Exam Name: Foundry Networks Certified Layer4-7 Professional Exam Type: Foundry Exam Code: FN0-240 Total Questions: 267

Size: px
Start display at page:

Download "Exam Name: Foundry Networks Certified Layer4-7 Professional Exam Type: Foundry Exam Code: FN0-240 Total Questions: 267"

Transcription

1 Question: 1 SYN-Guard and SYN-Defense can be configured on: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E, C, D, E, F, G Question: 2 The best practice method to configure SSL Layer7 switching is A. URL switching B. Cookie switching C. Session ID switching D. Round robin Question: 3 sflow is supported on the: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Answer: E, F, G Question: 4 The maximum length of the URLcharacter is the same for the ServerIron XL and the ServerIron 400 product families? Question: 5 When using Layer 7 Switching, what command would you use to instruct the ServerIron to buffer all request packets until all the necessary information is received insuring that the whole HTTP header will be saved? A. port http B. port http buffer-for-end-http C. port http wait-for-end-header D. port http wait-for-end-http Page 1 of 58

2 Answer: D Question: 6 A UDP application is considered down if the server returns: A. No packet B. A garbage packet C. An UDP probe packet D. An ICMP unreachable packet Answer: D Question: 7 An active health check is done: A. At each user request B. According to the configured time values C. When the Reassign-Threshold is exceeded D. When there is a status change from the server Question: 8 An HTTP health check can return: A. A keepalive B. Status code C. Content verification D. A value to increment the Reassign-Threshold, C Question: 9 Which of the following Health Check types are performed at Layer 7? A. Arp Request B. TCP C. HTTP D. IMAP4 E. UDP F. LDAP G. MMS H. RSTP, D, F, G Question: 10 How many simultaneous levels of health checks can be configured on the ServerIron to health check the same real server A. Layer 3, Layer4 B. Layer4, Layer7 C. Layer3, Layer4, Layer7, content match D. Layer 4, Layer7, content match Page 2 of 58

3 Question: 11 What will be the corresponding Virtual MAC Address belonging to a configured VIP (AF:1E:0F:0A) A. VMACs have to be manually configured B. AF:1E:0F:0A:FF:FF C. 02:0C:DB:1E:0F:0A D. 02:0C:AF:1E:0F:0A Question: 12 What must be done before a Health-Check Policy will take effect? A. The Health-Check Policy must be bound to the VIP B. The Health-Check Policy intervals and reset must be define C. The Health-Check Policy must be attached to an application port on a real server D. The Health-Check Policy must be configured to use 3-way handshaking Question: 13 A Matching List can contain: A. Log B. URL C. Down simple D. Status codes E. Up Compound, C, E Question: 14 When health checking is enabled, a server response time consists of the combination of its response to client requests and its response to Layer 4 or Layer 7 health checks from the ServerIron. Question: 15 When using a scripted health check, the default health check is disabled. Question: 16 A scripted health check can only contain searches for: Page 3 of 58

4 A. ASCII content B. Status codes C. Status codes and ASCII content D. Status codes, ASCII content and keepalives Question: 17 Port profiles are used to define: A. Port types B. Status of ports C. Well known ports D. HTTP health checks Question: 18 The Foundry ServerIron can perform Layer 7 health checks on the following TCP applications (select all that applies)? A. FTP (port 21) B. POP3 (port 110) C. LDAP (port 389) D. SNMP, B, C Question: 19 Health checks to port 443 can be: A. Secure B. Simple C. Simple and Secure D. Simple, Secure and Boolean, B Question: 20 A Port Profile is a set of attributes that defines a TCP/UDP port. Which of the following are valid Port Profile Attributes? A. l4-healthck B. Keepalive interval and retries C. TCP or UDP age D. Keepalive state, C, D Question: 21 disabling layer 4 health checks will automatically disable layer 7 health checks Page 4 of 58

5 Question: 22 Each Matching List must have a name Question: 23 On the ServerIrons 400/800, the Health Checks are performed by what section of the hardware? A. The Management processor B. The Barrel processors C. The IPC processors D. WSM processor Question: 24 If a string that meets the selection criteria is a subset of another: A. The longer string takes precedence B. The shorter string takes precedence C. The string that is read last takes precedence D. The string that is read first takes precedence Question: 25 What is the command syntax for setting up a layer 7 heathcheck for HTTP 1.1? A. port http url "GET / HTTP1.1\r\n\r\n" B. port url http "http 1.1/" C. port http url "GET / HTTP/1.0\r\nHost: D. port http url "GET / HTTP/1.0\r\ E. port http url "GET / HTTP/1.1\r\nHost: Answer: E Question: 26 For any application port, the "sticky" command is used to: A. bind real servers B. configure persistence C. create sessions D. cookie switching Question: 27 How does the ServerIron measure response time in Direct Server Return configurations? A. The ServerIron uses the reply traffic to measure the response time. Page 5 of 58

6 B. The ServerIron uses the Health Check and the reply traffic and applies the smooth factor to get the average C. The ServerIron uses the Server Response Time Weights parameter to measure response time. D. The ServerIron uses the Health Check responses to measure response time. Answer: D Question: 28 The WSM6 module A. Balances traffic to and from the management processor B. Manages the SI850 and SI450 C. Has 6 management processors D. Can be configured as a WSM-100 Question: 29 What is the design advantage of using Symmetric Sever Load Balancing (SSLB) over Hot Standby redundancy? A. You can use Port Monitoring. It is not supported on the standby ServerIron B. You are limited to only one pair of standby ServerIrons per broadcast domain. C. You do not have to dedicate a ServerIron as a Standby. D. You do not have to worry about STP interfering with Hot Standby communications, C Question: 30 How often does the Serveriron ARP for a real server after it is up by default? A. It does not arp for the server once it is up. B. Every 5 mins C. Every 2 mins D. Every 20 seconds E. Every 2 seconds Answer: D Question: 31 With the proxy server cache load balancing featured configured, what is required to ensure clients whose browsers with Proxy IP configured are served transparently? A. The ServerIron performs tranparent TCS, using the normal hash mechanism to map the request B. A VIP must be configured with the same IP address as the proxy C. You must identify the ports as UDP so the appropriate health checks are used D. Requires clients to reconfigure their web browsers to point to a proxy server Question: 32 Setting the QOS policy to "CACHE" does what? Page 6 of 58

7 A. Disables Transparent Cache Switching (TCS) B. Enables Transparent Cache Switching (TCS) C. Sets the QoS cache for low priority traffic D. Enabled Firewall Load Balancing E. Disables Firewall Load Balancing Question: 33 Which devices support ServerIron Link Balancer? A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Question: 34 The ServerIron in a non-routed environment always translates the MAC address in response from a real server into the MAC address of the virtual IP address before sending the response to the client. Question: 35 Which of the following is an alternative to Hot Standby Redundancy? A. Symmetric Server Load Balancing B. Global Server Load Balancing C. Server Load Balancing D. System Server Load Balancing Question: 36 What is the CLI command to display the synchronization settings for the Active Redundant and the Standby Redundant Management Modules? A. standby B. sync-standby C. sync-sync D. standby - Sync Question: 37 Page 7 of 58

