บทความนี้จำลอง LAB การป้องกัน Malware และ Ransomware เข้าถึง NAS/SERVER ด้วย Cybrey Firewall...
- ใหม่
SG3428X-M2 TP-Link Omada L2+ Managed Switch สำหรับระบบ Multi-Gigabit Network มี 24× 2.5G RJ45 Port และ 4× 10G SFP+ Slot รองรับ Static Routing, VLAN, ACL, QoS, IGMP Snooping, ERPS, OAM และ DDM พร้อมบริหารผ่าน Omada Controller ตัวเครื่อง Metal Casing ติดตั้งในตู้ Rack ได้
Support / ติดตั้งด้วยทีมงานที่มีความชำนาญ Certificate
สอบถามข้อมูลสินค้าเพิ่มเติม
LINE ID: @sysnet โทร: 02 102 4284
สเปกสินค้า (Quick Spec)
เอกสารอ้างอิงเฉพาะ
SDN 10-Gigabit L2+ Managed Switch Datasheet
PoE Switch Series Product Introduction
Switch Overview of Regulatory Compliance(UN)
Wall Mountable Switches_Wall Mounting Guide
SG3428X-M2 เป็น TP-Link Omada 24-Port 2.5GBASE-T L2+ Managed Switch with 4 10GE SFP+ Slots สำหรับระบบ Multi-Gigabit Network ที่ต้องการ Bandwidth สูงกว่า Gigabit Switch ตัวเครื่องมี 24× 10/100/1000 Mbps/2.5 Gbps RJ45 Port และ 4× 10G SFP+ Slot พร้อม Console Port สำหรับบริหารจัดการอุปกรณ์
SG3428X-M2 มี Switching Capacity 200 Gbps และ Packet Forwarding Rate 148.80 Mpps รองรับ MAC Address Table ขนาด 32K, Packet Buffer Memory 16 Mbit และ Jumbo Frame ขนาด 9 KB เหมาะกับระบบที่มีการรับส่งข้อมูลปริมาณมากระหว่าง Client, Server, NAS และ Switch ส่วนกลาง
RJ45 Port ทั้ง 24 ช่องรองรับความเร็ว 10 Mbps, 100 Mbps, 1 Gbps และ 2.5 Gbps ผ่าน Auto-Negotiation จึงสามารถใช้งานร่วมกับอุปกรณ์เดิมแบบ Gigabit และอุปกรณ์ Multi-Gigabit รุ่นใหม่ภายใน Switch ตัวเดียวกัน
24× 2.5GBASE-T RJ45 Port ช่วยเพิ่ม Bandwidth ให้กับ Workstation, Server, NAS และ Multi-Gigabit Access Point ที่มีแหล่งจ่ายไฟแยก โดยสามารถรับส่งข้อมูลได้สูงสุด 2.5 Gbps ต่อ Port เมื่ออุปกรณ์ปลายทางและสาย Network รองรับ
SG3428X-M2 เป็น Switch แบบ Non-PoE จึงไม่มีการจ่ายไฟผ่านสาย LAN อุปกรณ์ปลายทางที่ต้องใช้ไฟ เช่น Access Point หรือ IP Camera ต้องมี Power Adapter, PoE Injector หรือเชื่อมต่อผ่าน PoE Switch แยกต่างหาก
SG3428X-M2 มี 4× 10G SFP+ Slot สำหรับเชื่อมต่อไปยัง Core Switch, Aggregation Switch, Server, NAS หรือ Storage System ที่รองรับ 10G ช่วยลดปัญหา Uplink Bottleneck เมื่อมี Traffic รวมจาก 2.5G RJ45 Port หลายช่องพร้อมกัน
SFP+ Slot สามารถใช้งานร่วมกับ SFP+ Transceiver, Fiber Optic Cable หรือ Direct Attach Cable ตาม Interface และระยะทางที่อุปกรณ์ทั้งสองฝั่งรองรับ โดย SFP+ Module และ Cable ไม่ได้ระบุว่าเป็นอุปกรณ์ที่มีให้ภายในกล่อง
SG3428X-M2 รองรับ IPv4/IPv6 Interface จำนวน 32 Interface และ Static Routing สูงสุด 48 IPv4/IPv6 Static Route ช่วยจัดการ Internal Traffic ระหว่าง VLAN หรือ Network Segment ผ่าน Switch ได้โดยตรง
ด้าน ARP รองรับ Static ARP สูงสุด 128 Entry, ARP Table 512 Entry, Proxy ARP และ Gratuitous ARP ส่วน DHCP Features ประกอบด้วย DHCP Server, DHCP Interface Relay, DHCP VLAN Relay และ DHCP L2 Relay
SG3428X-M2 รองรับสูงสุด 4K VLAN Group พร้อม 802.1Q Tagged VLAN, MAC VLAN สูงสุด 256 Entry, Protocol VLAN, GVRP และ Voice VLAN ช่วยแบ่ง Network ตามแผนก ประเภทอุปกรณ์ หรือระดับสิทธิ์การใช้งาน
VLAN VPN รองรับ VLAN Mapping และ VLAN Replace สามารถใช้ปรับ VLAN Tag ระหว่างส่วนต่าง ๆ ของระบบ Network ตามโครงสร้างที่ออกแบบไว้
