TP-Link TL-SG3428MP 24-Port Gigabit L2 Managed PoE+ Switch

Deliverytime: 3 - 5 working days (Mo-Fr) *
available: > 10
435,98 EUR
Key points at a glance:
Product Description

Practical Gigabit switch with PoE+ with 24 ports for a complete Omada network
JetStream Gigabit L2 Managed Switch with 28 ports and PoE+ with 24 ports
Dedicated 24 PoE+ ports (384 W budget) for numerous applications
The switch has 24x 802.3af/an compatible PoE+ ports and supports a total PoE budget of up to 384 W. It is designed to use a single Ethernet cable for data and power transmission. Designed to use a single Ethernet cable for data and power transmission, it provides flexible deployment for PoE-enabled devices such as wireless devices, access points, IP cameras and IP phones, reducing infrastructure costs for small businesses.
Software Defined Networking (SDN) with cloud access
Omada's Software-Defined Networking (SDN) platform integrates network devices, including access points, switches and gateways, and provides 100% centralised cloud management. Omada creates a highly scalable network that is controlled through a single interface. Seamless wireless and wired connectivity is provided, ideal for use in hospitality, education, retail, offices and more.
Secure Network
Security features include IP-MAC port VID binding, port security, storm control and DHCP snooping to defend against a range of network threats. A built-in list of common DoS attacks is available, making them easier than ever to prevent. In addition, the Access Control Lists (ACL, L2 to L4) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports or VLAN ID. User network access can be controlled via 802.1X authentication, which works with a RADIUS/Tacacs+ server to grant access only when valid user credentials are provided.
Advanced QoS
Voice and video traffic can be prioritised based on IP address, MAC address, TCP port number, UDP port number and more. With QoS (Quality of Service), voice and video services remain smooth even when bandwidth is tight.
Abundant L2 and L2+ features
A full range of L2 features are supported, including 802.1Q VLAN, port mirroring, STP/RSTP/MSTP, Link Aggregation Control Protocol and 802.3x Flow Control. Advanced IGMP snooping ensures that the switch intelligently forwards multicast streams only to the appropriate subscribers, avoiding unnecessary traffic, while IGMP throttling and filtering restricts each subscriber at the port level to prevent unauthorised multicast access. Static routing is a simple method of segmenting the network and routing traffic internally through the switch to improve efficiency.
ISP features
QinQ, L2PT, PPPoE ID insertion and IGMP authentication features are designed specifically for service providers. 802.3ah OAM and DLDP (Device Link Detection Protocol) provide easy monitoring and troubleshooting of Ethernet connections.
IPv6 support
IPv6 features such as dual IPv4/IPv6 stacking, MLD snooping, IPv6 ACL, DHCPv6 snooping, IPv6 interface, Path Maximum Transmission Unit (PMTU) discovery and IPv6 Neighbour Discover guarantee that your network is ready for the Next Generation Network (NGN) without upgrading your network hardware.
Enterprise-level management capabilities
Easy management via an intuitive web-based graphical user interface (GUI) or an industry-standard command line interface (CLI). With either management method, traffic is protected by SSL or SSH encryption. Support for SNMP (v1/v2c/v3) and RMON allows the switch to be polled for valuable status information and traps to be sent for abnormal events.

