JetStream 28-Port Gigabit L2 Managed Switch with 24-Port PoE+
- 384 W PoE Budget: 24× 802.3at/af-compliant PoE+ ports with a total power supply of 384 W*.
- Full Gigabit Ports: 24× gigabit PoE+ ports and 4× gigabit SFP Slots provide high-speed connections.
- Integrated into Omada SDN: Zero-Touch Provisioning (ZTP)**, Centralized Cloud Management, and Intelligent Monitoring.
- Centralized Management: Cloud access and Omada app for ultra convenience and easy management.
- Static Routing: Helps route internal traffic for more efficient use of network resources.
- Robust Security Strategies: IP-MAC-Port Binding, ACL, Port Security, DoS Defend, Storm control, DHCP Snooping, 802.1X, Radius Authentication, and more.
- Optimize Voice and Video Applications: L2/L3/L4 QoS and IGMP snooping.
- Standalone Management: Web, CLI (Console Port, Telnet, SSH), SNMP, RMON, and Dual Image bring powerful management capabilities.
Convenient Gigabit Switch with 24-Port
PoE+ for a Complete Omada Network
JetStream 28-Port Gigabit L2+ Managed Switch with 24-Port PoE+
24× Gigabit PoE+ Ports with Total 384 W Power Budget*
Centralized Cloud Management
SDN Solutions Integration for a Highly Efficient Network
Robust Security Strategies
LAN Area Investment Protection
Advanced L2+ Features
Static Routing, IGMP Snooping
802.1 Q VLAN and More
Dedicated 24 PoE+ Ports (384 W Budget) for Numerous Applications
Features 24× 802.3af/at compliant PoE+ ports, the switch supports up to 384 W total PoE power budget.* Designed to use a single Ethernet cable for both data and power transmission, it offers flexible deployment for PoE-supported devices such as wireless access points, IP cameras, and IP phones, lowering infrastructure costs for small businesses.
24x Gigabit PoE+ Ports
Up to 30 W on Each Port
Total 384 W Power Budget
Software Defined Networking (SDN) with Cloud Access
Omada’s Software-Defined Networking (SDN) platform integrates network devices, including access points, switches, and routers, providing 100% centralized cloud management. Omada creates a highly scalable network— all controlled from a single interface. Seamless wireless and wired connections are provided, ideal for use in hospitality, education, retail, offices, and more.
Security features include IP-MAC-Port-VID Binding, Port Security, Storm Control, and DHCP Snooping to defend against a range of network threats. An integrated list of common DoS attacks is available, making it easier than ever to prevent them. In addition, the Access Control Lists (ACL, L2 to L4) feature restricts access to sensitive network resources by denying packets based on source and destination MAC address, IP address, TCP/UDP ports, or VLAN ID. Users’ network access can be controlled via 802.1X authentication, which works with a RADIUS/Tacacs+ server to grant access only when valid user credentials are provided.
Voice and video traffic can be prioritized based on IP address, MAC address, TCP port number, UDP port number, and more. With QoS (Quality of Service), voice and video services remain smooth, even when bandwidth is in short supply.
Abundant L2 and L2+ Features**
A complete lineup of L2 features is supported including 802.1Q VLAN, Port Mirroring, STP/RSTP/MSTP, Link Aggregation Control Protocol, and 802.3x Flow Control. Advanced IGMP Snooping ensures the switch intelligently forwards multicast streams to only the appropriate subscribers, cutting out unnecessary traffic, while IGMP throttling & filtering restrict each subscriber on a port level to prevent unauthorized multicast access. Static Routing is a simple way of segmenting the network and internally routs traffic through the switch for improved efficiency.
QinQ, L2PT, PPPoE ID Insertion, and IGMP authentication features are provided, developed with service providers in mind. 802.3ah OAM and Device Link Detection Protocol (DLDP) offer easy monitoring and troubleshooting of Ethernet links.
IPv6 functions such as Dual IPv4/IPv6 Stack, MLD Snooping, IPv6 ACL, DHCPv6 Snooping, IPv6 Interface, Path Maximum Transmission Unit (PMTU) Discovery, and IPv6 Neighbor Discover guarantee your network is ready for the Next Generation Network (NGN) without upgrading your hardware.