8 The output of the "show server real" displays information about the real servers. The "Ms" field contains the value of the Master Port State, and only applies to track ports and to ports to which you have bound other TCP/UDP ports.. The possible values are: A. 3 -Test B. 5 -Unbnd C. 1-Enable D. 3 -TestUp E. 6-Active F. 2 - Failed, C, E, F Question: 38 What is the number of sessions that a ServerIron with 32MB of memory installed can support? A B. 160,000 C. 1,000,000 D. 1,160,000 Question: 39 Below is the output from the "show server backup?command. What does it means when the "SLB Partner MAC" value is all zeros? Switch state = Active SLB state =0 SLB partner MAC valid = 0 SLB Partner MAC = SLB Partner port cnt = 24 Transactions, activate s= 0,standby= 0 Pdus sent = 10,MAC pdu Sent= 10 No pdus = 0, no port maps= 0 ServerIron> show server backup Server Backup port configured A. Nothing, This is the normal behavior for the standby ServerIron. B. It indicates that a layer 4 MAC synchronization is in progress. C. It indicates that you have lost layer 2 connectivity with the partner ServerIron D. It indicates that the Partner ServerIron is ready for Failover. (the Partner Mac is only displayed when there is a failure). Question: 40 Exhibit: Page 8 of 58

9 In the exhibit, what commands would have to be entered in order to enable the configuration of VRRP-Extended? A. boot system flash primary B. boot system flash secondary C. boot system flash secondary; wsm boot secondary D. boot system flash primary; wsm boot secondary E. reload F. erase start; reload Question: 41 When setting up Symmetric SLB, what must be configured to ensure that sessions on the active ServerIron failover to the backup ServerIron in the event that the active ServerIron fails. A. IP Synchronization B. Application Synchronization C. Session Synchronization D. Port Synchronization Page 9 of 58

10 Question: 42 If the ServerIron is attached to multiple routers or to a single router configured for VRRP, FSRP, or HSRP, you must identify the ports on the ServerIron that are attached to the router(s). Why? A. Explicitly identifying the ports enables the ServerIron to handle the Layer 2 traffic correctly. B. Explicitly identifying the ports enables the ServerIron to handle the Layer 4 traffic correctly. C. Explicitly identifying the ports enables the ServerIron to handle the Layer 3 traffic correctly. D. Explicitly identifying the ports enables the ServerIron to handle the VRRP, FSRP, or HSRP Failover correctly. Question: 43 What command enables enhanced weighted SLB predictor? A. Server predictor-enhanced-weighted B. Server predictor weighted C. Server enhanced-weighted D. Server weighted-enhanced Question: 44 What command is used to bind realserver1 and realserver2 under VIP1 for the http port? A. Bind http realserver1 realserver2 B. Bind realserver1 http realserver2 http C. Bind http realserver1 http realserver2 http D. Bind realserver1 realserver2 http Question: 45 Configuring a port to be Stateless is useful when? A. You want to reserve session table resources. B. You don't want to use memory storing statistics C. You have configured the VIP to be transparent D. When the application port is not a well know port, C Question: 46 The ServerIron Chassis supports redundant management modules. This creates a requirement that the software between the active and standby management modules is synced.. Which of the following file(s) are synced-up at predetermine intervals? A. Running-config B. Boot code C. Start-up Config-File D. Flash code, C, D Page 10 of 58

11 Question: 47 The ServerIron XL supports: A. ip forwarding B. RIP C. OSPF D. IS-IS E. BGP4, B Question: 48 What is the command to enabled Layer 4 Switching on the ServerIron Ironcore Chassis starting with release 8.1R? A. ip l4-policy 1 cache tcp 0 global B. rconsole 1 1 ip policy 1 cache tcp 0 global C. ip policy 1 cache tcp 0 global D. l4 switching is enable by default Question: 49 Exhibit: Page 11 of 58

12 In the exhibit, what are the possible types of management module that is being used? A. WSM4 B. WSM6 C. WSM4-100 D. WSM6-1 E. WSM6-2 F. VM, B Question: 50 What is the recommended low priority setting and high priority setting when configuring Symmetric SLB? A. Low = 0, High = 255 B. Low = 1, High = 254 C. Low = -1, High = 255 D. Low = -1, High = 254 Page 12 of 58

13 Question: 51 The SI Layer2 ARP request is disabled for remote server configurations Question: 52 When using the weighted percentage method (Predictor), you must configure real servers and? A. The Global Servers B. The Web Servers C. The Virtual Server D. The Backup Servers Question: 53 When you apply the application grouping parameter for a port and the VIP that has a Load Balancing Predictor defined, Which one takes precedence? A. The application grouping parameter B. The Load balancing Predictor C. The setting that was configured first D. Only the servers that is also sticky Question: 54 What is it called when the ServerIron does not process every TCP or UDP packet in a given session, instead it uses information gather during the setup of the session to forward packets.? A. TCP or UDP Fast Aging B. Fast-path SLB processing C. Connection Logging D. Smooth Factor Question: 55 What is the default predictor for load balancing on Foundry Networks ServerIron product family A. Round Robin B. Least Connections C. Weighted D. Best server predictor Question: 56 Which Features are NOT supported in 9.1R? ( Select all that apply ) A. VRRP Page 13 of 58

14 B. FSRP C. RIP D. OSPF E. BGP F. VRRP-E, E Question: 57 Which HA feature is not supported in Router Code A. Active-Active B. Hot-Stby C. Active-Stby D. Active-Passive Question: 58 Which of the following are selectable types of Quality of Service (QoS)? A. Layer 4 session packet-based B. Layer 2 Flow control (802.3x) C. Layer p/802.1q D. Layer 2 Packet-based priority (Policy), B, D Question: 59 To define how requests are distributed among multiple web cache servers within a cache-group, the following command is used: A. mask-hash <destination-ip-mask><source-ip-mask> B. hash-mask <destination-ip-mask><source-ip-mask> C. hash-mask <server> < source-ip-mask> <destination-ip-mask> D. mask <source-ip-mask> <destination-ip-mask> Question: 60 In order to configure the ServerIron to remove any entry from its session table if the connection remains incomplete for more than 5 seconds, what command would be use? A. server syn-def drop 5 B. server syn-def 5 C. syn-def server 5 D. syn-def server def 5 Question: 61 On the ServerIron 450 running release 9.x, what is the total number of sticky sessions supported A. 3 Million B. 2 Million Page 14 of 58

