Cisco Catalyst 2960-24-S WS-C2960-24-S データシート
製品コード
WS-C2960-24-S
Data Sheet
All contents are Copyright © 1992–2006 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information.
Page 2 of 12
Configurations
The Cisco Catalyst 2960 LAN Lite Switches comprise the following switches (Figure 1):
●
Cisco Catalyst 2960-24-S: 24 Ethernet 10/100 ports
●
Cisco Catalyst 2960-24TC-S: 24 Ethernet 10/100 ports and 2 dual-purpose uplink ports
(10/100/1000BASE-T or SFP)
●
Cisco Catalyst 2960-48TC-S: 48 Ethernet 10/100 ports and 2 dual-purpose uplink
ports;
The SFP-based Gigabit Ethernet ports accommodate Cisco 1000BASE-SX, 1000BASE-LX, and
100BASE-FX SFP transceivers.
Security
The Cisco Catalyst 2960 LAN Lite Switches support security features that help businesses protect
important information, keep unauthorized people off the network, guard privacy, and maintain
uninterrupted operation.
The Cisco Identity-Based Networking Services (IBNS) solution provides authentication, access
control, and security policy administration to secure network connectivity and resources. Cisco
IBNS in the Cisco Catalyst 2960 LAN Lite Series prevents unauthorized access and helps ensure
that users get only their designated privileges. It provides the ability to dynamically administer
granular levels of network access. Using the 802.1x standard and the Cisco Secure Access
Control Server (ACS), users can be assigned a VLAN upon authentication, regardless of where
they connect to the network. This setup allows IT departments to enable strong security policies
without compromising user mobility, and with minimal administrative overhead.
Port security can be used to limit access on an Ethernet port based on the MAC address of the
device to which it is connected. It also can be used to limit the total number of devices plugged into
a switch port, thereby protecting the switch from a MAC flooding attack as well as reducing the
risks of rogue wireless access points or hubs.
The MAC Address Notification feature can be used to monitor the network and track users by
sending an alert to a management station so that network administrators know when and where
users entered the network. Secure Shell Protocol Version 2 (SSHv2) and Simple Network
Management Protocol Version 3 (SNMPv3) encrypt administrative and network-management
information, protecting the network from tampering or eavesdropping. TACACS+ or RADIUS
authentication enables centralized access control of switches and restricts unauthorized users
from altering the configurations. Alternatively, a local username and password database can be
configured on the switch itself. Fifteen levels of authorization on the switch console and two levels
on the Web-based management interface provide the ability to give different levels of configuration
capabilities to different administrators.
Availability and Scalability
The Cisco Catalyst 2960 LAN Lite Switches are equipped with features that allow for network
scalability and higher availability through multicast filtering as well as a complete suite of Spanning
Tree Protocol enhancements aimed to maximize availability in a Layer 2 network.