same time. Beamforming technology and 4 high-gain antennas combine to generate strong, reliable Wi-Fi signal throughout your home, delivering smooth and stable connections for all your devices. The Gigabit Ethernet ports allow you to take full advantage of your broadband speed up to 1 Gbps. Plug your PCs, smart TVs, and game consoles into one of the four Gigabit Ethernet LAN ports for fast, reliable wired connections.
COMMANDO Soldier C2000 Series Switches are fully managed, perpetual PoE/PoE+/PoE++ IEEE 802.2af/at/bt (15.4W, 30W, 90W) compliant Gigabit Ethernet L2+ switches having power budget up to 800 W with network resiliency and high availability, delivering robust performance with intelligent switching, scheduling and distribution of Power as per requirement of PD which make PoE/PoE+/PoE++ available on maximum ports despite lower PoE power budget and perpetual PoE/PoE+/PoE++ for no power downtime required for growing networks. This series switches are easy to deploy, use, manage and designed exclusively for the networking needs of growing businesses. The security features equipped with today’s advance networking hardware and software technology. This Series switches can be deployed in harsh environments to deliver hassle free mission-critical network services and surveillance requirements. COMMANDO Soldier C2000 Series Switches are fixed configuration, with flexible 1G or 10G Fiber/ 1GE or 10GE copper Ethernet fixed Uplink that provide enterprise-class access for campus and branch applications. Designed for the digital workplace, these are optimized for today’s mobile and IoT needs. These switches are powerful and flexible enough for users to deploy PoE++/PoE+/PoE standard supplies up to 90W/30W/15.4W per port with power budget up to 800W, Backward compatible power per port which is ideal for PD applications using high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting devices over longer distances up to 250 meters. The 90W PoE++, IEEE 802.3bt technology drives high-power infrastructure for smart building systems, safe cities, thin clients, and a lot more. Facility managers and building owners can adopt the standard perpetual PoE/PoE+/PoE++ to make network future-proof all PoE/PoE+/PoE++ networks requirements. With outcome lower installation and wiring costs without changing network hardware. It provides easy device rack and wall-mounting, on boarding, configuration, monitoring, and troubleshooting. These fully managed switches can provide advanced L2+ and basic Layer 3 features as well as supports IEEE 802.3af compliant PoE (Power over Ethernet), 802.3at compliant PoE+ (Power over Ethernet plus) and IEEE802.3bt type-4 Ultra PoE++ (Power over Ethernet plus plus). Each switchport is capable to deliver 15.4W PoE/ 30W PoE+ or 15.4W PoE/ 30W PoE+/90W PoE++ power on all ports as per switch model with power budget up to 800W along with automated power (ON/OFF) scheduling. Switches are PoE/PoE+/PoE++ capable to provide power across all access ports for wireless APs, security cameras, and other IoT devices. Designed for operational simplicity to lower total cost of ownership, they enable scalable, secure, and energy-efficient business operations with intelligent and automated services. It also provides a convenient and cost-efficient wired access rack and wall mountable solution that can be quickly set up with Zero Touch Provisioning. These switches deliver enhanced application, visibility, network reliability, network resiliency and high availability. It has wire-speed back haul bandwidth capacity with fixed uplinks 1GE or 10GE copper/ 1G or 10G Fiber. This series also offers robust QoS to optimize traffic on your business network, these switches provide (Port-based/802.1p/DSCP) QoS to keep latency-sensitive video and voice traffic jitter-free moving smoothly. Additionally, Port-based, Tag-based VLAN, Voice VLANs, Surveillance VLAN can improve QoS and enhance security to meet network requirements. This series switches also have provisioning of QoS, Static routing, IPV6 features, multicasting, and Security. Moreover, with its innovative energy-efficient technology, can save up to 58% of power consumption, making it an Eco-friendly perfect solution for your business network.

Product Highlights

COMMANDO Soldier C2000 Series Switches contain 8, 24 and 48 Gigabit Ethernet perpetual PoE/PoE+/PoE++ models as well as non-PoE port-based models along with 1/10GE Ethernet Copper-based or 1/10G Fiber Ports (SFP/SFP+) fix Uplinks. This series also has 8, 24 & 48 Fiber SFP Ports models. Switches in COMMANDO Soldier C2000 Series Switches contains 24 & 48 Gigabit Ethernet PoE/PoE+/PoE++ models have up to 90W Per Port power budget and this series switches have total power budget 600W and 800W to meet enhance PoE/PoE+/PoE++ requirement of IP Phone/AP/LWAP/Wi-Fi Access Point and any other PoE/PoE+/PoE++ enabled devices. This series offers various Layer 2+ Ethernet functions (VLAN, QoS, MAC ACL, Port Security, IPv6, LACP, port mirroring, GVRP and many more). These Gigabit Ethernet switch enables home and office users to easily connect and supply power to high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting. It also provides the opportunity to add additional Ethernet devices like computers, printers, and Network Attached Storage (NAS) onto a network. This compact PoE/PoE+/PoE++ switch operates quietly, making it ideal for use in virtually any room or office.

L3 Highlights

•Layer 3 Static Routing up to 512 static route entries along with DHCP server.
•DHCP server, Client, Relay along with DHCP Snooping, DHCP Snooping option82.
•L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication.
• SNMP v1/v2c/v3 and RMON remote monitoring.
• IGMP v1/v2/v3 and MLD v1/v2 snooping, providing advanced multicast filtering and optimization.
•Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications.
•Provides IP-MAC Binding, Port Security, Storm control and DHCP Snooping which protect against broadcast storms, ARP attacks.
•Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
•Auto “denial-of-service” (DoS) prevention.
•Easily troubleshoot any problem in network with Ping, trace route, various show and debug command and WEB GUI based real time status of device.

L2+/L2 Highlights

•Store-and-forward Switching Scheme.
•Solid performance with non-blocking architecture, up to 8000 entries MAC Address Table for 8, 24 ports Switch models and 16K-entry L2 MAC table 48 port Switch models.
•with 4-way hashing algorithm, 4094 VLANs, 1024 to 2K+256 ACL entries, 512 static routes, Maximum packet length 10000 bytes and Jumbo frames of 10000 to 12000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•Security with 802.1X, Serial Port Analyzer (SPAN) and Bridge Protocol Data Unit (BPDU) Guard.
•Independent 512 to 4000-entry L2/IP Multicast table for multicast function.
•Advanced L2+ switching and security features like IP-MAC-Port-VID Binding, Static/Dynamic Port Security (MAC-based), DoS defend feature, Dynamic ARP Inspection.
•Advanced VLAN support for better network segmentation.
•Port mirroring with 4-sets of port mirrors for network monitoring.

Other Highlights

•8, 24 and 48 ports with auto-negotiation 10/100/1000Mbps perpetual and intelligent PoE/PoE+/PoE++ & Non PoE Models along with 8, 24 and 48 Fiber SFP Ports Models.
•Extra 2/4/6 Ports with fixed uplinks 1G or 10G Fiber/ 1GE or 10GE Copper.
•Additional DC input power to enable UPS to mitigate power supply failures and support critical network infrastructure
•90W (PoE/PoE+/PoE++) or 30W(PoE/PoE+) Max Per port with backward compatible power.
•Perpetual PoE/PoE+/PoE++ provides non-stop PoE/PoE+/PoE++ power. Switch can continue to provide power during configuration and reboot, the PDs will not loss power while reloading.
•Intelligent PoE/PoE+ power supply transmission is more reliable as well as more PDs can be connected due to design of robust network transformer which uses high current.
•Various power budget options of 600W/800W for 24 & 48 ports PoE/PoE+/PoE++ Switch models.
•All ports capable of PoE/PoE+/PoE++ up to 48 ports of full Power over Ethernet capability.
•PD detection will automatically detect and provide required power for your PoE/PoE+/PoE++ devices.
•Easily configurable PoE/PoE+/PoE++ scheduling to automate the PoE/PoE+/PoE++ requirements in networks.
•Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis.
•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB for 8, 16, 24 ports switch models and CPU Dual Core having frequency 700 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 12MB for 48 ports switch models.
•All ports capable of Gigabit Ethernet speed.
•Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX).
•Surge Protection up to ±6KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control Fan to optimize cooling and noise. Automatic Temperature Controlled Fan speed using temperature sensor with bilateral heat dissipation.
•Long life electrolytic capacitance to increase the operational life of switches.
•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Rack and Wall mount design that enables to mounts in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with device. Which enables horizontal surface mounting, wall mounting and having durable robust metal body.
•RJ45 Gold plated with 3U thickness, power and ports status/ activity and PoE Max indicator LED lights.
•Supports Energy Efficient Ethernet (IEEE802.3az), Innovative energy-efficient technology which saves up to 56% of power consumption for energy saving in the future.
•Easy to manage device with Web based Graphical User Interface (GUI), Command-Line Interface (CLI) - Telnet / SSH / HTTPS with RJ45 or console cables.
•With Zero Touch Provisioning: A simple, secure, unified plug and play.
•Dual image feature for reduced down-time when the firmware is being upgraded or downgraded or image file getting corrupted.
•WEB/CLI managed modes, SNMP, RMON bring abundant management features
•Supports Cable Diagnostics by Web GUI as well as CLI.
•Watchdog function used to protect the system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.
•RoHS Compliant with most of the packaging material can be recycled and reused.
• Comes with up to Five years extended warranty.
 

Features And Benefits

DHCP Server

Multiple IPv4 DHCP pools with Inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.

Intelligent PoE/ PoE+/PoE++ with Automated Scheduling

It automates the PoE/PoE+ /PoE++ requirements in networks on per port basis. Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+/PoE++ as per Scheduled time which makes them intelligent.

Perpetual POE/PoE+

With Perpetual PoE/PoE+, no power downtime to connected PD devices. PD devices remains power ON even when any software process is not running on the switch. Provides non-stop PoE/PoE+ power and continue to provide power during configuration and reboot, the PDs will not lose power while reloading. The Perpetual POE provides uninterrupted power to connected powered device (PD) even when the switch is booting to make it highly available network without any interruptions.

Ultra PoE++ (IEEE 802.3bt 90W)

COMMANDO BT series Switches with PoE+/Ultra PoE++ standard supplies up to 90W of power per port ideal for applications using high power wireless access points, PTZ (Pan Tilt Zoom) IP cameras, Surveillance cameras, VoIP telephony systems, kiosks, POS terminals, thin client, 802.11ac and 802.11ax access points, small cells, and connected LED lighting, which is useful for small to medium-sized businesses, Internet cafes, hotels, schools, and others. They are easy to install and maintain and provide PoE+/Ultra PoE++ power to high power demanding devices, helping customers build secure, reliable, and high-performance networks. It is an economical way for SOHO and Small-to-Medium Businesses (SMB) to take advantage of Gigabit Ethernet speeds with copper/fiber ports as well as built-in PoE+/Ultra PoE++ IEEE 802.3at/IEEE802.3bt type-4 (90W) while reducing energy consumption and minimizing noise with built-in PoE+/Ultra PoE++ IEEE 802.3at/IEEE802.3bt type-4 (90W) with circuit protection preventing power interference between ports. In a nutshell, 90W PoE++ means affordable power for more power-hungry devices, more business and future ready.

Dual Image

It can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.

Watchdog Function

This ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

L3 Features

This series is having L3 features with IPv4/IPv6 with 512 static routing entries, QoS, ACLs (Port based/ IP based/ MAC Based), DHCP Server and Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay.

L2+/L2 Features

This series is having advance L2+/L2 features like Port aggregation up to 8 ports, VLAN, Voice VLAN, GVRP, 802.1X authentication, centralized MAC authentication, Guest VLAN, RADIUS authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, Preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Flexible Software features provides wide range of Layer 2 functions like VLAN, Multicasting, Quality of Service (QoS), Security.

Secure Networking

IEEE 802.1X port-based access control with surveillance VLAN, Port Security, Protected Port which also Prevent ARP Spoofing. L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication. ACL, L4 to L2 feature restricts access to sensitive network resources. DHCP Snooping ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP. IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms. The switches support ARP attack and DoS attack prevention to safeguard the network.

Multicast

IGMP Snooping (v1, v2, v3), Multicast Listener Discovery (MLD) (v1/v2), Multicast VLAN Registration (MVR) designed for distribution of multicast traffic across segregated access networks which enables more efficient distribution of multicast streams in Layer 2 network.

QoS Features

Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications. Access Control List based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

10G Uplinks

10G copper/fiber Uplink supports high speed networking requirement and reduces copper cabling investment for LACP and LAGs and improves network backbone. It supports high-speed access to the network backbone or data center environment. This provides great resiliency, relieves congestion associated with bandwidth-intensive applications, and guarantees smooth hassle-free data transmission.

Easy Management with CLI

With familiar and popular Command Line interface (CLI), there is no need for engineers to be hired or additional resources to be spent on training and/or learning the switch CLI. The command set are familiar and well known in the industry. Web Graphical User Interface (Web GUI), Command Line interface (CLI), RADIUS/TACACS+ with industry standard CLI and easy to use Web GUI. Management is made easy via a Web GUI or industry-standard Command Line Interface (CLI), with administration traffic protected via SSL or SSH encryption. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur.

Easy to Use

It easy to use and manage and Plug-and-Play that requires no configuration, so setup is simple and hassle-free. Auto MDI/MDI-X crossover on all ports eliminate the need for crossover cables or uplink ports. The switches range from 24 & 48 Gigabit Ethernet perpetual PoE/PoE+/Ultra PoE++ models as well as non-PoE models along with 1G/10GE copper-based or 1G/10G Fiber Ports Uplinks. This series also has 8, 24 & 48 Fiber SFP Ports models. It contains 24 & 48 Gigabit Ethernet PoE/PoE+/Ultra PoE++ models have up to 30W (PoE/PoE+) or 90W Ultra PoE++ Per Port power budget and this series switches have total power budget up to 800W to meet PoE/PoE+/Ultra PoE++ needs. Its compact size makes it ideal for rackmount/wall-mount with limited space. Dynamic LED lights provide real-time work status display and basic fault diagnosis.

Lifetime Free Software Licensing and Upgrades

SoldierOS Software license and Upgrades are free for lifetime. Users do not have to worry about switch license expiring and software getting outdated (which is constant concern and worry of few other brands). This series has improved HTTP base firmware upgrade as well as CLI based upgrades which are freely available to all users without any cost or license fee for lifetime. COMMANDO Soldier C2000 Series Switches are easy to install, configure, monitor, and troubleshoot. It significantly reduces cost of administration and Total Cost of Ownership (TCO).

