Huawei S3700 Switches:
S3700 Series Enterprise Switches
The S3700 series enterprise switches (S3700 for short) are next-generation energy-saving Layer 3 switches. The S3700 utilizes cutting-edge hardware and Huawei Versatile Routing Platform (VRP) software to provide high-performance access and aggregation to an enterprise campus network. The S3700 is easy to install and maintain. With its flexible VLAN deployment, PoE capabilities, comprehensive routing functions, and capability to migrate to an IPv6 network, the S3700 helps enterprise customers build next-generation IT networks. In addition, the S3700 uses advanced reliability technologies such as stacking, VRRP, and RRPP, enhancing network reliability and diversity.
●Multi-VPN-Instance CE（MCE） ●IPv6 routing protocols: RIPng, OSPFv3 ●iStack intelligent stacking ●Rapid Ring Protection Protocol(RRPP) and Smart Ethernet Protection(SEP) ●Bidirectional Forwarding Detection(BFD) ●Dying Gasp
S3700 series are fixed switches with standard (SI) and enhanced (EI) versions.
Huawei S3700 series specifications:
|Ports description||S3700-28TP-EI**/S3700-28TP-SI/S3700-28TP-PWR-SI/S3700-28TP-PWR-EI/S3700-28TP-EI-MC: 24*10/100Base-TX S3700-52P-EI/S3700-52P-SI/S3700-52P-PWR-EI/S3700-52P-PWR-SI: 48*10/100Base-T S3700-28TP-EI-24S: 24*100Base-FX S3700-52P-EI-24S: 24*10/100Base-T+24*100Base-FX S3700-52P-EI-48S: 48*100Base-FX|
|SI/EI 28 ports: 2*1000Base-X, 2*GE Combo SI/EI 52 ports: 2*100/1000Base-X, 2*1000Base-X|
|MAC address table||IEEE 802.1d compliance 16K MAC address entries MAC address learning and aging Static, dynamic, and blackhole MAC address entries Packet filtering based on source MAC addresses|
|VLAN||4K VLANs Guest VLANs, voice VLAN, and super VLAN MUX VLAN and GVRP VLAN assignment based on MAC addresses, protocols, and IP subnets QinQ Selective QinQ 1:1 VLAN mapping N:1 VLAN mapping|
|Reliability||RRPP (ring topology, intersecting rings, and multi-instance), implementing protection switchover within 50 ms Smart Link tree topology and Smart Link multi-instance, providing the millisecond-level protection switchover STP(IEEE 802.1d), RSTP(IEEE 802.1w), and MSTP(IEEE 802.1s) BPDU protection, root protection, and loop protection Smart Ethernet Protection (SEP)|
|N/A||BFD for OSPF, BFD for IS-IS, BFD for VRRP, and BFD for PIM|
|IP routing||Static routing, RIPv1, RIPv2, and ECMP|
|N/A||OSPF, IS-IS, and BGP|
|IPv6 features||Neighbor Discovery (ND) Path MTU (PMTU) IPv6 ping, IPv6 tracert, and IPv6 Telnet Manually configured tunnel 6to4 tunnel ISATAP tunnel ACLs based on the source IPv6 address, destination IPv6 address, Layer 4 ports, or protocol type MLD v1/v2 snooping|
|Multicast||1 K multicast groups IGMP v1/v2/v3 snooping and IGMP fast leave Multicast VLAN and multicast replication between VLANs Multicast load balancing among member ports of a trunk Controllable multicast Port-based multicast traffic statistics|
|N/A||IGMP v1/v2/v3, PIM-SM, PIM-DM and PIM-SSM|
|QoS/ACL||Rate limiting on packets sent and received by an interface Packet redirection Port-based traffic policing and two-rate three-color CAR Eight queues on each port WRR, DRR, SP, WRR+SP, and DRR+SP queue scheduling algorithms Re-marking of the 802.1p priority and DSCP priority Packet filtering on Layers 2 through 4, filtering out invalid frames based on the source MAC address, destination MAC address, source IP address, destination IP address, port number, protocol type, and VLAN ID Rate limiting in each queue and traffic shaping on ports|
|Security||User privilege management and password protection DoS attack defense, ARP attack defense, and ICMP attack defense Binding of the IP address, MAC address, interface, and VLAN Port isolation, port security, and sticky MAC Blackhole MAC address entries Limit on the number of learned MAC addresses 802.1x authentication and limit on the number of users on an interface AAA authentication, RADIUS authentication, HWTACACS authentication, and NAC SSH v2.0 CPU defense Blacklist and whitelist|
|Surge protection||6KV surge protection capability on service ports (1KV on service ports on PoE devices)|
|Management and maintenance||iStack MAC Forced Forwarding (MFF) Remote configuration and maintenance using Telnet Auto-Config Virtual cable test Ethernet OAM (IEEE 802.3ah and 802.1ag) Dying gasp power-off alarm (S3700-28TP-EI-MC-AC) SNMPv1/v2/v3 and RMON Web NMS|
|Operating environment||Operating temperature: 0℃–50℃(long term); Relative humidity: 10%–90% (non-condensing)|
|Power supply||AC: Rated voltage range: 100V to 240V AC; 50/60 Hz Maximum voltage range: 90V to 264V AC; 50/60 Hz DC: Rated voltage range: –48V to –60V DC Maximum voltage range: –36V to –72V DC Note: PoE-support switches do not use DC power supplies.|
|Dimensions (W x D x H)||S3700-28TP-EI/SI, S3700-28TP-EI-MC, S3700-28TP-EI-24S, S3700-52P-EI/SI: 442 mm x 220 mm x 43.6 mm S3700-28TP-PWR-EI/SI, S3700-52P-EI-48S, S3700-52P-EI-24S, S3700-52P-PWR-EI/SI: 442 mm x 420 mm x 43.6 mm|
|Weight||S3700-28TP-SI<2.5Kg S3700-52P-SI<3Kg S3700-28TP-PWR-SI<4Kg (without power supply) S3700-52P-PWR-SI<4.3Kg (without power supply)||S3700-28TP-EI<2.5Kg S3700-28TP-EI-MC<2.5Kg S3700-28TP-EI-24S<2.6Kg S3700-52P-EI<3Kg S3700-52P-EI-24S<4.8Kg S3700-52P-EI-48S<4.8Kg S3700-28TP-PWR-EI<4Kg (without power supply) S3700-52P-PWR-EI< 4.3Kg (without power supply)|
|Power consumption||S3700-28TP-SI<20W S3700-52P-SI<38W S3700-28TP-PWR-SI<818W (PoE: 740W) S3700-52P-PWR-SI<880W (PoE: 740W)||S3700-28TP-EI<20W S3700-28TP-EI-MC<20W S3700-28TP-EI-24S<52W S3700-52P-EI<38W S3700-52P-EI-24S<65W S3700-52P-EI-48S<90W S3700-28TP-PWR-EI<818W (PoE: 740W) S3700-52P-PWR-EI<880W (PoE: 740W)|
*:The S3700 is provided in the standard version (SI) , enhanced version (EI). The S3700 switches of the EI series are collectively called S3700-EI, the S3700 switches of the SI series are collectively called S3700-SI.
