Professional Documents
Culture Documents
Table 1 gives the product specifications for the Cisco 350 Series Switches.
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 7 of 21
Feature Description
Guest VLAN
Unauthenticated VLAN
Dynamic VLAN assignment via RADIUS server along with 802.1x client authentication
CPE VLAN
Voice VLAN Voice traffic is automatically assigned to a voice-specific VLAN and treated with appropriate levels of QoS
Auto voice capabilities deliver networkwide zero-touch deployment of voice endpoints and call control devices
Multicast TV VLAN Multicast TV VLAN allows the single multicast VLAN to be shared in the network while subscribers remain in
separate VLANs (also known as MVR)
Q-in-Q VLAN VLANs transparently cross a service provider network while isolating traffic among customers
Generic VLAN Registration Protocols for automatically propagating and configuring VLANs in a bridged domain
Protocol (GVRP)/Generic
Attribute Registration
Protocol (GARP)
Unidirectional Link Detection UDLD monitors physical connection to detect unidirectional links caused by incorrect wiring or cable/port faults
(UDLD) to prevent forwarding loops and blackholing of traffic in switched networks
Dynamic Host Configuration Relay of DHCP traffic to DHCP server in different VLAN; works with DHCP Option 82
Protocol (DHCP) Relay at
Layer 2
Internet Group Management IGMP limits bandwidth-intensive multicast traffic to only the requesters; supports 1K multicast groups (source-
Protocol (IGMP) versions 1, 2, specific multicasting is also supported)
and 3 snooping
IGMP Querier IGMP querier is used to support a Layer 2 multicast domain of snooping switches in the absence of a multicast
router
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 8 of 21
Feature Description
DHCP snooping Filters out DHCP messages with unregistered IP addresses and/or from unexpected or untrusted interfaces.
This prevents rogue devices from behaving as DHCP Servers
IP Source Guard (IPSG) When IP Source Guard is enabled at a port, the switch filters out IP packets received from the port if the source
IP addresses of the packets have not been statically configured or dynamically learned from DHCP snooping.
This prevents IP Address Spoofing
Dynamic ARP Inspection (DAI) The switch discards ARP packets from a port if there are no static or dynamic IP/MAC bindings or if there is a
discrepancy between the source or destination addresses in the ARP packet. This prevents man-in-the-middle
attacks
IP/MAC/Port Binding (IPMB) The preceding features (DHCP Snooping, IP Source Guard, and Dynamic ARP Inspection) work together to
prevent DOS attacks in the network, thereby increasing network availability
Secure Core Technology Makes sure that the switch will receive and process management and protocol traffic no matter how much
(SCT) traffic is received
Secure Sensitive Data (SSD) A mechanism to manage sensitive data (such as passwords, keys, and so on) securely on the switch,
populating this data to other devices, and secure autoconfig. Access to view the sensitive data as plaintext or
encrypted is provided according to the user-configured access level and the access method of the user
Layer 2 isolation Private VLAN PVE (also known as protected ports) provides Layer 2 isolation between devices in the same VLAN, supports
Edge (PVE) with community multiple uplinks
VLAN
Port security The ability to lock source MAC addresses to ports and limits the number of learned MAC addresses