Auto MDIX Capabilities

Auto sensing/Auto PoE/PoE+/PoE++ 10/100/1000 ports with auto MDIX capabilities which also removes speed and duplex mismatches automatically as well as covers larger physical distance with copper pairs compared to other brands best switches.

Flexible Service Control

With various ACLs to flexibly control ports. It also supports Port-based VLAN assignment, MAC address-based VLAN assignment, Protocol-based VLAN assignment, and Network segment-based VLAN assignment. These secure and flexible VLAN assignment modes are used in networks where users move frequently. It also supports GARP VLAN Registration Protocol (GVRP), which dynamically distributes, registers, and propagates VLAN attributes to ensure correct VLAN configuration and reduce network administrator workloads. This series switches supports SSH v1/v2/v3, RMON, port-based traffic statistics, LLDP/LLDP-MED.

Compact Design with Flexibility of additional ports

The switches provide additional deployment flexibility, fiber connectivity as well as combo options for easy expansion of your networks. So, you can directly connect to a high-performance storage server or deploy a long-distance uplink to another switch.

Perfect for Noise-Sensitive Environments

These are the ideal solution for the most advanced small and medium organizations looking for the best combination of features, performance, and value. These switches are purposely designed for converged networks where voice, video, data are all carried on a single network platform. This series comes with fan/fan-less switches models along with Small form-factor, fan/fan-less design for silent operation. Perfect for noise sensitive environments. Fan based Switches have Temperature- and load-based fan-speed control combines accurate monitoring with minimized system acoustic noise. The Fan based switches also feature built-in smart fans that monitor and detect temperature changes, adjusting the fan speed for maximum efficiency. At lower temperatures, the fans run at a lower speed, reducing both the power consumption and noise output of the switch.

Zero Maintenance

Cost efficient switches, with a reasonable PoE/PoE+/PoE++ power budget up to 800W along with PoE/PoE+/PoE++ configurable scheduler to automated Power ON/OFF connected PoE/PoE+/PoE++ devices as per scheduled timing with Cost of ownership is less compared to other products of same features as well as zero maintenance. Maximum power reduction for ongoing operation cost savings.

Easy Debugging and Troubleshooting

Ping, Traceroute, SNMP, RMON, Web based real time Switch ports monitoring with WEBUI and CLI can easily troubleshoot any problem in network with various show and debug commands.

Longer Distance Coverage

State of art quality switches that can serve real time high-speed performance which covers longer physical distance up to 250 meters with copper pairs compared to other brands.

Warranty:

The switches come with up to Five-year extended warranty.
 

Software

The COMMANDO SoldierOS IP Base switches provides advanced L2 switching and security features along with ACLs (MAC/IP/Port) based IPV4 and IPV6, L4/L3/L2 QoS , Static Routing up to 512 static route entries, Spanning Tree Protocol (IEEE802.1D STP , IEEE802.1w RSTP, IEEE802.1s MSTP) SNMP v1/v2c/v3, IGMP and MLD snooping, QinQ and selective QinQ, VLAN mapping, Voice VLAN, GVRP, Advanced multicast filtering, and IGMP snooping that optimize voice and video applications, DHCP Server, DHCP Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay, RADIUS/TACACS+ authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Management is made easy via a web-based Graphical User Interface (GUI) access via HTTP/HTTPS or industry-standard Command Line Interface (CLI) via Console/ Telnet with administration traffic protected via SSL or SSH encryption. This CLI is well known and understood by all professionals in networking field. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur. It provides a complete set of security features including L4/L3/L2 multi-layer Access Control Lists and 802.1x user authentication via TACACS+ and RADIUS servers. This ensures the network is protected from unauthorized access. It also offers extensive VLAN support including GVRP and 802.1Q VLAN to enhance security and performance. A robust set of L4/L3/L2 based QoS/CoS solutions help ensure that critical network services such as VoIP and video conferencing are served with priority. Bandwidth Control can be flexibly set for each port using predefined thresholds to assure a committed level of service for end users. For advanced applications, flow-based bandwidth control allows easy fine-tuning of service types based on specific IPV4/IPV6 addresses or protocols that provides Security, Performance & Availability. Access control lists (ACLs) perform operation of filtering (IPv4/IPv6) Packet/MAC/port-based filtering to control the movement of segments/packets/frames through a network. ACL filtering provides security by limiting the access of traffic into a network, restricting user and device access to a network, and preventing traffic from leaving a network. Time range-based ACL, VLAN-based ACL, Bidirectional ACL. Packet filtering at Layer 4 through layer 2 Traffic classification based on source IPv4/IPv6 addresses and source MAC addresses, destination MAC addresses. L4/L3/L2 Quality of service (QoS) refers to any technology that manages data traffic to reduce packet loss, latency, and jitter on the network. QoS controls and manages network resources by setting priorities for specific types of data on the network. Static routing is a form of routing that occurs when these switches use a manually configured 512 IPV4 static routing entries. Static routing has three primary uses:
•Ease of routing table maintenance in smaller networks with little growth or change. Routing to and from connected networks.
•A network accessed by a single route, and the router has only one neighbor.
•Single default route to represent a path to any network.
It provides GUI based PoE/PoE+/PoE++ scheduling Premium feature. PoE/PoE+ /PoE++ Scheduling is a feature which allows you to specify the amount of time that power is delivered to a PoE/PoE+/PoE++ port automatically. This can be used to save power when devices are not in use, or as a security feature to prevent wireless access from being available outside of business hours. It is possible to set a schedule PoE/PoE+/PoE++ at a start time, an end time and which ports the PoE/PoE+/PoE++ schedule applies to. The PoE/PoE+/PoE++ device turn ON and OFF as per the PoE/PoE+/PoE++ schedule time.

Software Highlights:

• DHCP Server for multiple IPv4 DHCP pools with inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.
• Intelligent PoE/ PoE+/PoE++ with Intelligent scheduling to automate the PoE/PoE+/PoE++ requirements in networks. Advanced per port PoE/PoE+/PoE++ controls for remote power management to automate ON/OFF of PoE/PoE+/PoE++ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+/PoE++ as per Scheduled time which makes them intelligent.
• Perpetual POE/PoE+/PoE++ for no power downtime to connected PD devices even when any software process is not running on the switch. Provides non-stop PoE/PoE+/PoE++ power and continue to provide power during configuration and reboot.
• Dual Image can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.
• Watchdog function ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

Layer 3 Switching

• Static ARP as manually added IP network address to the hardware MAC address of a device as well dynamic ARP entries.
• Static Route, Default route and Dynamic connected route learning. Static Route, Default route, connected route up to 512 route entries are supported.
• Access Control List Access Control Lists (ACLs) can be used to deny and allow packets and provides flexible access control based on Standard IPV4, IPV6, MAC based, Management and also Port based Filtering.
• Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
• QoS Features like Scheduling Mode: WRR, SP, which are Based on Port based on 802.1p DSCP (DiffServ), COS and DSCP.

Advanced L2/L2+ Switching

• Auto Port Configuration, Auto-Negotiation for port speed and duplex mode. Flow Control for IEEE802.3x full-duplex and half-duplex backpressure.
• Rate Limit enable to slow down traffic on a port to keep it from exceeding the limit set.
• Link Aggregation with LAG static and IEEE802.3ad Link Aggregation Control Protocol (LACP) increases bandwidth by automatically aggregating several physical links together as a logical trunk and providing load balancing and fault tolerance for uplink connections. Up to 8 maximum aggregation groups.
• Link Layer Discovery Protocol (LLDP) neighbor discovery protocol that allows devices to advertise device information to their directly connected peers/neighbors.
• Unidirectional Link Detection protocol (UDLD) that detects and disables one-way connections before they create undesired situation such as network failure, Spanning Tree loops and broadcast storm.
• Spanning Tree Protocol (STP) eliminates Layer 2 loops in a network by selectively blocking specific links. STP also enables link redundancy. Support IEEE 802.1D (STP), from which IEEE 802.1W (RSTP) and IEEE 802.1s (MSTP 64 to 256 instance).
• Loopback Detection also has BPDU Filter, BPDU Guard.
• IGMP Snooping listening to Internet Group Management Protocol network traffic to control delivery of IP multicast. Network switches with IGMP snooping listen in on the IGMP conversation between hosts and layer 3 devices and maintain a map of which links need which IP multicast transmission.
• Static MAC address, MAC Configuration for MAC binding, MAC Address Filter.
• 4094 VLAN Configuration with advanced VLAN support for better network segmentation, VLAN Based on 802.1Q, MAC-Based VLAN, IP-Based VLAN, Protocol-Based VLAN, Voice VLAN, Guest VLAN, Private VLAN - Support 1:1 VLAN Mapping basic QinQ, Surveillance VLAN.

Secure Networking

• MAC address limiting to enhanced Security. Port Security ensures access to switch ports based on MAC address to limit the total number of devices from using a switch port and protects against MAC flooding attacks, SYN Flood, ICMP Flood attack and prevention of DOS, BPDU Guard and Root Guard which avoid accidental network topology loops and prevent illegal edge devices become root to cause unnecessary flapping.
• IEEE 802.1X Port-based Access Control ensures all users are authorized before being granted access to the network. User authentication is carried out using any standard-based RADIUS server. 802.1x - RADIUS, AAA - MAC-based 802.1X authentication also Support 802.1x surveillance VLAN, Port Security, Protected Port and also Prevent ARP Spoofing.
• L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication. IP, MAC, Ports based Access Control Lists (ACL, L4 to L2) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports and even VLAN ID.
• DHCP Snooping feature ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP.
• IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms.
• ARP attacks prevention prevent typical DoS attacks can protect these attacks more easily ever than before.

Multicast

• IGMP Snooping (v1, v2, v3) transmits data on demand on data link layer by analyzing IGMP packets between the IGMP querier and the users, to build and maintain Layer 2 multicast forwarding table.
• Snooping Multicast Listener Discovery (MLD) snooping (v1/v2) constrains the flooding of IPv6 multicast traffic on VLANs. MLD snooping performs the same function as IGMP snooping with the only difference being that MLD snooping is for IPv6 and IGMP snooping for IPv4 environments.
• Multicast VLAN Registration (MVR) is designed for distribution of multicast traffic on a dedicated multicast VLAN across segregated access networks, while allowing subscribers who are on different VLANs to join and leave the multicast groups carried in the Multicast VLAN. Multicast VLAN registration (MVR) enables more efficient distribution of IPTV multicast streams across an Ethernet ring-based Layer 2 network.

QoS features

• Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based.
• L4/L3/L2 QoS optimize voice and video applications with ACL based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

User friendly Maintenance Management

• With Zero Touch Provisioning: A simple, secure, unified plug and play.
• CLI / Web GUI / SNMP Management with industry standard CLI and Web GUI based device-management tool that provides the ability to provision the device, to simplify device deployment and manageability, and to enhance the user experience. It comes with the software Image 0 can also have Image 1 (Dual image) simultaneously. There is no need to enable anything or install any license on the device. Then Web GUI can be used to build configurations, and to monitor and troubleshoot the device without having CLI expertise.
• Support Multi-user management at the same time.
• With RADIUS and TACACS+ server authentication can be performed locally or on a RADIUS/TACACS+ server can also control access to your network through Switch by using authentication methods such as 802.1X, MAC Based and Web Based.
• Configuration Download/Upload Upgrade Firmware by HTTP and TFTP.

Debugging and troubleshooting feature

• PING, TRACEROUTE, SNMP, RMON, Web based real time switch ports monitoring with WEBUI can easily troubleshoot any problem in network with Ping, trace route, various show, debug command and WEBUI based real time status of device.
• Cable Diagnostics by WEB GUI as well as CLI.
• Maintenance & Operation Management via TFTP/FTP, CLI, Telnet, Console, Web GUI /SSL (IPv4/IPv6), SSH (IPv4/IPv6).
• Port Mirroring for network monitoring. Port mirroring is used on a network device to send a copy of network packets seen on one switch port, multiple other ports, or on to network monitoring connection on another port on the switch.
• SNMP v1/v2c/v3, management station, can monitor the performance of network devices. With SNMP, network managers can view or modify network device information, and troubleshoot according to notifications sent by those devices in a timely manner. Public and Private Management Information Base (MIB) interface
• RMON (Remote Network Monitoring) together with the SNMP system allows the network manager to monitor remote network devices efficiently. RMON reduces traffic flow between the NMS and managed devices, which is convenient to manage large networks.

Software Licensing and Upgrades

• Free Software Upgrades and patching supports with enhanced functionality, which provides fixes for critical bugs and security vulnerabilities between regular maintenance releases. This free software upgrades and licenses support lets you add patches, new features, protocols, and functionality without having to spend a single dollar. This reduces TCO.
• Protected Ports ensure no exchange of unicast, broadcast, or multicast traffic between the protected ports on the switch, thereby improving the security of your converged network.
• Dynamic VLAN Assignment (RADIUS/TACACS+): IP phones and PCs can authenticate on the same port but under different VLAN assignment policies. Users are free to move around and enjoy the same level of network access regardless of their physical location on the network.
• Port Mirroring and Cable Test Many-to-one port mirroring for better and quicker network diagnostics and troubleshooting. Cable test easily identifies bad Ethernet cables.
• Firmware updates and backup procedure by uploading/downloading file to PC/TFTP/FTP.

