Software Specifications | RG-N18010-XH |
Traffic Analysis | sFlow IPFIX |
Layer 2 Features | Jumbo frame IEEE 802.3ad (static link aggregation, LACP, cross-card link aggregation, cross-device link aggregation) IEEE 802.1Q STP, RSTP, MSTP GVRP QinQ LLDP Static MAC addresses, address filtering, and limit on the number of MAC addresses |
IPv4 Features | Static routing, RIP, OSPF, IS-IS, and BGP4 VRRP ECMP Policy-based routing Manual tunnel and GRE tunnel |
IPv6 Features | Static routing, OSPFv3, BGP4+, IS-ISv6, and MLDv1/v2 VRRPv3 ECMP Policy-based routing Path MTU Discovery Manual tunnel and GRE tunnel Pingv6, telnetv6, FTPv6, TFTPv6, DNSv6, ICMPv6 |
Multicast | IGMP v1/v2/v3 IGMP snooping IGMP proxy PIM-DM, PIM-SM, PIM-SSM, and other multicast routing protocols MLDv1, MLDv2 Multicast static routing Fast leave |
MPLS | MPLS L3VPN MPLS LDP #SR MPLS (Segment Routing) #SR-TE |
ACL | Standard, extended, and expert-level ACLs Global ACLs Ingress and egress ACLs IPv6 ACLs |
QoS | Mapping of IEEE 802.1p, DSCP, and ToS priorities Priority marking/remarking Multiple queue scheduling mechanisms, including SP(PQ), DRR, SP(PQ) + DRR, WFQ, SP(PQ) + WFR, Congestion avoidance mechanisms such as RED and WRED ACL Ingress and egress rate limiting, CAR #MPLS QoS |
Data center features | #SRv6 VXLAN bridge VXLAN gateway BGP-EVPN VXLAN VXLAN mapping IPv6 VXLAN over IPv4 MLAG |
SDN | OpenFlow 1.3. |
Reliability | Independent switch fabric modules and independent supervisor modules to implement thorough separation of the forwarding plane from the control plane 1+1 redundancy for supervisor modules N+1 redundancy for switch fabric modules N+M redundancy for power modules and fans Backplane-free design to avoid single point of failures Hot swapping of components Hot patch function and online installation of patches BPDU Guard/Loop Guard/Root Guard NSR DLDP FRR GR for OSPF/IS-IS/BGP BFD for VRRP/OSPF/BGP4/ISIS/ISISv6/static routing |
Device virtualization | Virtual Switching Unit 3.0 |
Security | MACSec Network Foundation Protection Policy (NFPP) and CPU protection policy (CPP) to prevent protocol packet attacks Prevention against DDoS, ARP, and ICMP attacks DAI, port security, IP source guard, and port protection uRPF RADIUS and TACACS user login authentication, password security, hierarchical user management, and password protection Source IP address restriction Function of not sending unknown multicast packets to the CPU Suppression of unknown multicast, unknown broadcast, and unknown multicast packets SSHv2, providing encrypted security channels for user login Prevention against MAC address flapping Plaintext and MD5 ciphertext authentication for OSPF, RIPv2, and BGP4 packets |
Management | Console/AUX Modem/Telnet/SSH2.0 CLI configuration FTP, TFTP, Xmodem, and SFTP SNMP V1/V2c/V3 NETCONF RMON NTP clock Fault alarm and auto-recovery System operation logging Traffic analysis Zero-touch provisioning (ZTP) Reliable network service (RNS), which probes specific services provided by the peer device to monitor the service availability Telemetry Buffer status monitoring and traffic microburst identification Port mirroring, traffic mirroring, and ERSPAN Physical ports on all line cards support the routing mode and IP addresses can be configured independently. Monitoring of fan modules and power modules |