15 C. 1 Million D. 500 Thousand E. Unlimited Answer: E Question: 62 Which of the following are features of the Web Switching Management Module used to power the ServerIron 100, 400, and 800 series? A. Management Processor LEDs B. Web Switching Management CPU LEDs C. Network Interface RJ45 D. Serial Port DB9, B, D Question: 63 Stateless SLB optimization is supported on the following TCP or UDP well known ports. Choose all that applies. A. 80 (HTTP) B. 49 (TACACS) C. 92 (NPP) D. 21 (FTP) E. 107 (rtelnet), B, D Question: 64 What feature is used to configure multiple ServerIrons to load Balance the same VIP? A. Stateless VIPs B. Transparent VIPs C. Unlimited VIPs D. Sticky VIPs Question: 65 By default, the ServerIron translates the application port number requested by the client into the application port number you specify on the virtual server when you bind it to the real server. Question: 66 Exhibit: Page 15 of 58

16 The "show server traffic" command displays the current activity on the Company server (See Exhibit). Which of the following shows the number of incomplete connections A. Drops B. Stale Drops C. Fw drops D. TCP SYN-DEF RST Answer: D Question: 67 Syn-Defense and Syn Guard can be configured simultaneously? Question: 68 Transaction Rate Limiting: A. Cannot be used with SYN-Guard B. Sets the total number of sessions a client can make to a server in a specified time period C. Limits the number of connections a client can establish to a server in a specified time period. D. Sets the total number of transactions that the ServerIron can process in a specified time period E. Sets the maximum number of transactions a user can make through the ServerIron in a specified time period Answer: E Question: 69 On the ServerIron 400/800 product running router code, you must enable NAT globally. You cannot enable NAT on an individually interface. Question: 70 SYN-Defense A. Times out the connection if there is no 'fin sent Page 16 of 58

17 B. Times out the connection if there is no 'ack' sent C. Waits for the completion of the 3 way handshake before sending the 'fin' D. Waits for the for completion of the 3 way handshake before sending the 'reset' Question: 71 You can turn on the TCP SYN Defense function through the Web Management Interface. Question: 72 The output in the exhibitbelow was produced by the following "show" command Exhibit: Company (config)# show?. Client ->Server =26753 Server->Client=24817 Drops =4 Aged=38 Fw_drops =0 Rev_drops=0 FIN_or_RST =8429 old_conn=0 Disable_drop =0 Exceed_drop=0 Stale_drop =14 Unsuccessful=0 A. show server real B. show server sessions C. show server traffic D. show server stats Question: 73 What function does the following command perform? security hold-source-ip A. Refuses the connection to the specified host for 20 seconds B. Set the specified ip address as the primary source address for communications with 20 seconds polling C. Refuse the connection to the specified host for 20minutes D. Set the specified ip address and the following 20 addresses as the primary source group address for communications with 20 seconds polling Question: 74 SYN-Guard A. Allows the ServerIron to complete the 3 way handshake B. Configures the ServerIron to establish a time out period for completion of the 3 way handshake C. Completes the 3 way hand shake for the server before initializing the connection to the server. D. Sends the 3 way handshake to the server and waits for the 'ack' to complete the 3 way handshake Page 17 of 58

18 Question: 75 Connection Rate Limiting: A. Cannot be used with SYN-Guard B. Sets the total number of sessions a client can make to a server C. Limits the number of connections a client can establish to a server. D. Sets the total number of connections that the ServerIron can process E. Sets the total number of connections a user can make through the ServerIron Answer: D Question: 76 When setting the server up to be in groups, the servers must be: A. In only one group B. At least two groups C. In a range of groups D. Defined as being on a beginning group and an ending group Question: 77 The feature that allows the ServerIron to forward only packets associated with an established connection to the server is called Syn Defense. Question: 78 In which case will the ServerIron insert a cookie? A. There is no cookie header B. The cookie value is out of range C. The server indicated by the cookie is not available D. The cookie value exists but points to an incorrect server E. The cookie name is not the name specified by the 'port http cookie-name', B, C, E Question: 79 The ServerIron can delete a cookie that it set. Question: 80 Cooking hashing guarantees session persistence Page 18 of 58

19 Question: 81 What is the default load balancing method used for Firewall load balancing on ServerIron Stackable products? A. Hashing B. Round robin C. Session based sticky D. Stateful Question: 82 Repeated executions of 'show server real' displays the real server status as 'failed'/'active'. This problem could be caused by the failure of which health check: A. Layer 2 B. Layer 3 C. Layer 4 D. Layer 5 E. Layer 7 Answer: E Question: 83 The Global Server Load Balance (GSLB) serveriron uses the GSLB protocol to learn the following (select all that applies)? A. Available sessions of the site ServerIrons B. Firewall server's real name C. Session table statistics D. Round-Trip-Time, C, D Question: 84 The ServerIron that is the GSLB Controller can also be used to balance web servers. Question: 85 When using the 'debug filter' you would like to filter for a TCP SYN or a TCP RST, in order to do that you would write: A. (debug-filter-spec-1)#tcp fin or reset B. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset C. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset Page 19 of 58

20 (debug-filter)#apply "tcp fin or reset" D. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset (debug-filter)#apply "1 or 2" E. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset (debug-filter)#apply "1 or 2" Answer: E Question: 86 Route Health Injection A. Sets the routing to the host by listing them by health in the router table B. Checks for the health of the server by using the router C. Determines the route to the nearest server by using the host address in the router D. Allows the ServerIron to insert the health of the nearest server into the router Question: 87 A UDP health check upon initialization can include: A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet (meaningless data), B, F Question: 88 The Distributed Health Check A. Distributes the health checking task to the site ServerIrons. B. Lets the GSLB Controller request the health of distributed servers C. Allows the Local ServerIrons to report their health to the GSLB Controller D. Lets the GSLB Controller request the health of distributed Local ServerIrons Question: 89 A TCP health check upon initialization can include: A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet, B, C, D, E Question: 90 Page 20 of 58

21 To temporally disqualify a GSLB site from being selected, you would configure the: A. Least Response selection B. GSLB Administrative Preference C. Site ServerIrons available session capacity D. Site ServerIrons administrative preference Answer: D Question: 91 The maximum length of the URLcharacter is the same for the ServerIron XL and the ServerIron 400 product families? Question: 92 SYN-Guard and SYN-Defense can be configured on: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E, C, D, E, F, G Question: 93 The best practice method to configure SSL Layer7 switching is A. URL switching B. Cookie switching C. Session ID switching D. Round robin Question: 94 sflow is supported on the: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Answer: E, F, G Question: 95 Page 21 of 58