Table 1. COMMANDO SoldierOS IP Base Software at a Glance

Ethernet Protocols (IEEE ) L2 Switching Features Quality of Service (QoS) Security Management
802.3i 802.3u 802.3ab 802.3z 802.3av 802.3ad 802.3ae 802.3ak 802.3x 802.1p 802.1q 802.1v 802.1d 802.1s 802.1w 802.1x 802.3x Link Aggregation, LACP, Spanning Tree Protocols, Multicasting, VLANs, ACL, Voice VLAN, GVRP, Port isolation, Port security, MAC address learning limit, DHCP Server, IP Source guard, Dynamic ARP inspection, IP /Port/MAC binding L4, L3, L2, ingress/ Egress Access Control List (ACL), 802.1x authentication AAA / RADIUS/TACACS+ Web GUI management mode, Support Command Line Interface (CLI) through console port, Telnet, SNMP v1/v2c/v3 and RMON

Table 2. Performance of COMMANDO SoldierOS IP Base

VLAN 4094
MAC Table entries 8000 to 16000
ACL 1024 to 2K+256
Multicast Group 512 to 4K
Jumbo Frame 10000 to 12000
Multicast IGMP Group 16
Multiple User Account 8
Static Route 512
MSTP 16 to 256
Aggregation Trunks/Ports Per Trunk 8/8 to 8/16
TACACS+/RADIUS Servers 8

Software Features

1. L3 Features

•Static ARP up to 1K
•Supports Gratuitous ARP
•IPv6 Neighbor Discovery (ND)
•Static Routing
•Max. 512 IPv4 entries
•Max. 512 IPv6 entries
•Supports Default Routing

2. L2 Switching Features

Basic L2 Switching Features

•MAC Address Table with 8K to 16 K entries
•802.3x Flow Control when using full duplex
•Back Pressure when using half-duplex
•HOL Blocking Prevention
•Jumbo Frame Up to 10,000 to 12000 bytes
•ERPS (Ethernet Ring Protection Switching)
•Port Mirroring Supports One-to-One, Many-to-One, Supports Mirroring for Tx/Rx/Both, Supports 4 mirroring groups
•Flow Mirroring supports One-to-One, Many-to-One, Supports Mirroring for Rx, Supports 4 mirroring groups
•RSPAN mirroring
•Loopback Detection
•L2 Protocol Tunneling

Link Aggregation

•Support static link aggregation
•Support 802.3ad LACP
•Up to 8 aggregation groups, containing 8 ports per group for 8, 24 & 48 ports Switches and 8 aggregation groups, containing 16 ports per group for 48 ports Switches.

Spanning Tree Protocol (STP)

•IEEE 802.1D Spanning Tree Protocol
•IEEE 802.1s Multiple Spanning Tree Protocol
•IEEE 802.1w Rapid Spanning Tree Protocol
•STP Security: Loop back detection, TC Protect, BPDU Filter/Protect, Root Protect

Multicast

•Support IGMP Snooping V1/V2/V3, with 256 groups to Independent 4K entry Multicast table for L2/IP multicast function
•Support multicast VLANs, IGMP Immediate Leave, Unknown IGMP Throttling, IGMP Filtering, Static Multicast IP
•L2 Multicast Filtering Forwards all groups, forwards all unregistered groups, Filters all unregistered groups
•MLD Snooping, MLD v1/v2 Snooping
•PIM Snooping

VLAN

•Support IEEE802.1Q with 4K VLAN groups and 4K VIDs
•Support Port VLAN, Protocol VLAN and MAC-based VLAN
•Support GARP/GVRP feature

Quality of Service (QoS)

•Support 802.1p CoS/DSCP priority
•Support 4 priority queues
•Queue scheduling: SP, WRR, SP+WRR
•Port/Flow- based Rate Limiting
•Voice VLAN assure voice applications have excellent performance

Advanced Security

•IP-MAC-Port-VID Binding
•Static/Dynamic Port Security (MAC-based)
•DoS defend feature
•Dynamic ARP Inspection

802.1x authentication

•Support 802.1x port/MAC based authentication
•Support Radius authentication and accountability
•Guest VLAN
•RADIUS/TACACS+

Access Control List (ACL)

•L2~L4 package filtering based on source and destination MAC address, IP address, TCP/UDP ports, 802.1p, DSCP, protocol and VLAN ID.
•Time based ACL
•Support Broadcast, Multicast and Unknown unicast Storm Control
•Secure web management through HTTPS and SSLv2/v3/TLSv1
•Secure remote command line interface (CLI) management with SSH v1/V2

Management

•Support Web-based GUI management mode
•Support Command Line Interface (CLI) through console port, telnet management mode
•SNMP v1/v2c/v3
•RMON (1, 2, 3, 9 groups)
•DHCP Server
•DHCP/BOOTP Client
•DHCP Snooping
•DHCP Option 82
•CPU Monitoring
•Port Mirroring (Many to One)
•Cable Diagnostics feature
•Ping/Tracert feature
•SNTP
•System Log

3. Ethernet Protocols

•IEEE 802.3i 10BASE-T
•IEEE 802.3u 100BASE-TX/FX
•IEEE 802.3ab 1000BASE-T
•IEEE 802.3z 1000BASE-X
•IEEE 802.3ae 10GEBASE-T
•IEEE 802.3ak 10GBASE-X
•IEEE 802.3av GVRP
•IEEE 802.3ad Link Aggregation
•IEEE 802.3x Flow control
•IEEE 802.1p QoS
•IEEE 802.1q VLANs / VLAN tagging
•IEEE 802.1v Protocol VLAN
•IEEE 802.1d Spanning Tree Protocol (STP)
•IEEE 802.1s Multiple Spanning Tree (MSTP)
•IEEE 802.1w Rapid Spanning Tree (RSTP)
•IEEE 802.1x Network Login Security
•IEEE 802.3x flow control for Full Duplex mode and back pressure for Half Duplex mode

4. MIBs (Management Information Base)

•Ethernet-like MIB (RFC 3635)
•Interface Group MIB (RFC 2863)
•RMON (RFC 2819)
•Bridge MIB (RFC 1493)
•Bridge MIB Extension (RFC 2674)

Table 3. Key software function of COMMANDO SoldierOS IP Base

Features Protocols
IEEE Standards IEEE 802.3x (Full Duplex), Back-Pressure (Half-duplex) IEEE 802.3, IEEE 802.3u, IEEE 802.3ab, IEEE 802.3z IEEE 802.3ad IEEE 802.3q, IEEE 802.3q/p IEEE 802.1w, IEEE 802.1d, IEEE 802.1S
MAC Address 8000 to 16000 MAC addresses table entries Jumbo Frame 10000 to 12000 bytes with automatic MAC address learning and aging
Energy Efficient Ethernet EEE (802.3az)
VLAN Up to 4094 VLAN Port-based VLAN up to 8 groups IEEE 802.1Q Tagged-based MAC-based VLAN up to 256 Voice VLAN static up to 256 QoS for each Voice VLAN Data Voice VLAN OUI Mode (Auto/Manual) maximum 16 OUI Multicast VLAN Registration (MVR) IPV4 Based
Surveillance VLAN OUI Mode (Auto/Manual) maximum 16 OUI
VLAN QinQ (IEEE 802.1ad)
GARP VLAN Registration Protocol (GVRP) GVRP As per IEEE 802.1Q specification
Spanning Tree IEEE 802.1D (STP) EEE 802.1w (RSTP) EEE 802.1s (MSTP) maximum 64 to 256 instances uto Edge Port BPDU Filtering BPDU Guard Self-Loop Detection UDLD
Link Aggregation IEEE 802.3ad LACP, Max 8 Aggregation Groups trunk, Maximum 8 to 16 ports per Trunk Static Trunk Aggregation and Dynamic Aggregation Traffic Load Balancing
Port Mirror Many-to-one port mirroring
Port flow control Half duplex based back pressure control Full duplex based on PAUSE frames
Line Rate Support Port based Input/Output Bandwidth Management
IP Binding Support Static ARP
DHCP DHCP Server, DHCP Client mode
DNS DNS Client mode
Static Routing Support Static routing
IGMP Snooping IGMP v1/v2 IGMP v3 Basic (BISS) IGMP v2/v3 Querier
MLD Snooping MLD v1/v2
IPv6 IPv6 Host - Auto Configuration, Static IPv6 Address and Prefix Length, Static IPv6 Default Gateway, IPv6 Neighbor Discovery (ND), IPv6 Duplicate Address Detection, ICMPv6 IPv6 Application Supported - HTTP/HTTPS, TELNET, SSH, SNMP, TFTP, Syslog, PING, DHCPv6
Multicast Multicast Groups up to 256 to 4000 Immediate Leave Static/Forbidden Router Port Static/Forbidden Forward Port Filtering up to 128 profiles Throttling
Storm suppression Storm Control Broadcast Unknown Multicast Unknown Unicast Storm Suppression of Broadcast type Storm suppression based on bandwidth tuning and storm filtering
Access Control List (ACL) Access Rules Maximum 1024 to 2K+256 ACL Type-L2/L3/L4 ACL IPv4-based Up to 1024 to 2K+256 ACL IPv6-based
Security AAA (Authentication, Authorization and Accounting) TACACS+ (Terminal Access Controller Access Control Server) Maximum up to 8 servers. RADIUS (Remote Authentication Dial-In User Service) Maximum up to 8 servers. Authentication Manager - IEEE 802.1X, MAC Auth, Web Auth, Guest VLAN, Port-based, Host-based. Port Security Using Dynamic Lock maximum 256 Protected Port (Port Isolation) Black Hole MAC CPU Defense Engine DoS Prevention DHCP Snooping (with Option 82) Dynamic ARP Inspection IP Source Guard maximum 256 IP/MAC/Port Binding (IMPB)
QoS Features 802.1p port queue priority algorithm Teams that support 4 different priorities per port Queue Scheduling - WRR, WFQ, Strict Priority, Hybrid (WRR+SP or WFQ+SP) WRR (Weighted Round Robin) Weighted priority rotation Algorithm, WRR, SP, WFQ, 3 priority scheduling models Class of Service - Port-based, 802.1p, IP TOS Precedence, IP DSCP, trusted QoS Support based on port, MAC, 802.1Q, DSCP classification Rate Limit - Port-based (Ingress/Egress)
Account Manager Local Authentication Multiple User Account Up to 8 Multilevel Security Password Recovery Procedures
System maintenance Upgrade firmware feature via TFTP/FTP/HTTP. Support Upload/Download Configuration files through WEB Support Multi-user management GUI/ CLI based Restore Factory Configuration
Line Management Console Telnet (RFC854) SSH v1/v2
Management and Maintenance Management by CLI - Console, Telnet (RFC854) up to 3 sessions Management by GUI - HTTP, HTTPS Management Based on Remote Configuration and Maintenance Using Telnet, SNMP V1/V2C/V3, SSH V1/V2, RMON V1/V2 Software Reset to default setting
Management Access Management VLAN Management ACL Up to 1024 to 2K+256
File Management Firmware Upgrade/Backup Dual Images Configuration Download/Backup Multiple Configurations Upload/Download using TFTP (RFC783) HTTP (Hyper Text Transfer Protocol) UART (Universal Asynchronous Receiver/Transmitter)
Time Management Locally using sync with PC option. NTP (Network Time Protocol)
Port Management Friendly Port Name (Port Description) Error Disabled Recovery
Secure Sockets Layer (SSL) Secure Sockets Layer (SSL)- SSLv2, SSLv3 Transport Layer Security (TLS)- TLSv1
Neighbor Discovery IEEE 802.1AB Link Layer Discovery Protocol (LLDP) ANSI/TIA-1057 LLDP Media Endpoint Discovery (LLDP-MED)
Remote Monitoring Management RMON Up to 32 entries / type
MIB MIB-II (RFC 1213) Ethernet-like MIB (RFC 3635) Interface Group MIB (RFC 2863) RMON (RFC 2819) Bridge MIB (RFC 1493) Bridge MIB Extension (RFC 2674)
Diagnostics Mirroring 4 sets Port-based (Many to One) Up to 32 entries / type Syslog (RFC3164) with Local RAM, Local Flash, Remote Server up to maximum 8. System Diagnostics with CPU Utilization, Memory Utilization, Port Utilization Port Diagnostics with Cable Test, Fiber Module Status Network Diagnostics with Ping Test, Traceroute

Convergence Time

By default, RSTP used for all COMMANDO SoldierOS and it takes less than 10 seconds for entire network to converge. RSTP converges faster because it uses a handshake mechanism based on point-to-point links instead of the timer-based process used by STP. IP multicast snooping and IGMP automatically prevent flooding of IP multicast traffic. IEEE 802.1AB Link Layer Discovery Protocol (LLDP) facilitates easy mapping using network management applications with LLDP automated device discovery protocol LLDP-MED (Media Endpoint Discovery) defines a standard extension of LLDP that stores values for parameters such as QoS and VLAN to configure automatically network devices such as IP phones. STP/RSTP/MSTP for loop free network, IEEE 802.1s Multiple Spanning Tree provides high link availability by allowing multiple spanning trees; provides legacy support for IEEE 802.1d and IEEE 802.1w IEEE 802.3ad Link Layer Discovery Protocol (LACP) and port trunking support up to 8 static, dynamic, or distributed trunks with each trunk having up to 8 to 16 links (ports) per static trunk. Lag links provides easy-to-configure link redundancy of active and standby links.

