Features and Highlights
Agile Networking for Service Agility
Create campus networks that meet your exact requirements. CloudEngine S5732-H provides open interfaces and supports user-defined forwarding behavior, enabling you to develop new protocols and functions as your business expands. With a high-speed chip that delivers flexible packet processing and traffic control capabilities, you can define your own forwarding models, forwarding behavior, and lookup algorithms.
In addition to the capabilities of traditional switches, CloudEngine S5732-H offers microcode programmability to facilitate rapid (within months) provisioning of new services without the need to replace existing hardware. In contrast, traditional ASIC-based switches, which use a fixed forwarding architecture and follow a fixed forwarding process, delay service rollout by up to three years because new hardware must be developed to support the new services. CloudEngine S5732-H enables you to meet service requirements now and in the future.
Agile Delivery of Abundant Services
Converge your wired and wireless networks to simplify operations. CloudEngine S5732-H integrates native WLAN AC functionality to support up to 1024 WLAN APs. This not only avoids the costs of purchasing additional WLAN AC hardware, but also overcomes the bottleneck associated with the forwarding performance of external WLAN ACs.
Through its unified user management interface, CloudEngine S5732-H delivers a consistent user experience for both wired and wireless users. It authenticates wired and wireless users using 802.1x, MAC address, Portal, and other authentication methods, and can manage users based on user groups, domains, and time ranges. These capabilities enable you to visualize the management of users and services and transform from device-centric to user-centric management.
CloudEngine S5732-H also provides strong quality of service (QoS) capabilities and efficient algorithms for queue scheduling and congestion control. Adopting innovative priority queuing and multi-level scheduling mechanisms, CloudEngine S5732-H implements fine-grained scheduling of data flows to meet the various service quality requirements of different users and services.
Agile, Fine-Grained Network Management
Increase your network management capabilities while simplifying how you manage your networks. CloudEngine S5732-H uses the Packet Conservation Algorithm for Internet (iPCA) technology, which transforms the fault locating process that traditionally relied on using simulated traffic. This cutting-edge fault detection technology monitors network quality for any service flow anywhere and anytime, without incurring additional costs. It rapidly detects temporary service interruptions and accurately identifies faulty ports, delivering fine-grained management capabilities for your network.
In addition, CloudEngine S5732-H supports Two-Way Active Measurement Protocol (TWAMP) to accurately check any IP link and obtain the entire network's IP performance, eliminating the need to use dedicated probes or proprietary protocols. It also supports SVF and functions as a parent switch. The SVF technology offers the innovative network management solution, enabling you to virtualize a physical network (comprised of small core or aggregation switches, access switches, and APs) into a "super switch".
CloudEngine S5732-H also supports the Easy Deploy function, which manages access switches similar to how an AC manages APs. Access switches and APs can go online with zero-touch configuration. In the Easy Deploy solution, a Commander collects topology information about connected clients, delivers configurations and scripts to clients, and collects and displays information about power consumption on the entire network.
Comprehensive VPN Technologies
Reduce the cost of deploying VPNs with MPLS. CloudEngine S5732-H supports MPLS and allows users in different VPNs to connect to the same switch. Users connect to a provider edge (PE) device through the same physical port on the switch, and are isolated through multi-instance routing. In addition, CloudEngine S5732-H can be used as an access device for high-quality enterprise leased lines.
Flexible Ethernet Networking
Increase the reliability and flexibility of your networks. CloudEngine S5732-H supports the traditional spanning tree protocols (STP, RSTP, and MSTP), as well as the latest Ethernet Ring Protection Switching (ERPS) standard that implements millisecond-level protection switching based on traditional Ethernet MAC and bridging functions. In addition, it supports Huawei's Smart Ethernet Protection (SEP) protocol. SEP delivers fast protection switching within 50 ms for ring network topologies, such as open ring, closed ring, and cascading ring topologies. Huawei designed this protocol specifically for the Ethernet link layer and is both reliable and easy to maintain.
To further improve reliability of access devices, CloudEngine S5732-H also supports Smart Link and the Virtual Router Redundancy Protocol (VRRP), which implement backup of uplinks. One CloudEngine S5732-H switch can connect to multiple aggregation switches through multiple links to significantly improve reliability of access devices.
Powerful Security Control
Secure your networks against malicious activities. CloudEngine S5732-H supports 802.1x, MAC address, Portal, and hybrid authentication, and can dynamically deliver user policies such as VLANs, QoS policies, and access control lists (ACLs). With a DHCP snooping binding table, CloudEngine S5732-H discards packets that do not match entries in the table — you can specify DHCP snooping trusted and untrusted ports to ensure that users connect only to the authorized DHCP server.
CloudEngine S5732-H also provides a series of mechanisms to defend against DoS and user-targeted attacks, and supports strict ARP learning to prevent attacks from exhausting ARP entries.
