SGS-5240-24P4X - PLANET Layer 2+ 24-Port 10/100/1000T 802.3at PoE + 4-Port 10G SFP+ Stackable Managed Switch

The administrator can flexibly choose the suitable SFP/SFP+ transceiver according to the transmission distance or the transmission speed required to extend the 10G network efficiently. Besides, with 128Gbps switching fabric, the SGS-5240 series can handle extremely large amounts of data in a secure topology linking to backbone or high capacity servers for ISP and enterprise VoIP, video streaming, and multicast applications.
IEEE 802.3at PoE+ Compliant Power Source Switch
The PoE in-line power following the IEEE 802.3at Power over Ethernet Plus standard makes the SGS-5240-24P4X able to deliver Gigabit speed data and up to 30 watts of power per port to 24 PoE compliant powered devices (PDs) with a combined power output budget of up to 370 watts. The SGS-5240-24P4X provides more flexibility in power requirement for all kinds of PDs with affordable installation costs.
The SGS-5240-24P4X’s PoE capabilities also help to reduce deployment costs for network devices as a result of freeing from the restrictions of power outlet locations. Power and data switching are integrated into one unit, delivered over a single cable and managed centrally. It thus eliminates the cost for additional AC wiring and reduces installation time.
PoE Schedule for Energy Saving
Besides being used for IP surveillance, the SGS-5240-24P4X is certainly applicable to build any PoE network including VoIP and wireless LAN. Under the trend of energy saving worldwide and contributing to the environmental protection on the Earth, the SGS-5240-24P4X can effectively control the power supply besides its capability of giving high watts power. The “Time-range PoE” function helps you to enable or disable PoE power feeding for each PoE port during specified time intervals and it is a powerful function to help SMBs or enterprises save energy and budget.
High Reliability Hardware Stacking
Two of the 10G SFP+ ports are used to connect several SGS-5240 series, enabling to build a virtually logical facility. The SGS-5240 series gives the enterprises, service providers and telecoms flexible control over port density, uplinks and switch stack performance. The SGS-5240 series can be connected as a ring for redundancy and ensures that data integrity is retained even if one switch in the stack fails. You can even hot-swap switches without disrupting the network, which greatly simplifies the tasks of upgrading the LAN for catering to increasing bandwidth demands.
Central IP Stacking Management
Positioned as the distribution or aggregation layer switch for large networks, the SGS-5240 series supports IP stacking function that helps network managers to easily configure up to 16 switches in the same series via one single IP address instead of connecting and setting each unit one by one. The IP Stacking technology groups PLANET SGS-5240 switch series together to enable centralized management through a single unit, regardless of physical location or switch type, as long as they are connected to the same local network.

High Performance 10Gbps Ethernet Capacity
The four SFP+ slots built in the SGS-5240 series support dual speed and 10GBASE-SR/LR or 1000BASE-SX/LX. With its 4 ports, 10Gbps and 1Gbps Ethernet link capability, the administrator now can flexibly choose the suitable SFP/SFP+ transceiver according to the transmission distance or the transmission speed required to extend the network efficiently. The SGS-5240 Series provides broad bandwidth and powerful processing capacity.
Redundant Ring, Fast Recovery for Critical Network Applications
The SGS-5240 series supports redundant ring technology and features strong, rapid self-recovery capability to prevent interruptions and external intrusions. It incorporates advanced ITU-T G.8032 ERPS (Ethernet Ring Protection Switching) technology and Spanning Tree Protocol (802.1s MSTP) into customer’s network to enhance system reliability and uptime in harsh environments. In a certain simple Ring network, the recovery time could be less than 50ms to quickly bring the network back to normal operation.