Security

The AAA feature allows you to verify the identity of, grant access to, and track the actions of users. The COMMANDO Soldier C2000 Series Switches support Remote Access Dial-In User Service (RADIUS) or Terminal Access Controller Access-Control System Plus (TACACS+) protocols. Based on the user ID and password combination that you provide, the COMMANDO Soldier C2000 Series Switches perform local authentication or authorization using the local database or remote authentication or authorization using one or more AAA servers. A pre-shared secret key provides security for communication between the COMMANDO Soldier C2000 Series Switches and AAA servers. You can configure a common secret key for all AAA servers or for only a specific AAA server. COMMANDO Soldier C2000 Series Switches Multiple user authentication methods
•Uses an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server to authenticate in accordance with industry standards
•Supports web-based authentication
•Supports MAC-based authentication
•Multiple IEEE 802.1X users per port provides authentication of multiple devices on a single port; prevents a user from piggy backing on another user’s IEEE 802.1X authentication
•Concurrent IEEE 802.1X, Web, and MAC authentication schemes per port switch port will accept up to 8 sessions of IEEE 802.1X, Web, and MAC authentications
•Access control lists (ACLs) provide IP Layer 3 filtering based on source and destination IP address or subnet or source and destination TCP/UDP port number
•Source-port filtering allows only specified ports to communicate with each other
•RADIUS/TACACS+ eases switch management security administration by using a password authentication server
•Secure shell encrypts all transmitted data for secure remote CLI access over IP networks
•Secure Sockets Layer (SSL) encrypts all HTTP traffic, allowing secure access to the browser-based management GUI in the switch
•Port security allows access only to specified MAC addresses, which can be learned or specified by the administrator
•MAC address lockout prevents particular configured MAC addresses from connecting to the network
•Secure FTP allows secure file transfer to and from the switch; protects against unwanted file downloads or unauthorized copying of a switch configuration file
•Switch management logon security helps secure switch CLI logon by optionally requiring either RADIUS or TACACS+ authentication
•Custom banner displays security policy when users log in to the switch
•STP BPDU port protection blocks Bridge Protocol Data Units (BPDUs) on ports that do not require BPDUs, preventing forged BPDU attacks
•DHCP protection blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks
•Dynamic ARP protection blocks ARP broadcasts from unauthorized hosts, preventing eavesdropping or theft of network data
•Dynamic IP lockdown works with DHCP protection to block traffic from unauthorized hosts, preventing IP source address spoofing
•STP root guard protects the root bridge from malicious attacks or configuration mistakes
•Identity-driven ACL enables implementation of a highly granular and flexible access security policy and VLAN assignment specific to each authenticated network user
•Per-port broadcast throttling configures broadcast control selectively on heavy traffic port uplinks
•Monitor and diagnostics digital optical monitoring of SFP and 1000BASE-T transceivers allow detailed monitoring of the transceiver settings and parameters

Effective Management

COMMANDO SoldierOS offers network monitoring for users to observe traffic behavior with Port Mirroring, Loop Prevention and DHCP snooping features, can identify and even locate connection problems on your business network.
•Administrators can designate the priority of the traffic based on Port Priority, 802.1P and DSCP Priority, to ensure that voice and video are always clear, smooth and lag-free.
•Voice VLAN, port-based VLAN and 802.1Q-based VLAN functions. COMMANDO is an upgrade from the plug-and-play Unmanaged Switch, delivering great value while empowering your network and similarly delivering great value to the end user.
•RMON provide advanced monitoring and reporting capabilities for statistics, history, alarms, and events.
•Troubleshooting ingress and egress port monitoring enable more efficient problem solving.
•Unidirectional Link Detection (UDLD) monitors the link between two switches and blocks the ports on both ends of the link if the link goes down at any point between the two devices.

Table 4. COMMANDO Soldier C2000 Series Switches PoE/PoE+/PoE++ Power Budget and slots

Model Max Power Budget (Watt) Total physical slots (Ports) on device
C2000-24G+8CF - 32
C2000-24GP+8CF 600W 32
C2000-48GP+8CF 800W 56
C2000-8SFP+4CF - 12
C2000-48SFP+4GE - 52

PoE/PoE+/PoE++ Flexibility

COMMANDO SoldierOS Power over Ethernet (PoE/PoE+/PoE++) enabled switches with a total power budget of up to 800W for different kinds of PoE/PoE+/PoE++ devices over a long-range copper cable length up to 250m, provides power and network connectivity for PoE/PoE+/PoE++ powered devices over a single network cable with schedule time as per time set by network administrator. PoE/PoE+/PoE++ devices range from wireless access points, IP cameras, VoIP phones, PoE LED lighting, PoE speakers to IoT doorbells and other IoT, Wireless Access Points, Wireless Bridges, or other standards compliant PoE/PoE+/PoE++ all end devices with Scheduling of power on each port to fully automate network. This series switches provide a quick, safe and cost-efficient IEEE 802.3af/at/bt PoE/PoE+/PoE++ network solution for small businesses and enterprise. By default, the switches automatically detect IEEE 802.3af/at/bt devices so they automatically receive PoE/PoE+/PoE++ power.

Table 5. COMMANDO Soldier C2000 Series Switches LED Indication

LED Indication on Switch LED Status
Power Green OFF: No power on the switch. Green ON: The switch powered on
Link/Act LINK/ACT bi-color LED: OFF: Port disconnected or link fail. Green ON: 1000Mbps connected. Amber ON: 10/100Mbps connected. Green Flashing: 1G/10G connected and Data in transit Amber Flashing: 10/100Mbps connected and Data in transit
System Green OFF: The system is starting, please wait Green ON: The system is up and running
PoE OFF: PoE/PoE+ power is not provided on port Blue ON: PoE/PoE+ power is provided on port
PoE MAX PoE MAX OFF: PoE Power budget is available in switch Red ON: PoE Power budget is 95%

Power Budget According to Cable Length

Ideally, shorter cables would use less power because of less power degradation over their length This is not the case with most devices as they will use the same amount of power across the cable regardless of whether it is 10 or 100 meters in length. These switches analyze the length of the Ethernet cable connected and adjusts the power usage accordingly, rather than keeping the power consumption in a conventional solution.

Table 6. COMMANDO Soldier C2000 Series Switches Cable Lengths

Connection Cable Type Category and Speed Maximum Cable Distance Supported
Unshielded Twisted Pair cable 10/100Base-TX: UTP category 5/5e/6 cables (Maximum 100m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Shielded Twisted Pair cable 10/100Base-TX: STP category 5/5e/6 cables (Maximum 250m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Optical Fiber Cable 550M~120KM depending on SFP 120KM
 

Hardware

COMMANDO Soldier C2000 Series Switches has 4.1 to 12 Mbit SRAM Packet Buffer memory with Packet length of 10K bytes. L2 MAC Function with 8K entries for MAC address learning for 8, 24 port Switch models and 16K-entry L2 MAC table 48 port Switch models with the 4-way hash L2 table and searching with two hash algorithms. Independent 512- 4K entry L2/IP Multicast table for multicast function, 2-hash algorithm selection for L2 table searching/learning. Aging timer ranges from 0.2s to 1600000s. It has a 4K-entry VLAN table and provides a 64-entry filtering database for 802.1Q port-based, protocol- and-port-based, 802.1Q-based, IP-subnet-based, and ACL Rules-based VLAN operation to separate logical connectivity from physical connectivity with IVL (Independent VLAN Learning), SVL (Shared VLAN Learning), and IVL/SVL (both Independent and Shared VLAN Learning) for flexible network topology architecture. The mode used depends on the FID (Filtering Identifier) setting. It also has a 1.5K to 2K+256 entry Access Control List (ACL) that parses various protocol packet types and performs configurable actions, e.g., Permit/Drop, redirect, and traffic policing. It has per-port ingress/egress bandwidth control and per- queue egress bandwidth control. It has 8 physical queues in each port. It also has three types of packet scheduling, SP (Strict Priority), WFQ (Weighted Fair Queuing), and WRR (Weighted Round Robin). Each queue provides a leaky bucket (LB) to shape the incoming traffic into the average rate behavior. Port-based 802.1X and MAC-based 802.1X authentication prevent unauthorized users. It also has port isolation to enhance port security. It has 4-set port mirror configuration to mirror ingress and egress traffic for network management purposes, complete MIB counter support reflects the switch status in real time. Link aggregation static and dynamic to increase link redundancy and increase linear bandwidth. It supports VLAN Function with IVL, SVL, and IVL/SVL, IEEE 802.1Q VLAN with 4K-entry VLAN Table, Port-based VLAN, Port-and-protocol-based VLAN, ACL-based VLAN. Limited learned L2 MAC entry on each port and each VLAN. Supports flexible Q-in-Q and VLAN Tag function. It Supports up to 64-256 spanning tree instances for MSTP (IEEE 802.1s), RSTP, and STP with Automatic loop detection and isolation (RLPP/RLDP). L3 Unicast Routing with 512 next hop MAC. IEEE 802.3az Energy Efficient Ethernet (EEE). IGMPv1/2/3 and MLDv1/2 snooping. It also Supports Reserved Multicast Addresses processing and L2 Miscellaneous Functions like Supports broadcast, multicast, unknown- multicast, and unknown-unicast packet suppression control, IEEE 802.1x, Port Mirroring with 4-sets of port mirrors, Flow-based mirror function, RSPAN function for remote mirroring. It supports Link Aggregation (IEEE 802.3ad) for 8 groups of link aggregators with up to 8 ports per-group, Port isolation function to enhance port security. It also has Attack Prevention, Land attack, Blat attack, TCP control flag attack, Ping attack, Packet length attack. It supports Access Control List (ACL) Function with 1.5K-entry to 2K+256 shared entry for ingress and egress ACL. ACL table and L4/L3/L2 format (e.g., DMAC, SMAC, and Ether-Type), IPv6 Parsing and Per-flow traffic policing with 16-entry VID range checking. It also supports 8-entry IPv4 or 2-entry IPv6 range checking. 256 to 512 leaky buckets for flow traffic policing. It supports QoS Functions with 8 physical queues per port, Strict Priority (SP) and Weighted Fair Queue (WFQ), Weighted Round Robin (WRR) packet scheduling, QoS remarking for 802.1p and DSCP (includes IPv4/IPv6) also Supports average packet rate control leaky bucket per queue, in 16Kbps steps up to 1Gbps maximum. Ingress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. Egress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. It supports MIB Functions with 256 to 2K 32-bit packet-based or 1K 64-bit byte-based log counters to enhance MIB counter log counters to enhance MIB count functionality. It also supports Ethernet-like MIB (RFC 3635), Interface Group MIB (RFC 2863), RMON (RFC 2819), Bridge MIB (RFC 1493), Bridge MIB Extension (RFC 2674). It has Hardware Watchdog support which guard against certain types of system hangs. Watchdog timer is used to escape from if something goes wrong. Based on the situation, the Switches can automatically reset itself, or recover from the failure and generate an error message in the console logs. Long life electrolytic capacitance. High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process. Rack mount design, Mounts in an EIA-standard 19-inch telco rack or equipment cabinet (Rack-mounting kit available); horizontal surface mounting; wall mounting with durable robust metal body. Bilateral heat dissipation. Power and ports status/ activity indicator LED lights. RJ45 Gold plated with 3U thickness. It also supports has IEEE 802.3az Energy Efficient Ethernet (EEE) for 100Base-TX in full duplex operation and supports 10Base-Te for 10Base-T in full/half duplex. The Energy Efficient Ethernet (EEE) operational mode combines the IEEE 802.3 Media Access Control (MAC) Sub-layer with a family of Physical Layers defined to support operation in Low Power Idle (LPI) Mode. When Low Power Idle Mode is enabled, systems on both sides of the link can disable portions of the functionality and save power during periods of low link utilization. 10Mbps PHY with reduced transmit amplitude requirements in EEE operational mode. This new PHY is fully interoperable with legacy 10Base-T PHYs over 100m of Class-D (Category 5) or better cabling.

Now is the Time to Upgrade to 90W Ultra PoE++

Ultra PoE++ offers a robust, end-to-end high power PoE solution with up-front cost savings. Fortunately, transitioning to the new standard won’t necessarily be a costly affair for users and installers or network seeking to deliver more power to, standard CAT 5 and 6 Ethernet cables are IEEE compatible So, you can add and move devices by moving these cables. Wiring and equipment costs remain down as there’s usually no need to move AC sources physically. Safety measures ensure up to 90W of power is safely delivered. Ultra PoE++, satisfies this hunger by extending the PoE and PoE+ specifications to 90W of PD delivered power. Ultra PoE++ capabilities of this standard expand the field of Ethernet-powered applications by several orders of magnitude, enabling entirely new classes of PDs, such as power-hungry picocells, base stations or heaters for pan-tilt-zoom cameras and these critical devices stay up during load shed. New IEEE 802.3bt Standard Boosts the Technology for IoT Applications. The first and the most important improvement in the 802.3bt standard is the capability to transfer much more power to edge devices (powered devices or PDs) 71.3 W, while sending 90 W from the power sourcing equipment (PSE) side enable in numerous new IoT and especially IIoT (Industrial IoT) power hungry and high-speed devices to be powered by PoE technology.
•Expanding Ultra PoE++ Use Cases with the Adoption of High-Power IEEE.
•Safe Cities with PTZ Camara
•Smart Building Systems with Ultra PoE++ Powered LED Lighting
•High-Performance Wireless Access Points
•Intercoms, TVs, and Video Conferencing

Hardware Highlights

Solid performance with non-blocking architecture

•CPU Dual Core having frequency 500 to 700 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB to 12 MB.
•All ports capable of Gigabit Ethernet speed. Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Solid performance with non-blocking architecture, 8000 to 16000 entries MAC Address Table with 4-way hashing algorithm
•4094 VLANs can be created
•1024 to 2K+256 ACL entries
•Up to 512 static routes
•Independent 512 to 4K entry L2/IP Multicast table for multicast function.
•Maximum packet length 10000 bytes
•Jumbo frames of 10000 to 12000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•L2/L3/L4 QoS optimize voice and video applications with 256 leaky buckets for flow traffic policing.
•Switching Capacity: 216Gbps
•Forwarding Capacity: 191Mpps
•Store-and-forward Switching Scheme.
•VLAN L3 Interface: 16
•Port Queues: 8
•PoE Budget up to 800W depending on models

Physical Ports and Networking Interfaces

•Up to 48 x 1GE or SFP Ports with 2/4/6 10G (SFP/SFP+) ports uplinks or 2/4/6 10GE ports Uplink or 8 combo ports 4 GE (RJ-45) or 4 SFP Uplinks. 8, 24 & 48 ports PoE (PoE+) & SFP/SFP+ models.
•Management Interface: Console, Mini USB.
•LED Indicators: Power, Link/Act, PoE Max.
•Additional DC input power to enable UPS to mitigate power supply failures and support critical network infrastructure.

IEEE 802.3af/at Compliant Power over Ethernet

•Various power budget of 600W and 800W for 8, 24 and 48 ports perpetual PoE/PoE+/PoE++ Switch models. 90W Max Per port (PoE/PoE+/PoE++). POE power supply transmission is more reliable due to design of robust network transformer which uses high current. All PoE/PoE+/PoE++ ports are IEEE 802.3af-compliant PoE, IEEE802.3at-compliant PoE+ and IEEE 802.3bt-compliant PoE++. Each port delivers 15.4 W PoE, 30 W PoE+, 90W PoE++ power capacity with backward compatibility.
•PD detection will automatically detect and provide required power for your PoE/PoE+/PoE++ devices.

Extra Long operational life

•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Support temperature range 0° C to 55° C
•Surge protection up to ±6KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Long life electrolytic capacitance to increase the operational life of switches. RJ45 Gold plated with 15U thickness.
•Rack and wall mount design enables to mount the switch in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with the device. It enables horizontal surface mounting, wall mounting with durable robust metal body.

