3
VoIP Foundation—Advanced QoS and
Bandwidth Management
tAdvanced QoS—enforce or change traffic priority based on port,VLAN,
source MAC,ACL,802.1p,Type of Service (ToS), or DiffServ settings
to prioritize business-critical flows
tUltra-low Latency—industry-leading port-to-port latency of 10 to
20 microseconds for superior call quality when usingVoIP and other
latency-sensitive traffic such as video
tMultiple Queuing Methods—Strict Priority (SP) orWeighted Fair
Queuing (WFQ) provides flexibility for network administrators in
enforcing traffic prioritization
Scalable Multicast Implementation
tComprehensive Multicast Feature Set—hardware-based multicast
features allow network managers to efficiently deploy streaming media
applications for improved employee collaboration and productivity
tDiverse Multicast Protocol Support—IGMP,DVMRP, MSDP,
PIM-SM (Sparse Mode),and PIM-DM (Dense Mode) give administrators
the flexibility of supporting a variety of applications with complete
interoperability to existing applications
tSuperior Multicast Scalability and Performance—Up to 64,000
Layer 2 Multicast groups with sub-second join and leave latency for
industry-leading multicast performance and scalability
Cohesive, Unified and Easy-To-Use
Network Management
tCentralized Network Management—Foundry’s IronView Network
Manager™is a web-based,graphical interface tool (GUI) that empowers
network operators to seamlessly control software and configuration updates
for any Foundry product from a central station.This dramatically
simplifies network provisioning, diagnostics and resolution,thus reducing
the operational expenses.
tMRP—Managed Rim Protocol for the Enterprise rapidly reconfigures
for network changes that affect the local ring,and with no need for
network-wide reconvergence.This results in dramatically improved performance.
tCommand Line Interface (CLI)—is an industry-standard
configuration interface,consistent and common throughout Foundry’s
entire product portfolio
tWeb Interface—provides easy to use Graphical User Interface
for system configuration from standardWeb browsers
tsFLow (RFC 3176)—provides scalable,ASIC-based,wire-speed
network monitoring and accounting with no impact on network
performance.This allows network operators to gather a variety of
sophisticated network statistics and information for capacity planning
and real-time network monitoring purposes.
IronShield™Security
tWire-speed Extended Access Control Lists (ACL)—control packet
forwarding and restrict access to the system management interface, while
providing wire-speed switching and routing:
—Feature-Rich ACL Implementation—identify traffic based on
source or destination IP address,IP protocol type,TCP or UDP port,
IP precedence, orTOS values
—Selective ACL Logging—collect statistics for packets matching the
deny or permit conditions
—ACL Scalability—support for up to 4,096 ACLs
—Ease of Administration—identify an ACL by name or number,
or add a comment line for ease of administration
—ACL Syntax Compatibility—uniform ACL syntax across all
Foundry products provides compatibility with syntax of other
major vendors
tWire-speed, fine-grain Bandwidth Management—Traffic classification
and bandwidth enforcement based on port,port plus priority,or Layer 4
ACLs, from 1 Mbps up to 1 Gbps in increments as small as 256 Kbps
tMAC access control using either MAC registration or IEE802.1x allows
for controlling unauthorized or untrusted hosts from accessing the network.
Applying dynamically configuredVLANs and Layer 2 filters,or Layer
3/4ACLs further secures the access.Tunneling a link between host client
and a centralized policy server over the 802.1x EAP protcol allows for a
thorough analysis of the host to ensure it is in a trusted state prior to going
access to the network.
tSecure Shell and Secure Copy—provide secure access to the
administration and management interface over the network
tProtection Against Denial Of Service (DoS) Attacks—prevents or
minimizes network downtime and protects against malicious users by
limitingTCP SYN and ICMP traffic and protects against broadcast
storms by limiting broadcast traffic
tUser Authentication—authentication with AAA,802.1x,RADIUS,
TACACS,andTACACS+ to prevent unauthorized network access
tWire-speed Rate Limiting—enforce bandwidth policies to prevent
unauthorized network hogging
tSFlow (RFC 3176)—provides cost-effective,scalable, wire-speed
network monitoring to detect unusual network activity
tSNMPv3—Secured SNMP management with RFC 2570 through
2575,provides User-Based Security model (RFC 2574) for authentication
and privacy services
Industry Leading Performance
tIndustry’s Highest Switching Performance—non-blocking,distributed
switching architecture with a parallel cross-point switch fabric provides up
to 480 Gbps of aggregate switching capacity,and 178 million packets per
second switching performance
tState-of-the-artTCAM—provides wire-speed Layer 2/3 switching
and policy based routing with industry leading switching capacity
and scalability
tJumbo Frames—support for jumbo frames on Gigabit and 10 Gigabit
interfaces allows dramatic scalability in server throughput while
minimizing the impact on server processing resources