Enterprise Level Management Features
Easy to manage via an intuitive web-based Graphical User Interface (GUI) or an industry-standard Command Line Interface (CLI). For both management methods, traffic is protected through SSL or SSH encryption. SNMP (v1/v2c/v3) and RMON support enable the switch to be polled for valuable status information and to send traps on abnormal events.
White Dreams Resort
TP-Link Brings Networking Renovation to White Dream Resort
White Dreams Resort
TP-Link Brings Networking Renovation to White Dream ResortIn 2019, we decided to upgrade most of our networking recourses. We had checked and lived the performance of TP-Link business solutions, at other hotels’ premises. Therefore, we asked for the collaboration of Kostas (Moustakas Telecommunications) and Stamatis (TP-Link Hellas). The result was great. All the annoying comments about our Wi-Fi and telephony services, at TripAdvisor, Trivago, Booking … etc, have stopped and our customers, are now having an excellent experience. It was planned to continue our networking renovation, for the rest of the hotel, into 2020, but unfortunately, the global pandemic situation of Covid-19 didn’t allow us to proceed so. However, we already know how to proceed and we’ll act so, in our earliest convenient timeframe. —PR Manager of White Dreams Resort
Sim Lim Square
Singapore’s largest IT and electronics shopping mall, Sim Lim Square, deploys TP-Link Auranet Indoor Wi-Fi solution
Sim Lim Square
Singapore’s largest IT and electronics shopping mall, Sim Lim Square, deploys TP-Link Auranet Indoor Wi-Fi solution“Our customer satisfaction levels have been greatly improved since we started offering free public Wi-Fi throughout the entire mall. For that alone, the solution TP-Link provided was the best choice.” —Sean Chia, Head of Advertising & Promotions, Sim Lim Square.
Shuraa Facilities Management LLC
Shuraa Facilities Management LLC Chooses TP-link for Wireless Service Deployments
Shuraa Facilities Management LLC
Shuraa Facilities Management LLC Chooses TP-link for Wireless Service Deployments“The hotel has overcome some of its Wi-Fi internet connectivity for guests following the implementation of TP-Link’s solutions. In addition, it has been able to provide connectivity in more than 100 guest apartments without compromising of guest comfort and experience.”
Barranquilla Plaza Hotel
TP-Link Helps Barranquilla Plaza Hotel Build a Reliable and Efficient Network
Barranquilla Plaza Hotel
TP-Link Helps Barranquilla Plaza Hotel Build a Reliable and Efficient Network“HBP management has expressed intense satisfaction with their newly implemented solution and 100% of the staff has reported improved internet service. TP-Link’s Omada Solution provided the reliable, high-performance wireless network that HBP and its guests demanded.”
|• 24× 10/100/1000Mbps RJ45 Ports• 4× Gigabit SFP Slots• 1× RJ45 Console Port• 1× Micro-USB Console Port
|100-240 V AC~50/60 Hz
|• Standard: 802.3at/af compliant• PoE+ Ports: 24 Ports, up to 30 W per port• Power Budget: 384 W
|Dimensions ( W x D x H )
|17.3 × 13.0 × 1.7 in (440 × 330 × 44 mm)
|Max Power Consumption
|• 442.1 W (220 V/50 Hz) (with 384 W PD connected)
|Max Heat Dissipation
|• 1508.67 BTU/hr (220 V/50 Hz) (with 384 W PD connected)
|Packet Forwarding Rate
|MAC Address Table
|Quality of Service
|• 8 priority queues• 802.1p CoS/DSCP priority• Queue scheduling- SP (Strict Priority)- WRR (Weighted Round Robin)- SP+WRR• Bandwidth Control- Port/Flow based Rating Limiting• Smoother Performance• Action for Flows- Mirror (to supported interface)- Redirect (to supported interface)- Rate Limit- QoS Remark
|L2 and L2+ Features
