Easy Network Maintenance
The XS-S1960-H Series supports abundant features such as SNMP V1/V2/V3, RMON, Syslog, and logs and configuration backup using USB for routine diagnosis and maintenance. Administrators can use a wide variety of methods for easier management and such include CLI, web management, CWMP(TR069), etc. With a friendly browser UI, administrators can do most of their job, such as performance monitoring, configuration.
Easy Network Maintenance
The XS-S1960-H Series fully supports Ruijie Cloud which is a cloud-based service that help user manage and control devices and networks. It can monitor the network and configure or remote control devices.
Comprehensive Security Policies
The XS-S1960-H Series effectively prevents and controls virus spread and hacker attacks with various inherent mechanisms such as anti-Dos attacks, hacker IP scanning, illegal ARP packets checking and multiple hardware ACL policies.
• Industry-leading CPU protection mechanism: The CPU Protect Policy (CPP) provides policies for protecting the CPU of a switch. In network environments, various attack packets spread, which may cause high CPU usages of the switches, affect protocol running and even difficulty in switch management. To this end, switch CPUs must be protected, that is, traffic control and priority-based processing must be performed for various incoming packets to ensure the processing capabilities of the switch CPUs.
o CPP can effectively prevent malicious attacks in the network and provide a clean environment for legitimate protocol packets.
o CPP is enabled by default. It provides protection during the entire operation of switches.
CPP protects the CPU by using the standard QoS DiffServ model
• IP/MAC binding: Implement flexible binding of a port or the system to the IP address and MAC address of users, strictly limiting user access on a port or in the entire system.
• DHCP snooping: Allow DHCP responses from trusted ports only; based on DHCP listening and by monitoring ARP dynamically and checking the user IP address, directly discard illegal packets inconsistent with binding entries to effectively prevents ARP frauds and source IP address frauds.
• Secure Shell and SNMPv3: Secure Shell (SSH) and Simple Network Management Protocol v3 (SNMPv3) cryptographic network protocol ensure the security of management information. Provides services such as multi-element binding, port security, time-based ACL and bandwidth rate limiting to block unauthorized users.
• NFPP: Network Foundation Protection Policy (NFPP) provides guards for switches. Malicious attacks are always found in the network environment. These attacks bring heavy burdens to switches, resulting in high CPU usage and operational troubles. These attacks are as follows:
o Denial of Service (DoS) attacks may consume lots of memory, entries, or other resources of a switch, which will cause system service termination.
o Massive attack traffic is directed to the CPU, occupying the entire bandwidth of the CPU. In this case, normal protocol traffic and management traffic cannot be processed by the CPU, causing protocol flapping or management failure. The forwarding in the data plane will also be affected and the entire network will become abnormal.
o A great number of attack packets directed to the CPU consume massive CPU resources, making the CPU highly loaded and thereby influencing device management and performance.
NFPP can effectively protect the system from these attacks. Facing attacks, NFPP maintains the proper running of various system services with a low CPU load, thereby ensuring the stability of the entire network.
Virtual Switch Unit (VSU)
The Virtual Switch Unit technology, or VSU in short, enables interconnection of several physical devices by virtualizing them into one logical device. The logical device uses one single IP address, Telnet process, command-line interface (CLI), and enables auto version inspection and configuration. From the user perspective, the benefits are multiplied work efficiency and enhanced user experience of several devices operating at the same. And they only have to manage one device. The VSU technology also offers multiple benefits below:
• Easy management: Administrators can centrally manage all the devices at the same time. It is no longer necessary to configure and manage the switches one by one.
• Simplified typology: The VSU is regarded as one switch in the network. By connection of aggregation link and peripheral network devices, MSTP protocol is unnecessary as there is no Layer 2 loop network. All protocols operate as one switch.
• Millisecond failover: The VSU and peripheral devices are connected via the aggregation link. Upon failure event of any device or link, failover to another member link requires only 50 to 200ms.
• Exceptional scalability: The network is hot swappable, any devices leaving or joining the virtualized network cause zero impact on other devices.
Simplified Network Topology Enabled by VSU
High Reliability
The XS-S1960-H Series supports spanning tree protocols of 802.1d, 802.1w, and 802.1s to ensure rapid convergence, improves fault tolerance capabilities, ensures stable running of networks and load balancing of links, and provides redundant links.
• Rapid Link Detection Protocol (RLDP): Detect the connectivity of links and whether an optical fiber link is normal from both ends, and supports the loop detection function based on the port to prevent network faults caused by loops generated by the connection of devices such as hubs to ports.
• Ethernet Ring Protection Switching (ERPS) (G.8032): Implements loop blocking and link recovery on the master device. Other devices directly report link status to the master device. Without passing through other standby devices, the failover time of loop interruption and recovery is hence faster than STP. The ERSP’s link failover rate can be completed within milliseconds under ideal conditions.
• Rapid Ethernet Uplink Protection Protocol (REUP): When Spanning Tree Protocol (STP) is disabled, the Rapid Ethernet Uplink Protection Protocol (REUP) can provide basic link redundancy through the rapid uplink protection function and provide faster sub second-level fault recovery than STP.
• Nonstop PoE (ZPoE): Since more IoT (Internet of Things) devices depend on PoE (Power over Ethernet) power supply nowadays, ZPoE (Nonstop PoE) feature is introduced to Ruijie PoE switches. With such feature, the switch can provide nonstop PoE power supply to IP cameras, IP phones and other PD (Powered Device), even when a reboot happens. So operators can feel free to do maintenance job like firmware upgrade any time.
XCor-Design for Durability
In the corrosive gas, high humidity environment, electronic products will accelerate corrosion, reliability and lifetime will be shortened, However, deployment environments of access switch are different, there may be lack of temperature and humidity regulation and close to the source of pollution or the sea. Through the design for durability, such as conformal coating, XS-S1960-H Switch Series can operate stably in a variety of deployment environments.
Such Anti-Corrosion (XCor) feature is now applied to XS-S1960-24GT4SFP-UP-H and XS-S1960-48GT4SFP-H. The PCBs have conformal coating with excellent insulation and protection against moisture, dust, corrosion, mildew and salt spray to enhance environmental adaptability.
New Option for High Power IP Devices
There used to be only two options available for remote power supply scenarios, namely PoE and PoE+ standards. Both XS-S1960-10GT2SFP-H and XS-S1960-24GT4SFP-UP-H can support PoE and PoE+. But PoE standard would fail to meet the needs if more than 30W power is required. Instead, electrical wiring or even high power has to be deployed. Such implementation gives an enormous burden to total investment cost, completion schedule, post-sale maintenance, as well as installation safety. XS-S1960-24GT4SFP-UP-H pushes the frontier with leading IEEE802.3bt standard, delivering 60W power output per port. It guarantees the best security, efficiency, stability and energy-saving experiences.
PoE/PoE+ Support