ARUBA CENTRAL - UNIFIED SINGLE PANE OF GLASS MANAGEMENT
FLEXIBLE CLOUD-BASED OR ON-PREMISES MANAGEMENT FOR UNIFIED NETWORK OPERATIONS OF WIRED, WLAN, SD-WAN, AND PUBLIC CLOUD INFRASTRUCTURE. DESIGNED TO SIMPLIFY DAY ZERO THROUGH DAY TWO OPERATIONS WITH STREAMLINED WORKFLOWS. SWITCH MANAGEMENT CAPABILITIES INCLUDE CONFIGURATION, ONBOARDING, MONITORING, TROUBLESHOOTING, AND REPORTING.
ARUBA NETWORK ANALYTICS ENGINE - ADVANCED MONITORING AND DIAGNOSTICS
FOR ENHANCED VISIBILITY AND TROUBLESHOOTING, ARUBAS NETWORK ANALYTICS ENGINE (NAE) AUTOMATICALLY INTERROGATES AND ANALYZES EVENTS THAT CAN IMPACT A NETWORKS HEALTH. ADVANCED TELEMETRY AND AUTOMATION PROVIDE THE ABILITY TO EASILY IDENTIFY AND TROUBLESHOOT NETWORK, SYSTEM, APPLICATION AND SECURITY RELATED ISSUES EASILY, THROUGH THE USE OF PYTHON AGENTS, CLI-BASED AGENTS, AND REST APIS.
THE TIME SERIES DATABASE (TSDB) STORES CONFIGURATION AND OPERATIONAL STATE DATA, MAKING IT AVAILABLE TO QUICKLY RESOLVE NETWORK ISSUES. THE DATA MAY ALSO BE USED TO ANALYZE TRENDS, IDENTIFY ANOMALIES AND PREDICT FUTURE CAPACITY REQUIREMENTS.
ARUBA NETEDIT - AUTOMATED SWITCH CONFIGURATION AND MANAGEMENT
THE ENTIRE HPE ARUBA NETWORKING CX PORTFOLIO EMPOWERS IT TEAMS TO ORCHESTRATE MULTIPLE SWITCH CONFIGURATION CHANGES FOR SMOOTH END-TO-END SERVICE ROLLOUTS. ARUBA NETEDIT INTRODUCES AUTOMATION THAT ALLOWS FOR RAPID NETWORK-WIDE CHANGES, AND ENSURES POLICY CONFORMANCE POST NETWORK UPDATES. INTELLIGENT CAPABILITIES INCLUDE SEARCH, EDIT, VALIDATION (INCLUDING CONFORMANCE CHECKING), DEPLOYMENT AND AUDIT FEATURES. CAPABILITIES INCLUDE:
CENTRALIZED CONFIGURATION WITH VALIDATION FOR CONSISTENCY AND COMPLIANCE
TIME SAVINGS VIA SIMULTANEOUS VIEWING AND EDITING OF MULTIPLE CONFIGURATIONS
CUSTOMIZED VALIDATION TESTS FOR CORPORATE COMPLIANCE AND NETWORK DESIGN
AUTOMATED LARGE-SCALE CONFIGURATION DEPLOYMENT WITHOUT PROGRAMMING
NETWORK HEALTH AND TOPOLOGY VISIBILITY WITH ARUBA NAE INTEGRATION
NOTES: A SEPARATE SOFTWARE LICENSE IS REQUIRED TO USE ARUBA NETEDIT.
ARUBA CX MOBILE APP - UNPARALLELED DEPLOYMENT CONVENIENCE
AN EASY TO USE MOBILE APP SIMPLIFIES CONNECTING AND MANAGING HPE ARUBA NETWORKING CX 6200 SWITCH SERIES FOR ANY SIZE PROJECT. SWITCH INFORMATION CAN ALSO BE IMPORTED INTO ARUBA NETEDIT FOR SIMPLIFIED CONFIGURATION MANAGEMENT AND TO CONTINUOUSLY VALIDATE THE CONFORMANCE OF CONFIGURATIONS ANYWHERE IN THE NETWORK. THE ARUBA CX MOBILE APP IS AVAILABLE FOR DOWNLOAD.
ARUBA ASICS - PROGRAMMABLE INNOVATION
BASED ON OVER 30 YEARS OF CONTINUOUS INVESTMENT, ARUBAS ASICS CREATE THE BASIS FOR INNOVATIVE AND AGILE SOFTWARE FEATURE ADVANCEMENTS, UNPARALLELED PERFORMANCE AND DEEP VISIBILITY. THESE PROGRAMMABLE ASICS ARE PURPOSE-BUILT TO ALLOW FOR A TIGHTER INTEGRATION OF SWITCH HARDWARE AND SOFTWARE WITHIN CAMPUS AND DATA CENTER ARCHITECTURES TO OPTIMIZE PERFORMANCE AND CAPACITY. VIRTUAL OUTPUT QUEUING (VOQ) ISOLATES CONGESTION, PREVENTS HEAD OF LINE BLOCKING (HOLB) AND ALLOWS FULL LINE RATE ON OUTGOING (EGRESS) PORTS. FLEXIBLE ASIC RESOURCES ENABLE ARUBAS NAE SOLUTION TO INSPECT ALL DATA, WHICH ALLOWS FOR RAPID FEATURE DEVELOPMENT AND DELIVERY. THE HPE ARUBA NETWORKING CX 6200 SWITCH SERIES IS BASED ON THE ARUBA GEN7 ASIC ARCHITECTURE.