|• Link Aggregation- Static link aggregation- 802.3ad LACP- Up to 8 aggregation groups and up to 8 ports per group• Spanning Tree Protocol- 802.1d STP- 802.1w RSTP- 802.1s MSTP- STP Security: TC Protect, BPDU Filter, BPDU Protect, Root Protect, Loop Protect• Loopback Detection- Port-based- VLAN based• Flow Control- 802.3x Flow Control- HOL Blocking Prevention• Mirroring- Port Mirroring- CPU Mirroring- One-to-One- Many-to-One- Tx/Rx/Both
|• Supports 511 (IPv4, IPv6) IGMP groups• IGMP Snooping- IGMP v1/v2/v3 Snooping- Fast Leave- IGMP Snooping Querier- IGMP Authentication• IGMP Authentication• MVR• MLD Snooping- MLD v1/v2 Snooping- Fast Leave- MLD Snooping Querier- Static Group Config- Limited IP Multicast• Multicast Filtering: 256 profiles and 16 entries per profile
|• VLAN Group- Max 4K VLAN Groups• 802.1Q Tagged VLAN• MAC VLAN: 30 Entries (12 Entries for TL-SG3428MP V1.0)• Protocol VLAN: Protocol Template 16, ProtocolVLAN 16• Private VLAN• GVRP• VLAN VPN (QinQ)- Port-Based QinQ- Selective QinQ• Voice VLAN
|Access Control List
|• Time-based ACL• MAC ACL- Source MAC- Destination MAC- VLAN ID- User Priority- Ether Type• IP ACL-Source IP- Destination IP- Fragment- IP Protocol- TCP Flag- TCP/UDP Port- DSCP/IP TOS- User Priority• Combined ACL• Packet Content ACL• IPv6 ACL• Policy- Mirroring- Redirect- Rate Limit- QoS Remark• ACL apply to Port/VLAN
|• IP-MAC-Port Binding- DHCP Snooping- ARP Inspection- IPv4 Source Guard• IPv6-MAC-Port Binding- DHCPv6 Snooping- ND Detection- IPv6 Source Guard• DoS Defend• Static/Dynamic Port Security- Up to 64 MAC addresses per port• Broadcast/Multicast/Unicast Storm Control- kbps/ratio/pps control mode• IP/Port/MAC based access control• 802.1X- Port based authentication- Mac based authentication- VLAN Assignment- MAB- Guest VLAN- Support Radius authentication and accountability• AAA (including TACACS+)• Port Isolation• Secure web management through HTTPS with SSLv3/TLS 1.2• Secure Command Line Interface (CLI) management with SSHv1/SSHv2
|• IPv6 Dual IPv4/IPv6• Multicast Listener Discovery (MLD) Snooping• IPv6 ACL• IPv6 Interface• Static IPv6 Routing• IPv6 neighbor discovery (ND)• Path maximum transmission unit (MTU) discovery• Internet Control Message Protocol (ICMP) version 6• TCPv6/UDPv6• IPv6 applications- DHCPv6 Client- Ping6- Tracert6- Telnet (v6)- IPv6 SNMP- IPv6 SSH- IPv6 SSL- Http/Https- IPv6 TFTP
|• 16 IPv4/IPv6 Interfaces• Static Routing- 48 static routes• Static ARP- 128 static entries• 316 ARP Entries (512 ARP Entries for TL-SG3428 V2.0 & TL-SG3428MP V2.0)• Proxy ARP• Gratuitous ARP• DHCP Server• DHCP Relay- DHCP interface relay- DHCP VLAN relay• DHCP L2 Relay
|• Web-based GUI• Command Line Interface (CLI) through console port, telnet• SNMPv1/v2c/v3- Trap/Inform- RMON (1, 2, 3, 9 groups)• SDM Template• DHCP/BOOTP Client• 802.1ab LLDP/LLDP-MED• DHCP AutoInstall• Dual Image, Dual Configuration• CPU Monitoring• Cable Diagnostics• EEE• Password Recovery• SNTP• System Log
|• Support Omada Hardware Controller (OC200/OC300), Software Controller• Automatic Device Discovery• Batch Configuration• Batch Firmware Upgrading• Intelligent Network Monitoring• Abnormal Event Warnings• Unified Configuration• Reboot Schedule
|CE, FCC, RoHS
|• TL-SG3428MP Switch• Power Cord• Quick Installation Guide• Rackmount Kit• Rubber Feet
|• Operating Temperature: 0–45 ℃ (32–113 ℉);• Storage Temperature: -40–70 ℃ (-40–158 ℉)• Operating Humidity: 10–90% RH non-condensing• Storage Humidity: 5–90% RH non-condensing
*PoE budget calculations are based on laboratory testing. Actual PoE power budget is not guaranteed and will vary as a result of client limitations and environmental factors.
**Zero-Touch Provisioning requires the use of Omada Cloud-Based Controller.
***Some features are only supported by Standalone Management or Centralized Management, or may require further software upgrades, please visit the product page on www.tp-link.com for detailed information.