Huawei AC6003-8-8AP cassette wireless controller | with 8AP license | wireless AC

Huawei AC6003-8-8AP cassette wireless controller | with 8AP license | wireless AC
 

Product description:

Product parameters:

  • Brand: Huawei / Huawei
  • Model: AC6003-8-8AP
  • Network Device Type: Other


Product Features

Exchange forwarding function

Attributes Description
Ethernet characteristics Ethernet
  • Support full-duplex, half-duplex, auto-negotiation work
  • The Ethernet interface supports 10M, 100M, 1000M, and auto-negotiation
  • Supports Jumbo packets
  • Support link aggregation
  • ● Supports load balancing for link traffic in the trunk
  • Supports interface isolation and interface forwarding restrictions
  • Supports broadcast storm suppression
VLAN
  • Support Access, Trunk, Hybrid access
  • The default VLAN is supported
  • Support VLAN Pool function, address the problem of insufficient address pool under high-density scenarios
  • Support mDNS gateway protocol, which can realize service sharing among AirPlay and AirPrint among VLAN users.
MAC
  • Support MAC address automatic learning and aging
  • Supports static, dynamic, blackhole MAC entries
  • Source MAC address filtering is supported
  • The MAC address learning limit is supported
ARP
  • Supports static and dynamic ARP
  • Support ARP on a VLAN
  • Aging of ARP entries is supported
LLDP LLDP is supported
Ethernet loop protection MSTP
  • Supports STP
  • Supports RSTP
  • Support MSTP
  • It provides BPDU protection, root protection, and loop protection
  • Local STP is provided
IPv4 forwarding IPv4 features
  • ARP / RARP
  • ARP proxy
  • Support automatic detection function
  • NAT
  • Supports the Bonjour protocol
Unicast Routing Features
  • Static routes
  • RIP-1 / RIP-2
  • OSPF
  • BGP
  • IS-IS
  • Routing Policy, Policy Routing
  • URPF check
  • Support DHCP Server / Relay
  • DHCP snooping is supported
Multicast routing features
  • IGMPv1 / v2 / v3
  • PIM-SM
  • Multicast Routing Policy
  • RPF
IPv6 forwarding IPv6 features ND protocol
Unicast Routing Features
  • Static routes
  • RIPng
  • OSPFv3
  • BGP4 +
  • IS-IS IPv6
  • DHCPv6
  • DHCPv6 snooping
Multicast routing features
  • MLD
  • MLD Snooping
Equipment reliability BFD BFD
Layer 2 multicast features Layer 2 multicast features
  • IGMP snooping is supported
  • Support users to quickly leave the mechanism
  • Support multicast traffic control
  • Supports cross-VLAN multicast replication
Ethernet OAM EFM OAM
  • Support peer discovery
  • Support link monitoring
  • Supports fault notification
  • Support remote loopback
QoS features Traffic classification It supports the combination flow classification based on L2 protocol header, IP quintuple, outgoing interface, and 802.1p priority
Flow action
  • It supports the access control of the packet flow after classification
  • Traffic policing based on traffic classification is supported
  • It supports re-marking packets according to the classification result
  • After classification, the packets enter the specified scheduling queue
  • It supports the combination of traffic classification and traffic behavior
Queue scheduling
  • Support PQ scheduling
  • Support DRR scheduling
  • Supports PQ + DRR scheduling
  • Support WRR scheduling
  • Support PQ + WRR scheduling
Congestion avoidance
  • Support SRED
  • Support WRED
Configuration and maintenance terminal service
  • Support for command line configuration
  • Support English and Chinese prompts and help information
  • Supports Console and Telnet terminal services
  • Support Send function, the end-user information exchange between
File system
  • Support for file systems
  • Supports directory and file management
  • Support FTP, TFTP upload, download files
Debugging and maintenance
  • Support log, alarm, debugging information unified management
  • Provide electronic tags
  • Support user operation log
  • Support detailed debug information to help diagnose network failures
  • Provide network test tools, such as Traceroute, Ping command
  • It provides interface mirroring and flow mirroring
version upgrade
  • Support the whole software loading, online loading
  • Support online upgrade of BootROM
  • Support for online patches
Security and management system security
  • Command line hierarchical protection, unauthorized users can not invade the device
  • Supports SSHv2.0
  • RADIUS and HWTACACS user login authentication is supported
  • Supports ACL filtering
  • Support DHCP packet filtering (insert Option 82)
  • Supports the prevention and control of packet attacks
  • Supports multiple sources of attack, such as source address spoofing, LAND, SYN Flood (TCP SYN), Smurf, Ping Flood (ICMP Echo), Teardrop and Ping of Death.
  • Support IPSec
  • Built-in application identification, support 4-7 application identification, and can identify the different applications (such as QQ, BT, WeChat, etc.) to set the appropriate control strategy
Network Management
  • Supports ICMP to implement Ping and Traceroute functions
  • Support standard network management protocol SNMPv1 / v2 / v3
  • A standard MIB that supports common features
  • Support RMON