ARUBA DYNAMIC SEGMENTATION - SIMPLE, SECURE, AND SCALABLE SEGMENTATION
THE ARUBA DYNAMIC SEGMENTATION SOLUTION ENABLES SEAMLESS MOBILITY, CONSISTENT POLICY ENFORCEMENT, AND AUTOMATED CONFIGURATIONS FOR WIRED AND WIRELESS CLIENTS ACROSS NETWORKS.
THIS INNOVATION BEGINS WITH COLORLESS PORTS AND ROLE-BASED MICRO-SEGMENTATION TECHNOLOGIES. COLORLESS PORTS ALLOWS WIRED CLIENTS TO CONNECT TO ANY SWITCH PORT, WITH THE CONFIGURATION AUTOMATED USING RADIUS-BASED ACCESS CONTROL. THIS ELIMINATES THE NEED FOR MANUAL ON-BOARDING OF CLIENTS, INCLUDING IOT DEVICES, ONTO THE NETWORK.
ROLE-BASED MICRO-SEGMENTATION DELIVERS BENEFITS OF REDUCED SUBNET AND VLAN SPRAWL, SIMPLIFIED POLICY DEFINITION, AND SCALES POLICY ENFORCEMENT BY INTRODUCING THE CONCEPT OF CLIENT USER ROLES. THESE ROLES ARE INDEPENDENT OF NETWORK CONSTRUCTS SUCH AS VLANS, AND ALLOWS CLIENTS TO BE GROUPED INTO A USER ROLE BASED ON THEIR IDENTITY. THIS ALLOWS THE COLORLESS PORTS TECHNOLOGY TO AUTOMATICALLY ON-BOARD CLIENTS ONTO USER BASED TUNNELS OR ONTO STATIC VXLAN TUNNELS BASED ON THE ASSOCIATED USER ROLE POLICY. BY STEERING TRAFFIC TO ARUBAS APPLICATION AWARE POLICY ENFORCEMENT FIREWALL, USER BASED TUNNELING PROVIDES THE ABILITY TO MICRO SEGMENT AND PERFORM DEEP PACKET INSPECTIONS FOR ENHANCED SECURITY.
MOBILITY AND IOT PERFORMANCE
THE HPE ARUBA NETWORKING CX 6200 SWITCH SERIES USES A FULLY DISTRIBUTED ARCHITECTURE THAT UTILIZES THE GEN7 ARUBA ASICS. THIS ENSURES THAT OUR SWITCHES OFFER VERY LOW LATENCY, INCREASED PACKET BUFFERING, AND ADAPTIVE POWER CONSUMPTION. ALL SWITCHING AND ROUTING ARE WIRE-SPEED TO MEET THE DEMANDS OF BANDWIDTH-INTENSIVE APPLICATIONS TODAY AND IN THE FUTURE. EACH SWITCH INCLUDES THE FOLLOWING:
UP TO 176 GBPS IN NON-BLOCKING BANDWIDTH AND UP TO 130.9 MPPS FOR FORWARDING
SELECTABLE QUEUE CONFIGURATIONS THAT ALLOW FOR INCREASED PERFORMANCE BY DEFINING A NUMBER OF QUEUES AND ASSOCIATED MEMORY BUFFERING TO BEST MEET THE REQUIREMENTS OF NETWORK APPLICATIONS
VSF STACKING - SCALE AND SIMPLICITY
THE ARUBA VIRTUAL SWITCHING FRAMEWORK (VSF) ALLOWS YOU TO QUICKLY GROW YOUR NETWORK USING HIGH PERFORMANCE FRONT PLANE STACKING. ADDITIONAL FEATURES INCLUDE:
SUPPORT FOR UP TO 8 SWITCHES (OR MEMBERS) IN A STACK VIA CHAIN OR RING TOPOLOGY
FLEXIBILITY TO CREATE STACKS THAT SPAN LONGER DISTANCES SUCH AS HUNDREDS OF METERS ACROSS CAMPUSES TO KILOMETRES BETWEEN SITES USING LONG-RANGE 10GBE TRANSCEIVERS
FLEXIBILITY TO MIX 24 AND 48-PORT MODULAR AND FIXED ARUBA 6200 MODELS WITHIN A SINGLE STACK TO MEET YOUR DEPLOYMENT REQUIREMENTS
SIMPLIFIED CONFIGURATION AND MANAGEMENT AS THE SWITCHES ACT AS A SINGLE CHASSIS WHEN STACKED
THE ARUBA CX MOBILE APP PROVIDES SUPPORT FOR A VALIDATED STACK DEPLOYMENT THAT ENSURE THAT ALL STACK LINKS AND UPLINKS ARE CONNECTED PROPERLY
HPE ARUBA NETWORKING CX 6200 SWITCH SERIES - ENTERPRISE-CLASS CONNECTIVITY FOR ALL ENVIRONMENTS
WHETHER IN THE BRANCH OFFICE OR A SMALL TO LARGE ENTERPRISE ENVIRONMENT, YOU CAN CHOOSE FROM ELEVEN FIXED 1U MODELS. SWITCHES INCLUDE MODELS WITH TWO TO FOUR HIGH-SPEED BUILT-IN UPLINKS THAT AUTO-NEGOTIATE FROM 1GBE TO 10GBE TO DELIVER NON-BLOCKING PERFORMANCE, AND MODELS THAT HAVE TWO TO FOUR COST-EFFICIENT 1GBE UPLINKS.. FIXED FORMAT (F) MODELS INCLUDE BUILT-IN POWER SUPPLIES.
