Omada 24-Port 2.5G L2+ Managed PoE Switch with 4× 10G SFP+ (SG3428XPP-M2)
The Omada SG3428XPP-M2 is a 24-port 2.5GBASE-T L2+ managed switch featuring high‑power PoE, 10G uplinks, and centralized cloud management for flexible, high‑performance network deployments.
Key Features
- 24× 2.5GBASE‑T Ports
- 8× 2.5G PoE++ ports (up to 60 W PoE out per port)
-
16× 2.5G PoE+ ports (up to 30 W PoE out per port)
-
High PoE Power Budget
-
500 W total PoE budget
-
High-Speed Uplinks
-
4× 10G SFP+ slots
-
Flexible Management
- Centralized cloud management via web or Omada app
-
Standalone management via web, CLI, SNMP, and RMON
-
Advanced L2/L2+ Capabilities
- Static Routing to optimize internal traffic efficiency
- VLAN, ACL, QoS, IGMP Snooping, OAM, DDM
- ERPS for rapid protection and recovery in ring topologies
Hardware Features
| Feature | Details |
|---|---|
| Interfaces | 24× 2.5 Gbps RJ45 (8× PoE++, 16× PoE+), 4× 10G SFP+ |
| Console Ports | 1× RJ45 console port, 1× Micro‑USB console port |
| Fan Quantity | 3 |
| Physical Security Lock | Yes |
| Power Supply | 100–240 V AC ~ 50/60 Hz |
| PoE Standards | 802.3bt/at/af compliant |
| PoE++ Ports | 8 ports, up to 60 W per port |
| PoE+ Ports | 16 ports, up to 30 W per port |
| Total PoE Budget | 500 W |
| Max. Power Consumption | 629.1 W (110 V/60 Hz) |
| Max. Heat Dissipation | 2153.45 BTU/h (110 V/60 Hz) |
| Dimensions (W×D×H) | 17.3 × 13.0 × 1.7 in (440 × 330 × 44 mm) |
| Mounting | Rack mountable |
Performance
| Parameter | Details |
|---|---|
| Switching Capacity | 200 Gbps |
| Packet Forwarding Rate | 148.80 Mpps |
| MAC Address Table | 32 K |
| Packet Buffer Memory | 16 Mbit |
| Jumbo Frame | 9 KB |
Quality of Service (QoS)
- 8 priority queues
- 802.1p CoS / DSCP priority
- Queue scheduling: SP, WRR, SP+WRR
- Bandwidth control: Port/flow‑based rate limiting
- Flow actions: QoS remark (802.1P remark, DSCP remark)
- Smoother performance through granular traffic prioritization
L2 and L2+ Features
- IP Interfaces & Routing
- 32 IPv4/IPv6 interfaces
- 48 IPv4/IPv6 static routes
- Static ARP: 128 static entries
- 512 ARP entries
-
Proxy ARP, Gratuitous ARP
-
DHCP
- DHCP Server
-
DHCP Relay: Interface Relay, VLAN Relay, L2 Relay
-
Resiliency & Aggregation
- Link Aggregation
- Spanning Tree Protocol
- Loopback Detection
- 802.3x Flow Control
-
Mirroring
-
L2 Multicast
- Supports 511 IGMP (IPv4, IPv6) groups
- IGMP Snooping & IGMP Authentication
- Multicast VLAN Registration (MVR)
- MLD Snooping
- Multicast Filtering: 256 profiles, 16 entries per profile
Advanced Network Features
- Automatic device discovery
- Batch configuration and batch firmware upgrading
- Intelligent network monitoring
- Abnormal event warnings
- Unified configuration
- Reboot schedule
ISP and Carrier Features
- L2PT (Layer 2 Protocol Tunneling)
- Device Link Detect Protocol (DLDP)
- PPPoE ID insertion
- ERPS
- 802.3ah Ethernet Link OAM
- DDM
VLAN Capabilities
- Up to 4K VLAN groups
- 802.1Q tagged VLAN
- MAC VLAN: 256 entries
- Protocol VLAN: 16 protocol templates, 16 Protocol VLANs
