
3
Converged Environments
The EX 3200 series fixed-configuration switches provide the
highest levels of availability in their class for the most demanding
converged data, voice and video environments, delivering a reliable
platform for unifying enterprise communications.
By providing full 15.4 watts of Class 3 PoE to power voice over
IP (VoIP) telephones, closed-circuit security cameras, wireless
access points and other IP-enabled devices, the EX 3200 series
switches deliver a future-proofed solution for converging disparate
networks onto a single IP infrastructure. The base system,
which offers eight PoE ports, lowers the cost and complexity of
designing the access layer by supporting a small number of WLAN
access points or IP phones rather than requiring the purchase of
PoE on all 24 or 48 ports.
To ease deployment, the EX 3200 series switches support the
industry-standard link-layer discovery protocol (LLDP) and LLDP-
Media Endpoint Detection (LLDP-MED) protocol, enabling the
switches to automatically discover Ethernet-enabled devices,
determine their power requirements, and assign virtual LAN
(VLAN) membership.
In addition, the EX 3200 series switches support rich quality of
service (QoS) functionality for prioritizing data, voice and video
traffic. The switches support eight class-of-service (CoS) queues
on every port, enabling them to maintain multi-level, end-to-end
traffic prioritizations. The EX 3200 series switches also support a
wide range of policy options, including strict priority, low-latency,
weighted random early drop (WRED) and shaped deficit weighted
round-robin (SDWRR) queuing.
Security
The EX 3200 series Ethernet switches fully integrate with the
Juniper Networks Unified Access Control (UAC) solution, which
consolidates all aspects of a user’s identity, device and location.
This enables administrators to enforce access control and security
down to the individual port or user levels.
Working as an enforcement point within the UAC solution, the
EX 3200 series switches provide both standards-based 802.1X
port-level access control for multiple devices per port as well as
Layer 2-4 policy enforcement based on user identity, location and/
or device. A user’s identity, device type, machine posture check
and location can be used to determine whether access should be
granted and for how long. If access is granted, the switch assigns
the user’s device to a specific VLAN based on authorization policy.
The switch can also apply security and/or QoS policies, or it can
mirror user traffic to a central location for logging, monitoring or
threat detection by intrusion prevention systems.
The EX 3200 series switches also provide a full complement of
integrated port security and threat detection features, including
DHCP (Dynamic Host Configuration Protocol) snooping, DAI
(Dynamic ARP Inspection), MAC limiting and IP Source Guard to
defend against internal and external spoofing, man-in-the-middle
and Denial of Service (DoS) attacks.
Figure 3: The EX 3200 series switches work with the Juniper UAC solution
to enforce access control down to the individual port level.
Simplied Management and Operations
The EX 3200 series switches include port profiles that allow
network administrators to automatically configure ports with
security, QoS and other parameters based on the type of device
connected to the port. Six preconfigured profiles are available,
including default, desktop, desktop plus IP phone, WLAN access
point, routed uplink and Layer 2 uplink. Users can select from the
existing profiles or create their own and apply them through the
Command Line Interface (CLI), J-Web or management system.
Four system management options are available for the EX 3200
series switches. The standard JUNOS CLI management interface
offers the same granular capabilities and scripting parameters
found in any JUNOS-powered router. The EX 3200 series switches
also include the integrated J-Web management tool, an embedded
Web-based device manager that allows users to configure, monitor,
troubleshoot and perform system maintenance on individual
switches via a browser-based graphical interface.
When managing a group of EX 3200 series switches, the Juniper
NetScreen-Security Manager (NSM) provides system-level
management across all Juniper switches in the network from a
single console.
Finally, EX 3200 series switch configuration, fault and performance
data can be exported to leading third-party management systems
such as HP OpenView, IBM Tivoli and Computer Associates
Unicenter, to provide a complete, consolidated view of network
operations.
Product Options
Four EX 3200 models are available (see Table 1 below).
Table 1: EX 3200 Series Ethernet Switches
SKU Access Port Configuration PoE
Ports
Height Power
Supply
EX3200-24T 24-port 10/100/1000BASE-T 8 1RU 320 W AC PSU
EX3200-24P 24-port 10/100/1000BASE-T 24 1RU 600 W AC PSU
EX3200-48T 48-port 10/100/1000BASE-T 8 1RU 320 W AC PSU
EX3200-48P 48-port 10/100/1000BASE-T 48 1RU 930 W AC PSU
Steel-Belted
Radius
Infranet
Controller
FW/VPN
UAC Agent Firewall
Enforcer Protected
Servers
Policy Manager
• Access granted
• VLAN assigned
• QoS policies applied
AAA
EX 3200
Series