RADIUS/TACACS+ Supports RADIUS and TACACS authentication. Switch functions as a client
Quality of Service
Priority levels 8 hardware queues
Scheduling Strict priority and Weighted Round-Robin (WRR)
Queue assignment based on DSCP and class of service (802.1p/CoS)
Class of service Port based; 802.1p VLAN priority based; IPv4/v6 IP precedence/Type of Service (ToS)/DSCP based;
Differentiated Services (DiffServ); classification and remarking ACLs, trusted QoS
Rate limiting Ingress policer; egress shaping and rate control; per VLAN, per port, and flow based
Congestion avoidance A TCP congestion avoidance algorithm is required to minimize and prevent global TCP loss synchronization
Standards
Standards IEEE 802.3 10BASE-T Ethernet, IEEE 802.3u 100BASE-TX Fast Ethernet, IEEE 802.3ab 1000BASE-T Gigabit
Ethernet, IEEE 802.3ad LACP, IEEE 802.3z Gigabit Ethernet, IEEE 802.3x Flow Control, IEEE 802.1D
(STP, GARP, and GVRP), IEEE 802.1Q/p VLAN, IEEE 802.1w RSTP, IEEE 802.1s Multiple STP, IEEE 802.1X
Port Access Authentication, IEEE 802.3af, IEEE 802.3at, RFC 768, RFC 783, RFC 791, RFC 792, RFC 793,
RFC 813, RFC 879, RFC 896, RFC 826, RFC 854, RFC 855, RFC 856, RFC 858, RFC 894, RFC 919,
RFC 922, RFC 920, RFC 950, RFC 1042, RFC 1071, RFC 1123, RFC 1141, RFC 1155, RFC 1157, RFC
1350, RFC 1533, RFC 1541, RFC 1624, RFC 1700, RFC 1867, RFC 2030, RFC 2616, RFC 2131, RFC 2132,
RFC 3164, RFC 3411, RFC 3412, RFC 3413, RFC 3414, RFC 3415, RFC 2576, RFC 4330, RFC 1213,
RFC 1215, RFC 1286, RFC 1442, RFC 1451, RFC 1493, RFC 1573, RFC 1643, RFC 1757, RFC 1907,
RFC 2011, RFC 2012, RFC 2013, RFC 2233, RFC 2618, RFC 2665, RFC 2666, RFC 2674, RFC 2737,
RFC 2819, RFC 2863, RFC 1157, RFC 1493, RFC 1215, RFC 3416
IPv6
IPv6 IPv6 host mode
IPv6 over Ethernet
Dual IPv6/IPv4 stack
IPv6 neighbor and router discovery (ND)
IPv6 stateless address autoconfiguration
Path Maximum Transmission Unit (MTU) discovery
Duplicate Address Detection (DAD)
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 9 of 21
Feature Description
ICMP version 6
IPv6 over IPv4 network with Intrasite Automatic Tunnel Addressing Protocol (ISATAP) support
USGv6 and IPv6 Gold Logo certified
IPv6 QoS Prioritize IPv6 packets in hardware
IPv6 ACL Drop or rate limit IPv6 packets in hardware
IPv6 First Hop Security RA guard
ND inspection
DHCPv6 guard
Neighbor binding table (snooping and static entries)
Neighbor binding integrity check
Multicast Listener Discovery Deliver IPv6 multicast packets only to the required receivers
(MLD v1/2) snooping
IPv6 applications Web/SSL, Telnet server/SSH, ping, traceroute, Simple Network Time Protocol (SNTP), Trivial File Transfer
Protocol (TFTP), SNMP, RADIUS, syslog, DNS client, Telnet Client, DHCP Client, DHCP Autoconfig, IPv6
DHCP Relay, TACACS
IPv6 RFCs supported RFC 4443 (which obsoletes RFC2463): ICMP version 6
RFC 4291 (which obsoletes RFC 3513): IPv6 address architecture
RFC 4291: IPv6 addressing architecture
RFC 2460: IPv6 specification
RFC 4861 (which obsoletes RFC 2461): neighbor discovery for IPv6
RFC 4862 (which obsoletes RFC 2462): IPv6 stateless address autoconfiguration
RFC 1981: path MTU discovery
RFC 4007: IPv6 scoped address architecture
RFC 3484: default address selection mechanism
RFC 5214 (which obsoletes RFC 4214): ISATAP tunneling
RFC 4293: MIB IPv6: textual conventions and general group
RFC 3595: textual conventions for IPv6 flow label
Management
Web user interface Built-in switch configuration utility for easy browser-based device configuration (HTTP/HTTPS). Supports