Layer 3 IPv4 and IPv6 VLAN Routing for Secure and Flexible Management
The SGS-5240 series supports IPv4/IPv6 VLAN routing feature which allows to cross over different VLANs and different IP addresses for the purpose of having a highly-secure, flexible management and simpler networking application.
Strong Multicast
The SGS-5240 series supports abundant multicast features. In Layer 2, it features IPv4 IGMPv1/v2/v3 snooping and IPv6 MLD v1/v2 snooping. With Multicast VLAN Register (MVR), multicast receiver/sender control and illegal multicast source detection functions, the SGS-5240 series provides great application experience for customers.
Robust Layer 2 Features
The SGS-5240 series can be programmed for basic switch management functions such as port speed configuration, port aggregation, VLAN, Multiple Spanning Tree Protocol and bandwidth control. This switch provides 802.1Q tagged VLAN, Q-in-Q, voice VLAN and GVRP Protocol functions. By supporting port aggregation, the SGS-5240 series allows the operation of a high-speed trunk combined with multiple ports.

Powerful Network Security
The SGS-5240 series offers comprehensive Layer 2 to Layer 4 Access Control List (ACL) for enforcing security to the edge. It can be used to restrict network access by denying packets based on source and destination IP address, TCP/UDP ports or defined typical network applications. Its protection mechanism also comprises 802.1x Port-based, MAC-based and web-based user and device authentications.
Advanced IP Network Protection
The SGS-5240 series also provides DHCP Snooping, IP Source Guard and Dynamic ARP Inspection functions to prevent IP snooping from attack and discard ARP packets with invalid MAC address. The network administrators can now construct highly-secure corporate networks with considerably less time and effort than before.
Efficient and Secure Management
For efficient management, the SGS-5240 series is equipped with console, Web and SNMP management interfaces.

- With the built-in Web-based management interface, the SGS-5240 series offers an easy-to-use, platform-independent management and configuration facility.
- For text-based management, it can be accessed via Telnet and the console port.
- For standard-based monitor and management software, it offers SNMPv3 connection which encrypts the packet content at each session for secure remote management.
Moreover, the SGS-5240 series offers secure remote management by supporting SSHv2 and SSLv3 connection which encrypts the packet content at each session.

Intelligent SFP Diagnosis Mechanism
The SGS-5240 series supports SFP-DDM (Digital Diagnostic Monitor) function that greatly helps network administrator to easily monitor real-time parameters of the SFP and SFP+ transceivers, such as optical output power, optical input power, temperature, laser bias current, and transceiver supply voltage.

Department/Workgroup PoE Network
Providing 24 PoE in-line power interfaces, the SGS-5240-24P4X can easily build a power that can centrally control IP phone system, IP camera system and wireless AP group for enterprises. The SGS-5240-24P4X delivers full ports of 802.3at/af compliant Gigabit Ethernet network connectivity with high-performance and cost-effective advantages for the increasing number of PoE IP telephones, PoE IP cameras, PoE wireless access points and other devices applied at the edge of the small or medium enterprise network.
Layer 3 VLAN Routing
With the built-in robust Layer 3 traffic routing protocols, the SGS-5240 series ensures reliable routing between VLANs and network segments. The routing protocols can be applied via VLAN interface. The SGS-5240 series is certainly a cost-effective and ideal solution for enterprises.

