Mylinking™ Network Packet Broker(NPB) ML-NPB-0810
8*10GE SFP+, Max 80Gbps
1- Overviews
- A full visual control of Data Acquisition device(8*10GE SFP+ ports)
- A full Data Scheduling Management device(duplex Rx/Tx processing)
- A full pre-processing and re-distribution device(bidirectional bandwidth 80Gbps)
- Supported load balance Hash algorithm and session-based weight sharing algorithm according to L2-L7 layer characteristics to ensure that the port output traffic dynamic of load balancing
- Supported the VLAN, MPLS header in the original data packet is stripped and output.
- Supported automatically identify various tunneling protocols such as GTP / GRE / PPTP / L2TP / PPPOE. According to the user configuration, the traffic output strategy can be implemented according to the inner or outer layer of the tunnel
- Supported raw packet output for monitoring equipment of BigData Analysis, Protocol Analysis, Signaling Analysis, Security Analysis, Risk Management and other required traffic.
- Supported real-time packet capture analysis, data source identification
2- System Block Diagram
3- Operating Principle
4- Intelligent Traffic Processing Abilities
ASIC Chip Plus TCAM CPU
80Gbps intelligent traffic processing capabilities
10GE Acquisition
10GE 8 ports, Rx/Tx duplex processing, up to 80Gbps Traffic Data Transceiver at same time, for network Data Acquisition, simple Pre-processing
Data Replication
Packet replicated from 1 port to multiple N ports, or multiple N ports aggregated, then replicated to multiple M ports
Data Replication
Packet replicated from 1 port to multiple N ports, or multiple N ports aggregated, then replicated to multiple M ports
Data Distribution
Classified the incoming metdata accurately and discarded or forwarded different data services to multiple interface outputs according to user’s predefined rules.
Data Filtering
Supported L2-L7 packet filtering matching, such as SMAC, DMAC, SIP, DIP, Sport, Dport, TTL, SYN, ACK, FIN, Ethernet type field and value, IP protocol number, TOS, etc. also supported flexible combination of filtering rules.
Load Balance
Supported load balance Hash algorithm and session-based weight sharing algorithm according to L2-L7 layer characteristics to ensure that the port output traffic dynamic of load balancing
UDF Match
Supported the matching of any key field in the first 128 bytes of a packet. Customized the Offset Value and Key Field Length and Content, and determining the traffic output policy according to the user configuration
VLAN Tagged
VLAN Untagged
VLAN Replaced
Supported the matching of any key field in the first 128 bytes of a packet. The user can customize the offset value and key field length and content, and determine the traffic output policy according to the user configuration.
MAC Address Replacement
Supported the replacement of the destination MAC address in the original data packet, which can be implemented according to the user's configuration
3G/4G Mobile Protocol Recognition/Classification
Supported to identify mobile network elements such as (Gb, Gn, IuPS, S1-MME, S1-U, X2-U, S3, S4, S5, S6a, S11, etc. interface). You can implement traffic output policies based on features such as GTPV1-C, GTPV1-U, GTPV2-C, SCTP, and S1-AP based on user configurations.
Ports Healthy Detection
Supported real-time detection of the service process health of the back-end monitoring and analysis equipment connected to different output ports. When the service process fails, the faulty device is automatically removed. After the faulty device is recovered, the system automatically returns to the load balancing group to ensure the reliability of multi-port load balancing.
VLAN, MPLS Untagged
Supported the VLAN, MPLS header in the original data packet is stripped and output.
Tunneling Protocol Identify
Supported automatically identify various tunneling protocols such as GTP / GRE / PPTP / L2TP / PPPOE. According to the user configuration, the traffic output strategy can be implemented according to the inner or outer layer of the tunnel
Unified Control Platform
Supported mylinking™ Visibilityl Control Platform Access
1+1 Redundant Power System(RPS)
Supported 1+1 Dual Redundant Power System
5- Mylinking™ Network Packet Broker Typical Application Structures
5.1 Mylinking™ Network Packet Broker N*10GE to 10GE Data Aggregation Application(as following)
5.2 Mylinking™ Network Packet Broker GE/10GE Hybrid Access Application(as following)
6- Specifications
ML-NPB-0810 Mylinking™ Network Packet Broker TAP/NPB Functional Parameters |
||
Network Interface |
10GE |
8*10GE/GE SFP+ slot; support single/multiple mode fiber |
Out-of-Band MGT interface |
1*10/100/1000M electrical port |
|
Deploy mode |
10G optical splitting |
Support 4*10G bidirectional link traffic acquisition |
10G mirror acquisition |
Support max to 8*10G mirror traffic inputting | |
Optical inputting |
Input port supports single fiber splitting input; |
|
Port multiplexing |
Support input port as output port; |
|
Flow output |
Support 8 channels of 10GE flow output; |
|
Traffic aggregating/replicating/distribution |
Supported |
|
QTYs of links supporting traffic duplicating/aggregating |
1->N way traffic replication (N<8) N->1 channel traffic aggregation (N<8) Group G (M->N way) grouped traffic replication aggregation [ G*(M+N) < 8 ] |
|
Port-based traffic identification diverting |
Supported |
|
port five tuple traffic identification diverting |
Supported |
|
Traffic identification divert strategy based on key tag of protocol header |
Supported |
|
Ethernet encapsulation unrelated support |
Supported |
|
CONSOLE MGT |
Supported |
|
IP/WEB MGT |
Supported |
|
SNMP MGT |
Supported |
|
TELNET/SSH MGT |
Supported |
|
SYSLOG protocol |
Supported |
|
User authentication |
Based on users’ password authentication |
|
Electric(1+1 Redundant Power System-RPS) |
Rate power supply voltage |
AC110-240V/DC-48V(Optional) |
Rate power supply frequency |
AC-50HZ |
|
Rate input current |
AC-3A / DC-10A |
|
Rate power |
140W/150W/150W |
|
Environment |
Working temperature |
0-50℃ |
Storage temperature |
-20-70℃ |
|
Working humidity |
10%-95%, no condensation |
|
User Configuration |
Console configuration |
RS232 interface, 9600,8,N,1 |
Password authentication |
Supported |
|
Height of Chassis |
(U) |
1U 445mm*44mm*402mm |
7- Order Information
ML-NPB-0810 mylinking™ Network Packet Broker 8*10GE/GE SFP+ ports, max 80Gbps
ML-NPB-1610 mylinking™ Network Packet Broker 16*10GE/GE SFP+ ports, max 160Gbps
ML-NPB-2410 mylinking™ Network Packet Broker 24*10GE/GE SFP+ ports, max 240Gbps
FYR: Mylinking™ Network Packet Broker Packet Filtering Technology
Packet Filtering Technology is the most common firewall technology. For a dangerous network, a filter router provides a way to block certain hosts and networks from connecting to the internal network, or it can be used to restrict internal access to some dangerous and pornographic sites.
Packet Filtering Technology just as its name implies is the place for packet in the network have a choice, choose the basis, the filtering rules for the system (often known ACL as Access Control Lists, the Access Control List), only to meet the packet filtering rules is forwarded to the corresponding network interface, the rest of the packet is removed from the data stream.
Packet filtering can control site-to-site, site-to-network, and network-to-network access, but it cannot control the content of the data that is transmitted because the content is application-level data, not recognizable by the packet filtering system. Packet filtering allows you to provide special protection for the entire network in a single place.
The packet filter checking module penetrates between the network layer and the data link layer of the system.Because the data link layer is the DE facto network card (NIC) and the network layer is the first-layer protocol stack, the firewall is at the bottom of the software hierarchy.