Green Energy and Silent operation

•Comply with IEEE 802.3az (Energy-Efficient Ethernet) standard, reduces power consumption up to 58% and reduce the noise pollution. Energy Efficient Ethernet (EEE) on the RJ-45 ports and low-power operations for industry best-in-class power management and power consumption capabilities. The ports support reduced power modes so that ports not in use can move into a lower power utilization state.
•Automatic Temperature Controlled fans with Temperature Sensor. Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control fan to optimize cooling and noise with bilateral heat dissipation.

Ethernet Protocols

•Supports wide range of IEEE 802.3i, 10BASE-T IEEE 802.3u, 100BASE-TX/FX IEEE 802.3ab, 1000BASE-T IEEE 802.3z, 1000BASE-X, 10GEBASE-T, 10GBASE-X, IEEE 802.3av, GVRP, IEEE 802.3ad, Link Aggregation, IEEE 802.3x, Flow control, IEEE 802.1p, QoS IEEE 802.1q, VLANs / VLAN tagging IEEE 802.1v Protocol, IEEE 802.1d Spanning Tree Protocol (STP), IEEE 802.1s Multiple Spanning Tree (MSTP), IEEE 802.1w Rapid Spanning Tree (RSTP), IEEE 802.1x Network Login Security, IEEE802.3af, IEEE802.3at.

Highly reliable and Enterprise design

•High Quality as for all Mean Time Before Failure of system, MTBF > 200,000 hours
•Stability: 64bit packet, time delay < 10us, packet loss rate: 0
•Restorability of Network shaking or device breakdown, restart (recovery) time < 60 sec.
•RoHS Compliant with most of the packaging material can be recycled and reused.
COMMANDO Soldier E2000 Series Switches are fully managed, perpetual PoE/PoE+ IEEE 802.3af/at compliant Gigabit Ethernet L2+ switches with network resiliency and high availability, delivering robust performance with intelligent switching, scheduling and distribution of PoE/PoE+ Power as per requirement of PD which make PoE+ available on maximum ports despite lower PoE power budget and perpetual PoE/PoE+ for no power downtime required for growing networks. This series switches are easy to deploy, use, manage and designed exclusively for the networking needs of growing businesses. The security features equipped with today’s advance networking hardware and software technology. This Series switches can be deployed in harsh environments to deliver hassle free mission-critical network services and surveillance requirements. COMMANDO Soldier E2000 Series Switches are fixed configuration, with flexible 1G Fiber and/or 1GE copper fixed uplink that provide enterprise-class access for campus and branch applications. Designed for the digital workplace, these are optimized for today’s mobile and IoT needs. These switches are powerful and flexible enough for users to deploy wireless access points, surveillance cameras, IP phones and other PoE supported devices over longer distances up to 250 meters with power budget up to 450W. It is available in Desktop as well as Rack/Wall mounting casing. These fully managed switches can provide advanced Layer 2 and basic Layer 3 features. It has IEEE 802.3af-compliant PoE (Power over Ethernet) and 802.3at-compliant PoE+ (Power over Ethernet plus) along with high availability to the PD devices by powering them even when a software process is not running on the switch. Each switchport is capable to deliver 15.4W PoE or 30W PoE+ power on all ports along with automated power (ON/OFF) scheduling. All Switches are PoE/PoE+ capable to provide power across all access ports for wireless APs, security cameras, and other IoT devices. Designed for operational simplicity to lower total cost of ownership, they enable scalable, secure, and energy-efficient business operations with intelligent and automated services. It provides a convenient and cost-efficient wired access rack and wall mountable solution that can be quickly set up with Zero Touch Provisioning. These switches deliver enhanced application, visibility, network reliability, network resiliency and high availability. This series also offers robust QoS to optimize traffic on your business network, these switches provide (Port-based/802.1p/DSCP) QoS to keep latency-sensitive video and voice traffic jitter-free moving smoothly. Additionally, Port-based, Tag-based VLAN, Voice VLANs, Surveillance VLAN can improve QoS and enhance security to meet network requirements. This series switches also have provisioning of QoS, Static routing, IPV6 features, multicasting, and Security. Moreover, with its innovative energy-efficient technology, can save up to 58% of power consumption, making it an Eco-friendly perfect solution for your business network.

Product Highlights

COMMANDO Soldier E2000 Series Switches contain 8 & 24 Gigabit Ethernet Perpetual PoE/PoE+ models as well as non-PoE models along with 1GE Copper-based or 1G Fiber Ports (SFP) Uplinks. . All switches COMMANDO Soldier E2000 Series Switches contains 8 & 24 Gigabit Ethernet PoE/PoE+ models have up to 30W (PoE/PoE+) Per Port power budget and this series switches have total power budget range from 150W and 450W to meet enhance PoE/PoE+ requirement of IP Phone/AP/LWAP/Wi-Fi Access Point and any other PoE (PoE+) enabled devices with non-stop PoE/PoE+ power and intelligent power distribution make it suitable for more number of PoE device attached simultaneously as compared top brand PoE switches with same power budget. This series offers various layer 2 Ethernet functions (VLAN, QoS, MAC ACL, Port Security, IPv6, LACP, port mirroring, GVRP and many more). These Gigabit Ethernet switch enables home and office users to easily connect and supply power to Power over Ethernet (PoE) devices such as wireless access points (APs), IP cameras, and IP phones. It also provides the opportunity to add additional Ethernet devices like computers, printers, and Network Attached Storage (NAS) onto a network. This compact PoE switch operates quietly, making it ideal for use in rack, virtually any room or office.

L3 Highlights

•Layer 3 Static Routing up to 512 static route entries along with DHCP server.
•DHCP server, Client, Relay along with DHCP Snooping, DHCP Snooping option82.
•L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication.
•SNMP v1/v2c/v3 and RMON remote monitoring.
•IGMP v1/v2/v3 and MLD v1/v2 snooping, providing advanced multicast filtering and optimization.
•Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications.
•Provides IP-MAC Binding, Port Security, Storm control and DHCP Snooping which protect against broadcast storms, ARP attacks.
•Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
•Auto “denial-of-service” (DoS) prevention.
•Easily troubleshoot any problem in network with Ping, trace route, various show and debug command and WEB GUI based real time status of device.

L2+/L2 Highlights

•Store-and-forward Switching Scheme.
•Solid performance with non-blocking architecture, up to 8000 entries MAC Address Table.
•with 4-way hashing algorithm, 4094 VLANs, 1024 ACL entries, 512 static routes, Maximum packet length 10000 bytes and Jumbo frames of 10000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•Security with 802.1X, Serial Port Analyzer (SPAN) and Bridge Protocol Data Unit (BPDU) Guard.
•Independent 512 entry L2/IP Multicast table for multicast function.
•Advanced L2+ switching and security features like IP-MAC-Port-VID Binding, Static/Dynamic Port Security (MAC-based), DoS defend feature, Dynamic ARP Inspection.
•Advanced VLAN support for better network segmentation.
•Port mirroring with 4-sets of port mirrors for network monitoring.

Other Highlights

•8 & 24 ports with auto-negotiation 10/100/1000Mbps Perpetual and intelligent PoE/PoE+ & Non PoE Models.
•Extra 2/4 Ports with fixed 1G Fiber/ 1GE Copper fixed Switchports / Uplinks.
•Advanced per port PoE/PoE+ power scheduling controls for power management to automate ON/OFF of PoE/PoE+ capable devices on particular specified timing per port basis.
•Perpetual PoE/PoE+ Provides non-stop PoE/PoE+ power. Switch can continue to provide power during configuration and reboot, the PDs will not lose power while reloading.
•Intelligent PoE/PoE+ power supply transmission is more reliable as well as more PDs can be connected due to design of robust network transformer which uses high current.
•All ports capable of PoE/PoE+. Various power budget options like 150W & 450W for 8 & 24 ports PoE/PoE+ with 30W Max Per port (PoE/PoE+).
•PD detection will automatically detect and provide intelligently required power for your PoE/PoE+ devices as per need.
•Easily configurable PoE/PoE+ scheduling to automate the PoE/PoE+ requirements in networks.
•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB , Flash memory of 256 MB and Packet Buffer memory of 4.1MB.
•All ports capable of Gigabit Ethernet speed.
•Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Surge protection up to ±4KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control Fan to optimize cooling and noise. Automatic Temperature Controlled Fan speed using Temperature Sensor.
•Long life electrolytic capacitance to increase the operational life of switches.
•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process
•Rack and Wall mount design that enables to mounts in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with device. Which enables horizontal surface mounting, wall mounting and having durable robust metal body.
•Bilateral heat dissipation.
•Power and ports status/ activity and PoE Max indicator LED lights.
•RJ45 Gold plated with 3U thickness.
•Supports Energy Efficient Ethernet (IEEE802.3az), Innovative energy-efficient technology which saves up to 56% of power consumption for energy saving in the future.
•Easy to manage device with Web based Graphical User Interface (WEB GUI), Command-Line Interface (CLI) - Telnet / SSH / HTTPS with RJ45 or console cables.
•With Zero Touch Provisioning: A simple, secure, unified plug and play.
•Dual image feature for reduced down-time when the firmware is being upgraded or downgraded or image file getting corrupted.
•WEB/CLI managed modes, SNMP, RMON bring abundant management features
•Supports Cable Diagnostics by Web GUI as well as CLI.
•Watchdog function used to protect the system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.
•RoHS Compliant with most of the packaging material can be recycled and reused.
•Comes with up to Three years extended warranty.
 

Features And Benefits

DHCP Server

Multiple IPv4 DHCP pools with Inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.

Intelligent PoE/ PoE+ with Automated Scheduling

It automates the PoE/PoE+ requirements in networks on per port basis. Advanced per port PoE/PoE+ controls for power management to automate ON/OFF of PoE/PoE+ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+ as per Scheduled time which makes them intelligent. PoE/PoE+ power supply transmission is more reliable as well as allows more PDs can be connected with lower PoE budget switch due to design of robust network transformer which uses high current.

Perpetual POE/PoE+

With Perpetual PoE/PoE+, no power downtime to connected PD devices. PD devices remains power ON even when any software process is not running on the switch. Provides non-stop PoE/PoE+ power and continue to provide power during configuration and reboot, the PDs will not lose power while reloading. The Perpetual POE provides uninterrupted power to connected powered device (PD) even when the switch is booting to make it highly available network without any interruptions.

Dual Image

It can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.

Watchdog Function

This ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

L3 Features

This series is having L3 features with IPv4/IPv6 with 512 static routing entries, QoS, ACLs (Port based / IP based / MAC Based), DHCP Server and Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay.

L2+/L2 Features

This series is having advance L2+/L2 features like Port aggregation up to 8 ports, VLAN, Voice VLAN, GVRP, 802.1X authentication, centralized MAC authentication, Guest VLAN, RADIUS authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, Preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Flexible Software features provides wide range of Layer 2 functions like VLAN, Multicasting, Quality of Service (QoS), Security.

Secure Networking

IEEE 802.1X port-based access control with surveillance VLAN, Port Security, Protected Port which also Prevent ARP Spoofing. L4/L3/L2 access control lists (ACLs) for granular network access control including 802.1x port authentication. ACL, L4 to L2 feature restricts access to sensitive network resources. DHCP Snooping ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP. IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms. The switches support ARP attack and DoS attack prevention to safeguard the network.

Multicast

IGMP Snooping (v1, v2, v3), Multicast Listener Discovery (MLD) (v1/v2), Multicast VLAN Registration (MVR) designed for distribution of multicast traffic across segregated access networks which enables more efficient distribution of multicast streams in Layer 2 network.

QoS Features

Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based. L4/L3/L2 QoS optimize voice and video applications. Access Control List based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

Easy Management with CLI

With familiar and popular Command Line interface (CLI), there is no need for engineers to be hired or additional resources to be spent on training and/or learning the switch CLI. The command set are familiar and well known in the industry. Web Graphical User Interface (Web GUI), Command Line interface (CLI), RADIUS/TACACS+ with industry standard CLI and easy to use Web GUI. Management is made easy via a Web GUI or industry-standard Command Line Interface (CLI), with administration traffic protected via SSL or SSH encryption. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur.

Easy to Use

It easy to use and manage and Plug-and-Play that requires no configuration, so setup is simple and hassle-free. Auto MDI/MDI-X crossover on all ports eliminate the need for crossover cables or uplink ports. The switches range from 8 to 24 Gigabit Ethernet PoE/PoE+ models as well as non-PoE models along with 1G/1GE fixed uplinks. It contains 8 to 24 Gigabit Ethernet PoE/PoE+ models has up to 30W (PoE/PoE+) Per Port power budget and this series switches has total power budget range from 150W & 450W along with intelligent and perpetual PoE/PoE+ to meet needs. Its compact size makes it ideal for rackmount/wall-mount with limited space. Dynamic LED lights provide real-time work status display and basic fault diagnosis.

Lifetime Free Software Licensing and Upgrades

SoldierOS Software license and Upgrades are free for lifetime. Users do not have to worry about switch license expiring and software getting outdated (which is constant concern and worry of few other brands). This series has improved HTTP base firmware upgrade as well as CLI based upgrades which are freely available to all users without any cost or license fee for lifetime. COMMANDO Soldier E2000 Series Switches are easy to install, configure, monitor, and troubleshoot. It significantly reduces cost of administration and Total Cost of Ownership (TCO).

Auto MDIX Capabilities

Auto sensing/Auto PoE/PoE+ 10/100/1000 ports with auto MDIX capabilities which also removes speed and duplex mismatches automatically as well as speed setting as per physical distance with copper pairs compared to other brands best switches.

Flexible Service Control

With various ACLs to flexibly control ports. It also supports Port-based VLAN assignment, MAC address-based VLAN assignment, Protocol-based VLAN assignment, and Network segment-based VLAN assignment. These secure and flexible VLAN assignment modes are used in networks where users move frequently. It also supports GARP VLAN Registration Protocol (GVRP), which dynamically distributes, registers, and propagates VLAN attributes to ensure correct VLAN configuration and reduce network administrator workloads. This series switches supports SSH v1/v2/v3, RMON, port-based traffic statistics, LLDP/LLDP-MED.

Compact Design with Flexibility of additional ports

The switches provide additional deployment flexibility, fiber connectivity as well as combo options for easy expansion of your networks. So, you can directly connect to a high-performance storage server or deploy a long-distance uplink to another switch.

