Juniper EX4200

EX 4200 Specifications

View documentation here

SKUAccess Port ConfigurationPoE PortsHeightSystem Power (with PoE)
EX 4200-24T24-port 10/100/1000BASE-T81RU320 W AC
EX 4200-24P24-port 10/100/1000BASE-T241RU600 W AC
EX 4200-24F24-port 100BASE-FX/1000BASE-X (SFP)NA1RU320 W AC
EX 4200-48T48-port 10/100/1000BASE-T81RU320 W AC
EX 4200-48P48-port 10/100/1000BASE-T481RU930 W AC

Physical Specifications

24-port switches:

  • 24 10/100/1000BASE-T ports: 8 PoE (802.3af compliant) @ 15.4 W; 320W PSU
  • 24 10/100/1000BASE-T ports: 24 PoE (802.3af compliant) @ 15.4 W; 600W PSU

48-port switches:

  • 48 10/100/1000BASE-T ports: 8 PoE (802.3af compliant) @ 15.4 W; 320W PSU
  • 48 10/100/1000BASE-T ports: 48 PoE (802.3af compliant) @ 15.4 W; 930W PSU

24-port fiber switches:

  • 24 100BASE-FX/1000BASE-X SFP ports; 320W PSU

Backplane: 128 Gbps virtual-chassis interconnect to combine up to 10 units as a virtual chassis

Uplink module options:

  • 4-port 1GbE module with pluggable SFP optics
  • 2-port 10GbE module with pluggable XFP optics

Power Options

Power supplies: Autosensing; 100-120V / 200-240V; AC 320W, 600W and 930W dual load-sharing hot-swappable internal redundant power supplies
External RPS option
Minimum number of PSUs required for fully loaded chassis: 1 per switch


17.41 x 1.72 x 16.43 in
(44.21 x 4.32 x 41.73 cm)
1 Desktop installation width noted above, rack-mount width is 17.5 in (44.5 cm)
2 Height: 1 RU
3 Depth with 320 W PSU noted above, 18.8 in (47.8 cm) with 600/930 W PSU


EX 4200-24T with 320W PSU: 16.5 lb (7.5 kg)
EX 4200-24P with 600W PSU: 17.2 lb (7.8 kg)
EX 4200-48T with 320W PSU: 17.1 lb (7.8 kg)
EX 4200-48P with 930W PSU: 18.2 lb (8.3 kg)
EX 4200-24F with 320W PSU: 16.1 lb (7.3 kg)

Environmental Ranges

Operating temperature: 32° to 113°F (0° to 45°C)
Storage temperature: -40° to 158°F (-40° to 70°C)
Operating altitude: up to 10,000 ft (3,048 m)
Non-operating altitude: up to 16,000 ft (4,877 m)
Relative humidity operating: 10% to 85% (non-condensing)
Relative humidity non-operating: 0% to 95% (non-condensing)


Field-replaceable fan tray with multiple blowers (3)
Switch remains operational if one blower fails


Hardware Specifications

Switching Engine Model: Store and forward
10/100/1000BASE-T connector type: RJ-45
GbE SFP optic/connector type: RJ-45 or LC SFP fiber supporting 1000BASE-T SFP, SX (multimode), LX (single-mode) or ZX (single-mode)
100BASE-FX support on SFP ports: SX
GbE port density per system:

  • 24P/24T/24F: 28 (24 host ports + four-port GbE uplink module)
  • 48P/48T: 52 (48 host ports + four-port GbE uplink module)

10GbE XFP optic/connector type: 10GE XFP, SR (multimode), LR (single-mode), ER (single-mode) or ZR (single-mode)
10GbE port density per system (all models): 2 (uplink module)
IPv6, MPLS and GRE tunnel hardware support*

Physical Layer

Time Domain Reflectometry (TDR) for detecting cable breaks and shorts: 24P/24T and 48P/48T only
Auto MDI/MDIX support: 24P/24T and 48P/48T only (all ports)
Port speed downshift/setting max advertised speed on 10/100/1000BASE-T ports: 24P/24T and 48P/48T only, on all ports

Packet Switching Capacities

24P/24T: 88 Gbps
48P/48T: 136 Gbps
24F: 88 Gbps

Layer 2 Throughput (Mpps)

24P/24T: 65 Mpps (wire speed)
48P/48T: 101 Mpps (wire speed)
24F: 65 Mpps (wire speed)

Layer 2 Switching

Max MAC addresses per system: 24,000
Static MAC entries: 24,000
Jumbo frames: 9216 Bytes
Number of VLANs: 4,096
Port-based VLAN
MAC-based VLAN
VLAN tagging: 802.1Q
Voice VLAN
Physical port redundancy: Redundant trunk group (RTG)
STP (802.1D-2004)
Compatible with PVST+
STP enable/disable per port
Rapid-Spanning Tree (802.1D-2004)
MST (802.1D-2004)
Number of 802.1s instances supported: 64
LLDP-MED with VoIP integration
RVI (Routed VLAN Interface)

Layer 3 Features: IPv4

Max number of ARP entries: 16,000
Max number of IPv4 unicast routes in hardware: 12,000
Max number of IPv4 multicast routes in hardware: 2,000
Routing protocols: RIPv1/v2, OSPF, BGP, ISIS
Static routing
Routing policy
Bidirectional Forwarding Detection
Layer 3 redundancy: VRRP


