Datasheet

or restrictive appliance-based implementations. The value of unsampled,
real-time NetFlow monitoring is the visibility into exactly what traffic is
traversing the network. If something abnormal occurs it will be captured
by NetFlow and appropriate action can be applied. Additionally, NetFlow
can be used for capacity planning, allowing the network manager to
monitor the traffic flows and volumes of traffic in the network and
understand where the network needs to be reconfigured or upgraded.
This saves time and money by enabling administrators to know when and
where upgrades might be needed.
Network Traffic Monitoring - Port Mirroring
Port mirroring is an integrated diagnostic tool for tracking network
performance and security that is especially useful for fending off network
intrusion and attacks. It is a low-cost alternative to network taps and
other solutions that may require additional hardware, disrupt normal
network operation, affect client applications or may introduce a new
point of failure into your network.
Port mirroring is highly scalable and easy to monitor . It is especially
convenient to use in networks where ports are scarce. Ports that can be
configured to participate in mirroring include physical ports, virtual ports
andhostports—VLANinterfaces,andintrusiondetectionports.With
this feature, analyzing bi-directional traffic and ensuring connectivity
between, for example, a departmental switch and its high speed uplink to
a backbone switch becomes simple and cost effective process.
K-Series port mirroring relationships can be set on inbound traffic,
outboundtrafc,orbothforupto4portmirrorsconsistingofone-to-one,
one-to-many, many-to-one, IDS or policy mirrors.
Multi-layer packet classification - enables the delivery
of critical applications to specific users via traffic
awareness and control
• User,port,anddeviceLevel(Layer2through4packetclassication)
• QoSmappingtopriorityqueues(802.1p&IPToS/DSCP)upto11
queues per port
• Multiplequeuingmechanisms(SPQ,WFQ,WRRandHybrid)
• GranularQoS/ratelimiting
• VLANtopolicymapping
Switching/VLAN services - provides high performance
connectivity, aggregation, and rapid recovery services
• Extensiveindustrystandardscompliance(IEEEandIETF)
• Inboundandoutboundbandwidthratecontrolperow
• VLANservicessupport
 - Linkaggregation(IEEE802.3ad)
 - Multiplespanningtrees(IEEE802.1s)
 - Rapidrecongurationofspanningtree(IEEE802.1w)
•ProviderBridges(IEEE802.1ad),Q-in-QReady
•Flowsetupthrottling
•DHCPServer
IP Routing - provides dynamic traffic optimization,
broadcast containment and efficient network resilience
• Standardroutingfeaturesincludestaticroutes,RIPv2,RIPngand
Multicastroutingsupport(DVMRP,IGMPv1/v2/v3),PolicyBased
RoutingandRouteMapsandVRRP
• LicensedroutingfeaturesincludeOSPFv2/v3,VRFandPIM-SM
Security (User, Network and Management)
• Usersecurity
 - Authentication(802.1X,MAC,PWA+andCEP),MAC(Staticand
Dynamic) port locking
 - Multi-userauthentication/policies
• Networksecurity
- Access Control Lists (ACL) – basic and extended
- Policy-based security services (examples: spoofing, unsupported
protocol access, intrusion prevention, DoS attacks limits)
• ManagementSecurity
 - SecureaccesstotheK-SeriesviaSSH,SNMPv3
Management, Control and Analysis – provide
streamlined tools for maintaining network availability
and health
• Conguration
- Industry-standard CLI and web management support
 - Multiplermwareimageswitheditablecongurationles
• NetworkAnalysis
 - SNMPv1/v2c/v3,RMON(9groups)andSMON(rfc2613)VLAN
and Stats
- Port/VLAN mirroring (one-to-one, one-to-many, many-to-many)
- Unsampled NetFlow on every port with no impact on system
switching and routing performance
• Automatedset-upandreconguration
 - ReplacementI/Omodulewillautomaticallyinheritprevious
modules configuration
FeatureSummary
Page 3