24/48-port GbE L3 Access Switch with 6 10G Uplink
XGS2220 Series
- IEEE 802.3z 1000BASE-X*
- IEEE 802.3ab 1000BASE-T Ethernet*
- IEEE 802.3an 10G BASE-T Ethernet*
- IEEE 802.3ae 10 Gbit/s Ethernet over fiber*
- IEEE 802.3af PoE*
- IEEE 802.3at PoE plus*
- IEEE 802.3bt (60 W) PoE over 4 pair*
- IEEE 802.3az EEE*
- IEEE 802.3x flow control* (support on Nebula Cloud mode from ZyNOS 5.00)
- IEEE 802.1AB LLDP/LLDP-MED*
- IEEE 802.1Q VLAN tagging*
- IEEE 802.1p Class of Service (CoS) prioritization*
- IEEE 802.1X port authentication*
- IEEE 802.1D Spanning Tree Protocol (STP)*
- IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)*
- IEEE 802.1s Multiple Spanning Tree Protocol (MSTP)
- Static port trunking*
- IEEE 802.3ad LACP*
- Loop guard* (with broadcast packet detection mechanism)
- Root guard*
- BPDU guard*
- ErrDisable recovery
- MRSTP (Zyxel Proprietary)
- Dual configuration files
- Dual images*
- ZULD
- Physical stacking up to 4 units*
- Flexible stacking via 2 or 4 ports*
- 802.1Q static VLANs*/dynamic VLANs: 4 K/4 K
- Port-based VLAN
- VLAN isolation (non-stacking mode only)
- Vendor ID based VLAN*
- Protocol-based VLAN
- IP subnet-based VLAN
- MAC-based VLAN
- Private VLAN
- Voice VLAN*
- Independent VLAN Learning (IVL)
- VLAN Translation
- VLAN trunking
- VLAN mapping
- IEEE 802.1AD VLAN stacking (QinQ)
- VLAN ingress filtering*
- LACP algorithm of source/ destination IP or MAC*
- GVRP
- L2PT
- Port security*
- Layer 2 MAC filtering*
- Layer 3 IP filtering
- Layer 4 TCP/UDP socket filtering
- Static MAC forwarding
- Multiple RADIUS servers*
- Multiple TACACS+ servers
- 802.1x VLAN* and 802.1p assignment by RADIUS
- Login authentication by RADIUS
- Login authentication by TACACS+
- TACACS+ accounting
- RADIUS accounting
- Authorization on RADIUS
- Compound authentication
- Authorization on TACACS+
- SSH v2*
- SSL
- MAC freeze
- IP source guard (IPv4*/IPv6)
- DHCP snooping
- DHCP Server Guard
- ARP inspection
- ARP freeze
- Anti-ARP scan
- Static IP-MAC-Port binding
- Policy-based security filtering
- Port isolation*
- MAC search*
- Guest VLAN*
- ACL packet filtering* (IPv4/IPv6)
- CPU protection
- Interface related trap enable/disable (by port)
- MAC-based authentication per VLAN
- BPDU transparency
- PPPoE relay agent/option82
- WoL/WoL Relay
- New for ZyNOS 5.00 Password encryption
- New for ZyNOS 5.00 Password complexity
- New for ZyNOS 5.00 Brute-force attack protection
- New for ZyNOS 5.00 SSH public key authentication
- No. of hardware queues per port (Standalone/stacking): 8*/6
- Storm control and event log: Broadcast, multicast, unknown unicast (DLF)*
- Port-based rate limiting* (ingress/ egress)
- Rate limiting per IP/TCP/UDP per port
- Policy-based rate limiting
- 802.1p Class of Service (SPQ, WFQ, WRR, hybrid-SPQ combination capable)
- DiffServ (DSCP)
- Storm Control: Broadcast/Unknown Multicast/Unknown Unicast (DLF)
- L2 multicast*
- IGMP snooping (v1, v2, v3)*
- IGMP snooping fast leave*
- IGMP snooping immediate leave*
- Configurable IGMP snooping timer and priority*
- IGMP snooping statistics*
- IGMP throttling*
- IGMP filtering*
- IGMP proxy mode & snooping mode selection*
- Multicast load balance over trunking port
- Static mulitcast
- MVR support
- MLD snooping (MLD v1/v2)
- Static route
- IP port moving
- New for ZyNOS 5.00 Policy-based route
- SNMP* v1, v2c, v3
- SNMP trap group