THE MODULAR (M) MODELS HAVE REAR SLOTS FOR HOT SWAPPABLE POWER SUPPLIES THAT ALLOW YOU TO CUSTOMIZE YOUR POE REQUIREMENTS, AND ITS FANS ARE FIELD REPLACEABLE. ADDITIONAL HIGHLIGHTS INCLUDE:
FIVE 1U 6200F MODELS THAT SUPPORT 24, AND 48 ACCESS PORTS OF IEEE 802.3 (100M/1GBE) WITH FOUR BUILT-IN 1GBE UPLINK SFP PORTS.
SIX 1U 6200F MODELS THAT SUPPORT 12, 24, AND 48 ACCESS PORTS OF IEEE 802.3 (100M/1GBE) WITH FOUR BUILT-IN 1GBE/10GBE UPLINK SFP+ PORTS ON 24 TO 48 PORT MODELS AND DUAL 1GBE/10GBE PLUS DUAL 1GBE UPLINKS ON 12 PORT MODEL.
FIVE 1U 6200M MODELS THAT SUPPORT 24, AND 48 ACCESS PORTS OF IEEE 802.3 (100M/1GBE) WITH FOUR BUILT-IN 1GBE/10GBE UPLINK SFP+ PORTS.
INDUSTRY STANDARD IEEE 802.3BT HIGH POWER POE SUPPORT (CLASS 6) PROVIDES UP TO 60W TO SUPPORT OF THE LATEST IOT DEVICES AND APS. POE SUPPORT FOR IEEE 802.3AT POWER OVER ETHERNET (POE+) PROVIDES UP TO 30W PER PORT AS WELL AS ANY IEEE 802.3AF-COMPLIANT END DEVICE
SUPPORT FOR PRE-STANDARD POE DETECTS AND PROVIDES POWER TO PRE-STANDARD POE DEVICES
HIGH AVAILABILITY WITH ALWAYS-ON POE THAT SUPPLIES POE POWER EVEN DURING SCHEDULED REBOOTS AND FIRMWARE UPGRADES
QUICK POE SUPPLIES POE POWER TO POWERED DEVICES AS SOON AS THE SWITCH IS PLUGGED INTO AC POWER SO DEVICE CAN INITIALIZE AT SAME TIME AS SWITCH OS BOOTS UP
SUPPORT FOR ENERGY EFFICIENT ETHERNET IEEE 802.3AZ REDUCES POWER CONSUMPTION DURING PERIODS OF LOW TRAFFIC
AUTO-MDIX PROVIDES AUTOMATIC ADJUSTMENTS FOR STRAIGHTTHROUGH OR CROSSOVER CABLES ON ALL 10/100/1000 PORTS
UNSUPPORTED TRANSCEIVER MODE (UTM) ALLOWS TO INSERT AND ENABLE ALL UNSUPPORTED 1G AND 10G TRANSCEIVERS AND CABLES.
NOTES: THERE IS NO WARRANTY NOR SUPPORT FOR THE TRANSCEIVER/CABLE WHEN THIS FEATURE IS USED.
IPV6 CAPABILITIES INCLUDE:
IPV6 HOST ENABLES SWITCHES TO BE MANAGED IN AN IPV6 NETWORK
DUAL STACK (IPV4 AND IPV6) TRANSITIONS FROM IPV4 TO IPV6, SUPPORTING CONNECTIVITY FOR BOTH PROTOCOLS
MLD SNOOPING FORWARDS IPV6 MULTICAST TRAFFIC TO THE APPROPRIATE INTERFACE
IPV6 ACL/QOS SUPPORTS ACL AND QOS FOR IPV6 NETWORK TRAFFIC
IPV6 ROUTING SUPPORTS STATIC AND OSPFV3 PROTOCOLS
SECURITY PROVIDES RA GUARD, DYNAMIC IPV6 LOCKDOWN, AND ND SNOOPING
JUMBO FRAMES ALLOW FOR HIGH-PERFORMANCE BACKUPS AND DISASTER-RECOVERY SYSTEMS; PROVIDES A MAXIMUM FRAME SIZE OF 9220 BYTES
PACKET STORM PROTECTION AGAINST BROADCAST, MULTICAST AND UNKNOWN UNICAST STORMS WITH USER-DEFINED THRESHOLDS
SMART LINK ENABLES SIMPLE, FAST CONVERGING LINK REDUNDANCY AND LOAD BALANCING WITH DUAL UPLINKS AVOIDING SPANNING TREE COMPLEXITIES
HIGH AVAILABILITY AND RESILIENCY
TO ENSURE A HIGH DEGREE OF UP-TIME WE OFFER HIGH AVAILABILITY AND MULTICAST FEATURES NEEDED FOR A HIGHLY AVAILABLE LAYER 2 ACCESS DEPLOYMENT INCLUDING:
HOT SWAPPABLE POWER SUPPLIES AVAILABLE IN THE HPE ARUBA NETWORKING CX 6200M MODELS
PROVIDES N+1 AND N+N REDUNDANCY FOR HIGH RELIABILITY IN THE EVENT OF POWER LINE OR SUPPLY FAILURES
OPTIONAL SECONDARY POWER SUPPLIES TO INCREASE THE TOTAL AVAILABLE POE POWER
FIXED POWER SUPPLIES ARE INCLUDED IN THE HPE ARUBA NETWORKING CX 6200F SWITCH MODELS