AP Device Management

characteristic index
Access Control of AP Equipment
  • Supports the setting and query of AP whitelist function based on MAC or SN
  • Supports whitelisting in both single and batch (MAC address segment or SN segment) mode
  • Support semi-automatic on-line (manual confirmation) access mode
  • Support automatic (without authentication) AP access
AP domain management
  • Support to set the deployment type of the AP domain:
  • Distributed deployment: AP layout is very independent, AP without any interference, this time an AP with a domain, work in the maximum power, not tuning
  • Common distribution: AP distribution between the relatively sparse, each RF transmission power requirements less than its maximum transmit power of 50%
  • Dense distribution: AP distribution between the more intensive, each radio transmission power is less than the maximum transmit power of 25%
  • Support the specified domain as the default domain, used to configure the AP automatically on the line
AP configuration template management The AP supports the configuration of an AP as the default template
AP Device Type Feature Management
  • The number of interfaces, types, number of RFs, types, maximum number of supported VAPs, maximum number of associated users, and RF gain (for some indoor APs) on APs are managed through AP device type attributes.
  • Built-in known type of AP device type
  • You can extend the AP device type
Network topology management It supports AP LLDP topology awareness
Support Hotspot2.0

Radio frequency management

characteristic index
RF template management
  • Through the template can be set
  • RF operating mode, the rate
  • Automatic or manual channel, power mode
  • Manage the detection interval for RF tuning
  • Support 802.11b, 802.11bg, 802.11bgn, 802.11g, 802.11n, 802.11gn, 802.11a, 802.11an, 802.11ac mode by radio frequency setting
  • Support for manually binding a radio frequency template for a single radio
Unified static configuration Centralized configuration and management of the RF parameters of the entire network: After the deployment of the network regulations, centralized configuration on the AC, the RF parameters (working channel, transmission power, etc.) batch sent to the AP
Centralized dynamic management
  • AP automatically selects the channel and power when it goes online
  • Support dynamic tuning: in the AP overlap area, signal conflict automatically adjust power or channel
  • Local Tuning: Adjusts the AP's optimal working channel and power
  • Global Tuning: Adjusts the optimal working channel and power for all APs in the specified domain
  • Support blindness function: support the removal of AP or AP off the assembly line when the power of large neighbors around the big blind
  • Automatic Selection and Tuning of RF - based Centralized Control
Business enhancements
  • Multi-mode combination access: a / b / g / n / ac Independent deployment and combination (an, bg, bgn, gn) Deployment priority access 5G terminal: wireless terminal priority to enable 5G band
  • 2.4G / 5G band load balancing

WLAN Service Management

characteristic index
Service Set Management (ESS)
  • Based on the ESS, you can set the broadcast SSID, maximum number of access users, and user aging time
  • Supports AP-based AP isolation
  • ESS-based mapping service VLANs are supported
  • Support ESS-related security, QoS and other business templates
  • Supports AP-based multicast switch control based on ESS
VAP-based business management
  • Supports VAP bulk creation and Bundle RF ESS
  • Support query VAP in multiple ways: single query, ESS query, batch query
  • Support service offline configuration
  • AP automatically creates VAPs according to the rules of service batch release
Automatic provisioning of provisioning
  • Supports automatic provisioning rules for service configurations based on 'AP type + radio ID'
  • Support automatic on-line AP to join the default domain (the default domain can be developed in advance)
  • The auto-issuance rule is used in conjunction with a domain to implement batch uploading for a regional AP
Multicast service management
  • It supports AP IGMP Snooping mode
  • It supports AP IGMP proxy mode
Load balancing
  • It supports load balancing of a group of radio frequencies through a load balancing group
  • Two load balancing policies are supported:
  • Load Balancing Based on STA Number
  • Traffic-based load balancing
BYOD (Bring Your Own Device)
  • Supports device identification based on MAC OUI
  • Supports HTTP-based user information to identify device types
  • It supports DHCP-based device identification
  • It supports device type carried in RADIUS authentication / accounting packets for decision-making
  • Support for Microsoft Corporation Lync
Location Services
  • Support for AeroScout, Ekahau tag positioning
  • Support for positioning of Wi-Fi terminals
Spectrum analysis
  • Identification of 8 or more sources of interference, such as Bluetooth, microwave oven, cordless phone, Zigbee, Game Controller, 2.4G / 5G wireless video, baby monitor
  • With the eSight network management, interference sources for positioning and spectrum display

WLAN QoS features

characteristic index
WMM Profile Management (WMM-Profile)
  • Template-based WMM enables / disables
  • WMM templates can be applied to multiple APs at the same time
Traffic Profile Management
  • AP traffic template management, traffic management based on templates, priority mapping, and so on
  • Supports binding of E-port traffic profiles to ESS, that is, each ESS has an independent QoS policy
AC flow control
  • Support AC QoS profile management
  • You can classify service flows through ACL rules
  • ● Supports uplink / downlink (CAR) traffic control based on users
  • Supports ESS and VAP-based traffic rate limiting
AP flow control
  • Support multi-user flow control, share bandwidth
  • Supports the bandwidth limit of the specified VAP
Packet priority configuration
  • Support to configure the QoS priority of the CAPWAP control channel (IP DSCP)
  • The QoS priority of the CAPWAP data channel is configured
  • Specifies the data CAPWAP header priority
  • Priority mapping of user packets to tunnel packets (802.1p and ip tos)
Airtime scheduling Support time scheduling, so that users take a fair channel time, improve the user's online experience.