Perfect for Noise-Sensitive Environments

These are the ideal solution for the most advanced small and medium organizations looking for the best combination of features, performance, and value. These switches are purposely designed for converged networks where voice, video, data are all carried on a single network platform. This series comes with fan/fan-less switches models along with Small form-factor, fan/fan-less design for silent operation. Perfect for noise sensitive environments. Fan based Switches have Temperature- and load-based fan-speed control combines accurate monitoring with minimized system acoustic noise. The Fan based switches also feature built-in smart fans that monitor and detect temperature changes, adjusting the fan speed for maximum efficiency. At lower temperatures, the fans run at a lower speed, reducing both the power consumption and noise output of the switch.

Zero Maintenance

Cost efficient switches, with a reasonable PoE/PoE+ power budget up to 450W along with PoE/PoE+ configurable scheduler to automated Power ON/OFF connected PoE/PoE+ devices as per scheduled timing with Cost of ownership is less compared to other products of same features as well as zero maintenance. Maximum power reduction for ongoing operation cost savings.

Easy Debugging and Troubleshooting

Ping, Traceroute, SNMP, RMON, Web based real time switch ports monitoring with WEBUI and CLI can easily troubleshoot any problem in network with various show and debug commands.

Longer Distance Coverage

State of art quality switches that can serve real time high-speed performance which covers longer physical distance up to 250 meters with copper pairs compared to other brands.
 

Software

The COMMANDO SoldierOS IP Base switches provides advanced L2 switching and security features along with ACLs (MAC/IP/Port) based IPV4 and IPV6, L4/L3/L2 QoS , Static Routing up to 512 static route entries, Spanning Tree Protocol (IEEE802.1D STP , IEEE802.1w RSTP, IEEE802.1s MSTP) SNMP v1/v2c/v3, IGMP and MLD snooping, QinQ and selective QinQ, VLAN mapping, Voice VLAN, GVRP, Advanced multicast filtering, and IGMP snooping that optimize voice and video applications, DHCP Server, DHCP Client, DHCP Snooping, DHCP Snooping option82, DHCP Relay, RADIUS/TACACS+ authentication, SSH 2.0, Port isolation, Port security, MAC address learning limit, IP Source guard, Dynamic ARP inspection, preventing man-in-the-middle attacks and ARP DoS attacks, IP/Port/MAC binding. Management is made easy via a web-based Graphical User Interface (GUI) access via HTTP/HTTPS or industry-standard Command Line Interface (CLI) via Console/Telnet with administration traffic protected via SSL or SSH encryption. This CLI is well known and understood by all professionals in networking field. SNMP (v1/v2c/v3) and RMON support enables the switch to be polled for valuable status information and allows it to send traps when abnormal events occur. It provides a complete set of security features including L4/L3/L2 multi-layer Access Control Lists and 802.1x user authentication via TACACS+ and RADIUS servers. This ensures the network is protected from unauthorized access. It also offers extensive VLAN support including GVRP and 802.1Q VLAN to enhance security and performance. A robust set of L4/L3/L2 based QoS/CoS solutions help ensure that critical network services such as VoIP and video conferencing are served with priority. Bandwidth Control can be flexibly set for each port using predefined thresholds to assure a committed level of service for end users. For advanced applications, flow-based bandwidth control allows easy fine-tuning of service types based on specific IPV4/IPV6 addresses or protocols that provides Security, Performance & Availability. Access control lists (ACLs) perform operation of filtering (IPv4/IPv6) Packet/MAC/port-based filtering to control the movement of segments/packets/frames through a network. ACL filtering provides security by limiting the access of traffic into a network, restricting user and device access to a network, and preventing traffic from leaving a network. Time range-based ACL, VLAN-based ACL, Bidirectional ACL. Packet filtering at Layer 4 through layer 2 Traffic classification based on source IPv4/IPv6 addresses and source MAC addresses, destination MAC addresses. L4/L3/L2 Quality of service (QoS) refers to any technology that manages data traffic to reduce packet loss, latency, and jitter on the network. QoS controls and manages network resources by setting priorities for specific types of data on the network. Static routing is a form of routing that occurs when these switches uses a manually configured 512 IPV4 static routing entries. Static routing has three primary uses:
•Ease of routing table maintenance in smaller networks with little growth or change. Routing to and from connected networks.
•A network accessed by a single route, and the router has only one neighbor.
•Single default route to represent a path to any network.
It provides GUI based PoE/PoE+ scheduling Premium feature. PoE/PoE+ Scheduling is a feature which allows you to specify the amount of time that power is delivered to a PoE/PoE+ port automatically. This can be used to save power when devices are not in use, or as a security feature to prevent wireless access from being available outside of business hours. It is possible to set a schedule PoE/PoE+ at a start time, an end time and which ports the PoE/PoE+ schedule applies to. The PoE/PoE+ device turn ON and OFF as per the PoE/PoE+ schedule time.

Software Highlights:

• DHCP Server for multiple IPv4 DHCP pools with inbuild DHCP server can be set. DHCP pools and interface for individual VLANs. It also supports IPv4/ IPv6 DHCP Client, IPv4/ IPv6 DHCP Relay Option 82, IPv4/ IPv6 DHCP Snooping.
• Intelligent PoE/ PoE+ with Intelligent scheduling to automate the PoE/PoE+ requirements in networks. Advanced per port PoE/PoE+ controls for remote power management to automate ON/OFF of PoE/PoE+ capable devices on particular specified timing per port basis with auto ON/OFF PoE/PoE+ as per Scheduled time which makes them intelligent.
• Dual Image can be configured with one image is set as start-up image, and the other is set as the backup image. After you upgrade a firmware, the switch will automatically map the firmware file to the backup image.
• Watchdog function ensures high availability which is used to protect a system from specific software or hardware failures that may cause the system to stop responding and self-recover from hanged state.

Layer 3 Switching

• Static ARP as manually added IP network address to the hardware MAC address of a device as well dynamic ARP entries.
• Static Route, Default route and Dynamic connected route learning. Static Route, Default route, connected route up to 512 route entries are supported.
• Access Control List Access Control Lists (ACLs) can be used to deny and allow packets and provides flexible access control based on Standard IPV4, IPV6,MAC based , Management and also Port based Filtering.
• Comprehensive IPv6 supporting management, IPv6 ready QoS and ACL, ensuring investment protection and a smooth migration to IPv6-based network.
• QoS Features like Scheduling Mode: WRR, SP, which are Based on Port based on 802.1p DSCP (DiffServ), COS and DSCP.

Advanced L2/L2+ Switching

• Auto Port Configuration, Auto-Negotiation for port speed and duplex mode. Flow Control for IEEE802.3x full-duplex and half-duplex backpressure.
• Rate Limit enable to slow down traffic on a port to keep it from exceeding the limit set.
• Link Aggregation with LAG static and IEEE802.3ad Link Aggregation Control Protocol (LACP) increases bandwidth by automatically aggregating several physical links together as a logical trunk and providing load balancing and fault tolerance for uplink connections. Up to 8 maximum aggregation groups.
• Link Layer Discovery Protocol (LLDP) neighbor discovery protocol that allows devices to advertise device information to their directly connected peers/neighbors.
• Unidirectional Link Detection protocol (UDLD) that detects and disables one-way connections before they create undesired situation such as network failure, Spanning Tree loops and broadcast storm.
• Spanning Tree Protocol (STP) eliminates Layer 2 loops in a network by selectively blocking specific links. STP also enables link redundancy. Support IEEE 802.1D (STP), from which IEEE 802.1W (RSTP) and IEEE 802.1s (MSTP 64 instance).
• Loopback Detection also has BPDU Filter, BPDU Guard.
• IGMP Snooping listening to Internet Group Management Protocol network traffic to control delivery of IP multicast. Network switches with IGMP snooping listen in on the IGMP conversation between hosts and layer 3 devices and maintain a map of which links need which IP multicast transmission.
• Static MAC address, MAC Configuration for MAC binding, MAC Address Filter.
• 4094 VLAN Configuration with advanced VLAN support for better network segmentation, VLAN Based on 802.1Q, MAC-Based VLAN, IP-Based VLAN, Protocol-Based VLAN, Voice VLAN, Guest VLAN, Private VLAN - Support 1:1 VLAN Mapping basic QinQ, Surveillance VLAN.

Secure Networking

• MAC address limiting to enhanced Security. Port Security ensures access to switch ports based on MAC address to limit the total number of devices from using a switch port and protects against MAC flooding attacks, SYN Flood, ICMP Flood attack and prevention of DOS, BPDU Guard and Root Guard which avoid accidental network topology loops and prevent illegal edge devices become root to cause unnecessary flapping.
• IEEE 802.1X Port-based Access Control ensures all users are authorized before being granted access to the network. User authentication is carried out using any standard-based RADIUS server. 802.1x - RADIUS, AAA - MAC-based 802.1X authentication also Support 802.1x surveillance VLAN, Port Security, Protected Port and also Prevent ARP Spoofing.
• L4/L3/L2 Access Control Lists (ACLs) for granular network access control including 802.1x port authentication. IP, MAC, Ports based Access Control Lists (ACL, L4 to L2) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports and even VLAN ID.
• DHCP Snooping feature ensures IP address allocation integrity by only allowing DHCP messages from trusted DHCP servers and dropping malformed DHCP messages with a port or MAC address mismatch. With DHCP Snooping binding and option82 enabled, it can combine dot1x and ARP.
• IP-MAC-Port-VID Binding, Port Security, Storm control which protect against broadcast storms.
• ARP attacks prevention prevent typical DoS attacks can protect these attacks more easily ever than before.

Multicast

• IGMP Snooping (v1, v2, v3) transmits data on demand on data link layer by analyzing IGMP packets between the IGMP querier and the users, to build and maintain Layer 2 multicast forwarding table.
• Snooping Multicast Listener Discovery (MLD) snooping (v1/v2) constrains the flooding of IPv6 multicast traffic on VLANs. MLD snooping performs the same function as IGMP snooping with the only difference being that MLD snooping is for IPv6 and IGMP snooping for IPv4 environments.
• Multicast VLAN Registration (MVR) is designed for distribution of multicast traffic on a dedicated multicast VLAN across segregated access networks, while allowing subscribers who are on different VLANs to join and leave the multicast groups carried in the Multicast VLAN. Multicast VLAN registration (MVR) enables more efficient distribution of IPTV multicast streams across an Ethernet ring-based Layer 2 network.

QoS features

• Advanced QoS (Quality of Service) for traffic prioritization including port based, 802.1p and L4/L3/L2 DSCP based.
• L4/L3/L2 QoS optimize voice and video applications with ACL based, VLAN ID based IP precedence, COS and DSCP. Policy Based on Port & VLAN, Remark DSCP, COS/ 802.1p, Precedence, COS for SP, WRR for Scheduling and matching the IP fragmentation of message.

User friendly Maintenance Management

• With Zero Touch Provisioning: A simple, secure, unified plug and play.
• CLI / Web GUI / SNMP Management with industry standard CLI and Web GUI based device-management tool that provides the ability to provision the device, to simplify device deployment and manageability, and to enhance the user experience. It comes with the software Image 0 can also have Image 1 (Dual image) simultaneously. There is no need to enable anything or install any license on the device. Then Web GUI can be used to build configurations, and to monitor and troubleshoot the device without having CLI expertise.
• Support Multi-user management at the same time.
• With RADIUS and TACACS+ server authentication can be performed locally or on a RADIUS/TACACS+ server can also control access to your network through Switch by using authentication methods such as 802.1X, MAC Based and Web Based.
• Configuration Download/Upload Upgrade Firmware by HTTP and TFTP.

Debugging and troubleshooting feature

• PING, TRACEROUTE, SNMP, RMON, Web based real time Switch ports monitoring with WEB GUI can easily troubleshoot any problem in network with Ping, trace route, various show, debug command and WEB GUI based real time status of device.
• Cable Diagnostics by Web GUI as well as CLI.
• Maintenance & Operation Management via TFTP/FTP, CLI, Telnet, Console, Web GUI /SSL (IPv4/IPv6), SSH (IPv4/IPv6).
• Port Mirroring for network monitoring. Port mirroring is used on a network device to send a copy of network packets seen on one switch port, multiple other ports, or on to network monitoring connection on another port on the switch.
• SNMP v1/v2c/v3, management station, can monitor the performance of network devices. With SNMP, network managers can view or modify network device information, and troubleshoot according to notifications sent by those devices in a timely manner. Public and Private Management Information Base (MIB) interface
• RMON (Remote Network Monitoring) together with the SNMP system allows the network manager to monitor remote network devices efficiently. RMON reduces traffic flow between the NMS and managed devices, which is convenient to manage large networks.

Software Licensing and Upgrades

• Free Software Upgrades and patching supports with enhanced functionality, which provides fixes for critical bugs and security vulnerabilities between regular maintenance releases. This free software upgrades and licenses support lets you add patches, new features, protocols, and functionality without having to spend a single dollar. This reduces TCO.
• Protected Ports ensure no exchange of unicast, broadcast, or multicast traffic between the protected ports on the switch, thereby improving the security of your converged network.
• Dynamic VLAN Assignment (RADIUS/TACACS+): IP phones and PCs can authenticate on the same port but under different VLAN assignment policies. Users are free to move around and enjoy the same level of network access regardless of their physical location on the network.
• Port Mirroring and Cable Test Many-to-one port mirroring for better and quicker network diagnostics and troubleshooting. Cable test easily identifies bad Ethernet cables.
• Firmware updates and backup procedure by uploading/downloading file to PC/TFTP/FTP.

