The Grandstream Enterprise 8 Port Layer managed 3 switch allows medium-to-large enterprises to build scalable, secure, high performance and smart business networks that are fully manageable. It supports advanced VLAN for flexible and sophisticated traffic segmentation, advanced QoS for prioritization of network traffic, IGMP/MLD Snooping for network performance optimization, and comprehensive security capabilities against potential attacks.
Can be managed in a number of ways, including the local Web user interface of the switch and CLI, the command-line interface. The GWN7811 is also supported by GWN.Cloud and GWN Manager, Grandstreams cloud and on-premise network management platform. The Grandstream GWN7811 are the best value enterprise-grade managed network switches for medium-to-large businesses.
Features
- 8 Gigabit Ethernet ports and 2Â 10Gigabit SFP+ ports
- Supports deployment in IPv6 & IPv4 networks
- ARP Inspection, IP Source Guard, DoS protection, port security & DHCP snooping
- Embedded controller to manage switch; GWN.Cloud and GWN Manager, Grandstreams cloud and on-premise network management platform
Powerful Business Processing Capabilities
- Routing including static routing, dynamic routing and policy routing to realize routing data communication between different network segments. Simpler, more efficient and more reliable
- DHCP Server and Relay to assign IP address to hosts in the network
- GVRP to realize VLAN dynamic distribution, registration and attribute propagation, reduce the amount of manual configuration, and ensure the correctness of configuration
- QoS, including Port Priority, Priority Mapping, Queue Scheduling, Traffic Shaping and Rate Limit
- ACL to realize the filtering of data packets by configuring matching rules, processing operations and time schedule, and provide flexible security access control policies
- IGMP Snooping and MLD Snooping to meet the needs of multiterminal HD video surveillance and video conference
- IPv6 to meet the needs of the network transition from IPv4 to IPv6
Multiple Security Prevention Mechanism
- Static MAC table, dynamic MAC table to allow data transmission, and filter MAC table to avoid network attacks
- Packet filtering based on binding of IP address, MAC address, VLAN and port
- Dynamic ARP Inspection to protect against ARP spoofing and ARP flooding attacks such as gateway spoofing, man-in-the middle attacks and etc. that are common in LAN environment
- IP Source Guard to prevent illegal address spoofing including IP/MAC/VLAN spoofing and IP/VLAN spoofing
- DoS Attack Defense, including Land Attack, Smurf Attack, TCP SYN Attack, Ping Flooding and more
- 802.1X, RADIUS, AAA, TACACS+ authentications to provide authentication function for LAN devices
- Supports port security. When the number of MAC addresses learned by a port reaches the maximum number, it will be set to error-down status automatically or stop learning to prevent MAC address attack and control the network traffic of the port
- Supports DHCP Snooping. Only allow DHCP packets from trusted ports to keep the enterprise DHCP environment safe
Diverse Reliability Protection
- STP/RSTP/MSTP to guarantee fast convergence, improve fault tolerance, ensure stable network and provide link load balance, and redundancy
- ERPS (pending), loopback detection to identify and remove loops on the network
- VRRP (pending) to minimize network downtime caused by gateway failure
- Link aggregation to increase bandwidth, improve reliability and load balancing
- Storm control to prevent traffic interruption caused by broadcast, multicast or certain unicast packets
 Easy Management and Maintenance
- Managed by Web GUI, CLI(Console, Telnet, SSH) and SNMP (v1/v2c/v3)
- Monitoring of CPU and memory usage. Support common networking tools such as Ping, Traceroute, UDLD(TBD) & Copper Test to analysis networking issues
- Supports RMON, Syslog, traffic statistics and sFlow(pending) for network optimization
- LLDP and LLDP-MED for automatic discovery, provisioning and management of endpoint devices
- Managed by GWN.Cloud and GWN Manager
Â
Specifications:Â
- Gigabit Ethernet Ports: 8
- 10Gigabit SFP+ Ports: 2
- Link Aggregation: 5
- Surge Protection: ± 6KV CM and DM for power, ± 4KV CM for network ports
- Total non-blocking throughput:Â 28Gbps
- Switching Capability:Â 56Gbps
- Forwarding Rate:Â 41.644Mpps
- Packet Buffer:Â 12MB
Switching:
- 16K static, dynamic and filtering MAC addresses
- 4K VLANs, port-based VLAN, IEEE 802.1Q VLAN tagging, voice VLAN
- VLAN virtual interface
- GVRP (pending)
- Spanning tree, 32 instances for STP/RSTP/MSTP
Routing:
- Static routing
- Dynamic routing, including RIP, RIPng, OSPF and OSPFv3
- Policy routing (pending)
Multicast:
- IGMP Snooping
- MLD Snooping
- MVR (pending)
QoS/ACL:
- Port priority
- Priority mapping
- Queue scheduling, including SP, WRR, WFQ, SP-WRR and SP-WFQ
- Traffic shaping
- Rate limit
- 2K ACL for Ethernet, IPv4 and IPv6
DHCP:
- DHCP server, DHCP relay, DHCP Option 82, 60, 160 and 43
Maintenance:
- CPU and memory monitoring, SNMP, RMON, LLDP&LLDP-MED, backup and restore, syslog, diagnostics including Ping, Traceroute, port mirroring, UDLD (TBD) and copper test
Security:
- User hierarchical management and password protection, HTTPS, SSH, Telnet
- 802.1X authentication
- AAA authentication including RADIUS, TACACS+
- Storm control
- Port isolation, port security, sticky MAC
- Filtering MAC address
- IP source guard, DoS attack prevention, ARP inspection
- DHCP Snooping
- Loop protection including BPDU protection, root protection(pending) and loopback protection(pending)
- Kensington Security Slot (Kensington Lock) support
Mounting:
- Desktop, Wall-Mount, or Rack-Mount(rack-mounting kits included)
- Switch, 1x 1.2m(10A) AC Cable, 1x 25cm Ground Cable, 4x Rubber Feet, 1x Power Cord Anti-Trip, 2x Lug Ear, 8x Screws



