22 When using Layer 7 Switching, what command would you use to instruct the ServerIron to buffer all request packets until all the necessary information is received insuring that the whole HTTP header will be saved? A. port http B. port http buffer-for-end-http C. port http wait-for-end-header D. port http wait-for-end-http Answer: D Question: 96 You can turn on the TCP SYN Defense function through the Web Management Interface. Question: 97 Syn-Defense and Syn Guard can be configured simultaneously? Question: 98 SYN-Defense A. Times out the connection if there is no 'fin' sent B. Times out the connection if there is no 'ack' sent C. Waits for the completion of the 3 way handshake before sending the 'fin' D. Waits for the for completion of the 3 way handshake before sending the 'reset' Question: 99 What function does the following command perform? security hold-source-ip A. Refuses the connection to the specified host for 20 seconds B. Set the specified ip address as the primary source address for communications with 20 seconds polling C. Refuse the connection to the specified host for 20minutes D. Set the specified ip address and the following 20 addresses as the primary source group address for communications with 20 seconds polling Question: 100 Transaction Rate Limiting: A. Cannot be used with SYN-Guard Page 22 of 58

23 B. Sets the total number of sessions a client can make to a server in a specified time period C. Limits the number of connections a client can establish to a server in a specified time period. D. Sets the total number of transactions that the ServerIron can process in a specified time period E. Sets the maximum number of transactions a user can make through the ServerIron in a specified time period Answer: E Question: 101 Transaction Rate Limiting A. Limits the total number of packets that can be sent through the ServerIron B. Limits the number of connections users can make through the ServerIron C. Limits the number of packets an individual user can send through the ServerIron D. Limits the number of connections an individual user can make through the ServerIron Question: 102 Connection Rate Limiting: A. Cannot be used with SYN-Guard B. Sets the total number of sessions a client can make to a server C. Limits the number of connections a client can establish to a server. D. Sets the total number of connections that the ServerIron can process E. Sets the total number of connections a user can make through the ServerIron Answer: D Question: 103 The output in Figure 2 below was produced by the following "show" command ServerIron (config)# show?. Client ->Server =26753 Server->Client =24817 Drops =4 Aged =38 Fw_drops =0 Rev_drops =0 FIN_or_RST =8429 old_conn =0 Disable_drop =0 Exceed_drop =0 Stale_drop =14 Unsuccessful =0 Figure 2 A. show server real B. show server sessions C. show server traffic D. show server stats Question: 104 Exhibit: Page 23 of 58

24 The "show server traffic" command displays the current activity on the Company server. Which of the following shows the number of incomplete connections A. Drops B. Stale Drops C. Fw drops D. TCP SYN-DEF RST Answer: D Question: 105 SYN-Guard A. Allows the ServerIron to complete the 3 way handshake B. Configures the ServerIron to establish a time out period for completion of the 3 way handshake C. Completes the 3 way hand shake for the server before initializing the connection to the server. D. Sends the 3 way handshake to the server and waits for the 'ack' to complete the 3 way handshake Question: 106 The passive health check is done: A. After each PING B. According to the configured time values C. When there is a status change from the server D. When the Reassign-Threshold is incremented Question: 107 A Port Profile is a set of attributes that defines a TCP/UDP port. Which of the following are valid Port Profile Attributes? A. l4-healthck B. Keepalive interval and retries C. TCP or UDP age D. Keepalive state, C, D Question: 108 disabling layer 4 health checks will automatically disable layer 7 health checks Page 24 of 58

25 Question: 109 What is the command syntax for setting up a layer 7 heathcheck for HTTP 1.1? A. port http url "GET / HTTP1.1\r\n\r\n" B. port url http "http 1.1/" C. port http url "GET / HTTP/1.0\r\nHost: D. port http url "GET / HTTP/1.0\r\ E. port http url "GET / HTTP/1.1\r\nHost: Answer: E Question: 110 Each Matching List must have a name Question: 111 Port profiles are used to define: A. Port types B. Status of ports C. Well known ports D. HTTP health checks Question: 112 When using a scripted health check, the default health check is disabled. Question: 113 A scripted health check can only contain searches for: A. ASCII content B. Status codes C. Status codes and ASCII content D. Status codes, ASCII content and keepalives Question: 114 A UDP application is considered down if the server returns: Page 25 of 58

26 A. No packet B. A garbage packet C. An UDP probe packet D. An ICMP unreachable packet Answer: D Question: 115 An HTTP health check can return: A. A keepalive B. Status code C. Content verification D. A value to increment the Reassign-Threshold, C Question: 116 On the ServerIrons 400/800, the Health Checks are performed by what section of the hardware? A. The Management processor B. The Barrel processors C. The IPC processors D. WSM processor Question: 117 What will be the corresponding Virtual MAC Address belonging to a configured VIP (AF:1E:0F:0A) A. VMACs have to be manually configured B. AF:1E:0F:0A:FF:FF C. 02:0C:DB:1E:0F:0A D. 02:0C:AF:1E:0F:0A Question: 118 The Foundry ServerIron can perform Layer 7 health checks on the following TCP applications (select all that applies)? A. FTP (port 21) B. POP3 (port 110) C. LDAP (port 389) D. SNMP, B, C Question: 119 A customer HTTP connection requires a persistence timer of 3 hours. How can this be achieved? A. ServerIron(config)#server tcp-age 180 B. ServerIron(config)# server port 80 Page 26 of 58

27 ServerIron(config-port-http)# port tcp ServerIron(config-port-http)# server tcp-age 180 C. ServerIron(config)#server tcp-age 60 ServerIron(config)#server clock-scale 3 D. ServerIron(config)#server clock-scale 3 Question: 120 If a string that meets the selection criteria is a subset of another: A. The longer string takes precedence B. The shorter string takes precedence C. The string that is read last takes precedence D. The string that is read first takes precedence Question: 121 Which of the following Health Check types are performed at Layer 7? A. Arp Request B. TCP C. HTTP D. IMAP4 E. UDP F. LDAP G. MMS H. RSTP, D, F, G Question: 122 An active health check is done: A. At each user request B. According to the configured time values C. When the Reassign-Threshold is exceeded D. When there is a status change from the server Question: 123 A Matching List can contain: A. Log B. URL C. Down simple D. Status codes E. Up Compound, C, E Question: 124 What must be done before a Health-Check Policy will take effect? Page 27 of 58

28 A. The Health-Check Policy must be bound to the VIP B. The Health-Check Policy intervals and reset must be define C. The Health-Check Policy must be attached to an application port on a real server D. The Health-Check Policy must be configured to use 3-way handshaking Question: 125 Server port 8080 tcp keepalive 30 2 server port 9146 no-fast-bringup tcp keepalive 30 2 server port 9148 no-fast bringup tcp keepalive 30 2 What function does the "no-fast bringup" perform in the above configuration? A. Turns off the associated port B. Prevents port flapping C. Enables tcp keepalive on the associated port D. Allows the ServerIron to gradually receive connections Question: 126 What is the default TCP age for a TCP session on the ServerIron? A. 60 minutes B. 30 minutes C. 60 seconds D. 30 seconds Question: 127 The ServerIron Chassis supports redundant management modules. This creates a requirement that the software between the active and standby management modules is synced.. Which of the following file(s) are synced-up at predetermine intervals? A. Running-config B. Boot code C. Start-up Config-File D. Flash code, C, D Question: 128 To define how requests are distributed among multiple web cache servers within a cache-group, the following command is used: A. mask-hash <destination-ip-mask><source-ip-mask> B. hash-mask <destination-ip-mask><source-ip-mask> Page 28 of 58