Table 1. COMMANDO SoldierOS IP Base Software at a Glance

Ethernet Protocols (IEEE) L2 Switching Features Quality of Service (QoS) Security Management
802.3i 802.3u 802.3ab 802.3z 802.3av 802.3ad 802.3x 802.1p 802.1q 802.1v 802.1d 802.1s 802.1w 802.1x 802.3x Link Aggregation, LACP, Spanning Tree Protocols, Multicasting, VLANs, ACL, Voice VLAN, GVRP, Port isolation, Port security, MAC address learning limit, DHCP Server, IP Source guard, Dynamic ARP inspection, IP /Port/MAC binding L2, L3, L4, ingress/ Egress Access Control List (ACL), 802.1x authentication AAA / RADIUS/TACACS+ Web GUI management mode, Support Command Line Interface (CLI) through console port, Telnet, SNMP v1/v2c/v3 and RMONs

Table 2. Performance of COMMANDO SoldierOS IP Base

Features Maximum Supported
VLAN 4094
MAC Table entries 8000
ACL 1024
Multicast Group 512
Jumbo Frame 10000
Multicast IGMP Group 16
Multiple User Account 8
Static Route 512
MSTP 16
Aggregation Trunks/Ports Per Trunk 8/8
TACACS+/RADIUS Servers 8

Software Features

1. L3 Features

•Static ARP up to 1K
•Supports Gratuitous ARP
•IPv6 Neighbor Discovery (ND)
•Static Routing
•Max. 512 IPv4 entries
•Max. 512 IPv6 entries
•Supports Default Routing

2. L2 Switching Features

Basic L2 Switching Features

•MAC Address Table with 8K.
•802.3x Flow Control when using full duplex
•Back Pressure when using half-duplex
•HOL Blocking Prevention
•Jumbo Frame Up to 10,000 bytes
•ERPS (Ethernet Ring Protection Switching)
•Port Mirroring Supports One-to-One, Many-to-One, Supports Mirroring for Tx/Rx/Both, Supports 4 mirroring groups
•Flow Mirroring supports One-to-One, Many-to-One, Supports Mirroring for Rx, Supports 4 mirroring groups
•RSPAN mirroring
•Loopback Detection
•L2 Protocol Tunneling

Link Aggregation

•Support static link aggregation
•Support 802.3ad LACP
•Up to 8 aggregation groups, containing 8 ports per group

Spanning Tree Protocol (STP)

•IEEE 802.1D Spanning Tree Protocol
•IEEE 802.1s Multiple Spanning Tree Protocol
•IEEE 802.1w Rapid Spanning Tree Protocol
•STP Security: Loop back detection, TC Protect, BPDU Filter/Protect, Root Protect

Multicast

•Support IGMP Snooping V1/V2/V3, up to 512 groups
•Support multicast VLANs, IGMP Immediate Leave,

Unknown IGMP Throttling, IGMP Filtering, Static Multicast IP

•L2 Multicast Filtering Forwards all groups, forwards all unregistered groups, Filters all unregistered groups
•MLD Snooping, MLD v1/v2 Snooping
•PIM Snooping

VLAN

•Support IEEE802.1Q with 4K VLAN groups and 4K VIDs
•Support Port VLAN, Protocol VLAN and MAC-based VLAN
•Support GARP/GVRP feature

Quality of Service (QoS)

•Support 802.1p CoS/DSCP priority
•Support 8 physical queues per port.
•Queue scheduling: SP, WRR, SP+WRR
•Port/Flow- based Rate Limiting
•Voice VLAN assure voice applications have excellent performance

Advanced Security

•IP-MAC-Port-VID Binding
•Static/Dynamic Port Security (MAC-based)
•DoS defend feature
•Dynamic ARP Inspection

802.1x authentication

•Support 802.1x port/MAC based authentication
•Support Radius authentication and accountability
•Guest VLAN
•RADIUS/TACACS+

Access Control List (ACL)

•L2~L4 package filtering based on source and destination MAC address, IP address, TCP/UDP ports, 802.1p, DSCP, protocol and VLAN ID.
•Time based ACL
•Support Broadcast, Multicast and Unknown unicast Storm Control
•Secure Web management through HTTPS and SSLv2/v3/TLSv1
•Secure remote command line interface (CLI) management with SSH v1/V2

Management

•Support Web GUI management mode
•Support Command Line Interface (CLI) through console port, telnet management mode
•SNMP v1/v2c/v3
•RMON (1, 2, 3, 9 groups)
•DHCP Server
•DHCP/BOOTP Client
•DHCP Snooping
•DHCP Option 82
•CPU Monitoring
•Port Mirroring (Many to One)
•Cable Diagnostics feature
•Ping/Tracert feature
•SNTP
•System Log

3. Ethernet Protocols

•IEEE 802.3i 10BASE-T
•IEEE 802.3u 100BASE-TX/FX
•IEEE 802.3ab 1000BASE-T
•IEEE 802.3z 1000BASE-X
•IEEE 802.3av GVRP
•IEEE 802.3ad Link Aggregation
•IEEE 802.3x Flow control
•IEEE 802.1p QoS
•IEEE 802.1q VLANs / VLAN tagging
•IEEE 802.1v Protocol VLAN
•IEEE 802.1d Spanning Tree Protocol (STP)
•IEEE 802.1s Multiple Spanning Tree (MSTP)
•IEEE 802.1w Rapid Spanning Tree (RSTP)
•IEEE 802.1x Network Login Security
•IEEE 802.3x flow control for Full Duplex mode and back pressure for Half Duplex mode

4. MIBs

•Ethernet-like MIB (RFC 3635)
•Interface Group MIB (RFC 2863)
•RMON (RFC 2819)
•Bridge MIB (RFC 1493)
•Bridge MIB Extension (RFC 2674)

Table 3. Key software function of COMMANDO SoldierOS IP Base

Features Protocols
IEEE Standards IEEE 802.3x (Full Duplex), Back-Pressure (Half-duplex) IEEE 802.3, IEEE 802.3u, IEEE 802.3ab, IEEE 802.3z IEEE 802.3ad IEEE 802.3q, IEEE 802.3q/p IEEE 802.1w, IEEE 802.1d, IEEE 802.1S
MAC Address 8000 MAC addresses table entries Jumbo Frame 10000 bytes with automatic MAC address learning and aging
Energy Efficient Ethernet EEE (802.3az)
VLAN Up to 4094 VLAN Port-based VLAN up to 8 groups IEEE 802.1Q Tagged-based MAC-based VLAN up to 256 Voice VLAN static up to 256 QoS for each Voice VLAN Data Voice VLAN OUI Mode (Auto/Manual) maximum 16 OUI Multicast VLAN Registration (MVR) IPV4 Based
Surveillance VLAN OUI Mode (Auto/Manual) maximum 16 OUI
Stacked VLAN QinQ (IEEE 802.1ad)
GARP VLAN Registration Protocol (GVRP) GVRP As per IEEE 802.1Q specification
Spanning Tree IEEE 802.1D (STP) IEEE 802.1w (RSTP) IEEE 802.1s (MSTP) maximum 16 instances Auto Edge Port BPDU Filtering BPDU Guard Self-Loop Detection UDLD
Link Aggregation IEEE 802.3ad LACP, Max 8 Aggregation Groups trunk, Maximum 8 ports per Trunk Static Trunk Aggregation and Dynamic Aggregation Traffic Load Balancing
Port Mirror Many-to-one port mirroring
Port flow control Half duplex based back pressure control Full duplex based on PAUSE frames
Line Rate Support Port based Input / Output Bandwidth Management
IP Binding Support Static ARP
DHCP DHCP Server, DHCP Client mode
DNS DNS Client mode
Static Routing Support Static routing
IGMP Snooping IGMP v1/v2 IGMP v3 Basic (BISS) IGMP v2/v3 Querier
MLD Snooping MLD v1/v2
IPv6 IPv6 Host - Auto Configuration, Static IPv6 Address and Prefix Length, Static IPv6 Default Gateway, IPv6 Neighbor Discovery (ND), IPv6 Duplicate Address Detection, ICMPv6 IPv6 Application Supported- HTTP/HTTPS, TELNET, SSH, SNMP, TFTP, Syslog, PING, DHCPv6
Multicast Multicast Groups up to 512 Immediate Leave Static/Forbidden Router Port Static/Forbidden Forward Port Filtering up to 256 profiles Throttling
Storm suppression Storm Control Broadcast Unknown Multicast Unknown Unicast Storm Suppression of Broadcast type Storm suppression based on bandwidth tuning and storm filtering
Access Control List (ACL) Access Rules 1024 ACL Type-L2/L3/L4 ACL IPv4-based Up to 1024 ACL IPv6-based
Security AAA (Authentication, Authorization and Accounting) TACACS+ (Terminal Access Controller Access Control Server) Maximum up to 8 servers. RADIUS (Remote Authentication Dial-In User Service) Maximum up to 8 servers.  Authentication Manager - IEEE 802.1X, MAC Auth, Web Auth, Guest VLAN, Port-based, Host-based. Port Security Using Dynamic Lock maximum 256 Protected Port (Port Isolation) Black Hole MAC CPU Defense Engine DoS Prevention DHCP Snooping (with Option 82) Dynamic ARP Inspection IP Source Guard maximum 256 IP/MAC/Port Binding (IMPB)
QoS Features 802.1p port queue priority algorithm Teams that support 4 different priorities per port Queue Scheduling - WRR, WFQ, Strict Priority, Hybrid (WRR+SP or WFQ+SP) WRR (Weighted Round Robin) Weighted priority rotation Algorithm, WRR, SP, WFQ, 3 priority scheduling models Class of Service - Port-based, 802.1p, IP TOS Precedence, IP DSCP, trusted QoS Support based on port, MAC, 802.1Q, DSCP classification Rate Limit - Port-based (Ingress/Egress)
Account Manager Local Authentication Multiple User Account Up to 8 Multilevel Security Password Recovery Procedures
System maintenance Upgrade firmware feature via TFTP/FTP/HTTP. Support Upload/Download Configuration files through Web Support Multi-user management Web GUI / CLI based Restore Factory Configuration
Line Management Console Telnet (RFC854) SSH v1/v2
Management and Maintenance Management by CLI - Console, Telnet (RFC854) up to 3 sessions Management by Web GUI - HTTP, HTTPS Management Based on Remote Configuration and Maintenance Using Telnet, SNMP V1/V2C/V3, SSH V1/V2, RMON V1/V2 Software Reset to default setting
Management Access Management VLAN Management ACL Up to 256
File Management Firmware Upgrade/Backup Dual Images Configuration Download/Backup Multiple Configurations Upload/Download using TFTP (RFC783) HTTP (Hyper Text Transfer Protocol) UART (Universal Asynchronous Receiver/Transmitter)
Time Management Locally using sync with PC option. NTP (Network Time Protocol)
Port Management Friendly Port Name (Port Description) Error Disabled Recovery
Secure Sockets Layer (SSL) Secure Sockets Layer (SSL)- SSLv2, SSLv3 Transport Layer Security (TLS)- TLSv1
Neighbor Discovery  IEEE 802.1AB Link Layer Discovery Protocol (LLDP) ANSI/TIA-1057 LLDP Media Endpoint Discovery (LLDP-MED)
Remote Monitoring Management RMON Up to 32 entries / type
MIB RFC1213 MIBII (System & Interface groups) RFC2819 RMON I (1,2,3, & 9 groups) RFC1215 Generic Traps RFC1493 Bridge RFC2674 Bridge MIB Extensions RFC2737 Entity RFC3635 Ethernet-Like RFC2863 Interface Group SNMP-Community-MIB SNMPv3
Diagnostics  Mirroring Port-based (Many to One) Up to 32 entries / type Syslog (RFC3164) with Local RAM, Local Flash, Remote Server up to maximum 8. System Diagnostics with CPU Utilization, Memory Utilization, Port Utilization Port Diagnostics with Cable Test, Fiber Module Status Network Diagnostics with Ping Test, Traceroute

Convergence Time

By default, RSTP used for all COMMANDO SoldierOS and it takes less than 10 seconds for the network to converge. RSTP converges faster because it uses a handshake mechanism based on point-to-point links instead of the timer-based process used by STP. IP multicast snooping and IGMP automatically prevent flooding of IP multicast traffic. IEEE 802.1AB Link Layer Discovery Protocol (LLDP) facilitates easy mapping using network management applications with LLDP automated device discovery protocol LLDP-MED (Media Endpoint Discovery) defines a standard extension of LLDP that stores values for parameters such as QoS and VLAN to configure automatically network devices such as IP phones. STP/RSTP/MSTP for loop free network, IEEE 802.1s Multiple Spanning Tree provides high link availability by allowing multiple spanning trees; provides legacy support for IEEE 802.1d and IEEE 802.1w IEEE 802.3ad Link Layer Discovery Protocol (LACP) and port trunking support up to 8 static, dynamic, or distributed trunks with each trunk having up to eight links (ports) per static trunk. Lag links provides easy-to-configure link redundancy of active and standby links.

Security

The AAA feature allows you to verify the identity of, grant access to, and track the actions of users. The COMMANDO Soldier E2000 Series Switches support Remote Access Dial-In User Service (RADIUS) or Terminal Access Controller Access-Control System Plus (TACACS+) protocols. Based on the user ID and password combination that you provide, the COMMANDO Soldier E2000 Series Switches perform local authentication or authorization using the local database or remote authentication or authorization using one or more AAA servers. A pre-shared secret key provides security for communication between the COMMANDO Soldier E2000 Series Switches and AAA servers. You can configure a common secret key for all AAA servers or for only a specific AAA server. COMMANDO Soldier E2000 Series Switches Multiple user authentication methods
•Uses an IEEE 802.1X supplicant on the client in conjunction with a RADIUS server to authenticate in accordance with industry standards
•Supports web-based authentication
•Supports MAC-based authentication
•Multiple IEEE 802.1X users per port provides authentication of multiple devices on a single port; prevents a user from piggy backing on another user’s IEEE 802.1X authentication
•Concurrent IEEE 802.1X, Web and MAC authentication schemes per port switch port will accept up to 8 sessions of IEEE 802.1X, Web and MAC authentications
•Access control lists (ACLs) provide IP Layer 3 filtering based on source and destination IP address or subnet or source and destination TCP/UDP port number
•Source-port filtering allows only specified ports to communicate with each other
•RADIUS/TACACS+ eases switch management security administration by using a password authentication server
•Secure shell encrypts all transmitted data for secure remote CLI access over IP networks
•Secure Sockets Layer (SSL) encrypts all HTTP traffic, allowing secure access to the browser-based management GUI in the switch
•Port security allows access only to specified MAC addresses, which can be learned or specified by the administrator
•MAC address lockout prevents particular configured MAC addresses from connecting to the network
•Secure FTP allows secure file transfer to and from the switch; protects against unwanted file downloads or unauthorized copying of a switch configuration file
•Switch management logon security helps secure switch CLI logon by optionally requiring either RADIUS or TACACS+ authentication
•Custom banner displays security policy when users log in to the switch
•STP BPDU port protection blocks Bridge Protocol Data Units (BPDUs) on ports that do not require BPDUs, preventing forged BPDU attacks
•DHCP protection blocks DHCP packets from unauthorized DHCP servers, preventing denial-of-service attacks
•Dynamic ARP protection blocks ARP broadcasts from unauthorized hosts, preventing eavesdropping or theft of network data
•Dynamic IP lockdown works with DHCP protection to block traffic from unauthorized hosts, preventing IP source address spoofing
•STP root guard protects the root bridge from malicious attacks or configuration mistakes
•Identity-driven ACL enables implementation of a highly granular and flexible access security policy and VLAN assignment specific to each authenticated network user
•Per-port broadcast throttling configures broadcast control selectively on heavy traffic port uplinks
•Monitor and diagnostics digital optical monitoring of SFP and 1000BASE-T transceivers allow detailed monitoring of the transceiver settings and parameters

Effective Management

COMMANDO SoldierOS offers Network Monitoring for users to observe traffic behavior with Port Mirroring, Loop Prevention and DHCP snooping features, can identify and even locate connection problems on your business network.
•Administrators can designate the priority of the traffic based on Port Priority, 802.1P and DSCP Priority, to ensure that voice and video are always clear, smooth and lag-free.
•Voice VLAN, port-based VLAN and 802.1Q-based VLAN functions. COMMANDO is an upgrade from the plug-and-play Unmanaged Switch, delivering great value while empowering your network and similarly delivering great value to the end user.
•RMON provide advanced monitoring and reporting capabilities for statistics, history, alarms, and events.
•Troubleshooting ingress and egress port monitoring enable more efficient problem solving.
•Unidirectional Link Detection (UDLD) monitors the link between two switches and blocks the ports on both ends of the link if the link goes down at any point between the two devices.