Key Features
Physical Ports
- 24 10/100/1000BASE-T RJ45 copper ports
- 4 10GBASE-SR/LR SFP+ slots, compatible with 1000BASE-SX/LX/BX SFP
- RJ45 to DB9 console interface for switch basic management and setup
- One 10/100BASE-TX Management port
Stacking Features
- IP Stacking
- Connects with stack member via Gigabit TP, SFP and 10G SFP+ interfaces
- Single IP address management, supporting up to 16 IP units stacked together
- Hardware Stacking
- Virtualized multiple SGS-5240 switch series stacked into one logical device
- Connects with stack member via assigned 10G SFP+ interfaces
- Single IP address stack management, supporting up to 6 hardware units stacked together
- Stacking architecture supports redundant ring mode
IP Routing Features
- IPv4/IPv6 hardware static routing
- Routing interface provides per VLAN routing mode
Layer 2 Features
- Supports VLAN
- IEEE 802.1Q tag-based VLAN
- Provider Bridging (VLAN Q-in-Q, IEEE 802.1ad) supported
- GVRP for dynamic VLAN management
- Protocol-based VLAN
- MAC-based VLAN
- IP subnet-based VLAN
- Voice VLAN
- Supports Link Aggregation
- 802.3ad Link Aggregation Control Protocol (LACP)
- Cisco ether-channel (static trunk)
- Supports Spanning Tree Protocol
- STP, IEEE 802.1D (Classic Spanning Tree Protocol)
- RSTP, IEEE 802.1w (Rapid Spanning Tree Protocol)
- MSTP, IEEE 802.1s (Multiple Spanning Tree Protocol, spanning tree by VLAN)
- Supports BPDU & root guard
- Port mirroring to monitor the incoming or outgoing traffic on a particular port (many to one)
- Supports G.8032 ERPS (Ethernet Ring Protection Switching)
- Loop protection to avoid broadcast loops
- Link Layer Discovery Protocol (LLDP)
- Compatible with Cisco uni-directional link detection (UDLD) that monitors a link between two switches and blocks the ports on both ends of the link if the link fails at any point between the two devices
Quality of Service
- Input and output rate limit per port bandwidth control
- 8 priority queues on all switch ports
- IEEE 802.1p CoS/DSCP/IP Precedence
- VLAN ID
- ACL
- Policy-based ingress and egress QoS
Multicast
- Supports IPv4 IGMP snooping v1, v2 and v3
- Supports IPv6 MLD snooping v1 and v2
- Querier mode support
- IPv4 IGMP snooping port filtering
- IPv6 MLD snooping port filtering
- MVR (Multicast VLAN Registration)
Security
- Authentication
- IEEE 802.1x port-based/MAC-based network access authentication
- IEEE 802.1x authentication with guest VLAN
- Built-in RADIUS client to cooperate with the RADIUS servers
- RADIUS/TACACS+ users access authentication
- Guest VLAN assigns clients to a restricted VLAN with limited services
- Access Control List
- IP-based Access Control List (ACL)
- MAC-based Access Control List (ACL)
- Time-based ACL
- DHCP snooping to filter distrusted DHCP messages
- Dynamic ARP Inspection discards ARP packets with invalid MAC address to IP address binding
- IP Source Guard prevents IP spoofing attacks
- IP address access management to prevent unauthorized intruder
Management
- IPv4 and IPv6 dual stack management
- Switch Management Interfaces
- Console and Telnet Command Line Interface
- HTTP web switch management
- SNMP v1 and v2c switch management
- SSHv2, SSLv3 and SNMP v3 secure access
- SNMP Management
- Four RMON groups (history, statistics, alarms, and events)
- SNMP trap for interface Link Up and Link Down notification
- Built-in Trivial File Transfer Protocol (TFTP) client
- BOOTP and DHCP for IP address assignment
- System Maintenance
- Firmware upload/download via HTTP
- Reset button for system reboot or reset to factory default
- Dual images
- DHCP Functions:
- DHCP Relay
- DHCP Option 82
- User Privilege levels control
- Network Time Protocol (NTP) and SNTP
- Network Diagnostic
- SFP-DDM (Digital Diagnostic Monitor)
- Cable diagnostic technology provides the mechanism to detect and report potential cabling issues
- ICMPv6/ICMPv4 remote ping
- Syslog remote alarm
- System Log
Power over Ethernet
- Complies with IEEE 802.3at Power over Ethernet Plus
- Up to 24 ports of IEEE 802.3at PoE devices powered
- Auto detects powered device (PD)
- Circuit protection prevents power interference between ports
- Remote power feeding up to 100 meters
- PoE management
- Total PoE power budget control
- Per port PoE function enable/disable
- PoE port power feeding priority
- PD classification detection