JetStream 8-Port 2.5GBASE-T & 2-Port 10GE SFP+ L2+ Managed PoE+ Switch
Unlock the full power of next‑generation networks with this JetStream L2+ managed switch, featuring multi‑gigabit PoE+, 10G uplinks, advanced security, and seamless Omada SDN integration.
Key Features
- 8 × 2.5G PoE+ Ports for WiFi 6
- 8 × 2.5 Gbps RJ45 ports break the gigabit limit and fully support WiFi 6 access points.
- Single Ethernet cable for both data and power.
-
Total PoE power budget: 240 W (8 × 802.3at/af‑compliant PoE+ ports).
-
2 × 10G SFP+ Uplink Ports
- 2 × 10 Gbps SFP+ slots for high‑bandwidth uplinks.
- Delivers non‑blocking switching performance and ultra‑low latency.
-
Ideal for high‑speed connections to servers and core/aggregation switches.
-
Omada SDN Integration
- Fully integrated with Omada Software‑Defined Networking (SDN).
- Zero‑Touch Provisioning (ZTP), centralized cloud management, and intelligent monitoring.
- Manage access points, switches, and gateways from a single interface.
-
Supports Omada Hardware Controllers (OC200/OC300), Software Controller, and Cloud‑Based Controller.
-
Centralized Cloud Management
- Cloud access for remote management.
-
Omada app support for convenient monitoring and configuration.
-
Advanced L2+ & L3 Features
- Supports a rich set of L2+ and L3 capabilities.
- Static routing to segment networks and route internal traffic efficiently.
-
Suitable for enterprises, campuses, and ISPs.
-
Robust Security
- IP‑MAC‑Port‑VID Binding, Port Security, Storm Control, DHCP Snooping.
- Integrated DoS defense with common attack profiles.
- ACLs (L2–L4) for granular access control by MAC, IP, TCP/UDP ports, VLAN ID, and more.
- 802.1X with RADIUS/TACACS+ for authenticated network access.
-
Port isolation, AAA, and secure management via HTTPS and SSH.
-
Optimized Voice & Video
- L2/L3/L4 QoS and IGMP snooping for intelligent traffic management.
-
Prioritizes voice and video to keep services smooth under heavy load.
-
ISP‑Oriented Features
- sFlow, QinQ, L2PT, PPPoE ID insertion, IGMP authentication.
-
802.3ah OAM and DLDP for link monitoring and troubleshooting.
-
IPv6‑Ready Network
- Dual IPv4/IPv6 stack, MLD snooping, IPv6 ACL, DHCPv6 Snooping, IPv6 interface.
- PMTU discovery and IPv6 Neighbor Discovery for Next Generation Network (NGN) readiness.
Product Highlights
Multi‑Gigabit PoE+ for WiFi 6
With 8 × 2.5 Gbps PoE+ ports, this switch delivers ample bandwidth for WiFi 6 access points and future expansion. A total 240 W PoE budget enables flexible deployment using a single Ethernet cable for both power and data, fitting a wide range of application scenarios.
Enterprise‑Class 10G Uplinks
2 × 10 Gbps SFP+ uplink slots provide high‑speed, non‑blocking performance and ultra‑low latency, making it easy to build reliable, lightning‑fast connections to core switches and servers.
Omada SDN with Cloud Access
Integrated into the Omada SDN platform, this switch supports: - 100% centralized cloud management - Unified wired and wireless network control - Seamless scalability for hospitality, education, retail, offices, and more
Enterprise‑Level Networking Features
Advanced L3 & L2+ Capabilities
- Static routing to efficiently route internal traffic.
- Extensive L2+ feature set to build scalable, robust networks for enterprises, campuses, and ISPs.
Secure Networking
- Threat Protection
- IP‑MAC‑Port‑VID Binding
- Port Security
- Storm Control
- DHCP Snooping
- ARP Inspection
-
DoS Defend with pre‑defined attack list
-
Access Control
- ACLs (MAC, IP, IPv6, time‑based, packet content)
- 802.1X (port‑based and MAC‑based), MAB, Guest VLAN
-
RADIUS authentication and accounting, AAA (including TACACS+)
-
Traffic Containment
- Broadcast/Multicast/Unicast storm control (kbps/ratio)
-
Port isolation
-
Secure Management
- HTTPS with SSLv3/TLS 1.2
- SSHv1/SSHv2 for CLI access
- IP/Port/MAC‑based management access control
Advanced QoS for Voice & Video
- 8 priority queues with 802.1p CoS/DSCP priority.
