The S2700 series Ethernet switches (S2700 for short) are next-generation energy-saving 100M Ethernet intelligent switches.
The S2700 utilizes cutting-edge switching technologies and Huawei Versatile Routing Platform (VRP) software to meet the demand for multi-service provisioning and access on Ethernet networks. It is easy to install and maintain and supports flexible VLAN deployment, comprehensive security and QoS policies, and energy-saving technologies. These features help enterprise customers build next-generation IT networks.
The S2700 supports Easy-Operation, which simplifies installation, configuration, monitoring, and troubleshooting. This technology greatly reduces installation, configuration, and engineering costs, and improves the upgrade efficiency. The S2700 provides the command line interface (CLI) and web platform, supports alarm management and visualized configuration, and automatic command synchronization to a replacement switch.
The S2700 uses the ASIC chip and fanless design, which reduces mechanical faults and protects the equipment against damages caused by condensed water and dusts.
The S2700 supports various ACLs. ACL rules can be applied to VLANs to flexibly control traffic on interfaces and schedule resources in VLANs.
The S2700 supports VLAN assignment based on interfaces, MAC addresses, protocols, and IP subnets. The flexibility in VLAN assignment facilitates network deployment and security guarantee, and is especially suitable for networks where users move frequently.
The S2700 supports GVRP, which dynamically distributes, registers, and propagates VLAN attributes to reduce the manual configuration workload of network administrators and ensure correct VLAN configuration. In addition, the S2700 supports SSHv2, HWTACACS, RMON, interface-based traffic statistics collection, and NQA to help in network planning and upgrade.
The S2700 supports DHCP snooping and generates user binding entries based on MAC addresses, IP addresses, IP address leases, VLAN IDs, and interface numbers of users. The DHCP snooping function protects networks against common attacks, such as bogus IP packet attacks, man-in-the-middle attacks, and bogus DHCP server attacks.
The S2700 can limit the number of MAC addresses learned on an interface to prevent packet flooding that occurs when an attacker frequently changes source MAC addresses. The switch supports strict ARP learning that prevents ARP spoofing from exhausting ARP entries to ensure normal Internet access. It also supports IP source check to prevent DoS attacks caused by IP address spoofing.
The S2700 supports centralized MAC address authentication and 802.1X authentication. It authenticates users based on static or dynamic bindings of user information such as the user name, IP address, MAC address, VLAN ID, and interface number. VLANs and ACLs can be applied to users dynamically.
The S2700 supports intelligent stack (iStack), which virtualizes multiple switches into one logical switch. iStack improves the switching capacity and enhances reliability and scalability. The stacked switches are managed using a single IP address, which greatly reduces system operations and maintenance costs.
In addition to STP, RSTP, and MSTP, the S2700 also supports enhanced Ethernet reliability technologies such as Smart Link and RRPP, which implement millisecond-level protection switching to ensure network reliability.
The S2700 supports the Smart Ethernet Protection (SEP) protocol, a ring network protocol applied to the link layer of an Ethernet network. SEP provides fast switching within milliseconds without interrupting services, as well as simplicity, high reliability, convenient maintenance, and flexible topology, enabling users to manage and plan networks conveniently.
The S2700 supports G.8032, also called Ethernet Ring Protection Switch (ERPS). ERPS is based on traditional Ethernet MAC and bridging functions and uses the mature Ethernet OAM and Ring Automatic Protection Switching (Ring APS or R-APS) technologies to implement fast protection switching on Ethernet networks. ERPS supports multiple services and provides flexible networking, reducing the OPEX and CAPEX.
The S2700 supports complex traffic classification based on VLAN IDs, MAC addresses, IP protocols, source addresses, destination addresses, priorities, or TCP/UDP port numbers of packets. By limiting the traffic rate on a per flow basis, the S2700 provides line-rate forwarding on each interface to ensure high quality of the voice, video, and data services. Each interface supports eight queues and multiple queue scheduling algorithms, such as WRR, SP, and WRR+SP.
The S2700 adopts a patented surge protection technology to prevent lightning induced overvoltage. The patented surge protection technology greatly reduces the possibility of lightning damages on the equipment even in atrocious environments or in scenarios where grounding cannot be implemented.
The S2700 uses an energy-saving integrated circuit design to ensure efficient heat dissipation. Idle ports can enter the sleeping mode to reduce power consumption. The S2700 generates no noises because it does not have any fans. Radiation of the S2700 is within the range of radiation standards for electric appliances and has no harm to the human body.