Datasheet

5
Extreme Networks Data Sheet: Summit X670-48t
Technical Specifications
Threat Detection and Response
CLEAR-Flow Security Rules Engine
CLEAR-Flow Security Rules Engine provides first-order threat detection
and mitigation, and mirrors trac to security appliances for further analysis
of suspicious trac in the network.
sFlow
Summit X670 series supports hardware-based sFlow® sampling that
provides the ability to sample application-level trac flows on all
interfaces simultaneously.
Port Mirroring
To allow threat detection and prevention, Summit X670 supports many-to-
one and one-to-many port mirroring. This allows the mirroring of trac to
an external network appliance such as an intrusion detection device for
trend analysis or for utilization by a network administrator for diagnostic
purposes. Port mirroring can also be enabled across switches in a stack.
Line-Rate Ingress and Egress ACLs
ACLs are one of the most powerful components used in controlling
network resource utilization as well as in protecting the network. Summit
X670 series supports up to 2,048 ingress ACLs and 1,024 egress ACLs per
system based on Layer 2-, 3- or 4-header information such as the MAC or
IP source/destination address. ACLs are used for filtering the trac, as well
as classifying the trac flow to control bandwidth, priority, mirroring, and
policy-based routing/switching.
Supported Protocols and Standards
A list of supported protocols and standards is available on the Extreme
Networks website at: http://www.extremenetworks.com/go/xos
Denial of Service Protection
Summit X670 series eectively handles Denial of Service (DoS) attacks. If
the switch detects an unusually large number of packets in the CPU input
queue, it assembles ACLs that automatically stop these packets from
reaching the CPU. After a period of time these ACLs are removed, and
reinstalled if the attack continues. ASIC-based LPM routing eliminates the
need for control plane software to learn new flows, allowing more network
resilience against DoS attacks.
Secure and Comprehensive Network Management
As the network becomes a foundation of the enterprise application,
network management becomes an important piece of the solution. Summit
X670 supports comprehensive network management through Command
Line Interface (CLI), SNMP v1, v2c, v3, and ExtremeXOS ScreenPlay™
embedded XML-based Web user interface. With a variety of management
options and consistency across other Extreme Networks modular and
stackable switches, Summit X670 series switches provide ease of
management for demanding converged applications. Extreme Networks
has developed tools that simplify and help in eciently managing your
network. Ridgeline network and service management provides fault,
configuration, accounting, performance and security functions, allowing
more eective management of Extreme Networks products, solutions and
third-party devices in a converged network.