
or restrictive appliance-based implementations. The value of unsampled,
real-time NetFlow monitoring is the visibility into exactly what traffic is
traversing the network. If something abnormal occurs it will be captured
by NetFlow and appropriate action can be applied. Additionally, NetFlow
can be used for capacity planning, allowing the network manager to
monitor the traffic flows and volumes of traffic in the network and
understand where the network needs to be reconfigured or upgraded.
This saves time and money by enabling administrators to know when and
where upgrades might be needed.
Network Traffic Monitoring - Port Mirroring
Port mirroring is an integrated diagnostic tool for tracking network
performance and security that is especially useful for fending off network
intrusion and attacks. It is a low-cost alternative to network taps and
other solutions that may require additional hardware, disrupt normal
network operation, affect client applications or may introduce a new
point of failure into your network.
Port mirroring is highly scalable and easy to monitor . It is especially
convenient to use in networks where ports are scarce. Ports that can be
configured to participate in mirroring include physical ports, virtual ports
AND HOST PORTS6,!. INTERFACES AND INTRUSION DETECTION PORTS 7ITH
this feature, analyzing bi-directional traffic and ensuring connectivity
between, for example, a departmental switch and its high speed uplink to
a backbone switch becomes simple and cost effective process.
K-Series port mirroring relationships can be set on inbound traffic,
OUTBOUND TRAFlC OR BOTH FOR UP TO PORT MIRRORS CONSISTING OF ONETOONE
one-to-many, many-to-one, IDS or policy mirrors.
Multi-layer packet classification - enables the delivery
of critical applications to specific users via traffic
awareness and control
s 5SER PORT AND DEVICE ,EVEL ,AYER THROUGH PACKET CLASSIlCATION
s 1O3 MAPPING TO PRIORITY QUEUES P )0 4O3 $3#0 UP TO
queues per port
s -ULTIPLE QUEUING MECHANISMS 301 7&1 722 AND (YBRID
s 'RANULAR 1O3RATE LIMITING
s 6,!. TO POLICY MAPPING
Switching/VLAN services - provides high performance
connectivity, aggregation, and rapid recovery services
s %XTENSIVE INDUSTRY STANDARDS COMPLIANCE )%%% AND )%4&
s )NBOUND AND OUTBOUND BANDWIDTH RATE CONTROL PER mOW
s 6,!. SERVICES SUPPORT
,INK AGGREGATION )%%% AD
-ULTIPLE SPANNING TREES )%%% S
2APID RECONlGURATION OF SPANNING TREE )%%% W
s 0ROVIDER "RIDGES )%%% AD 1IN1 2EADY
s &LOW SETUP THROTTLING
s $(#0 3ERVER
IP Routing - provides dynamic traffic optimization,
broadcast containment and efficient network resilience
s 3TANDARD ROUTING FEATURES INCLUDE STATIC ROUTES 2)0V 2)0NG AND
-ULTICAST ROUTING SUPPORT $6-20 )'-0 VVV 0OLICY "ASED
2OUTING AND 2OUTE -APS AND 6220
s ,ICENSED ROUTING FEATURES INCLUDE /30& VV 62& AND 0)-3-
Security (User, Network and Management)
s 5SER SECURITY
!UTHENTICATION 8 -!# 07! AND #%0 -!# 3TATIC AND
Dynamic) port locking
-ULTIUSER AUTHENTICATIONPOLICIES
s .ETWORK SECURITY
- Access Control Lists (ACL) – basic and extended
- Policy-based security services (examples: spoofing, unsupported
protocol access, intrusion prevention, DoS attacks limits)
s -ANAGEMENT 3ECURITY
3ECURE ACCESS TO THE +3ERIES VIA 33( 3.-0 V
Management, Control and Analysis – provide
streamlined tools for maintaining network availability
and health
s #ONlGURATION
- Industry-standard CLI and web management support
-ULTIPLE lRMWARE IMAGES WITH EDITABLE CONlGURATION lLES
s .ETWORK !NALYSIS
3.-0 VVCV 2-/. GROUPS AND 3-/. RFC 6,!.
and Stats
- Port/VLAN mirroring (one-to-one, one-to-many, many-to-many)
- Unsampled NetFlow on every port with no impact on system
switching and routing performance
s !UTOMATED SETUP AND RECONlGURATION
2EPLACEMENT )/ MODULE WILL AUTOMATICALLY INHERIT PREVIOUS
modules configuration
&EATURE 3UMMARY
Page 3
Comentarios a estos manuales