UNI-DIRECTIONAL LINK DETECTION (UDLD) TO MONITOR LINK CONNECTIVITY AND SHUT DOWN PORTS AT BOTH ENDS IF UNI-DIRECTIONAL TRAFFIC IS DETECTED, PREVENTING LOOPS IN STP-BASED NETWORKS
IEEE 802.3AD LACP SUPPORTS UP TO 32 LAGS, EACH WITH UP TO 8 LINKS PER LAG; AND PROVIDES SUPPORT FOR STATIC OR DYNAMIC GROUPS AND A USER-SELECTABLE HASHING ALGORITHM
IEEE 802.1S MULTIPLE SPANNING TREE PROVIDES HIGH LINK AVAILABILITY IN VLAN ENVIRONMENTS WHERE MULTIPLE SPANNING TREES ARE REQUIRED; AND LEGACY SUPPORT FOR IEEE 802.1D AND IEEE 802.1W
IEEE 802.3AD LINK-AGGREGATION-CONTROL PROTOCOL (LACP) AND PORT TRUNKING SUPPORT STATIC AND DYNAMIC TRUNKS WHERE EACH TRUNK SUPPORTS UP TO EIGHT LINKS (PORTS) PER STATIC TRUNK
VIRTUAL ROUTER REDUNDANCY PROTOCOL (VRRP) ALLOWS GROUPS OF TWO ROUTERS TO DYNAMICALLY CREATE HIGHLY AVAILABLE ROUTED ENVIRONMENTS IN IPV4 AND IPV6 NETWORKS
QUALITY OF SERVICE (QOS) FEATURES
TO SUPPORT CONGESTION ACTIONS AND TRAFFIC PRIORITIZATION, THE HPE ARUBA NETWORKING CX 6200 SWITCH SERIES INCLUDES THE FOLLOWING:
STRICT PRIORITY (SP) QUEUING AND DEFICIT WEIGHTED ROUND ROBIN (DWRR)
TRAFFIC PRIORITIZATION (IEEE 802.1P) FOR REAL-TIME CLASSIFICATION
CLASS OF SERVICE (COS) SETS THE IEEE 802.1P PRIORITY TAG BASED ON IP ADDRESS, IP TYPE OF SERVICE (TOS), LAYER 3 PROTOCOL, TCP/UDP PORT NUMBER, SOURCE PORT, AND DIFFSERV
RATE LIMITING SETS PER-PORT INGRESS ENFORCED MAXIMUMS AND PER-PORT, PER-QUEUE MINIMUMS
TRANSMISSION RATES OF EGRESSING FRAMES CAN BE LIMITED ON A PER-QUEUE BASIS USING EGRESS QUEUE SHAPING (EQS)
LARGE BUFFERS FOR GRACEFUL CONGESTION MANAGEMENT
LAYER 2 SWITCHING
THE FOLLOWING LAYER 2 SERVICES ARE SUPPORTED:
VLAN SUPPORT AND TAGGING SUPPORT IEEE 802.1Q (4094 VLAN IDS) AND 2K VLANS SIMULTANEOUSLY
JUMBO PACKET SUPPORT IMPROVES THE PERFORMANCE OF LARGE DATA TRANSFERS; SUPPORTS FRAME SIZE OF UP TO 9198 BYTES
IEEE 802.1V PROTOCOL VLANS ISOLATE SELECT NON-IPV4 PROTOCOLS AUTOMATICALLY INTO THEIR OWN VLANS
RAPID PER-VLAN SPANNING TREE (RPVST+) ALLOWS EACH VLAN TO BUILD A SEPARATE SPANNING TREE TO IMPROVE LINK BANDWIDTH USAGE; IS COMPATIBLE WITH PVST+
MVRP ALLOWS AUTOMATIC LEARNING AND DYNAMIC ASSIGNMENT OF VLANS
VXLAN ENCAPSULATION (TUNNELLING) PROTOCOL FOR OVERLAY NETWORK THAT ENABLES A MORE SCALABLE VIRTUAL NETWORK DEPLOYMENT
BRIDGE PROTOCOL DATA UNIT (BPDU) TUNNELLING TRANSMITS STP BPDUS TRANSPARENTLY, ALLOWING CORRECT TREE CALCULATIONS ACROSS SERVICE PROVIDERS, WANS, OR MANS
PORT MIRRORING DUPLICATES PORT TRAFFIC (INGRESS AND EGRESS) TO A MONITORING PORT; SUPPORTS 4 MIRRORING GROUPS
STP SUPPORTS STANDARD IEEE 802.1D STP, IEEE 802.1W RAPID SPANNING TREE PROTOCOL (RSTP) FOR FASTER CONVERGENCE, AND IEEE 802.1S MULTIPLE SPANNING TREE PROTOCOL (MSTP)
INTERNET GROUP MANAGEMENT PROTOCOL (IGMP) CONTROLS AND MANAGES THE FLOODING OF MULTICAST PACKETS IN A LAYER 2 NETWORK
LAYER 3 SERVICES
THE FOLLOWING LAYER 3 SERVICES ARE SUPPORTED:
LOOPBACK INTERFACE ADDRESS DEFINES AN ADDRESS IN OPEN SHORTEST PATH FIRST (OSPF), IMPROVING DIAGNOSTIC CAPABILITY