29 C. hash-mask <server> < source-ip-mask> <destination-ip-mask> D. mask <source-ip-mask> <destination-ip-mask> Question: 129 Which of the following are features of the Web Switching Management Module used to power the ServerIron 100, 400, and 800 series? A. Management Processor LEDs B. Web Switching Management CPU LEDs C. Network Interface RJ45 D. Serial Port DB9, B, D Question: 130 What command is used to bind realserver1 and realserver2 under VIP1 for the http port? A. Bind http realserver1 realserver2 B. Bind realserver1 http realserver2 http C. Bind http realserver1 http realserver2 http D. Bind realserver1 realserver2 http Question: 131 What is the command to enabled Layer 4 Switching on the ServerIron Ironcore Chassis starting with release 8.1R? A. ip l4-policy 1 cache tcp 0 global B. rconsole 1 1 ip policy 1 cache tcp 0 global C. ip policy 1 cache tcp 0 global D. l4 switching is enable by default Question: 132 Transparent VIP turns off load balancing a VIP because it requires owning the VIP address. Question: 133 When setting up Symmetric SLB, what must be configured to ensure that sessions on the active ServerIron failover to the backup ServerIron in the event that the active ServerIron fails. A. IP Synchronization B. Application Synchronization C. Session Synchronization D. Port Synchronization Page 29 of 58

30 Question: 134 What is the default predictor for load balancing on Foundry Networks ServerIron product family A. Round Robin B. Least Connections C. Weighted D. Best server predictor Question: 135 Which of the following is an alternative to Hot Standby Redundancy? A. Symmetric Server Load Balancing B. Global Server Load Balancing C. Server Load Balancing D. System Server Load Balancing Question: 136 In order to configure the ServerIron to remove any entry from its session table if the connection remains incomplete for more than 5 seconds, what command would be use? A. server syn-def drop 5 B. server syn-def 5 C. syn-def server 5 D. syn-def server def 5 Question: 137 On the ServerIron 450 running release 9.x, what is the total number of sticky sessions supported A. 3 Million B. 2 Million C. 1 Million D. 500 Thousand E. Unlimited Answer: E Question: 138 What is the recommended low priority setting and high priority setting when configuring Symmetric SLB? A. Low = 0, High = 255 B. Low = 1, High = 254 C. Low = -1, High = 255 D. Low = -1, High = 254 Question: 139 Page 30 of 58

31 For any application port, the "sticky" command is used to: A. bind real servers B. configure persistence C. create sessions D. cookie switching Question: 140 The SI Layer2 ARP request is disabled for remote server configurations Question: 141 Stateless SLB optimization is supported on the following TCP or UDP well known ports. Choose all that applies. A. 80 (HTTP) B. 49 (TACACS) C. 92 (NPP) D. 21 (FTP) E. 107 (rtelnet), B, D Question: 142 What feature is used to configure multiple ServerIrons to load Balance the same VIP? A. Stateless VIPs B. Transparent VIPs C. Unlimited VIPs D. Sticky VIPs Question: 143 By default, the ServerIron translates the application port number requested by the client into the application port number you specify on the virtual server when you bind it to the real server. Question: 144 How does the ServerIron measure response time in Direct Server Return configurations? A. The ServerIron uses the reply traffic to measure the response time. B. The ServerIron uses the Health Check and the reply traffic and applies the smooth factor to get the average Page 31 of 58

32 C. The ServerIron uses the Server Response Time Weights parameter to measure response time. D. The ServerIron uses the Health Check responses to measure response time. Answer: D Question: 145 When you apply the application grouping parameter for a port and the VIP that has a Load Balancing Predictor defined, Which one takes precedence? A. The application grouping parameter B. The Load balancing Predictor C. The setting that was configured first D. Only the servers that is also sticky Question: 146 Using router ports with Hot-Standby: A. Stops spanning tree loops B. Enables multiple routers to be connected to the ServerIron C. Forces the packet to bypass the ServerIron and go directly to the router D. Can be used to force the standbay ServerIron to be active when a router port fails Answer: D Question: 147 What is it called when the ServerIron does not process every TCP or UDP packet in a given session, instead it uses information gather during the setup of the session to forward packets.? A. TCP or UDP Fast Aging B. Fast-path SLB processing C. Connection Logging D. Smooth Factor Question: 148 Setting the QOS policy to "CACHE" does what? A. Disables Transparent Cache Switching (TCS) B. Enables Transparent Cache Switching (TCS) C. Sets the QoS cache for low priority traffic D. Enabled Firewall Load Balancing E. Disables Firewall Load Balancing Question: 149 The WSM6 module A. Balances traffic to and from the management processor B. Manages the SI850 and SI450 C. Has 6 management processors Page 32 of 58

33 D. Can be configured as a WSM-100 Question: 150 Which Features are NOT supported in 9.1R? ( Select all that apply ) A. VRRP B. FSRP C. RIP D. OSPF E. BGP F. VRRP-E, E Question: 151 The ServerIron considers a port to be a UDP port unless you configure it as a TCP port. Question: 152 The ServerIron in a non-routed environment always translates the MAC address in response from a real server into the MAC address of the virtual IP address before sending the response to the client. Question: 153 What is the number of sessions that a ServerIron with 32MB of memory installed can support? A B. 160,000 C. 1,000,000 D. 1,160,000 Question: 154 Exhibit: Page 33 of 58

34 In the exhibit, what commands would have to be entered in order to enable the configuration of VRRP-Extended? A. boot system flash primary B. boot system flash secondary C. boot system flash secondary; wsm boot secondary D. boot system flash primary; wsm boot secondary E. reload F. erase start; reload Question: 155 Configuring a port to be Stateless is useful when? A. You want to reserve session table resources. B. You don't want to use memory storing statistics C. You have configured the VIP to be transparent D. When the application port is not a well know port, C Page 34 of 58

35 Question: 156 "Server slow start applies to individual TCP application ports that have just been activated on a real server. Question: 157 If the ServerIron is attached to multiple routers or to a single router configured for VRRP, FSRP, or HSRP, you must identify the ports on the ServerIron that are attached to the router(s). Why? A. Explicitly identifying the ports enables the ServerIron to handle the Layer 2 traffic correctly. B. Explicitly identifying the ports enables the ServerIron to handle the Layer 4 traffic correctly. C. Explicitly identifying the ports enables the ServerIron to handle the Layer 3 traffic correctly. D. Explicitly identifying the ports enables the ServerIron to handle the VRRP, FSRP, or HSRP Failover correctly. Question: 158 Which devices support ServerIron Link Balancer? A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Question: 159 Which HA feature is not supported in Router Code A. Active-Active B. Hot-Stby C. Active-Stby D. Active-Passive Question: 160 With the proxy server cache load balancing featured configured, what is required to ensure clients whose browsers with Proxy IP configured are served transparently? A. The ServerIron performs tranparent TCS, using the normal hash mechanism to map the request B. A VIP must be configured with the same IP address as the proxy C. You must identify the ports as UDP so the appropriate health checks are used D. Requires clients to reconfigure their web browsers to point to a proxy server Page 35 of 58