- Queue scheduling: SP, WRR, SP+WRR.
- Port/flow‑based rate limiting and smoother performance.
- Flow actions: mirror, redirect, rate limit, QoS remark.
- Prioritization by IP, MAC, TCP/UDP port, and more to ensure consistent voice and video quality.
VLAN & Multicast Management
- Up to 4K VLAN groups (802.1Q tagged VLAN, MAC VLAN, protocol VLAN, private VLAN).
- VLAN VPN (QinQ), port‑based QinQ, selective QinQ, GVRP, Voice VLAN.
- IGMP Snooping (v1/v2/v3), IGMP Snooping Querier, Fast Leave, IGMP authentication.
- MLD Snooping (v1/v2), MLD Snooping Querier, Fast Leave.
- Static multicast group configuration, MVR.
- Multicast filtering with 256 profiles and 16 entries per profile.
Link & Topology Control
- Link aggregation: static and 802.3ad LACP.
- Up to 8 aggregation groups, 8 ports per group.
- Spanning Tree: 802.1d STP, 802.1w RSTP, 802.1s MSTP.
- STP security: TC Protect, BPDU Filter, Root Protect.
- Loopback detection (port‑based, VLAN‑based).
- 802.3x Flow Control, HOL blocking prevention.
- Port and CPU mirroring (one‑to‑one, many‑to‑one, Tx/Rx/Both).
ISP‑Focused Functions
- sFlow, QinQ, L2PT, PPPoE ID insertion.
- IGMP authentication.
- 802.3ah OAM and DLDP for link diagnostics and monitoring.
Hardware Specifications
| Category | Details |
|---|---|
| Product Type | L2+ Managed Switch with PoE+ |
| Model | TL-SG3210XHP-M2 |
| Interfaces | 8 × 100/1000/2500 Mbps RJ45 ports 2 × 10G SFP+ slots 1 × RJ45 console port 1 × Micro-USB console port |
| PoE Standard | 802.3at/af‑compliant (PoE+ on 8 ports) |
| PoE Power Budget | 240 W |
| Fan Quantity | 2 |
| Power Supply | 100–240 V AC, 50/60 Hz |
| Dimensions (W × D × H) | 17.3 × 7.1 × 1.7 in (440 × 180 × 44 mm) |
| Mounting | Rack‑mountable |
| Max Power Consumption | 17.24 W (110 V/60 Hz, no PD) 291.49 W (110 V/60 Hz, with 240 W PD) |
| Max Heat Dissipation | 58.82 BTU/h (110 V/60 Hz, no PD) 994.56 BTU/h (110 V/60 Hz, with 240 W PD) |
Performance
| Metric | Specification |
|---|---|
| Switching Capacity | 80 Gbps |
| Packet Forwarding Rate | 59.52 Mpps |
| MAC Address Table | 16 K entries |
| Packet Buffer Memory | 12 Mbit |
| Jumbo Frame Size | 9 KB |
Software & Management Features
Quality of Service (QoS)
- 8 priority queues.
- 802.1p CoS/DSCP priority.
- Queue scheduling: SP, WRR, SP+WRR.
- Port/flow‑based rate limiting.
- Flow actions: mirror, redirect, rate limit, QoS remark.
L3 Features
- Up to 16 IPv4/IPv6 interfaces.
- Static routing: up to 48 static routes.
- Static ARP: 128 entries.
- Proxy ARP, Gratuitous ARP.
- DHCP Server, DHCP Relay, DHCP Interface Relay, DHCP VLAN Relay, DHCP L2 Relay.
L2 & L2+ Features
- Link aggregation (static, 802.3ad LACP).
- Up to 8 aggregation groups with 8 ports per group.
- STP/RSTP/MSTP with security enhancements.
- 802.3x Flow Control, HOL blocking prevention.
- Port and CPU mirroring (one‑to‑one, many‑to‑one, Tx/Rx/Both).
VLAN
- Max 4K VLAN groups.
- 802.1Q tagged VLAN.
- MAC VLAN (7 entries).