ADDRESS RESOLUTION PROTOCOL (ARP) DETERMINES THE MAC ADDRESS OF ANOTHER IP HOST IN THE SAME SUBNET; SUPPORTS STATIC ARPS; GRATUITOUS ARP ALLOWS DETECTION OF DUPLICATE IP ADDRESSES; PROXY ARP ALLOWS NORMAL ARP OPERATION BETWEEN SUBNETS OR WHEN SUBNETS ARE SEPARATED BY A LAYER 2 NETWORK
DOMAIN NAME SYSTEM (DNS) PROVIDES A DISTRIBUTED DATABASE THAT TRANSLATES DOMAIN NAMES AND IP ADDRESSES, WHICH SIMPLIFIES NETWORK DESIGN; SUPPORTS CLIENT AND SERVER
SUPPORTS INTERNAL LOOPBACK TESTING FOR MAINTENANCE PURPOSES AND INCREASED AVAILABILITY; LOOPBACK DETECTION PROTECTS AGAINST INCORRECT CABLING OR NETWORK CONFIGURATIONS AND CAN BE ENABLED ON A PER-PORT OR PER-VLAN BASIS FOR ADDED FLEXIBILITY
ROUTE MAPS PROVIDE MORE CONTROL DURING ROUTE REDISTRIBUTION; ALLOW FILTERING AND ALTERING OF ROUTE METRICS
DYNAMIC HOST CONFIGURATION PROTOCOL (DHCP) SIMPLIFIES THE MANAGEMENT OF LARGE IP NETWORKS AND SUPPORTS CLIENT; DHCP RELAY ENABLES DHCP OPERATION ACROSS SUBNETS
DHCP SERVER CENTRALIZES AND REDUCES THE COST OF IPV4 ADDRESS MANAGEMENT
SIMPLIFIED CONFIGURATION AND MANAGEMENT
IN ADDITION TO ARUBA CENTRAL, THE ARUBA CX MOBILE APP, ARUBA NETEDIT AND ARUBA NETWORK ANALYTICS ENGINE, THE HPE ARUBA NETWORKING CX 6200 SWITCH SERIES OFFERS THE FOLLOWING:
BUILT-IN PROGRAMMABLE AND EASY-TO-USE REST API INTERFACE
SIMPLE DAY ZERO PROVISIONING
SFLOW (RFC 3176) IS ASIC-BASED WIRE SPEED NETWORK MONITORING AND ACCOUNTING WITH NO IMPACT ON NETWORK PERFORMANCE; NETWORK OPERATORS CAN GATHER A VARIETY OF NETWORK STATISTICS AND INFORMATION FOR CAPACITY PLANNING AND REAL-TIME NETWORK MONITORING PURPOSES
MANAGEMENT INTERFACE CONTROL ENABLES OR DISABLES EACH OF THE FOLLOWING DEPENDING ON SECURITY PREFERENCES, CONSOLE PORT, OR RESET BUTTON
INDUSTRY-STANDARD CLI WITH A HIERARCHICAL STRUCTURE FOR REDUCED TRAINING TIME AND EXPENSE. DELIVERS INCREASED PRODUCTIVITY IN MULTIVENDOR ENVIRONMENTS
MANAGEMENT SECURITY RESTRICTS ACCESS TO CRITICAL CONFIGURATION COMMANDS, PROVIDES MULTIPLE PRIVILEGE LEVELS WITH PASSWORD PROTECTION AND LOCAL AND REMOTE SYSLOG CAPABILITIES ALLOW LOGGING OF ALL ACCESS
SNMP V2C/V3 PROVIDES SNMP READ AND TRAP SUPPORT OF INDUSTRY STANDARD MANAGEMENT INFORMATION BASE (MIB), AND PRIVATE EXTENSIONS
SNMP SUPPORT INCLUDES: WRITE SET SPEED AND DUPLEX, WRITE PORT SECURITY, WRITE POE PRIORITY, WRITE CONFIG MGMT, SNMP-READ SINGLE OID FOR AVERAGE CPU AND MEMORY, SNMP MIB VIEW
SNMP TRAP INCLUDE: TRANSCEIVER TRAPS (INSERTION/REMOVAL), SNMP TRAP, SNMP MIB-SNMB AUTHENTICATION, SNMPV2 MIB, PORT SEC MIB-PORT SEC, CONFIG MIB-RUNNING CONFIG CHANGE, CONFIG MIB, AAA SERVER MIB, AAA SERVER STATE
REMOTE MONITORING (RMON) WITH STANDARD SNMP TO MONITOR ESSENTIAL NETWORK FUNCTIONS. SUPPORTS EVENTS, ALARMS, HISTORY, AND STATISTICS GROUPS AS WELL AS A PRIVATE ALARM EXTENSION GROUP; RMON, AND SFLOW PROVIDE ADVANCED MONITORING AND REPORTING CAPABILITIES FOR STATISTICS, HISTORY, ALARMS AND EVENTS
TFTP AND SFTP SUPPORT OFFERS DIFFERENT MECHANISMS FOR CONFIGURATION UPDATES; TRIVIAL FTP (TFTP) ALLOWS BIDIRECTIONAL TRANSFERS OVER A TCP/ IP NETWORK; SECURE FILE TRANSFER PROTOCOL (SFTP) RUNS OVER AN SSH TUNNEL TO PROVIDE ADDITIONAL SECURITY