configuration, system dashboard, system maintenance, and monitoring
Smart Network Application Smart Network Application (SNA) is an innovative network-level monitoring and management tool embedded in
Cisco 100 to 500 Series switches. It can discover network topology, display link status, monitor events, apply
configurations, and upgrade software images across multiple switches in the network
(Note: Management of your network using Smart Network Application requires the use of either a 350, 350X, or
550X Series switch model as a part of your network)
SNMP SNMP versions 1, 2c, and 3 with support for traps, and SNMP version 3 User-based Security Model (USM)
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 10 of 21
Feature Description
1215.my SNMPv2- rfc2737-MIB
CONF.my rfc2925-MIB
SNMPv2-TC.my rfc3621-MIB
rfc2674-MIB rfc4668-MIB
rfc2575-MIB rfc4670-MIB
rfc2573-MIB trunk-MIB
rfc2233-MIB tunnel-MIB
rfc2013-MIB udp-MIB
rfc2012-MIB
Private MIBs CISCOSB-lldp-MIB CISCOSB- CISCOSB-ip-MIB
brgmulticast-MIB CISCOSB- CISCOSB-iprouter-MIB
bridgemibobjects-MIB CISCOSB-ipv6-MIB
CISCOSB-bonjour-MIB CISCOSB-mnginf-MIB
CISCOSB-dhcpcl-MIB CISCOSB-lcli-MIB
CISCOSB-MIB CISCOSB-localization-MIB
CISCOSB-wrandomtaildrop-MIB CISCOSB-mcmngr-MIB
CISCOSB-traceroute-MIB CISCOSB-mng-MIB
CISCOSB-telnet-MIB CISCOSB-physdescription-MIB
CISCOSB-stormctrl-MIB CISCOSB-Poe-MIB
CISCOSB-ssh-MIB CISCOSB-protectedport-MIB
CISCOSB-socket-MIB CISCOSB-rmon-MIB
CISCOSB-sntp-MIB CISCOSB-rs232-MIB
CISCOSB-smon-MIB CISCOSB-SecuritySuite-MIB
CISCOSB-phy-MIB CISCOSB-snmp-MIB
CISCOSB-multisessionterminal-MIB CISCOSB-specialbpdu-MIB
CISCOSB-mri-MIB CISCOSB-banner-MIB
CISCOSB-jumboframes-MIB CISCOSB-syslog-MIB
CISCOSB-gvrp-MIB CISCOSB-TcpSession-MIB
CISCOSB-endofmib-MIB CISCOSB-traps-MIB
CISCOSB-dot1x-MIB CISCOSB-trunk-MIB
CISCOSB-deviceparams-MIB CISCOSB-tuning-MIB
CISCOSB-cli-MIB CISCOSB-tunnel-MIB
CISCOSB-cdb-MIB CISCOSB-udp-MIB
CISCOSB-brgmacswitch-MIB CISCOSB-vlan-MIB
CISCOSB-3sw2swtables-MIB CISCOSB-ipstdacl-MIB
CISCOSB-smartPorts-MIB CISCO-SMI-MIB
CISCOSB-tbi-MIB CISCOSB-DebugCapabilities-MIB
CISCOSB-macbaseprio-MIB CISCOSB-CDP-MIB
CISCOSB-policy-MIB CISCOSB-vlanVoice-MIB
CISCOSB-env_mib CISCOSB-EVENTS-MIB
CISCOSB-sensor-MIB CISCOSB-sysmng-MIB
CISCOSB-aaa-MIB CISCOSB-sct-MIB
CISCOSB-application-MIB CISCO-TC-MIB
CISCOSB-bridgesecurity-MIB CISCO-VTP-MIB
CISCOSB-copy-MIB CISCO-CDP-MIB
CISCOSB-CpuCounters-MIB CISCOSB-eee-MIB
CISCOSB-Custom1BonjourService-MIB CISCOSB-ssl-MIB
CISCOSB-dhcp-MIB CISCOSB-qosclimib-MIB
CISCOSB-dlf-MIB CISCOSB-digitalkeymanage-MIB
CISCOSB-dnscl-MIB CISCOSB-tbp-MIB
CISCOSB-embweb-MIB CISCOSMB-MIB
CISCOSB-fft-MIB CISCOSB-secsd-MIB
CISCOSB-file-MIB CISCOSB-draft-ietf-entmib-sensor-MIB
CISCOSB-greeneth-MIB CISCOSB-draft-ietf-syslog-device-MIB
CISCOSB-interfaces-MIB CISCOSB-rfc2925-MIB
CISCOSB-interfaces_recovery-MIB
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 11 of 21
Feature Description
Remote Monitoring (RMON) Embedded RMON software agent supports 4 RMON groups (history, statistics, alarms, and events) for
enhanced traffic management, monitoring, and analysis
IPv4 and IPv6 dual stack Coexistence of both protocol stacks to ease migration
Firmware upgrade ● Web browser upgrade (HTTP/HTTPS) and TFTP and upgrade over SCP running over SSH
● Upgrade can be initiated through console port as well
● Dual images for resilient firmware upgrades
Port mirroring Traffic on a port can be mirrored to another port for analysis with a network analyzer or RMON probe. Up to 8