**:S3700-28TP-EI is short for S3700-28TP-EI-AC and S3700-28TP-EI-DC. As product versions are irrelevant to the power supply mode, the product names mentioned in product specifications do not contain AC or DC. This rule also applies to other product models.
Powerful support for services
The S3700 provides the Multi-VPN-Instance CE (MCE) function to isolate users in different VPNs on a device, ensuring data security and reducing costs.The S3700 supports multicast functions such as IGMP snooping, IGMP filter, fast leave, and IGMP proxy.
The S3700 PWR offers an improved Power over Ethernet (PoE) function. Users can determine when or whether a PoE port provides power.
Comprehensive QoS policies and security mechanisms
The S3700 classifies complex traffic based on packet information such as the 5-tuple, IP preference, ToS, DSCP, IP protocol type, ICMP type, TCP source port, VLAN ID, Ethernet protocol type, and CoS. The S3700 supports a flow-based two-rate three-color CAR.
The S3700 provides multiple security measures to defend against Denial of Service (DoS) attacks, as well as attacks against networks or individual users. DoS attack types include SYN Flood attacks, Land attacks, Smurf attacks, and ICMP Flood attacks.
The S3700 supports DHCP snooping, which generates user binding entries based on users’ access interfaces, MAC addresses, IP addresses, IP address leases, and VLAN IDs.
The S3700 supports strict ARP learning, which prevents ARP spoofing attacks that exhaust ARP entries. The S3700 also provides IP source guard to prevent DoS attacks caused by MAC address spoofing, IP address spoofing, and MAC/IP spoofing.
The S3700 supports centralized MAC address authentication and 802.1x authentication. It authenticates users based on statically or dynamically bound user information, such as the user name, IP address, MAC address, VLAN ID, access interface, and flag indicating whether antivirus software is installed. VLANs, QoS policies, and ACLs can be dynamically applied to users.
The S3700 can limit the number of MAC addresses learned on an interface to prevent attackers from exhausting MAC address entries by using bogus source MAC addresses. This function minimizes the packet flooding that occurs when users’ MAC addresses cannot be found in the MAC address table.
Various routing and IPv6 features
The S3700 supports various routing protocols, including static routing, RIP, OSPF, IS-IS and BGP.
S3700 hardware supports IPv4/IPv6 dual stack, IPv6 over IPv4 tunnels (including manual tunnels, 6to4 tunnels, and ISATAP tunnels), and Layer 3 line-speed forwarding.
High scalability and excellent reliability
The S3700 supports intelligent stacking (iStack). Multiple S3700s can be connected with stack cables to set up a stack, which functions as a virtual switch.
Besides STP, RSTP, and MSTP, the S3700 supports enhanced Ethernet reliability technologies, such as Smart Link and RRPP, which implement millisecond-level protection switchovers and ensure network reliability.
The S3700 supports BFD, which provides millisecond-level fault detection for protocols, such as OSPF, IS-IS, VRRP, and PIM to improve network reliability.
Maintenance-free design and manageability
The S3700 adopts a maintenance-free design and supports batch remote upgrade. It provides multiple maintenance and management modes to help users to monitor various data.
The S3700 supports GARP VLAN Registration Protocol (GVRP), which dynamically distributes, registers, and propagates VLAN attributes to reduce network administrator workloads and ensure the correct configuration of VLANs. In a complex network topology, GVRP simplifies VLAN configuration and reduces network communication faults caused by incorrect VLAN configuration.
The S3700 supports MUX VLAN. MUX VLAN isolates the Layer 2 traffic between interfaces in a VLAN. Interfaces in a subordinate separate VLAN can communicate with ports in the principal VLAN, but cannot communicate with each other.
Unique fan-free and energy-saving design
S3700s that are equipped with 24 electrical ports offer a fan-free design, which dramatically reduces power consumption and eliminates noise.
The S3700 incorporates an energy-saving integrated circuit design to ensure even heat dissipation. Idle ports can enter a sleep mode to further reduce power consumption.
Radiation produced by the S3700 is within the standard range for electric appliances and causes no harm to the human body