DEBUG AND SAMPLER UTILITY SUPPORTS PING AND TRACEROUTE FOR IPV4 AND IPV6
NETWORK TIME PROTOCOL (NTP) SYNCHRONIZES TIMEKEEPING AMONG DISTRIBUTED TIME SERVERS AND CLIENTS; KEEPS TIMEKEEPING CONSISTENT AMONG ALL CLOCK-DEPENDENT DEVICES WITHIN THE NETWORK
IEEE 802.1AB LINK LAYER DISCOVERY PROTOCOL (LLDP) ADVERTISES AND RECEIVES MANAGEMENT INFORMATION FROM ADJACENT DEVICES ON A NETWORK, FACILITATING EASY MAPPING BY NETWORK MANAGEMENT APPLICATIONS
DUAL FLASH IMAGES PROVIDES INDEPENDENT PRIMARY AND SECONDARY OPERATING SYSTEM FILES FOR BACKUP WHILE UPGRADING
MULTIPLE CONFIGURATION FILES CAN BE STORED TO A FLASH IMAGE
INGRESS AND EGRESS PORT MONITORING ENABLE MORE EFFICIENT NETWORK PROBLEM SOLVING
UNIDIRECTIONAL LINK DETECTION (UDLD) MONITORS THE LINK BETWEEN TWO SWITCHES AND BLOCKS THE PORTS ON BOTH ENDS OF THE LINK IF THE LINK GOES DOWN AT ANY POINT BETWEEN THE TWO DEVICES
IP SLA FOR VOICE MONITORS QUALITY OF VOICE TRAFFIC USING THE UDP JITTER FOR VOIP TESTS
LAYER 3 ROUTING
THE FOLLOWING LAYER 3 ROUTING SERVICES ARE SUPPORTED:
ROUTING INFORMATION PROTOCOL VERSION 2 (RIPV2) PROVIDES AN EASY TO CONFIGURE ROUTING PROTOCOL FOR SMALL NETWORKS AS WHILE RIPNG PROVIDES SUPPORT FOR SMALL IPV6 NETWORKS
SINGLE-AREA OPEN SHORTEST PATH FIRST (OSPF) DELIVERS FASTER CONVERGENCE; USES LINK-STATE ROUTING INTERIOR GATEWAY PROTOCOL (IGP), WHICH SUPPORTS NSSA, AND MD5 AUTHENTICATION FOR INCREASED SECURITY AND GRACEFUL RESTART FOR FASTER FAILURE RECOVERY
OSPF PROVIDES OSPFV2 FOR IPV4 ROUTING AND OSPFV3 FOR IPV6 ROUTING
STATIC IP ROUTING PROVIDES MANUALLY CONFIGURED ROUTING
STATIC IPV4 ROUTING PROVIDES SIMPLE MANUALLY CONFIGURED IPV4 ROUTING
IP PERFORMANCE OPTIMIZATION PROVIDES A SET OF TOOLS TO IMPROVE THE PERFORMANCE OF IPV4 NETWORKS; INCLUDES DIRECTED BROADCASTS, CUSTOMIZATION OF TCP PARAMETERS, SUPPORT OF ICMP ERROR PACKETS, AND EXTENSIVE DISPLAY CAPABILITIES
STATIC IPV6 ROUTING PROVIDES SIMPLE MANUALLY CONFIGURED IPV6 ROUTING
DUAL IP STACK MAINTAINS SEPARATE STACKS FOR IPV4 AND IPV6 TO EASE THE TRANSITION FROM AN IPV4-ONLY NETWORK TO AN IPV6-ONLY NETWORK DESIGN.
MDNS (MULTICAST DOMAIN NAME SYSTEM) GATEWAY ENABLES DISCOVERY OF MDNS GROUPS ACROSS L3 BOUNDARIES
EQUAL-COST MULTIPATH (ECMP) ENABLES MULTIPLE EQUAL-COST LINKS IN A ROUTING ENVIRONMENT TO INCREASE LINK REDUNDANCY AND SCALE BANDWIDTH
OPEN SHORTEST PATH FIRST (OSPF) DELIVERS FASTER CONVERGENCE; USES LINK-STATE ROUTING INTERIOR GATEWAY PROTOCOL (IGP), WHICH SUPPORTS ECMP, NSSA, AND MD5 AUTHENTICATION FOR INCREASED SECURITY AND GRACEFUL RESTART FOR FASTER FAILURE RECOVERY
STATIC IP ROUTING PROVIDES MANUALLY CONFIGURED ROUTING; INCLUDES ECMP CAPABILITY
SECURITY
EACH HPE ARUBA NETWORKING CX 6200 SWITCH SERIES COMES WITH AN INTEGRATED TRUSTED PLATFORM MODULE (TPM) FOR PLATFORM INTEGRITY. THIS ENSURES THE BOOT PROCESS STARTED FROM A TRUSTED COMBINATION OF AOS-CX SWITCHES. OTHER SECURITY FEATURES INCLUDE::
AOS-CX USES FIPS 140-2 VALIDATED CRYPTOGRAPHY FOR PROTECTION OF SENSITIVE INFORMATION.