WLAN security features

characteristic index
WLAN security template management
  • The WLAN security template supports authentication and encryption
  • Support for binding security templates to ESS templates
Support for multiple certifications
  • Support 'OPEN-SYS authentication + no encryption' mode
  • Support WEP authentication / encryption mode
  • Support WPA / WPA2 authentication encryption
  • WPA / WPA2-PSK + TKIP
  • WPA / WPA2-PSK + CCMP
  • WPA / WPA2-802.1x + TKIP
  • WPA / WPA2-802.1x + CCMP
  • Support WAPI authentication encryption
  • Support AC centralized WAPI authentication
  • Support WAPI multi-trust certificate (3 certificates), compatible with the traditional two-certificate approach
  • Support the issuance of certificate and private key
  • Support MAC authentication
  • The user MAC address to do account, send authentication server (Radius Server) certification
  • Support portal authentication
  • Support AC as a portal gateway, do not support AP Portal Gateway
  • Only L2 Portal is supported
  • Support WeChat, two-dimensional code authentication
Support for combined authentication
  • Support MAC combination authentication
  • PSK & MAC authentication
  • Support MAC and Portal combination authentication
  • MAC authentication, and portal authentication
  • Only for centralized forwarding scenarios
AAA
  • Support local authentication, local account (MAC, account number)
  • Support Radius authentication
  • Support multiple authentication servers
  • Backup authentication server is supported
  • Specifies the authentication server based on the account domain
  • Configure the authentication server based on the account domain
  • Support user account domain and SSID binding
Security isolation
  • Supports port-based isolation
  • Supports quarantine based on user groups
WIDS Supports the monitoring, identification, prevention and countermeasure of illegal devices, including illegal AP and STA detection, attack detection and dynamic blacklist
Access Control
  • Supports port-based ACL access control
  • Supports ACL-based access control based on user groups
  • User-based ACL access control is supported
Other security protection
  • Support for SSID hiding
  • Supports terminal IP source guard
  • The IP address of the static binding terminal is supported
  • Supports Dynamic Binding Terminal IP Address (DHCP)

WLAN User Management

characteristic index
Wireless User Address Assignment An integrated DHCP server that assigns addresses to wireless users
WLAN User Management
  • Support user black and white list
  • Support for user access limit
  • Limit the number of user accesses by AP
  • Restricts the number of user accesses by SSID
  • Support a variety of ways to force users off the assembly line
  • Radius DM forces the user to go offline
  • The command line forces the user to go offline
  • Support a variety of query methods
  • It supports querying user status information based on user MAC, AP, radio frequency and WLAN ID
  • Support ESS, AP, RF query online users
  • Supports statistics based on the user's air interface
WLAN user roaming
  • Support 802.11k, 802.11v protocol, intelligent roaming
  • Supports Layer 2 roaming in the AC
  • ● Supports Layer 3 roaming between VLANs
  • Supports fast negotiation key for complete 802.1X authentication
  • Re-association of users to support the legitimate inspection, refused to re-associate illegal users request
  • Support the user information delay clear, realize the user back off the line after the rapid re-line
User group management
  • Supports access control based on user groups
  • Supports quarantine based on user groups
  • Support for group isolation
  • Support group isolation

System maintenance management features

classification characteristic
Maintenance and management In command line mode, Telnet / SSH remote login is supported through the console port local configuration
Support Web-based network management, using the local graphical configuration
The NMS supports the device configuration based on the SNMP protocol
The system provides hardware re-detection of fault, to avoid transient interference caused by the test results error
System automatically checks the version matching
AC supports the online upgrade function of the software, and also provides the function of online software patches, which can be upgraded only for the features that need to be modified
The AC upgrade process automatically updates the entire process by one command, saving valuable time for customers. The progress of the upgrade process gives the prompt, and after the upgrade you can view the upgrade results
During a system upgrade, when the new system software fails to start, the system can be started using the last successfully booted system software
AC supports the hot patch function and does not affect the service during the patch operation. The hot patch supports the rollback function and can record the device information before and after the hot patch operation
Tracking monitoring In the traditional IP network, the AC checks whether the network connection is reachable through Ping and TraceRoute, and records the transmission path of the packet online as a reference for fault location.
AC provides the black box function, records each characteristic module, the duty and the event call situation, and forms the process status information recording, the function calls the track, enhances the breakdown localization speed
AC supports packet-based flow mirroring based on interfaces or packets to be copied to the observing interface. The external monitoring host is connected to the observing interface of the AC and enables the network administrator to observe flows in real time and easily. The AC message information provides the basis for traffic detection, fault analysis and positioning, and data analysis.