ความสามารถด้าน L2 และ L2+ ของ SG3428X-M2 ประกอบด้วย Link Aggregation, Spanning Tree Protocol, Loopback Detection, IEEE 802.3x Flow Control และ Port Mirroring ช่วยเพิ่ม Bandwidth สร้าง Link Redundancy และลดความเสี่ยงจาก Network Loop
ERPS หรือ Ethernet Ring Protection Switching รองรับการออกแบบ Network แบบ Ring Topology ช่วยให้ระบบเปลี่ยนไปใช้เส้นทางสำรองเมื่อ Link ในวง Ring เกิดปัญหา เหมาะกับระบบ Fiber Backbone ระหว่างอาคาร โรงงาน และ Campus Network
SG3428X-M2 รองรับ IEEE 802.3ah Ethernet Link OAM และ DDM สำหรับตรวจสอบ Link และข้อมูล Diagnostic ของ Optical Transceiver ที่รองรับ พร้อม L2PT, Device Link Detect Protocol และ PPPoE ID Insertion
TP-Link ระบุว่า Feature ในกลุ่ม ISP Features สามารถ Configuration ได้ผ่าน Standalone Mode เท่านั้น
SG3428X-M2 รองรับ IGMP Group สำหรับ IPv4 และ IPv6 รวมสูงสุด 511 Group พร้อม IGMP Snooping, IGMP Authentication, Multicast VLAN Registration และ MLD Snooping
Multicast Filtering รองรับสูงสุด 256 Profile และ 16 Entry ต่อ Profile ช่วยควบคุม Multicast Traffic ให้ส่งไปยัง Port ที่มี Receiver ใช้งาน ลด Traffic ที่กระจายไปยัง Port อื่นใน Network
SG3428X-M2 รองรับ Time-Based ACL, MAC ACL, IP ACL, IPv6 ACL, Combined ACL และ Packet Content ACL พร้อม Policy แบบ Mirroring, Redirect, Rate Limit และ QoS Remark โดยสามารถนำ ACL ไปใช้กับ Port หรือ VLAN ได้
ระบบ IPv4 Security รองรับ IP-MAC-Port Binding สูงสุด 512 Entry, DHCP Snooping, ARP Inspection และ IPv4 Source Guard สูงสุด 100 Entry ส่วน IPv6 Security รองรับ IPv6-MAC-Port Binding สูงสุด 512 Entry, DHCPv6 Snooping, ND Detection, ND Snooping และ IPv6 Source Guard สูงสุด 100 Entry
SG3428X-M2 ยังรองรับ DoS Defend, DHCP Filter, Port Isolation, Static/Dynamic Port Security สูงสุด 64 MAC Address ต่อ Port และ Storm Control สำหรับ Broadcast, Multicast และ Unknown Unicast
SG3428X-M2 รองรับ 802.1X แบบ Port-Based Authentication, MAC-Based Authentication, VLAN Assignment, MAB และ Guest VLAN พร้อม RADIUS Authentication, Accounting และ AAA รวมถึง TACACS+
Secure Management รองรับ HTTPS ผ่าน SSLv3/TLS 1.2 และ CLI ผ่าน SSHv1/SSHv2 พร้อม Management Access Control ตาม IP Address, Port และ MAC Address
SG3428X-M2 มี Priority Queue จำนวน 8 Queue รองรับ 802.1p CoS/DSCP Priority พร้อม Queue Scheduling แบบ SP, WRR และ SP+WRR สำหรับกำหนด Priority ให้กับ Voice, Video และ Business Application
Bandwidth Control รองรับ Port-Based และ Flow-Based Rate Limiting พร้อม QoS Remark สำหรับ 802.1p และ DSCP ช่วยควบคุม Bandwidth และ Priority ของ Traffic แต่ละประเภท
SG3428X-M2 รองรับ Centralized Management ผ่าน Omada Cloud-Based Controller, Omada Hardware Controller และ Omada Software Controller รวมถึง Omada App และ Cloud Access เมื่อใช้งานร่วมกับ Controller ที่รองรับ
Omada Management Features ประกอบด้วย Automatic Device Discovery, Batch Configuration, Batch Firmware Upgrade, Intelligent Network Monitoring, Abnormal Event Warning, Unified Configuration และ Reboot Schedule
Zero-Touch Provisioning รองรับเมื่อใช้งานร่วมกับ Omada Cloud-Based Controller ส่วน Standalone Management รองรับ Web-Based GUI, CLI ผ่าน Console Port หรือ Telnet, SNMP v1/v2c/v3 และ RMON