- Private VLAN
- GVRP
- VLAN VPN: VLAN Mapping, VLAN Replace
- Voice VLAN
Access Control Lists (ACL)
- Time‑based ACL
- MAC ACL: Source MAC, Destination MAC, VLAN ID, User Priority, Ether Type
- IP ACL: Source IP, Destination IP, Fragment, IP Protocol, TCP Flag, TCP/UDP Port, DSCP/IP TOS
- Combined ACL
- Packet Content ACL
- IPv6 ACL
- Policies: Mirroring, Redirect, Rate Limit, QoS Remark
- ACL can be applied to ports/VLANs
Security Features
- IP‑MAC‑Port Binding: 512 entries
- DHCP Snooping
- ARP Inspection
- IPv4 Source Guard: 100 entries
- IPv6‑MAC‑Port Binding: 512 entries
- DHCPv6 Snooping
- ND Detection, ND Snooping
- IPv6 Source Guard: 100 entries
- DoS defense
- DHCP Filter
- Static/Dynamic Port Security: Up to 64 MAC addresses per port
- Broadcast/Multicast/Unicast storm control (kbps/ratio/pps modes)
802.1X & Authentication
- 802.1X port‑based authentication
- MAC‑based authentication
- VLAN assignment
- MAB, Guest VLAN
- RADIUS authentication and accounting support
- AAA (including TACACS+)
- Port isolation
Secure Management
- Secure web management via HTTPS with SSLv3/TLS 1.2
- Secure CLI management via SSHv1/SSHv2
- IP/Port/MAC‑based access control
IPv6 Features
- Dual IPv4/IPv6 stack
- MLD Snooping
- IPv6 ACL
- IPv6 Interface
- Static IPv6 routing
- IPv6 Neighbor Discovery (ND)
- Path MTU discovery
- ICMPv6
- TCPv6/UDPv6
- IPv6 applications: DHCPv6 Client, Ping6, Tracert6, Telnet(v6), IPv6 SNMP, IPv6 SSH, IPv6 SSL, HTTP/HTTPS, IPv6 TFTP
MIB Support
- MIB II (RFC1213)
- Interface MIB (RFC2233)
- Ethernet Interface MIB (RFC1643)
- Bridge MIB (RFC1493)
- P/Q‑Bridge MIB (RFC2674)
- RMON MIB (RFC2819)
- RMON2 MIB (RFC2021)
- RADIUS Accounting Client MIB (RFC2620)
- RADIUS Authentication Client MIB (RFC2618)
- Remote Ping, Traceroute MIB (RFC2925)
- TP‑Link private MIB support
Management Features
- Omada App Management
-
Requires Omada Hardware Controller, Omada Cloud‑Based Controller, or Omada Software Controller
-
Centralized Management
- Omada Cloud‑Based Controller
- Omada Hardware Controller
-
Omada Software Controller
-
Cloud Access & Provisioning
- Cloud Access (with Omada controllers)
-
Zero‑Touch Provisioning (with Omada Cloud‑Based Controller)
-
Local & Remote Tools
- Web‑based GUI
- CLI via console port, telnet
- SNMP v1/v2c/v3: Trap/Inform, RMON (1,2,3,9 groups)
- SDM Template
- DHCP/BOOTP Client
- 802.1ab LLDP/LLDP‑MED
- DHCP AutoInstall
- Dual Image, Dual Configuration
- CPU Monitoring
- Cable Diagnostics
- EEE
- Password Recovery
- SNTP
- System Log
Certifications
- CE
- FCC
- RoHS
Package Contents
- SG3428XPP-M2 Switch
- Power cord
- Quick Installation Guide
- Rackmount kit
- Rubber feet
System Requirements
- Microsoft Windows 98SE, NT, 2000, XP, Vista, Windows 7/8/10/11
- MAC OS
- NetWare
- UNIX or Linux
Environmental Specifications
- Operating Temperature: 0–40 °C (32–104 °F)
- Storage Temperature: −40–70 °C (−40–158 °F)
- Operating Humidity: 10–90% RH, non‑condensing
- Storage Humidity: 5–90% RH, non‑condensing
