GAM Quick Installation Guide
Positron Access Solutions
18
Document 180-0193-001 R01
Security
Secure Shell (SSH)
Protocol
SSH secures Telnet traffic in and out of the switch, SSH v1, v2 are supported
Secure Sockets Layer
(SSL)
SSL encrypts the HTTP traffic, allowing advanced secure access to the browser-based
management GUI in the switch
IEEE 802.1X
IEEE 802.1X: RADIUS authentication, authorization and accounting, MD5 hash, single /
multiple host mode and single / multiple sessions
Supports IGMP-RADIUS based 802.1X Dynamic VLAN assignment
RADIUS/
Supports RADIUS and authentication
G.hn Aggregation Multiplexer acting as a RADIUS client
Layer 2 Isolation
Private VLAN Edge
(PVE)
PVE (also known as protected ports) provides L2 isolation between clients in the same
VLAN, supports multiple uplinks
Port Security
Locks MAC Addresses to ports and limits the number of learned MAC addresses
IP Source Guard
Prevents datagram with spoofed addresses from being in the network
Storm Control
Prevents traffic on a LAN from being disrupted by a broadcast, multicast, or unicast storm
on a port
ACLs
Supports up to 256 entries
Drop or rate limitation based on source and destination MAC, VLAN ID or IP address,
protocol, port, differentiated services code point (DSCP) / IP precedence, TCP / UDP
source and destination ports, 802.1p priority, Ethernet type, Internet Control Message
Protocol (ICMP) packets, IGMP packets, TCP flag
Quality of Service
Hardware Priority
Queue
Support 8 hardware queues
Scheduling
Strict priority and Weighted Round-Robin (WRR)
Queue assignment based on DSCP and class of service (802.1p/ CoS)
Classification
Port based; 802.1p VLAN priority based; IPv4/IPv6 precedence/ type of service (ToS) /
DSCP based; Differentiated Services (DiffServ); classification and re-marking ACLs,
trusted QoS
Rate Limiting
Ingress policer; egress shaping and rate control; per VLAN, per port and flow based
IPv6 Support
Web/ SSL, Telnet/ SSH, ping, Simple Network Time Protocol (SNTP), Trivial File
Transfer Protocol (TFTP), SNMP, RADIUS, Syslog, DNS Client, protocol based VLANs
Carrier Ethernet Protocol and features
IEEE 802.3ah Ethernet
OAM
Link Fault Management (LFM) for Ethernet links as defined in IEEE 802.3ah
IEEE 802.1ag Ethernet
CFM
IEEE 802.1ag Ethernet CFM function that provides connectivity fault management
ITU-T Y.1731
ITU-T service OAM standard Y.1731 divides a network into maintenance domains in the
form of hierarchy levels
ITU-T G.
8031 AND
G.8032v2
Provides the standards-based method of delivering high-performance Carrier Ethernet
services over a multi-node ring protection switching to serve large MDUs or MTUs