SG3428X-M2 เหมาะสำหรับออฟฟิศ โรงแรม โรงเรียน Studio ห้อง Server และองค์กรที่ต้องการเพิ่มความเร็ว Access Layer จาก 1 Gbps เป็น 2.5 Gbps พร้อม 10G Uplink สำหรับเชื่อมต่อไปยัง Core Switch, Aggregation Switch, Server หรือ NAS
ตัวเครื่องเป็น Metal Casing รองรับ Rack Mounting และมี Fan จำนวน 1 ตัว เหมาะกับระบบที่ต้องการ Multi-Gigabit Port จำนวนมาก พร้อม VLAN, Static Routing, ACL, QoS, Multicast, ERPS และ Omada Centralized Management
SG3428X-M2 ไม่มี PoE Output อุปกรณ์ที่ต้องรับไฟผ่านสาย LAN จำเป็นต้องใช้แหล่งจ่ายไฟหรืออุปกรณ์ PoE แยกต่างหาก
TP-Link แนะนำให้ใช้ SM5310-T หรือ TL-SM5310-T 10G RJ45 SFP+ Module กับ SG3428X-M2 เพียง 1 Module จึงควรตรวจสอบชนิด Transceiver, Cable และระยะทางก่อนออกแบบระบบ
| Product Information | |
| Model | SG3428X-M2 |
| Product Type | TP-Link Omada 24-Port 2.5GBASE-T L2+ Managed Switch with 4× 10G SFP+ Slots |
| Recommended Use | เหมาะสำหรับออฟฟิศ โรงแรม โรงเรียน Studio ห้อง Server และระบบ Network องค์กรที่ต้องการ 24× 2.5G RJ45 Port, 10G Uplink, VLAN, Static Routing, ACL, QoS, Multicast, ERPS และ Omada Centralized Management |
| Port Specifications | |
| 2.5G RJ45 Port | 24× 10/100/1000 Mbps/2.5 Gbps RJ45 Port |
| RJ45 Port Features | Auto-Negotiation และ Auto MDI/MDIX |
| SFP+ Slot | 4× 10G SFP+ Slot |
| Console Port | 1× RJ45 Console Port และ 1× Micro-USB Console Port |
| PoE | ไม่รองรับ PoE Output |
| Performance | |
| Switching Capacity | 200 Gbps |
| Packet Forwarding Rate | 148.80 Mpps |
| MAC Address Table | 32K |
| Packet Buffer Memory | 16 Mbit |
| Jumbo Frame | 9 KB |
| L2 and L2+ Features | |
| IP Interface | 32× IPv4/IPv6 Interface |
| Static Routing | สูงสุด 48× IPv4/IPv6 Static Route |
| Static ARP | สูงสุด 128 Static Entry |
| ARP Table | 512 Entry |
| ARP Features | Proxy ARP และ Gratuitous ARP |
| DHCP Features | DHCP Server, DHCP Interface Relay, DHCP VLAN Relay และ DHCP L2 Relay |
| Link Aggregation | รองรับ |
| Spanning Tree Protocol | รองรับ |
| Loopback Detection | รองรับ |
| Flow Control | IEEE 802.3x Flow Control |
| Port Mirroring | รองรับ |
| VLAN | |
| VLAN Capacity | สูงสุด 4K VLAN Group |
| 802.1Q VLAN | รองรับ 802.1Q Tagged VLAN |
| MAC VLAN | สูงสุด 256 Entry |
| Protocol VLAN | 16 Protocol Template และ 16 Protocol VLAN |
| Additional VLAN Features | GVRP และ Voice VLAN |
| VLAN VPN | VLAN Mapping และ VLAN Replace |
| Multicast | |
| Multicast Group | รองรับ IPv4 และ IPv6 IGMP Group รวมสูงสุด 511 Group |
| IGMP Snooping | รองรับ |
| IGMP Authentication | รองรับ |
| MVR | Multicast VLAN Registration |
| MLD Snooping | รองรับ |
| Multicast Filtering | 256 Profile และ 16 Entry ต่อ Profile |
| Quality of Service | |
| Priority Queue | 8 Queue |
| QoS Priority | 802.1p CoS/DSCP Priority |
| Queue Scheduling | SP, WRR และ SP+WRR |
| Bandwidth Control | Port-Based และ Flow-Based Rate Limiting |
| QoS Remark | 802.1p Remark และ DSCP Remark |
| Advanced and ISP Features | |
| ERPS | Ethernet Ring Protection Switching |
| Ethernet Link OAM | IEEE 802.3ah Ethernet Link OAM |
| L2PT | Layer 2 Protocol Tunneling |