36 Question: 161 What is the CLI command to display the synchronization settings for the Active Redundant and the Standby Redundant Management Modules? A. standby B. sync-standby C. sync-sync D. standby - Sync Question: 162 Which of the following are selectable types of Quality of Service (QoS)? A. Layer 4 session packet-based B. Layer 2 Flow control (802.3x) C. Layer p/802.1q D. Layer 2 Packet-based priority (Policy), B, D Question: 163 Exhibit: Page 36 of 58

37 In the exhibit what are the possible types of management module that is being used? A. WSM4 B. WSM6 C. WSM4-100 D. WSM6-1 E. WSM6-2 F. VM, B Question: 164 When using the weighted percentage method (Predictor), you must configure real servers and? A. The Global Servers B. The Web Servers C. The Virtual Server D. The Backup Servers Page 37 of 58

38 Question: 165 The output of the "show server real" displays information about the real servers. The "Ms" field contains the value of the Master Port State, and only applies to track ports and to ports to which you have bound other TCP/UDP ports.. The possible values are: A. 3 -Test B. 5-Unbnd C. 1-Enable D. 3-TestUp E. 6-Active F. 2 - Failed, C, E, F Question: 166 The ServerIron that is the GSLB Controller can also be used to balance web servers. Question: 167 The command show gslb policy will always display the: A. Default policy B. Currently configured policy C. Default policy and currently configured policy D. The default policy and currently configured policy with selection percentages Question: 168 The Global Server Load Balance (GSLB) serveriron uses the GSLB protocol to learn the following (select all that applies)? A. Available sessions of the site ServerIrons B. Firewall server real name C. Session table statistics D. Round-Trip-Time, C, D Question: 169 Route Health Injection A. Sets the routing to the host by listing them by health in the router table B. Checks for the health of the server by using the router C. Determines the route to the nearest server by using the host address in the router D. Allows the ServerIron to insert the health of the nearest server into the router Question: 170 Page 38 of 58

39 When using the 'debug filter' you would like to filter for a TCP SYN or a TCP RST, in order to do that you would write: A. (debug-filter-spec-1)#tcp fin or reset B. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset C. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset (debug-filter)#apply "tcp fin or reset" D. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset (debug-filter)#apply "1 or 2" E. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset (debug-filter)#apply "1 or 2" Answer: E Question: 171 To temporally disqualify a GSLB site from being selected, you would configure the: A. Least Response selection B. GSLB Administrative Preference C. Site ServerIrons?available session capacity D. Site ServerIrons?administrative preference Answer: D Question: 172 Repeated executions of 'show server real' displays the real server status as 'failed'/'active'. This problem could be caused by the failure of which health check: A. Layer 2 B. Layer 3 C. Layer 4 D. Layer 5 E. Layer 7 Answer: E Question: 173 A UDP health check upon initialization can include: A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet (meaningless data), B, F Question: 174 A TCP health check upon initialization can include: Page 39 of 58

40 A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet, B, C, D, E Question: 175 What is the default load balancing method used for Firewall load balancing on ServerIron Stackable products? A. Hashing B. Round robin C. Session based sticky D. Stateful Question: 176 The ServerIron can delete a cookie that it set. Question: 177 When setting the server up to be in groups, the servers must be: A. In only one group B. At least two groups C. In a range of groups D. Defined as being on a beginning group and an ending group Question: 178 The feature that allows the ServerIron to forward only packets associated with an established connection to the server is called Syn Defense. Question: 179 In which case will the ServerIron insert a cookie? A. There is no cookie header B. The cookie value is out of range C. The server indicated by the cookie is not available D. The cookie value exists but points to an incorrect server E. The cookie name is not the name specified by the 'port http cookie-name' Page 40 of 58

41 , B, C, E Question: 180 Cooking hashing guarantees session persistence Question: 181 When you apply the application grouping parameter for a port and the VIP that has a Load Balancing Predictor defined, Which one takes precedence? A. The application grouping parameter B. The Load balancing Predictor C. The setting that was configured first D. Only the servers that is also sticky Question: 182 Which of the following is an alternative to Hot Standby Redundancy? A. Symmetric Server Load Balancing B. Global Server Load Balancing C. Server Load Balancing D. System Server Load Balancing Question: 183 How does the ServerIron measure response time in Direct Server Return configurations? A. The ServerIron uses the reply traffic to measure the response time. B. The ServerIron uses the Health Check and the reply traffic and applies the smooth factor to get the average C. The ServerIron uses the Server Response Time Weights parameter to measure response time. D. The ServerIron uses the Health Check responses to measure response time. Answer: D Question: 184 How often does the Serveriron ARP for a real server after it is up by default? A. It does not arp for the server once it is up. B. Every 5 mins C. Every 2 mins D. Every 20 seconds E. Every 2 seconds Answer: D Page 41 of 58

42 Question: 185 When using the weighted percentage method (Predictor), you must configure real servers and? A. The Global Servers B. The Web Servers C. The Virtual Server D. The Backup Servers Question: 186 The ServerIron in a non-routed environment always translates the MAC address in response from a real server into the MAC address of the virtual IP address before sending the response to the client. Question: 187 Which of the following are features of the Web Switching Management Module used to power the ServerIron 100, 400, and 800 series? A. Management Processor LEDs B. Web Switching Management CPU LEDs C. Network Interface RJ45 D. Serial Port DB9, B, D Question: 188 What feature is used to configure multiple ServerIrons to load Balance the same VIP? A. Stateless VIPs B. Transparent VIPs C. Unlimited VIPs D. Sticky VIPs Question: 189 Configuring a port to be Stateless is useful when? A. You want to reserve session table resources. B. You don't want to use memory storing statistics C. You have configured the VIP to be transparent D. When the application port is not a well know port, C Question: 190 To define how requests are distributed among multiple web cache servers within a cache-group, the following command is used: Page 42 of 58

43 A. mask-hash <destination-ip-mask><source-ip-mask> B. hash-mask <destination-ip-mask><source-ip-mask> C. hash-mask <server> < source-ip-mask> <destination-ip-mask> D. mask <source-ip-mask> <destination-ip-mask> Question: 191 Which devices support ServerIron Link Balancer? A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Question: 192 What is the command to enabled Layer 4 Switching on the ServerIron Ironcore Chassis starting with release 8.1R? A. ip l4-policy 1 cache tcp 0 global B. rconsole 1 1 ip policy 1 cache tcp 0 global C. ip policy 1 cache tcp 0 global D. l4 switching is enable by default Question: 193 What is the recommended low priority setting and high priority setting when configuring Symmetric SLB? A. Low = 0, High = 255 B. Low = 1, High = 254 C. Low = -1, High = 255 D. Low = -1, High = 254 Question: 194 What command is used to bind realserver1 and realserver2 under VIP1 for the http port? A. Bind http realserver1 realserver2 B. Bind realserver1 http realserver2 http C. Bind http realserver1 http realserver2 http D. Bind realserver1 realserver2 http Question: 195 Page 43 of 58