Mature IPv6 Features
Transition your networks towards IPv6. CloudEngine S5732-H supports IPv4/IPv6 dual stacks and IPv6 routing protocols (RIPng, OSPFv3, BGP4+, and IS-IS for IPv6). With these IPv6 features, you can deploy CloudEngine S5732-H switches on a pure IPv4 network, a pure IPv6 network, or a hybrid IPv4/IPv6 network, allowing you to upgrade your networks to IPv6 at your own pace.
Intelligent Stack (iStack)
Combine multiple switches into one logical switch to increase device reliability and network scalability. With iStack, you can virtualize up to nine physical switches into one logical switch to increase a stack's ports, bandwidth, and processing capacity. Member switches in a stack implement redundancy backup to improve device reliability and use inter-device link aggregation to improve link reliability. iStack simplifies device configuration and management, and you can log in to any member switch to manage all members in the stack.
PoE Power Supply
Power your devices flexibly. PoE-capable CloudEngine S5732-H series switches support both perpetual PoE and fast PoE. With perpetual PoE, you can reboot the switch after a software upgrade without interrupting power to PDs. And with fast PoE, the switch delivers power to PDs within 10 seconds after startup, much faster than the usual 1 to 3 minutes required by common switches. In addition, if a power failure occurs and a PoE-capable CloudEngine S5732-H series switch reboots, the switch immediately supplies power to PDs without waiting for the reboot process to complete, reducing the downtime of PDs.
Automate the deployment of virtual networks and transform a single-purpose network into a multi-purpose one. CloudEngine S5732-H supports VXLAN, with which you can construct a Unified Virtual Fabric (UVF). This enables you to not only deploy multiple service networks and tenant networks on the same physical network while isolating the service and tenant networks from each other, but also reduce network construction costs and improve resource utilization.
Because CloudEngine S5732-H switches support VXLAN, you can deploy them as centralized and distributed VXLAN gateways. These switches also support BGP EVPN for dynamically establishing VXLAN tunnels and can be configured using NETCONF/YANG.
Security with Big Data
Secure your networks with the power of big data. Through NetStream and collaboration with the Huawei Cybersecurity Intelligence System (CIS), CloudEngine S5732-H detects network security threats and displays the security posture across the entire network, enabling you to respond to security threats manually or through automation. The CIS delivers security policies to the Agile Controller, which then delivers them to switches so that the switches can take appropriate security measures.
In addition, CloudEngine S5732-H supports Encrypted Communication Analytics (ECA) for threat analysis in encrypted traffic. It extracts characteristics of encrypted streams based on NetStream sampling and Service Awareness (SA) and collaborates with the CIS, which uses AI to train traffic models and identify malicious traffic. The CIS displays detection results on a GUI, provides suggestions for handling threats, and automatically isolates threats with the Agile Controller.
CloudEngine S5732-H also supports network-wide threat deception for comprehensive, accurate, and efficient detection of attacks such as IP address scanning and port scanning. Interworking with the CIS to analyze threat traffic and with the Agile Controller to deliver security policies, CloudEngine S5732-H helps ensure your networks remain secure.
Open Programmability System (OPS)
Achieve rapid innovation of new functions, program O&M functions, and implement intelligent O&M through OPS. CloudEngine S5732-H supports OPS, which is an open, Python-based platform that provides RESTful APIs to realize flexible programmability. With OPS, you can implement rapid service expansion, automatic function deployment, and intelligent device management, driving down the cost of network operation and maintenance and facilitating network operations.
Ensure your switching devices always remain up to date. CloudEngine S5732-H obtains the version upgrade path and downloads the latest upgrades from the Huawei Online Upgrade Platform (HOUP) through a highly automated process. CloudEngine S5732-H also supports preloading of versions, shortening both the upgrade time and the service interruption time. The HOUP standardizes the upgrade operations, reducing the risk of upgrade failures. With the intelligent upgrade feature, you can simplify the upgrade operations and perform independent upgrades, thereby reducing your maintenance costs.
Realize intelligent O&M to deliver optimal user experience. Through Telemetry technology, CloudEngine S5732-H learns about the network in real time. Huawei's campus network analyzer, CampusInsight, in collaboration with CloudEngine S5732-H, analyzes network data using an intelligent fault identification algorithm. CampusInsight displays the real-time network status, demarcates and locates faults, and identifies network problems that affect user experience, enabling you to take remedial measures to ensure user experience.
CloudEngine S5732-H also supports a variety of intelligent O&M features for audio and video services, including the enhanced Media Delivery Index (eMDI). With eMDI, CloudEngine S5732-H can function as a monitored node, enabling CampusInsight to quickly and accurately demarcate faults that affect the quality of audio and video services.