| DLDP | Device Link Detect Protocol |
| PPPoE ID Insertion | รองรับ |
| DDM | Digital Diagnostic Monitoring |
| Configuration Note | ISP Features สามารถ Configuration ได้ผ่าน Standalone Mode เท่านั้น |
| Access Control List | |
| ACL Types | Time-Based ACL, MAC ACL, IP ACL, IPv6 ACL, Combined ACL และ Packet Content ACL |
| ACL Policy | Mirroring, Redirect, Rate Limit และ QoS Remark |
| ACL Application | นำไปใช้กับ Port หรือ VLAN |
| Security Features | |
| IPv4 Protection | IP-MAC-Port Binding 512 Entry, DHCP Snooping, ARP Inspection และ IPv4 Source Guard 100 Entry |
| IPv6 Protection | IPv6-MAC-Port Binding 512 Entry, DHCPv6 Snooping, ND Detection, ND Snooping และ IPv6 Source Guard 100 Entry |
| DoS Defend | รองรับ |
| DHCP Filter | รองรับ |
| Port Security | Static/Dynamic Port Security สูงสุด 64 MAC Address ต่อ Port |
| Storm Control | Broadcast, Multicast และ Unicast แบบ kbps, Ratio หรือ pps |
| 802.1X Authentication | Port-Based, MAC-Based, VLAN Assignment, MAB และ Guest VLAN |
| Authentication Server | RADIUS Authentication, Accounting และ AAA รวมถึง TACACS+ |
| Port Isolation | รองรับ |
| Secure Web Management | HTTPS ผ่าน SSLv3/TLS 1.2 |
| Secure CLI | SSH v1/v2 |
| Management Access Control | ควบคุมตาม IP Address, Port และ MAC Address |
| Management | |
| Centralized Management | Omada Cloud-Based Controller, Omada Hardware Controller และ Omada Software Controller |
| Omada App | รองรับเมื่อใช้งานร่วมกับ Omada Controller ที่รองรับ |
| Cloud Access | รองรับเมื่อใช้งานร่วมกับ Omada Controller ที่รองรับ |
| Zero-Touch Provisioning | รองรับเมื่อใช้งานร่วมกับ Omada Cloud-Based Controller |
| Standalone Management | Web-Based GUI, CLI ผ่าน Console Port หรือ Telnet, SNMP v1/v2c/v3 และ RMON |
| Omada Management Features | Automatic Device Discovery, Batch Configuration, Batch Firmware Upgrade, Intelligent Network Monitoring, Abnormal Event Warning, Unified Configuration และ Reboot Schedule |
| Additional Management | SDM Template, DHCP/BOOTP Client, LLDP/LLDP-MED, DHCP AutoInstall, Dual Image, Dual Configuration, CPU Monitoring, Cable Diagnostics, EEE, Password Recovery, SNTP และ System Log |
| Power and Physical | |
| Power Supply | 100–240 V AC, 50/60 Hz |
| Maximum Power Consumption | 45.1 W ที่ 110 V / 60 Hz |
| Maximum Heat Dissipation | 154.38 BTU/h ที่ 110 V / 60 Hz |
| Fan | 1 Fan |
| Physical Security Lock | รองรับ |
| Housing | Metal Casing |
| Mounting | Rack Mountable |
| Dimensions | 440 × 180 × 44 mm |
| Operating Temperature | 0–40°C |
| Storage Temperature | -40–70°C |
| Operating Humidity | 10–90% RH, Non-Condensing |
| Storage Humidity | 5–90% RH, Non-Condensing |
| Certification | CE, FCC และ RoHS |
| Package Contents | |
| Package Contents | SG3428X-M2 Switch, Power Cord, Quick Installation Guide, Rackmount Kit และ Rubber Feet |
| Important Note | SFP+ Module ไม่มีระบุว่าให้มาในกล่อง และ TP-Link แนะนำให้ใช้ SM5310-T หรือ TL-SM5310-T กับ SG3428X-M2 เพียง 1 Module |
| Warranty | |
| Warranty | ประกันศูนย์ TP-Link Thailand Lifetime |