Datasheet
5
Extreme Networks Data Sheet: Summit X670-48t
Technical Specifications
Threat Detection and Response
CLEAR-Flow Security Rules Engine
CLEAR-Flow Security Rules Engine provides first-order threat detection
and mitigation, and mirrors trac to security appliances for further analysis
of suspicious trac in the network.
sFlow
Summit X670 series supports hardware-based sFlow® sampling that
provides the ability to sample application-level trac flows on all
interfaces simultaneously.
Port Mirroring
To allow threat detection and prevention, Summit X670 supports many-to-
one and one-to-many port mirroring. This allows the mirroring of trac to
an external network appliance such as an intrusion detection device for
trend analysis or for utilization by a network administrator for diagnostic
purposes. Port mirroring can also be enabled across switches in a stack.
Line-Rate Ingress and Egress ACLs
ACLs are one of the most powerful components used in controlling
network resource utilization as well as in protecting the network. Summit
X670 series supports up to 2,048 ingress ACLs and 1,024 egress ACLs per
system based on Layer 2-, 3- or 4-header information such as the MAC or
IP source/destination address. ACLs are used for filtering the trac, as well
as classifying the trac flow to control bandwidth, priority, mirroring, and
policy-based routing/switching.
Supported Protocols and Standards
A list of supported protocols and standards is available on the Extreme
Networks website at: http://www.extremenetworks.com/go/xos
Denial of Service Protection
Summit X670 series eectively handles Denial of Service (DoS) attacks. If
the switch detects an unusually large number of packets in the CPU input
queue, it assembles ACLs that automatically stop these packets from
reaching the CPU. After a period of time these ACLs are removed, and
reinstalled if the attack continues. ASIC-based LPM routing eliminates the
need for control plane software to learn new flows, allowing more network
resilience against DoS attacks.
Secure and Comprehensive Network Management
As the network becomes a foundation of the enterprise application,
network management becomes an important piece of the solution. Summit
X670 supports comprehensive network management through Command
Line Interface (CLI), SNMP v1, v2c, v3, and ExtremeXOS ScreenPlay™
embedded XML-based Web user interface. With a variety of management
options and consistency across other Extreme Networks modular and
stackable switches, Summit X670 series switches provide ease of
management for demanding converged applications. Extreme Networks
has developed tools that simplify and help in eciently managing your
network. Ridgeline network and service management provides fault,
configuration, accounting, performance and security functions, allowing
more eective management of Extreme Networks products, solutions and
third-party devices in a converged network.










