

Add to Cart
Inline Bypass Ethernet TAP Detect Heartbeat Packet Respond with
Dynamic Load Balancing
1. Bypass Switch Bypass TAP Intelligent Heartbeat Message Detection
Technology
Multi-link Load Balancing Intelligent Network Traffic Allocation
The NetTAP® Traffic Traction Protector has intelligent traffic load
balancing capability. When the performance of a single monitoring
device is not sufficient to cope with the peak traffic of the
serial link, the port load balancing group can be configured to
connect the link traffic Assigned to the N monitor group, the
protection device will be based on VLAN tag, MAC information, IP
information, port number, protocol and other information on the
Hash load balancing output, so the serial link traffic distribution
to multiple security devices for cluster processing. It effectively
improves the overall throughput of the safety equipment to meet the
high bandwidth requirements of the deployment environment.
Dynamic Load Balancing
NetTAP® Policy Traction Protector provides a powerful dynamic load
balancing function. When multiple monitoring devices load balanced
network link traffic, the link load can be assigned to the N
monitor groups by configuring the port load balancing group when
the group member in the port load balancing group fails, the port
load balancing group is automatically removed. When the member
fails to recover, the port load balancing group is automatically
added and the traffic load balancing output of the serial link is
not required.
2. Intelligent Bypass Swtich Application Solution
Based on the dynamic strategy of traffic traction security
detection protection
"Bypass Switch" Another advanced application scenario is based on
the dynamic strategy of traffic traction security detection
protection applications, the deployment of the way as shown below:
Take the "anti-DDoS attack protection and detection" security
testing equipment, for example, through the front-end deployment of
"bypass switch" and then anti-DDOS protection equipment and then
connected to the "bypass switch", in the usual " Traction protector
"to the full amount of traffic wire-speed forwarding at the same
time the flow mirror output to the" anti-DDOS attack protection
device ", once detected for a server IP (or IP network segment)
after the attack," anti-DDOS attack protection device " will
generate the target traffic flow matching rules and send them to
the "bypass switch" through the dynamic policy delivery interface.
The "bypass switch" can update the "traffic traction dynamic" after
receiving the dynamic policy rules Rule pool "and immediately" rule
hit the attack server traffic "traction to the" anti-DDoS attack
protection and detection "equipment for processing, to be effective
after the attack flow and then re-injected into the network.
The application scheme based on the "bypass switch" is easier to
implement than the traditional BGP route injection or other traffic
traction scheme, and the environment is less dependent on the
network and the reliability is higher.
"Bypass Switch" has the following characteristics to support
dynamic policy security detection protection:
1,"bypass switch" to provide outside the rules based on WEBSERIVCE
interface, easy integration with third-party security devices.
2,"bypass switch" based on the hardware pure ASIC chip forwarding
up to 10Gbps wire-speed packets without blocking switch forwarding,
and "traffic traction dynamic rule library" regardless of the
number.
3,"policy flow traction protector" built-in professional BYPASS
function, even if the protector itself failure, can also bypass the
original serial link immediately, does not affect the original link
of normal communication.
3. Bypass Switch Bypass TAP Technical Specifications
Product model | Specifications |
NT-FBYP-L1X-SR | 1U chassis, 1*10GE multimode optical protection link |
NT-FBYP-L1X-LR | 1U chassis, 1*10GE single-mode optical protection link |
NT-FBYP-L1G-SX | 1U chassis, 1*GE multi-mode optical protection link |
NT-FBYP-L1G-LX | 1U chassis, 1*GE single mode optical protection link |
NT-CBYP-L1G | 1U chassis, 1*GE electrical protection link |
NT-CBYP-L2G | 1U chassis, 2*GE electrical protection link |
NT-FBYP-L2G-SX5 | 1U chassis, 2*GE multi-mode optical protection link |
NT-FBYP-L2G-LX | 1U chassis, 2*GE single-mode optical protection link |
NT-FCBYP-L4XG-SR | 1U chassis, 2*GE electrical protection link, 1*GE multi-mode optical protection link, 1*10GE multimode optical protection link |
NT-FCBYP-L4XG-LR | 1U chassis, 2*GE electrical protection link, 1*GE single mode optical protection link, 1*10GE single mode optical protection link |
2*GE Electrical BYPASS Links(NT-CBYP-L2G)
Product Model | NT-CBYP-L2G | |
Interface form | GE electrical port | 8*10/100/1000M GE electrical port |
SFP slot | - | |
SFP+ slot | - | |
GE electrical BYPASS link | 2 links | |
| Number of Series protection links | Maximum support for 2*GE electrical BYPASS links |
Monitor | Maximum support 2*GE links monitoring | |
Functional performance | Total number of interfaces | 8 |
Line speed processing capacity | 8Gbps | |
Cross - link protection based on IP / protocol / port quintuple specific traffic | Total number of interfaces | |
Based on the total flow of the series protection Support | Support | |
Multi - channel load balancing function | Support | |
Custom heartbeat message function | Support | |
Ethernet encapsulation support | Support | |
BYPASS switching function | Support | |
Bypass switch without flash | Support | |
CONSOLE network management | Support | |
IP/WEB network management | Support | |
SNMP V1/V2C network management | Support | |
TELNET/SSH network management | Support | |
SYSLOG protocol | Support | |
User authentication function | Based on user name and password authentication | |
Electric | Rated supply voltage | AC-220V/DC-48V【Optional】 |
Rated power frequency | 50HZ | |
Rated input current | AC-3A / DC-10A | |
Rated Power | 40W | |
Environment | Working Temperature | 0-50℃ |
Storage temperature | -20-70℃ | |
Working humidity | 10%-95%, No condensation | |
User configuration | console configuration | RS232 interface,9600,8,N,1 |
Outside network management interface | 1*10/100/1000M Ethernet interface | |
Password authentication | Support | |
Dimension | Chassis dimension (U) | 1U 485mm*44.5mm*350mm |