Table 4. COMMANDO Soldier E2000 Series Switches PoE+ Power Budget and slots

Model Max Power Budget (Watt) Total physical slots (Ports) on device
E2000-8G+4CF - 12
E2000-8GP+4CF 150W 12
E2000-24GP+8CF 450W 32

PoE/PoE+ Flexibility

The COMMANDO Soldier E2000 Series Switches models are available with 8, 24 and 48 PoE/PoE+ Gigabit Ethernet ports of perpetual and auto-sensing IEEE 802.3af/at. By default, the switches automatically detect IEEE 802.3af/at devices so they automatically receive PoE/PoE+ power.

Table 5. COMMANDO Soldier E2000 Series Switches LED Indication

LED Indication on Switch LED Status
Power Green OFF: No power on the switch. Green ON: The switch powered on
Link/Act LINK/ACT bi-color LED: OFF: Port disconnected or link fail. Green ON: 1000Mbps connected. Amber ON: 10/100Mbps connected. Green Flashing: 1000Mbps connected and Data in transit Amber Flashing: 10/100Mbps connected and Data in transit
System Green OFF: The system is starting, please wait Green ON: The system is up and running
PoE OFF: PoE/PoE+ power is not provided on port Blue ON: PoE/PoE+ power is provided on port
PoE MAX PoE MAX OFF: PoE Power budget is available in switch Red ON: PoE Power budget is exhausted to 95% and switch cannot connect any further PD.

Power Budget According to Cable Length

Ideally, shorter cables would use less power because of less power degradation over their length This is not the case with most devices as they will use the same amount of power across the cable regardless of whether it is 10 or 100 meters in length. These switches analyze the length of the Ethernet cable connected and adjusts the power usage accordingly, rather than keeping the power consumption in a conventional solution.

Table 6. COMMANDO Soldier E2000 Series Switches Cable Lengths

Connection Cable Type Category and Speed Maximum Cable Distance Supported
Unshielded Twisted Pair cable 10/100Base-TX: UTP category 5/5e/6 cables (Maximum 100m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Shielded Twisted Pair cable 10/100Base-TX: STP category 5/5e/6 cables (Maximum 250m) 1000Base-T: UTP Category 5/5e/6 cable (Maximum 100m) 100M
Optical Fiber Cable 550M~120KM depending on SFP 120KM
 

Hardware

COMMANDO Soldier E2000 Series Switches has 4.1 Mbit SRAM Packet Buffer memory with Packet length of 10K bytes . L2 MAC Function with 8K entries for MAC address learning with the 4-way hash L2 table and searching with two hash algorithms. Independent 512 entry L2/IP Multicast table for multicast function, 2-hash algorithm selection for L2 table searching/learning. Aging timer ranges from 0.2s to 1600000s. It has a 4K-entry VLAN table and provides a 64-entry filtering database for 802.1Q port-based, protocol- and-port-based, 802.1Q-based, IP-subnet-based, and ACL Rules-based VLAN operation to separate logical connectivity from physical connectivity with IVL (Independent VLAN Learning), SVL (Shared VLAN Learning), and IVL/SVL (both Independent and Shared VLAN Learning) for flexible network topology architecture. The mode used depends on the FID (Filtering Identifier) setting. It also has a 1.5K Access Control List (ACL) that parses various protocol packet types and performs configurable actions, e.g., Permit/Drop, redirect, and traffic policing. It has per-port ingress/egress bandwidth control and per- queue egress bandwidth control. It has 8 physical queues in each port. It also has three types of packet scheduling, SP (Strict Priority), WFQ (Weighted Fair Queuing), and WRR (Weighted Round Robin). Each queue provides a leaky bucket (LB) to shape the incoming traffic into the average rate behavior. Port-based 802.1X and MAC-based 802.1X authentication prevent unauthorized users. It also has port isolation to enhance port security. It has 4-set port mirror configuration to mirror ingress and egress traffic for network management purposes, complete MIB counter support reflects the switch status in real time. Link aggregation static and dynamic to increase link redundancy and increase linear bandwidth. It supports VLAN Function with IVL, SVL, and IVL/SVL, IEEE 802.1Q VLAN with 4K-entry VLAN Table, Port-based VLAN, Port-and-protocol-based VLAN, ACL-based VLAN. Limited learned L2 MAC entry on each port and each VLAN. Supports flexible Q-in-Q and VLAN Tag function. It supports up to 64 spanning tree instances for MSTP (IEEE 802.1s), RSTP, and STP with Automatic loop detection and isolation (RLPP/RLDP). L3 Unicast Routing with 512 next hop MAC. IEEE 802.3az Energy Efficient Ethernet (EEE). IGMPv1/2/3 and MLDv1/2 snooping. It also Supports Reserved Multicast Addresses processing and L2 Miscellaneous Functions like Supports broadcast, multicast, unknown- multicast, and unknown-unicast packet suppression control, IEEE 802.1x, Port Mirroring with 4-sets of port mirrors, Flow-based mirror function, RSPAN function for remote mirroring. It supports Link Aggregation (IEEE 802.3ad) for 8 groups of link aggregators with up to 8 ports per-group, Port isolation function to enhance port security. It also has Attack Prevention, Land attack, Blat attack, TCP control flag attack, Ping attack, Packet length attack. It supports Access Control List (ACL) Function with 1.5K-entry for ingress and egress ACL table and L4/L3/L2 format (e.g., DMAC, SMAC, and Ether-Type), IPv6 Parsing and Per-flow traffic policing with 16-entry VID range checking. It also supports 8-entry IPv4 or 2-entry IPv6 range checking. 256 leaky buckets for flow traffic policing. It supports QoS Functions with 8 physical queues per port, Strict Priority (SP) and Weighted Fair Queue (WFQ), Weighted Round Robin (WRR) packet scheduling, QoS remarking for 802.1p and DSCP (includes IPv4/IPv6) also Supports average packet rate control leaky bucket per queue, in 16Kbps steps up to 1Gbps maximum. Ingress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. Egress port bandwidth control, in 16Kbps steps up to 1Gbps maximum. It supports MIB Functions with 256 32-bit packet-based or 1K 64-bit byte-based log counters to enhance MIB counter log counters to enhance MIB count functionality. It also supports Ethernet-like MIB (RFC 3635), Interface Group MIB (RFC 2863), RMON (RFC 2819), Bridge MIB (RFC 1493), Bridge MIB Extension (RFC 2674). It has Hardware watchdog support which guard against certain types of system hangs. Watchdog timer is used to escape from if something goes wrong. Based on the situation, the Switches can automatically reset itself, or recover from the failure and generate an error message in the console logs. Long life electrolytic capacitance. High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process. Rack mount design, Mounts in an EIA-standard 19-inch telco rack or equipment cabinet (Rack-mounting kit available); horizontal surface mounting; wall mounting with durable robust metal body. Bilateral heat dissipation. Power and ports status/ activity indicator LED lights. RJ45 Gold plated with 3U thickness. It also supports has IEEE 802.3az Energy Efficient Ethernet (EEE) for 100Base-TX in full duplex operation and supports 10Base-Te for 10Base-T in full/half duplex. The Energy Efficient Ethernet (EEE) operational mode combines the IEEE 802.3 Media Access Control (MAC) Sub-layer with a family of Physical Layers defined to support operation in Low Power Idle (LPI) Mode. When Low Power Idle Mode is enabled, systems on both sides of the link can disable portions of the functionality and save power during periods of low link utilization. 10Mbps PHY with reduced transmit amplitude requirements in EEE operational mode. This new PHY is fully interoperable with legacy 10Base-T PHYs over 100m of Class-D (Category 5) or better cabling.

Hardware Highlights

Solid performance with non-blocking architecture

•CPU Dual Core having frequency 500 MHz along with CPU Memory DRAM of 1GB, Flash memory of 256 MB and Packet Buffer memory of 4.1MB.
•All ports capable of Gigabit Ethernet speed. Full speed of data transferring with (Auto-Negotiation/Auto MDI/MDIX)
•Solid performance with non-blocking architecture, 8000 entries MAC Address Table with 4-way hashing algorithm
•4094 VLANs can be created
•1024 ACL entries
•Up to 512 static routes
•Independent 512 entry L2/IP Multicast table for multicast function.
•Maximum packet length 10000 bytes
•Jumbo frames of 10000 bytes.
•2-hash algorithm selection for L2 table searching/learning with Aging timer range from 0.2s to 1600000s.
•L2/L3/L4 QoS optimize voice and video applications with 256 leaky buckets for flow traffic policing.
•Switching Capacity: 20 up to 56 Gbps
•Forwarding Capacity: Up to 41.66 Mpps
•Store-and-forward Switching Scheme.
•VLAN L3 Interface: 16
•Port Queues: 8
•PoE Budget up to 450W depending on models

Physical Ports and Networking Interfaces

•Up to 24 x 10/100/1000 Mbps Rj45 Ethernet Ports
•Separate Extra ports with 2/4 Ports with fixed 1G Fiber SFP / 1GE Copper Switchports /Uplinks as per model.
•Management Interface: Console
•LED Indicators: Power, Link/Act, PoE Max.

IEEE 802.3af/at Compliant Power over Ethernet

•Various power budget options like 150W & 450W for 8 & 24 ports PoE/PoE+ Switch models. 30W Max Per port (PoE/PoE+) All PoE/PoE+ ports are IEEE 802.3af-compliant PoE, IEEE802.3at-compliant PoE+. Each port delivers 15.4 W PoE, 30 W PoE+ power capacity with backward compatibility.
•Intelligently distribute PoE/PoE+ power so to increase the PD capacity supported simultaneously. PoE power supply transmission is more reliable due to design of robust network transformer which uses high current.
•PD detection will automatically detect and provide required power for your PoE/PoE+ devices.
•Perpetual POE/PoE+ with no power downtime to the connected PD devices by powering them even when a software process is not running on the switch. Provides non-stop POE/PoE+ power.

Extra Long operational life

•High Quality PCB Circuit Board and PCB Surface Treatment Using Gold Sinking Process.
•Support temperature range 0 ° C to 55 ° C.
•Surge protection up to ±4KV to designed to automatically protect Switches from surge events by limiting transient voltages and diverting surge currents.
•Long life electrolytic capacitance to increase the operational life of switches. RJ45 Gold plated with 15U thickness.
•Rack and wall mount design enables to mount the switch in an EIA-standard 19-inch telco rack or equipment cabinet along with Rack-mounting kit available with the device. It enables horizontal surface mounting, wall mounting with durable robust metal body.

Green Energy and Silent operation

•Comply with IEEE 802.3az (Energy-Efficient Ethernet) standard, reduces power consumption up to 58% and reduce the noise pollution. Energy Efficient Ethernet (EEE) on the RJ-45 ports and low-power operations for industry best-in-class power management and power consumption capabilities. The ports support reduced power modes so that ports not in use can move into a lower power utilization state.
•Automatic Temperature Controlled fans with Temperature Sensor.Small form-factor, fan-less as well fan design for silent operation. Perfect for noise sensitive environments.
•Temperature Control fan to optimize cooling and noise with bilateral heat dissipation.

Ethernet Protocols

•Supports wide range of IEEE 802.3i, 10BASE-T IEEE 802.3u, 100BASE-TX/FX IEEE 802.3ab, 1000BASE-T IEEE 802.3z, 1000BASE-X, IEEE 802.3av, GVRP, Link Aggregation LACP IEEE 802.3ad, , IEEE 802.3x, Flow control, IEEE 802.1p, QoS IEEE 802.1q, VLANs / VLAN tagging IEEE 802.1v Protocol, IEEE 802.1d Spanning Tree Protocol (STP), IEEE 802.1s Multiple Spanning Tree (MSTP), IEEE 802.1w Rapid Spanning Tree (RSTP), IEEE 802.1x Network Login Security, IEEE802.3af, IEEE802.3at.

Highly reliable and Enterprise design

•High Quality as for all Mean Time Before Failure of system, MTBF > 200,000 hours
•Stability: 64bit packet, time delay<10us, packet loss rate: 0
•Restorability of Network shaking or device breakdown, restart(recovery) time < 60 sec.
•RoHS Compliant with most of the packaging material can be recycled and reused.
WeightN/AN/AN/AN/AN/AN/A
DimensionsN/AN/AN/AN/AN/AN/A
Additional information
Select the fields to be shown. Others will be hidden. Drag and drop to rearrange the order.
  • Image
  • SKU
  • Rating
  • Price
  • Stock
  • Availability
  • Add to cart
  • Description
  • Content
  • Weight
  • Dimensions
  • Additional information
  • Attributes
  • Custom attributes
  • Custom fields
Click outside to hide the comparison bar
Compare