44 "Server slow start applies to individual TCP application ports that have just been activated on a real server. Question: 196 The best practice method to configure SSL Layer7 switching is A. URL switching B. Cookie switching C. Session ID switching D. Round robin Question: 197 The ServerIron Chassis supports redundant management modules. This creates a requirement that the software between the active and standby management modules is synced.. Which of the following file(s) are synced-up at predetermine intervals? A. Running-config B. Boot code C. Start-up Config-File D. Flash code, C, D Question: 198 What is it called when the ServerIron does not process every TCP or UDP packet in a given session, instead it uses information gather during the setup of the session to forward packets.? A. TCP or UDP Fast Aging B. Fast-path SLB processing C. Connection Logging D. Smooth Factor Question: 199 If the ServerIron is attached to multiple routers or to a single router configured for VRRP, FSRP, or HSRP, you must identify the ports on the ServerIron that are attached to the router(s). Why? A. Explicitly identifying the ports enables the ServerIron to handle the Layer 2 traffic correctly. B. Explicitly identifying the ports enables the ServerIron to handle the Layer 4 traffic correctly. C. Explicitly identifying the ports enables the ServerIron to handle the Layer 3 traffic correctly. D. Explicitly identifying the ports enables the ServerIron to handle the VRRP, FSRP, or HSRP Failover correctly. Question: 200 The ServerIron XL supports: Page 44 of 58

45 A. ip forwarding B. RIP C. OSPF D. IS-IS E. BGP4, B Question: 201 The ServerIron considers a port to be a UDP port unless you configure it as a TCP port. Question: 202 The output of the "show server real" displays information about the real servers. The "Ms" field contains the value of the Master Port State, and only applies to track ports and to ports to which you have bound other TCP/UDP ports.. The possible values are: A. 3-Test B. 5-Unbnd C. 1-Enable D. 3-TestUp E. 6-Active F. 2 - Failed, C, E, F Question: 203 For any application port, the "sticky" command is used to: A. bind real servers B. configure persistence C. create sessions D. cookie switching Question: 204 Transparent VIP turns off load balancing a VIP because it requires owning the VIP address. Question: 205 What is the default TCP age for a TCP session on the ServerIron? A. 60 minutes B. 30 minutes C. 60 seconds Page 45 of 58

46 D. 30 seconds Question: 206 Using router ports with Hot-Standby: A. Stops spanning tree loops B. Enables multiple routers to be connected to the ServerIron C. Forces the packet to bypass the ServerIron and go directly to the router D. Can be used to force the standbay ServerIron to be active when a router port fails Answer: D Question: 207 On the ServerIron 450 running release 9.x, what is the total number of sticky sessions supported A. 3 Million B. 2 Million C. 1 Million D. 500 Thousand E. Unlimited Answer: E Question: 208 Setting the QOS policy to "CACHE" does what? A. Disables Transparent Cache Switching (TCS) B. Enables Transparent Cache Switching (TCS) C. Sets the QoS cache for low priority traffic D. Enabled Firewall Load Balancing E. Disables Firewall Load Balancing Question: 209 The WSM6 module A. Balances traffic to and from the management processor B. Manages the SI850 and SI450 C. Has 6 management processors D. Can be configured as a WSM-100 Question: 210 The ServerIron uses two kinds of slow-start mechanisms, what are they? A. Sever slow start B. Switch slow start C. Port slow start D. IP slow start, C Page 46 of 58

ServerIron TrafficWorks Firewall Load Balancing Guide

ServerIron TrafficWorks Firewall Load Balancing Guide ServerIron TrafficWorks Firewall Load Balancing Guide ServerIron 4G Series ServerIronGT C Series ServerIronGT E Series ServerIron 350 & 350-PLUS ServerIron 350 & 350-PLUS ServerIron 450 & 450-PLUS Release

More information

Server Iron Hands-on Training

Server Iron Hands-on Training Server Iron Hands-on Training Training Session Agenda Server Iron L4 Solutions Server Iron L7 Solutions Server Iron Security Solutions High Availability Server Iron Designs 2 Four Key Reasons for Server

More information

ServerIron TrafficWorks Server Load Balancing Guide

ServerIron TrafficWorks Server Load Balancing Guide ServerIron TrafficWorks Server Load Balancing Guide ServerIron 4G Series ServerIronGT C Series ServerIronGT E Series ServerIron 350 & 350-PLUS ServerIron 350 & 350-PLUS ServerIron 450 & 450-PLUS Release

More information

Advanced SLB High Availability and Stateless SLB

Advanced SLB High Availability and Stateless SLB Advanced SLB High Availability and Stateless SLB Objectives Upon completion of this module, you will be able to: Describe Server Load Balancing (SLB) high availability Distinguish between different high

More information

BCLP in a Nutshell Study Guide for Exam 150-420. Exam Preparation Materials

BCLP in a Nutshell Study Guide for Exam 150-420. Exam Preparation Materials BCLP in a Nutshell Study Guide for Exam 150-420 Exam Preparation Materials Revision August 2010 Corporate Headquarters - San Jose, CA USA T: (408) 333-8000 info@brocade.com European Headquarters - Geneva,

More information

CLE202 Introduction to ServerIron ADX Application Switching and Load Balancing

CLE202 Introduction to ServerIron ADX Application Switching and Load Balancing Introduction to ServerIron ADX Application Switching and Load Balancing Student Guide Revision : Introduction to ServerIron ADX Application Switching and Load Balancing Corporate Headquarters - San

More information

Configuring VIP and Virtual IP Interface Redundancy

Configuring VIP and Virtual IP Interface Redundancy CHAPTER 6 Configuring VIP and Virtual IP Interface Redundancy This chapter describes how to plan for and configure Virtual IP (VIP) and Virtual IP Interface Redundancy on the CSS. Information in this chapter

More information

DATA CENTER. Best Practices for High Availability Deployment for the Brocade ADX Switch

DATA CENTER. Best Practices for High Availability Deployment for the Brocade ADX Switch DATA CENTER Best Practices for High Availability Deployment for the Brocade ADX Switch CONTENTS Contents... 2 Executive Summary... 3 Introduction... 3 Brocade ADX HA Overview... 3 Hot-Standby HA... 4 Active-Standby

More information

Layer 4-7 Server Load Balancing. Security, High-Availability and Scalability of Web and Application Servers