source ports can be mirrored to one destination port. A single session is supported
VLAN mirroring Traffic from a VLAN can be mirrored to a port for analysis with a network analyzer or RMON probe. Up to 8
source VLANs can be mirrored to one destination port. A single session is supported
DHCP (options 12, 66, 67, 82, DHCP options facilitate tighter control from a central point (DHCP server) to obtain IP address,
129, and 150) autoconfiguration (with configuration file download), DHCP relay, and hostname
Secure Copy (SCP) Securely transfer files to and from the switch
Autoconfiguration with Enables secure mass deployment with protection of sensitive data
Secure Copy (SCP) file
download
Text-editable config files Config files can be edited with a text editor and downloaded to another switch, facilitating easier mass
deployment
Smartports Simplified configuration of QoS and security capabilities
Auto Smartports Applies the intelligence delivered through the Smartport roles and applies it automatically to the port based on
the devices discovered over Cisco Discovery Protocol or LLDP-MED. This facilitates zero-touch deployments
Textview CLI Scriptable command-line interface. A full CLI as well as a menu-based CLI is supported. User privilege levels
1, 7, and 15 are supported for the CLI
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 12 of 21
Feature Description
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 13 of 21
Feature Description
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 14 of 21
Feature Description
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 15 of 21
Feature Description
Cabling type Unshielded Twisted Pair (UTP) Category 5 or better for 10BASE-T/100BASE-TX; UTP Category 5
Ethernet or better for 1000BASE-T
LEDs System, Link/Act, PoE, Speed, LED power saving option
Flash 256 MB
CPU memory 512 MB
Packet buffer All numbers are aggregate across all ports as the buffers are dynamically shared:
SF350-08 12 Mb
SF352-08 1.5 Mb
SF352-08P 1.5 Mb
SF352-08MP 1.5 Mb
SF350-24 12 Mb
SF350-24P 12 Mb
SF350-24MP 12 Mb
SF350-48 24 Mb
SF350-48P 24 Mb
SF350-48MP 24 Mb
SG350-8PD 12 Mb
SG350-10 12 Mb
SG350-10P 12 Mb
SG355-10P 12 Mb
SG350-10SFP 1.5 Mb
SG350-20 1.5 Mb
SG350-10MP 12 Mb
SG350-28 12 Mb
SG350-28P 12 Mb
SG350-28MP 12 Mb
SG350-28SFP 12 Mb
SG350-52 24 Mb
SG350-52P 24 Mb
SG350-52MP 24 Mb
Supported SFP modules SKU Media Speed Maximum Distance
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 16 of 21
Feature Description
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 17 of 21
Feature Description
Power 100-240V 50-60 Hz, internal, universal: SF350-24, SF350-24P, SF350-24MP, SF350-48, SF350-48P, SF350-
48MP, SG350-20, SG350-28, SG350-28P, SG350-28MP, SG350-28SFP, SG350-52, SG350-52P, SG350-
52MP
100-240V 50-60 Hz, 0.5A, external: SF350-08
100-240V 50-60 Hz, 0.7A, external: SF352-08, SG350-8PD
100-240V 50-60 Hz, 0.7A, external: SG350-10
100-240V 50-60 Hz, 1.5A, external: SG350-10P
100-240V 50-60 Hz, internal, universal: SG355-10P
100-240V 50-60 Hz, 2.0A, external: SF352-08P, SF352-08MP, SG350-10MP
Certification UL (UL 60950), CSA (CSA 22.2), CE mark, FCC Part 15 (CFR 47) Class A
Operating temperature 32° to 113°F (0° to 45°C):
SG350-08PD
32° to 122°F (0° to 50°C):
SF350-08, SF352-08, SF352-08P, SF352-08MP, SF350-24, SF350-24P, SF350-24MP, SF350-48, SF350-
48P, SF350-48MP, SG350-10, SG350-10P, SG355-10P, SG350-10MP, SG350-10SFP, SG350-20, SG350-28,