ACCESS CONTROL LIST (ACL) SUPPORT FOR BOTH IPV4 AND IPV6; ALLOWS FOR FILTERING TRAFFIC TO PREVENT UNAUTHORIZED USERS FROM ACCESSING THE NETWORK, OR FOR CONTROLLING NETWORK TRAFFIC TO SAVE RESOURCES; RULES CAN EITHER DENY OR PERMIT TRAFFIC TO BE FORWARDED; RULES CAN BE BASED ON A LAYER 2 HEADER OR A LAYER 3 PROTOCOL HEADER
ACLS ALSO PROVIDE FILTERING BASED ON THE IP FIELD, SOURCE/ DESTINATION IP ADDRESS/SUBNET, AND SOURCE/ DESTINATION TCP/UDP PORT NUMBER ON A PER-VLAN OR PER-PORT BASIS
REMOTE AUTHENTICATION DIAL-IN USER SERVICE (RADIUS)
TERMINAL ACCESS CONTROLLER ACCESS-CONTROL SYSTEM (TACACS+) DELIVERS AN AUTHENTICATION TOOL USING TCP WITH ENCRYPTION OF THE FULL AUTHENTICATION REQUEST, PROVIDING ADDITIONAL SECURITY
MANAGEMENT ACCESS SECURITY FOR BOTH ON- AND OFF-BOX AUTHENTICATION FOR ADMINISTRATIVE ACCESS. RADIUS OR TACACS+ CAN BE USED TO PROVIDE ENCRYPTED USER AUTHENTICATION. ADDITIONALLY, TACACS+ CAN ALSO PROVIDE ADMIN AUTHORIZATION SERVICES
CONTROL PLANE POLICING SETS RATE LIMIT ON CONTROL PROTOCOLS TO PROTECT CPU OVERLOAD FROM DOS ATTACKS
SUPPORTS MULTIPLE USER AUTHENTICATION METHODS. USES AN IEEE 802.1X SUPPLICANT ON THE CLIENT IN CONJUNCTION WITH A RADIUS SERVER TO AUTHENTICATE IN ACCORDANCE WITH INDUSTRY STANDARDS
WEB BASED AUTHENTICATION USING CAPTIVE PORTAL ON CLEARPASS IS SUPPORTED FOR USE CASES SUCH AS GUEST ACCESS AND FOR DEVICES THAT DONT SUPPORT 802.1X OR MAC AUTH.
SUPPORTS MAC-BASED CLIENT AUTHENTICATION
CONCURRENT IEEE 802.1X, WEB, AND MAC AUTHENTICATION SCHEMES PER SWITCH PORT ACCEPTS UP TO 32 SESSIONS OF IEEE 802.1X, WEB, AND MAC AUTHENTICATIONS
SECURE MANAGEMENT ACCESS DELIVERS SECURE ENCRYPTION OF ALL ACCESS METHODS (CLI, GUI, OR MIB) THROUGH SSHV2, SSL, AND/OR SNMPV3
SWITCH CPU PROTECTION PROVIDES AUTOMATIC PROTECTION AGAINST MALICIOUS NETWORK TRAFFIC TRYING TO SHUT DOWN THE SWITCH
ICMP THROTTLING DEFEATS ICMP DENIAL-OF-SERVICE ATTACKS BY ENABLING ANY SWITCH PORT TO AUTOMATICALLY THROTTLE ICMP TRAFFIC
IDENTITY-DRIVEN ACL ENABLES IMPLEMENTATION OF A HIGHLY GRANULAR AND FLEXIBLE ACCESS SECURITY POLICY AND VLAN ASSIGNMENT SPECIFIC TO EACH AUTHENTICATED NETWORK USER
STP BPDU PORT PROTECTION BLOCKS BRIDGE PROTOCOL DATA UNITS (BPDUS) ON PORTS THAT DO NOT REQUIRE BPDUS, PREVENTING FORGED BPDU ATTACKS
DYNAMIC IP LOCKDOWN WORKS TO BLOCK TRAFFIC FROM UNAUTHORIZED HOSTS, PREVENTING IP SOURCE ADDRESS SPOOFING
DYNAMIC ARP PROTECTION BLOCKS ARP BROADCASTS FROM UNAUTHORIZED HOSTS, PREVENTING EAVESDROPPING OR THEFT OF NETWORK DATA
STP ROOT GUARD PROTECTS THE ROOT BRIDGE FROM MALICIOUS ATTACKS OR CONFIGURATION MISTAKES
PORT SECURITY ALLOWS ACCESS ONLY TO SPECIFIED MAC ADDRESSES, WHICH CAN BE LEARNED OR SPECIFIED BY THE ADMINISTRATOR
MAC ADDRESS LOCKOUT PREVENTS PARTICULAR CONFIGURED MAC ADDRESSES FROM CONNECTING TO THE NETWORK
SOURCE-PORT FILTERING ALLOWS ONLY SPECIFIED PORTS TO COMMUNICATE WITH EACH OTHER
SECURE SHELL ENCRYPTS ALL TRANSMITTED DATA FOR SECURE REMOTE CLI ACCESS OVER IP NETWORKS
SECURE SOCKETS LAYER (SSL) ENCRYPTS ALL HTTP TRAFFIC, ALLOWING SECURE ACCESS TO THE BROWSER-BASED MANAGEMENT GUI IN THE SWITCH
SECURE FTP ALLOWS SECURE FILE TRANSFER TO AND FROM THE SWITCH; PROTECTS AGAINST UNWANTED FILE DOWNLOADS OR UNAUTHORIZED COPYING OF A SWITCH CONFIGURATION FILE
CRITICAL AUTHENTICATION ROLE ENSURES THAT IMPORTANT INFRASTRUCTURE DEVICES SUCH AS IP PHONES ARE ALLOWED NETWORK ACCESS EVEN IN THE ABSENCE OF A RADIUS SERVER
MAC PINNING ALLOWS NON-CHATTY LEGACY DEVICES TO STAY AUTHENTICATED BY PINNING CLIENT MAC ADDRESSES TO THE PORT UNTIL THE CLIENTS LOGOFF OR GET DISCONNECTED
SECURITY BANNER DISPLAYS A CUSTOMIZED SECURITY POLICY WHEN USERS LOG IN TO THE SWITCH
RADSEC ENABLES RADIUS AUTHENTICATION AND ACCOUNTING DATA TO BE PASSED SAFELY AND RELIABLY ACROSS INSECURE NETWORKS
PRIVATE VLAN (PVLAN) PROVIDES TRAFFIC ISOLATION BETWEEN USERS ON THE SAME VLAN; TYPICALLY A SWITCH PORT CAN ONLY COMMUNICATE WITH OTHER PORTS IN THE SAME COMMUNITY AND/OR AN UPLINK PORT, REGARDLESS OF VLAN ID OR DESTINATION MAC ADDRESS. THIS EXTENDS NETWORK SECURITY BY RESTRICTING PEER-PEER COMMUNICATION TO PREVENT VARIETY OF MALICIOUS ATTACKS.