- RMON (1, 2, 3, 9)
- ICMP echo/echo reply
- Syslog*
- IEEE 802.1AB LLDP*/LLDP-MED*
- Custom default
- Syslog (IPv4/IPv6)
- Display port utilization*
- Support NebulaFlex Pro for Cloud Management
- New for ZyNOS 5.00 DHCP relay option 82*
- DHCP relay per VLAN
- DHCP smart relay
- New for ZyNOS 5.00 SSH Remote Command Execution
- IPv6 over Ethernet (RFC 2464)
- IPv6 addressing architecture(RFC 4291)
- Dual stack (RFC 4213)
- ICMPv6 (RFC 4443)
- Path MTU (RFC 1981)
- Minimum path MTU size of 1280(RFC 5095)
- Encapsulation for maximum PMTU of 1500
- Neighbor discovery (RFC 4861)
- DHCPv6 snooping
- IPv6 binding- static/dynamic
- Extend Radius server
- DHCPv6 relay
- Standalone management by Web interface
- Cloud management by Nebula Control Center*
- Networked AV mode by Web Interface
- New for ZyNOS 5.00 Optimized Dante and AES67 in Networked AV mode
- Intuitive Cloud connection status
- Zyxel iStacking TM
- Management through Console, Telnet, SNMP
- Remote firmware upgrade by FTP/ Web/TFTP
- Configuration saving and retrieving*
- Multiple logins supported
- Configure clone*
- Custom default Configuration
- Multilevel CLI*
- CLI (Cisco-like)
- DHCP server
- DHCP client IPv4*/IPv6
- Daylight saving*
- NTP supports IPv4/IPv6
- Port mirroring*
- Policy-based mirroring
- Mirror CPU
- VLAN-based mirroring
- USB-C out-of-band console port
- Scheduled PoE*
- PoE default consumption mode*
- Auto PD Recovery*
- Continuous PoE
- LLDP power via MDI
- sFlow
- Fiber Module Rescue
- New for ZyNOS 5.00 SSH Remote Command Execution
- Zyxel Private MIB
- Zyxel Common MIB
- Zyxel ES-Common MIB
- RFC 1066 TCP/IP-based MIB
- RFC 1213, 1157 SNMPv2c/v3 MIB
- RFC 1493, 4188 bridge MIB
- RFC 1643 Ethernet MIB
- RFC 1757 RMON group 1, 2, 3, 9
- RFC 2011, 2012, 2013 SNMPv2 MIB
- RFC 2233 SMIv2 MIB
- RFC 2358 Ethernet-like MIB
- RFC 2674 bridge MIB extension
- RFC 2819, 2925 remote management MIB
- RFC 3621 power Ethernet MIB
- RFC 4022 management information base for transmission control protocol
- RFC 4113 management information base for user datagram protocol
- RFC 4292 IP forwarding table MIB
- RFC 4293 Management Information Base (MIB) for IP
- Cable diagnostic MIB
- Safety
- LVD
- BSMI Safety
- EMC
- FCC Part 15 (Class A)
- CE EMC (Class A)
- BSMI EMC
- RoHS
- Level A
ZON Utility*
- Discovery of Zyxel switches, APs and gateways
- Centralized and batch configurations
- IP configuration
- IP renew
- Device factory reset
- Device reboot
- Device locating
- Web GUI access
- Password configuration
- One-click quick association with Zyxel AP Configurator (ZAC)
- Automatic detection of the latest firmware
- Displays device serial number and hardware version
- Cloud mode on/off option for Hybrid series devices
- Intuitive Cloud connection status
Smart Connect
- Discover neighboring devices
- One-click remote management access to the neighboring Zyxel devices
- Reset neighboring devices remotely to factory defaults
- Power cycle neighboring powered devices (PoE switches only)
- Warranty terms, service availability, and service response times may vary from country or region to country or region
All specifications are subject to change without notice.
*Nebula Cloud and Standalone modes supported features. Some Nebula features may need an extra license to work. For more details on the features and licenses, check Nebula Licensing Table.