Hardware functions
- Interface: 24x 10/100/1000Mbit/s RJ45 ports, 4x Gigabit SFP slots, 1x RJ45 console port, 1x Micro-USB console port
- Number of fans: 2
- Power supply: 100-240 V AC~50/60 Hz
- PoE+ ports: Standard: 802.3at/af compliant; PoE+ ports: 24 ports, up to 30W per port; PoE budget: 384 W
- PoE ports: Standard: 802.3at/af compliant; PoE+ ports: 24 ports, up to 30 W per port; PoE budget: 384 W
- Dimensions (W*D*H): 17.3 x 13.0 x 1.7 in (440 × 330 × 44 mm)
- Mounting: Rack-mountable
- Maximum power consumption: 31.0 W (110 V/60 Hz) (no PD connected); 463.8 W (110 V/60 Hz) (with 384 W PD connected)
- Maximum heat dissipation: 105.78 BTU/h (110 V/60 Hz) (no PD connected); 1582.49 BTU/h (110 V/60 Hz) (with 384 W PD connected)
Performance
- Switching capacity: 56 Gbit/s
- Packet forwarding rate: 41.66 Mpps
- MAC address table: 8K
- Packet buffer memory: 4.1 Mbit
- Jumbo frames: 9 KB
Software functions
- Quality of Service: 8 priority queues; 802.1p CoS/DSCP priority; Queue scheduling (SP (Strict Priority), WRR (Weighted Round Robin), SP+WRR; Bandwidth Control (Port/Flow based Rating Limiting); Smoother Performance; Action for Flows (Mirror (to supported interface), Redirect (to supported interface), Rate Limit, QoS Remark)
- Layer3 functions: 16 IPv4/IPv6 interfaces; Static Routing (48 static routes); Static ARP; 316 ARP Entries; Proxy ARP; Gratuitous ARP; DHCP Server; DHCP Relay; DHCP L2 Relay
- Layer2 and Layer2+ functions: Link Aggregation (Static link aggregation, 802.3ad LACP, Up to 8 aggregation groups and up to 8 ports per group); Spanning Tree Protocol (802.1d STP; 802.1w RSTP; 802.1s MSTP; STP Security: TC Protect, BPDU Filter, BPDU Protect, Root Protect, Loop Protect); Loopback Detection (Port-based, VLAN based); Flow Control (802.3x Flow Control, HOL Blocking Prevention); Mirroring (Port Mirroring, CPU Mirroring, One-to-One, Many-to-One, Tx/Rx/Both)
- Layer2-Multicast: Supports 511 (IPv4, IPv6) IGMP groups; IGMP Snooping (IGMP v1/v2/v3 Snooping, Fast Leave, IGMP Snooping Querier, IGMP Authentication); IGMP Authentication; MVR; MLD Snooping (MLD v1/v2 Snooping, Fast Leave, MLD Snooping Querier, Static Group Config, Limited IP Multicast); Multicast Filtering: 256 profiles and 16 entries per profile
- Advanced features: Support Omada Hardware Controller (OC200/OC300), Software Controller, Cloud-Based Controller; Automatic Device Discovery; Batch Configuration; Batch Firmware Upgrading; Intelligent Network Monitoring; Abnormal Event Warnings; Unified Configuration; Reboot Schedule; ZTP (Zero-Touch Provisioning)
- VLAN: VLAN Group (Max 4K VLAN Groups); 802.1q Tagged VLAN; MAC VLAN: 12 Entries; Protocol VLAN: Protocol Template 16, Protocol VLAN 16; GVRP; VLAN VPN (QinQ) (Port-Based QinQ, Selective QinQ); Voice VLAN
- Access Control List: Time-based ACL; MAC ACL (Source MAC, Destination MAC, VLAN ID, User Priority, Ether Type); IP ACL (Source IP, Destination IP, Fragment, IP Protocol, TCP Flag, TCP/UDP Port, DSCP/IP TOS, User Priority); Combined ACL; Packet Content ACL; IPv6 ACL; Policy (Mirroring, Redirect, Rate Limit, QoS Remark); ACL apply to Port/VLAN
- Security: IP-MAC Port Binding (DHCP Snooping, ARP Inspection, IPv4 Source Guard); IPv6-MAC Port Binding (DHCPv6 Snooping, ND Detection, IPv6 Source Guard); DoS Defend; Static/Dynamic Port Security (Up to 64 MAC addresses per port); Broadcast/Multicast/Unicast Storm Control (kbps/ratio/pps control mode); IP/Port/MAC based access control; 802.1X (Port based authentication, Mac based authentication, VLAN Assignment, MAB, Guest VLAN, Support Radius authentication and accountability; AAA (including TACACS+); Port Isolation; Secure web management through HTTPS with SSLv3/TLS 1.2; Secure Command Line Interface (CLI) management with SSHv1/SSHv2
- IPv6: IPv6 Dual IPv4/IPv6; Multicast Listener Discovery (MLD) Snooping; IPv6 ACL; IPv6 Interface; Static IPv6 Routing; IPv6 neighbour discovery (ND); Path maximum transmission unit (MTU) discovery; Internet Control Message Protocol (ICMP) version 6; TCPv6/UDPv6; IPv6 applications (DHCPv6 Client, Ping6, Tracert6, Telnet (v6), IPv6 SNMP, IPv6 SSH, IPv6 SSL, Http/Https, IPv6 TFTP
- Administration: Web-based GUI; Command Line Interface (CLI) through console port, telnet; SNMPv1/v2c/v3 (Trap/Inform, RMON (1, 2, 3, 9 groups)); SDM Template; DHCP/BOOTP Client; 802.1ab LLDP/LLDP-MED; DHCP AutoInstall; Dual Image, Dual Configuration; CPU Monitoring; Cable Diagnostics; EEE; Password Recovery; SNTP; System Log
- MIBs: MIB II (RFC1213), Bridge MIB (RFC1493), P/Q-Bridge MIB (RFC2674), Radius Accounting Client MIB (RFC2620); Radius Authentication Client MIB (RFC2618); Remote Ping, Traceroute MIB (RFC2925); Support TP-Link private MIBs; RMON MIB(RFC1757, rmon 1,2,3,9)
Management
- Omada App: Yes, through Omada Cloud-Based Controller (Not Supported by TL-SG3428MP v3); OC300; OC200; Omada Software Controller
- Centralised Management: Omada Cloud-Based Controller (Not Supported by TL-SG3428MP v3); Omada Hardware Controller (OC300); Omada Hardware Controller (OC200); Omada Software Controller
- Cloud Access: Yes, through Omada Cloud-Based Controller (Not Supported by TL-SG3428MP v3); OC300; OC200; Omada Software Controller
- Zero-Touch Provisioning: Yes, requiring the use of Omada Cloud-Based Controller (Supported byTL-SG3428MP v1, v2, v4 and above, while is not supported by TL-SG3428MP v3)
- Management Features: Web-based GUI; Command Line Interface (CLI) through console port, telnet; SNMPv1/v2c/v3 (Trap/Inform, RMON (1, 2, 3, 9 groups)); SDM Template; DHCP/BOOTP Client; 802.1ab LLDP/LLDP-MED; DHCP AutoInstall; Dual Image, Dual Configuration; CPU Monitoring; Cable Diagnostics; EEE; Password Recovery; SNTP; System Log
Miscellaneous
- Certification: CE, FCC, RoHS
- Package contents: TL-SG3428MP Switch, IEC cable, quick installation guide, rackmount kit, rubber feet
- System requirements: Microsoft® Windows® 98SE, NT, 2000, XP, Vista™ or Windows 7/8/10/11, MAC® OS, NetWare®, UNIX® or Linux
- Environment: Operating temperature: 0°C-45°C (32°F-113); Storage temperature: -40°C-70°C (-40°F-158°F); Operating humidity: 10-90% RH non-condensing; Storage humidity: 5-90% RH non-condensing

This website uses cookies to ensure you get the best user experience. Privacy Policy