AUTO VLAN CREATION AUTOMATES VLAN CREATION ON ACCESS SWITCHES FOR AUTHENTICATED CLIENTS.
DHCP SMART RELAY ALLOWS THE DHCP RELAY AGENT TO USE SECONDARY IP ADDRESSES WHEN THE DHCP SERVER DOES NOT REPLY THE DHCP-OFFER MESSAGE
IEEE 802.1AE MACSEC PROVIDES SECURITY ON A LINK BETWEEN TWO SWITCH PORTS USING STANDARD ENCRYPTION AND AUTHENTICATION. AVAILABLE ON CX 6200M ACROSS ALL DOWNLINK AND 2X UPLINK PORTS.
MULTICAST
IGMP SNOOPING ALLOWS MULTIPLE VLANS TO RECEIVE THE SAME IPV4 MULTICAST TRAFFIC, LESSENING NETWORK BANDWIDTH DEMAND BY REDUCING MULTIPLE STREAMS TO EACH VLAN
MULTICAST LISTENER DISCOVERY (MLD) ENABLES DISCOVERY OF IPV6 MULTICAST LISTENERS; SUPPORT MLD V1 AND V2
PROTOCOL INDEPENDENT MULTICAST (PIM) DEFINES MODES OF IPV4 AND IPV6 MULTICASTING TO ALLOW ONE-TO-MANY AND MANY-TO-MANY TRANSMISSION OF INFORMATION; SUPPORTS PIM SPARSE MODE AND DENSE MODE (DM) FOR BOTH IPV4 AND IPV6
INTERNET GROUP MANAGEMENT PROTOCOL (IGMP) UTILIZES ANY-SOURCE MULTICAST (ASM) TO MANAGE IPV4 MULTICAST NETWORKS; SUPPORTS IGMPV1, V2, AND V3
QINQ SUPPORT TO IMPROVE THE VLAN UTILIZATION BY ADDING ANOTHER 802.1Q TAG TO TAGGED PACKETS
CONVERGENCE
IP MULTICAST SNOOPING (DATA-DRIVEN IGMP) PREVENTS FLOODING OF IP MULTICAST TRAFFIC
IP MULTICAST ROUTING INCLUDES PIM SPARSE, SOURCE-SPECIFIC MULTICAST, AND DENSE MODES TO ROUTE IP MULTICAST TRAFFIC
LLDP-MED (MEDIA ENDPOINT DISCOVERY) DEFINES A STANDARD EXTENSION OF LLDP THAT STORES VALUES FOR PARAMETERS SUCH AS QOS AND VLAN TO AUTOMATICALLY CONFIGURE NETWORK DEVICES SUCH AS IP PHONES
POE ALLOCATIONS SUPPORTS MULTIPLE METHODS (ALLOCATION BY USAGE OR CLASS, WITH LLDP AND LLDP-MED) TO ALLOCATE POE POWER FOR MORE EFFICIENT POWER MANAGEMENT AND ENERGY SAVINGS.
AUTO VLAN CONFIGURATION FOR VOICE RADIUS VLAN USES A STANDARD RADIUS ATTRIBUTE AND LLDP-MED TO AUTOMATICALLY CONFIGURE A VLAN FOR IP PHONES
CDPV2 USES CDPV2 TO CONFIGURE LEGACY IP PHONES
Administracion Basada En Web
SI
Administracion En La Nube
SI
Alimentacion
N/A
Alimentacion Poe
POE PLUS 30 WTS
Calidad En El Servicio
SI
Cantidad De Puertos Poe
24
Cantidad De Puertos Rj45
24 PUERTOS
Cantidad De Ranuras Sfp
4
Estandares De Red
IEEE 802.3
Estandares De Red
IEEE 802.3AZ
Estandares De Red
IEEE 802.3AD
Estandares De Red
IEEE 802.3AT
Estandares De Red
IEEE 802.1S
Estandares De Red
IEEE 802.1W
Estandares De Red
IEEE 802.1D
Estandares De Red
IEEE 802.3AF
Funcionalidades Principales
ADMINISTRABLE CAPA 2
Medida En Rack
1U
Numero De Fuentes De Alimentacion
2
Tipo De Puertos
SFP
Tipo De Puertos
PUERTO 10G BASE T
V Lan
SI
Voltaje
100 A 240VAC