- Protocol VLAN (16 templates, 16 VLANs).
- Private VLAN, GVRP.
- VLAN VPN (QinQ), port‑based QinQ, selective QinQ.
- Voice VLAN.
Multicast
- IGMP Snooping v1/v2/v3 with Fast Leave and Querier.
- IGMP Authentication.
- MLD Snooping v1/v2 with Fast Leave and Querier.
- Static multicast group configuration.
- MVR.
- Multicast filtering: 256 profiles, 16 entries per profile.
Access Control Lists (ACL)
- Time‑based ACLs.
- MAC ACL: source/destination MAC, VLAN ID, user priority, EtherType.
- IP ACL: source/destination IP, fragment, IP protocol, TCP flag, TCP/UDP port, DSCP/IP TOS, user priority.
- Combined ACL and packet content ACL.
- IPv6 ACL.
- ACL actions: mirroring, redirect, rate limit, QoS remark.
- ACL application to ports/VLANs.
Security
- IP‑MAC‑Port Binding: 512 entries.
- DHCP Snooping, ARP Inspection.
- IPv4 Source Guard: 100 entries.
- IPv6‑MAC‑Port Binding: 512 entries.
- DHCPv6 Snooping, ND Detection.
- IPv6 Source Guard: 100 entries.
- DoS Defend.
- Static/dynamic port security (up to 64 MAC addresses per port).
- Broadcast/Multicast/Unicast storm control (kbps/ratio).
- 802.1X port‑based and MAC‑based authentication.
- VLAN assignment, MAB, Guest VLAN.
- RADIUS authentication and accounting, AAA (including TACACS+).
- Port isolation.
- Secure web management (HTTPS with SSLv3/TLS 1.2).
- Secure CLI (SSHv1/SSHv2).
- IP/Port/MAC‑based access control.
IPv6 Features
- Dual IPv4/IPv6 stack.
- MLD Snooping.
- IPv6 ACL, IPv6 interface.
- Static IPv6 routing.
- IPv6 Neighbor Discovery (ND).
- Path MTU discovery.
- ICMPv6, TCPv6/UDPv6.
- IPv6 applications: DHCPv6 Client, Ping6, Tracert6, Telnet (v6), IPv6 SNMP, IPv6 SSH, IPv6 SSL, HTTP/HTTPS, IPv6 TFTP.
Management
- Web‑based GUI.
- CLI via console port or telnet.
- SNMP v1/v2c/v3, Trap/Inform.
- RMON (1, 2, 3, 9 groups).
- SDM Template.
- DHCP/BOOTP Client.
- 802.1ab LLDP/LLDP‑MED.
- DHCP AutoInstall.
- Dual image, dual configuration.
- CPU monitoring, cable diagnostics.
- EEE, password recovery, SNTP, system log.
- Rich MIB support including MIB II, interface, Ethernet, bridge, P/Q‑bridge, RMON, RMON2, RADIUS accounting/authentication, remote ping/traceroute, and TP‑Link private MIB.
Omada SDN & Cloud Management
- Omada App (requires OC300, OC200, Omada Cloud‑Based Controller, or Omada Software Controller).
- Centralized management via:
- Omada Cloud‑Based Controller
- Omada Hardware Controller (OC300/OC200)
- Omada Software Controller
- Cloud access (with supported Omada controller).
- Zero‑Touch Provisioning (ZTP) via Omada Cloud‑Based Controller.
- Advanced management functions:
- Automatic device discovery
- Batch configuration
- Batch firmware upgrading
- Intelligent network monitoring
- Abnormal event warnings
- Unified configuration
- Reboot schedule
Certifications
- CE
- FCC
- RoHS
Package Contents
- TL‑SG3210XHP‑M2 Switch
- Power Cord
- Quick Installation Guide
- Rackmount Kit
- Rubber Feet
System Requirements
Compatible operating systems include:
- Microsoft Windows 98SE, NT, 2000, XP, Vista, 7, 8, 10, 11
- MAC OS
- NetWare
- UNIX
- Linux
Environmental Specifications
- Operating Temperature: 0–50 °C (32–122 °F)
- Storage Temperature: –40–70 °C (–40–158 °F)
- Operating Humidity: 10–90% RH, non‑condensing
- Storage Humidity: 5–90% RH, non‑condensing