MAC limiting
Allowed MAC addresses—configurable per port
Dynamic ARP Inspection (DAI)
Local proxy ARP
Static ARP support
DHCP snooping

Access Control Lists (ACLs) (JUNOS firewall filters)

Port-based ACL (PACL)—Ingress
VLAN-based ACL (VACL)—Ingress and Egress
Router-based ACL (RACL)—Ingress and Egress
ACL entries (ACE) in hardware per system: 7,000
ACL counter for denied packets
ACL counter for permitted packets
Ability to add/remove/change ACL entries in middle of list (ACL editing)
Layer 2—L4 ACL
802.1X port-based
802.1X multiple supplicants
802.1X with VLAN assignment
802.1X with authentication bypass access (based on host MAC address)
802.1X with VoIP VLAN support
802.1X dynamic ACL based on RADIUS attributes
802.1X Supported EAP types: MD5, TLS, TTLS, PEAP
MAC Authentication (local)
Control Plane DoS protection

High Availability

Redundant, hot-swappable power supplies
Redundant, field-replaceable, hot-swappable fans
Graceful protocol restart—OSPF, BGP
GRES for L3 protocols
Layer 2 hitless forwarding on RE failover
Online insertion and removal (OIR) uplink module

Link Aggregation

802.3ad (LACP) support:

  • Number of LAG groups supported: 64
  • Max number of ports per LAG group: 8

LAG load-sharing algorith—Bridged Unicast Traffic:

  • IP: S/D MAC, S/D IP
  • TCP/UDP: S/D MAC, S/D IP, S/D Port
  • Non-IP: S/D MAC

LAG-sharing algorithm—Routed Unicast Traffic:

  • IP: S/D MAC, S/D IP
  • TCP/UDP: S/D MAC, S/D IP, S/D Port
  • Non-IP: S/D MAC

LAG load-sharing algorithm—Bridged Multicast Traffic:

  • IP: S/D MAC, S/D IP
  • TCP/UDP: S/D MAC, S/D IP, S/D Port
  • Non-IP: S/D MAC

LAG-sharing algorithm—Routed Multicast Traffic:

  • IP: S/D MAC, S/D IP
  • TCP/UDP: S/D MAC, S/D IP, S/D Port
  • Non-IP: S/D MAC

Tagged ports support in LAG group

Quality of Service (QoS)

Layer 2 QoS
Layer 3 QoS
Ingress policing: 1 rate 2 color
Hardware queues per port: 8
Scheduling methods (egress): Strict priority (SP) , Shaped Deficit Weighted Round-Robin (SDWRR)
802.1p, DSCP/IP Precedence trust and marking
Layer 2-4 classification criteria: Interface, MAC address, Ethertype, 802.1p, VLAN, IP address, DSCP/IP Precedence , TCP/UDP port numbers, etc.
Congestion avoidance capabilities: Tail Drop


IGMP: v1, v2, v3*
IGMP snooping*
IPv4 Multicast hardware entries: 2,000

Services and Manageability

Web interface
Out-of-band management: Serial; 10/100/1000BASE-T Ethernet
ASCII configuration
Rescue configuration
Configuration rollback
Image rollback
LCD management
Element management tools: NetScreen-Security Manager (NSM)
Proactive services support via Advanced Insight Solutions (AIS)
SNMP: v1, v2c, v3
RMON (RFC 2819) Groups 1, 2, 3, 9
DHCP server
DHCP client and DHCP proxy
DHCP relay and helper
Secure copy
vDNS resolver
Syslog logging
Temperature sensor
Config-backup via FTP / secure copy


Debugging: CLI via console, telnet or SSH
Diagnostics: Show and debug cmd, statistics
Traffic mirroring (port)
Traffic mirroring (VLAN)
ACL-based mirroring
Mirroring destination ports per system: 1
LAG port monitoring
Multiple destination ports monitored to 1 mirror (N:1)
Max number of mirroring sessions: 1
Mirroring to remote destination (over L2): 1 destination VLAN
IP tools: Extended ping & trace
Juniper commit and rollback

Safety and Compliance

UL-UL60950-1(First Edition)
C-UL to CAN/CSA 22.2 No.60950-1(First Edition)
TUV/GS to EN 60950-1, Amendment A1-A4, A11
CB-IEC60950-1, all country deviations

Electromagnetic Compatibility Certifications

FCC 47CFR Part 15 Class A
EN 55022 Class A
ICES-003 Class A
VCCI Class A
CISPR 22 Class A
EN 55024
EN 300386


Reduction of Hazardous Substances (ROHS) 5

Noise Specifications

Office Product Spec: 48dBA at 30°C (refer to ISO 7779)


CLEI code

* Roadmap


© Copyright 2007 Juniper Networks, Inc. All rights reserved. Juniper Networks, the Juniper Networks logo, NetScreen, and ScreenOS are registered trademarks of Juniper Networks, Inc. in the United States and other countries. JUNOS and JUNOSe are trademarks of Juniper Networks, Inc. All other trademarks, service marks, registered trademarks, or registered service marks are the property of their respective owners. Juniper Networks assumes no responsibility or any inaccuracies in this document. Juniper Networks and Westcon Group reserve the right to change, modify, ransfer, or otherwise revise this publication without notice.