Features
Table 1-1
Features (continued)
VLAN Support
•
Depending on the switch model, up to 64 or 250 port-based VLANs are supported for assigning users to VLANs
associated with appropriate network resources, traffic patterns, and bandwidth
For information about the maximum number of VLANs supported on each Catalyst 2900 XL and Catalyst 3500 XL
Note
switch, see the
Table 8-1 on page
•
Inter-Switch Link (ISL) and IEEE 802.1Q trunking encapsulation on all ports for network moves, adds, and changes;
management and control of broadcast and multicast traffic; and network security by establishing VLAN groups for
high-security users and network resources
VLAN Membership Policy Server (VMPS) for dynamic VLAN membership
•
VLAN Trunking Protocol (VTP) pruning for reducing network traffic by restricting flooded traffic to links destined for
•
stations receiving the traffic
Quality of Service and Class of Service
•
IEEE 802.1p class of service (CoS) with two priority queues on the switch 10/100 and LRE ports and eight priority
queues on the Gigabit ports for prioritizing mission-critical and time-sensitive traffic from data, voice, and telephony
applications
•
Voice VLAN (VVID) for creating subnets for voice traffic from Cisco IP Phones
Security
Password-protected access (read-only and read-write access) to management interfaces (CMS and CLI) for protection
•
against unauthorized configuration changes
•
Multilevel security for a choice of security level, notification, and resulting actions
•
Static MAC addressing for ensuring security
MAC-based port security for restricting the use of a switch port to a specific group of source addresses and preventing
•
switch access from unauthorized stations
•
Protected port (private VLAN edge port) option for restricting the forwarding of traffic to designated ports on the same
switch
•
Port security MAC address aging for aging out MAC addresses so that different PCs can connect to the same port
•
Bridge Protocol Data Unit (BPDU) guard for shutting down Port Fast-enabled ports that receive BPDUs
•
Terminal Access Controller Access Control System Plus (TACACS+) and Remote Authentication Dial-In User Service
(RADIUS) for managing network security through a central server
Note
The port security aging, BPDU guard, and RADIUS features are not available on the Catalyst 2900 LRE XL switches.
Monitoring
Switch LEDs that provide visual management of port- and switch-level status
•
MAC address notification for tracking the MAC addresses that the switch has learned or removed
•
Switch Port Analyzer (SPAN) for complete traffic monitoring on any port
•
•
Four groups (history, statistics, alarm, and events) of embedded remote monitoring (RMON) agents for network
monitoring and traffic analysis
•
Syslog facility for logging system messages about authentication or authorization errors, resource issues, and time-out
events
Catalyst 2900 Series XL and Catalyst 3500 Series XL Software Configuration Guide
1-4
8-2.
Chapter 1
Overview
78-6511-08