SG350-28P, SG350-28MP, SG350-28SFP, SG350-52, SG350-52P, SG350-52MP
Storage temperature –4° to 158°F (–20° to 70°C)
Operating humidity 10% to 90%, relative, noncondensing
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 18 of 21
Feature Description
Package Contents
● Cisco 350 Series Switch
● Power Cord (Power Adapter for Desktop SKUs)
● Mounting Kit included in all SKUs, including desktop models
● Console Cable
● Quick Start Guide
Minimum Requirements
● Web browser: Mozilla Firefox version 8 or later; Microsoft Internet Explorer version 7 or later, Safari, Chrome
● Category 5 Ethernet network cable
● TCP/IP, network adapter, and network operating system (such as Microsoft Windows, Linux, or Mac OS X) installed on each computer in the
network
Ordering Information
Table 2 provides ordering information for the Cisco 350 Series Switches. Table 3 gives region- and country-
specifice information, and Table 4 provides MFE and MGE transceiver ordering information.
Gigabit Ethernet
SG350-8PD SG350-8PD-K9 ● 8 10/100/1000 ports
● 2 2.5G ports
● 2 combo mini-GBIC ports
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 19 of 21
Model Name Order Product ID Number Description
SG350-28P SG350-28P-K9 ● 24 10/100/1000 ports (24 PoE ports with 195W power budget)
● 2 Gigabit copper/SFP combo + 2 SFP ports
SG350-28MP SG350-28MP-K9 ● 24 10/100/1000 ports (24 PoE+ ports with 382W power budget)
● 2 Gigabit copper/SFP combo + 2 SFP ports
*
Each combo mini-GBIC port has one 10/100/1000 Ethernet port and one mini-GBIC/SFP Gigabit Ethernet slot, with one port
active at a time.
The -xx in the Product Order ID Number is a country-/region-specific suffix. For example, the complete PID of SG350-28P for the
United States is SG350-28P-K9-NA. Please refer to Table 2 for the correct suffix to use for your country/region.
Suffix Country/Region
-NA ● USA, Canada, Mexico, Colombia, Chile and rest of LATAM
-BR ● Brazil
-AR ● Argentina
-EU ● EU, Russia, Ukraine, Israel, UAE, Turkey, Egypt, South Africa, Indonesia, Philippines, Vietnam, Thailand,
India, Korea
-UK ● United Kingdom, Saudi Arabia, Qatar, Kuwait, Singapore, Hong Kong, Malaysia
-CN ● China
-IN ● India
-JP ● Japan
-KR ● Korea
The products may also be available in a country/region not listed in Table 3. Not all product models are offered in
all countries/regions. For India, either -EU or -IN suffix will be used depending on product models. For Korea, either
-EU or -KR suffix will be used depending on product models. Please consult with your local Cisco sales
representative or Cisco partners for more details.
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 20 of 21
Table 4. MFE and MGE Transceiver Ordering Information
MGE Transceivers
MGBLH1 1000BASE-LH SFP transceiver, for single-mode fiber, 1310 nm wavelength, support up to 40 km
MGBSX1 1000BASE-SX SFP transceiver, for multimode fiber, 850 nm wavelength, support up to 550 m
Cisco Capital
Financing to Help You Achieve Your Objectives
Cisco Capital can help you acquire the technology you need to achieve your objectives and stay competitive. We
can help you reduce CapEx. Accelerate your growth. Optimize your investment dollars and ROI. Cisco Capital
financing gives you flexibility in acquiring hardware, software, services, and complementary third-party equipment.
And there’s just one predictable payment. Cisco Capital is available in more than 100 countries. Learn more.
© 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 21 of 21