Riverstone Networks RS 8000/8600 Switch Router Getting Started Guide 2-7
Introduction
Software Overview
•
Layer-2 destination filters (block bridge traffic based on destination MAC address)
•
Layer-2 flow filters (block bridge traffic based on specific source-destination pairs)
•
Layer-3 source ACLs (block IP or IPX traffic based on source IP or IPX address)
•
Layer-3 destination ACLs (block IP or IPX traffic based on destination IP or IPX address)
•
Layer-3 flow ACLs (block IP or IPX traffic based on specific source-destination address pairs)
•
Layer-4 flow ACLs (block traffic based on application flows)
•
Layer-4 application ACLs (block traffic based on UDP or TCP source and destination ports for IP
or source and destination sockets for IPX)
In addition to filtering and ACL, the RS also provides login security in the form of TACACS, , RADIUS,
and Secure Session Shells (SSH) version 1.5.
2.3.7
Quality of Service
Although the RS supplies non-blocking, wire-speed throughput, you can configure the RS to apply Quality of Service
(QoS) policies during peak periods to guarantee service to specific hosts, applications, and flows (source-destination
pairs). This is especially useful in networks where the traffic level can exceed the network capacity.
QoS policies can be configured for the following types of traffic:
•
Layer-2 prioritization (802.1p)
•
Layer-3 source-destination flows
•
Layer-4 source-destination flows
•
Layer-4 application flows
QoS mechanisms supported on the RS 8000/8600 include the following:
•
Traffic control queuing
•
Weighted random early detection
•
Weighted fair queuing
•
Strict priority queuing
•
QoS traffic control queues
•
ToS octet rewrites
Note
Traffic control queuing is based on assigning traffic to one of four queues: control,
high, medium, and low. Control traffic (routing protocols, and so on) has the
highest priority, high the second highest, and so on. The default priority for all
traffic is low.
2.3.8
Statistics
The RS can provide extensive statistical data on demand. You can access the following types of statistics:
Layer-2 RMON and MIB II Statistics
– Port statistics for normal packets and for errors (packets in, packets out, CRC
errors, and so on)