Layer 4-7 Server Load Balancing. Security, High-Availability and Scalability of Web and Application Servers Layer 4-7 Server Load Balancing Security, High-Availability and Scalability of Web and Application Servers Foundry Overview Mission: World Headquarters San Jose, California Performance, High Availability,

More information

Understanding Slow Start

Understanding Slow Start Chapter 1 Load Balancing 57 Understanding Slow Start When you configure a NetScaler to use a metric-based LB method such as Least Connections, Least Response Time, Least Bandwidth, Least Packets, or Custom

More information

FortiOS Handbook - Load Balancing VERSION 5.2.2

FortiOS Handbook - Load Balancing VERSION 5.2.2 FortiOS Handbook - Load Balancing VERSION 5.2.2 FORTINET DOCUMENT LIBRARY http://docs.fortinet.com FORTINET VIDEO GUIDE http://video.fortinet.com FORTINET BLOG https://blog.fortinet.com CUSTOMER SERVICE

More information

Chapter 3 Using Access Control Lists (ACLs)

Chapter 3 Using Access Control Lists (ACLs) Chapter 3 Using Access Control Lists (ACLs) Access control lists (ACLs) enable you to permit or deny packets based on source and destination IP address, IP protocol information, or TCP or UDP protocol

More information

Configuring Health Monitoring

Configuring Health Monitoring CHAPTER4 Note The information in this chapter applies to both the ACE module and the ACE appliance unless otherwise noted. The features that are described in this chapter apply to both IPv6 and IPv4 unless

More information

Exam : EE0-511. : F5 BIG-IP V9 Local traffic Management. Title. Ver : 12.19.05

Exam : EE0-511. : F5 BIG-IP V9 Local traffic Management. Title. Ver : 12.19.05 Exam : EE0-511 Title : F5 BIG-IP V9 Local traffic Management Ver : 12.19.05 QUESTION 1 Which three methods can be used for initial access to a BIG-IP system? (Choose three.) A. serial console access B.

More information

53-1002684-01 17 December 2012. ServerIron ADX. Firewall Load Balancing Guide. Supporting Brocade ServerIron ADX version 12.5.00

53-1002684-01 17 December 2012. ServerIron ADX. Firewall Load Balancing Guide. Supporting Brocade ServerIron ADX version 12.5.00 17 December 2012 ServerIron ADX Firewall Load Balancing Guide Supporting Brocade ServerIron ADX version 12.5.00 2012 Brocade Communications Systems, Inc. All Rights Reserved. Brocade, the B-wing symbol,

More information

Configuring Stickiness

Configuring Stickiness CHAPTER5 This chapter describes how to configure stickiness (sometimes referred to as session persistence) on an ACE module. It contains the following major sections: Stickiness Overview Configuration

More information

Load Balancing and Sessions. C. Kopparapu, Load Balancing Servers, Firewalls and Caches. Wiley, 2002.

Load Balancing and Sessions. C. Kopparapu, Load Balancing Servers, Firewalls and Caches. Wiley, 2002. Load Balancing and Sessions C. Kopparapu, Load Balancing Servers, Firewalls and Caches. Wiley, 2002. Scalability multiple servers Availability server fails Manageability Goals do not route to it take servers

More information

FortiOS Handbook Load Balancing for FortiOS 5.0

FortiOS Handbook Load Balancing for FortiOS 5.0 FortiOS Handbook Load Balancing for FortiOS 5.0 FortiOS Handbook Load Balancing for FortiOS 5.0 November 6, 2012 01-500-99686-20121106 Copyright 2012 Fortinet, Inc. All rights reserved. Fortinet, FortiGate,

More information

GLOBAL SERVER LOAD BALANCING WITH SERVERIRON

GLOBAL SERVER LOAD BALANCING WITH SERVERIRON APPLICATION NOTE GLOBAL SERVER LOAD BALANCING WITH SERVERIRON Growing Global Simply by connecting to the Internet, local businesses transform themselves into global ebusiness enterprises that span the

More information

Appendix A Remote Network Monitoring

Appendix A Remote Network Monitoring Appendix A Remote Network Monitoring This appendix describes the remote monitoring features available on HP products: Remote Monitoring (RMON) statistics All HP products support RMON statistics on the

More information

Load Balancing. FortiOS Handbook v3 for FortiOS 4.0 MR3

Load Balancing. FortiOS Handbook v3 for FortiOS 4.0 MR3 Load Balancing FortiOS Handbook v3 for FortiOS 4.0 MR3 FortiOS Handbook Load Balancing v3 8 February 2012 01-431-99686-20120208 Copyright 2012 Fortinet, Inc. All rights reserved. Fortinet, FortiGate, and

More information

Chapter 2 Quality of Service (QoS)

Chapter 2 Quality of Service (QoS) Chapter 2 Quality of Service (QoS) Software release 06.6.X provides the following enhancements to QoS on the HP 9304M, HP 9308M, and HP 6208M-SX routing switches. You can choose between a strict queuing

More information

Firewall Load Balancing

Firewall Load Balancing CHAPTER 6 This chapter describes the (FWLB) feature. It includes the following sections: FWLB Overview, page 6-1 FWLB Features, page 6-2 FWLB Configuration Tasks, page 6-3 Monitoring and Maintaining FWLB,

More information

Managing Virtual Servers

Managing Virtual Servers CHAPTER 4 Content Switching Module Device Manager (CVDM-CSM) displays details of existing virtual servers and enables users to perform detailed tasks that include creating or deleting virtual servers,

More information

Availability Digest. www.availabilitydigest.com. Redundant Load Balancing for High Availability July 2013

Availability Digest. www.availabilitydigest.com. Redundant Load Balancing for High Availability July 2013 the Availability Digest Redundant Load Balancing for High Availability July 2013 A large data center can comprise hundreds or thousands of servers. These servers must not only be interconnected, but they

More information

642 523 Securing Networks with PIX and ASA

642 523 Securing Networks with PIX and ASA 642 523 Securing Networks with PIX and ASA Course Number: 642 523 Length: 1 Day(s) Course Overview This course is part of the training for the Cisco Certified Security Professional and the Cisco Firewall

More information

Brocade to Cisco Comparisons

Brocade to Cisco Comparisons 1 2 3 Console cables - The console cables are not interchangeable between Brocade and Cisco. Each vendor provides their console cable with each manageable unit it sells. Passwords - Neither Cisco or Brocade

More information

Chapter 16 Route Health Injection

Chapter 16 Route Health Injection Chapter 16 Route Health Injection You can configure an HP Routing Switch to check the health of the HTTP application and inject a host route into the network to force a preferred route to an actively responding

More information

ServerIron 10.2.01 Combined Patch Release Notes

ServerIron 10.2.01 Combined Patch Release Notes ServerIron 10.2.01 Combined Patch Release Notes This release note is a supplement to the ServerIron 10.2.01 Release Notes. It includes software fixes in patch releases 10.2.01a through 10.2.01g. For the

More information

A Standard Modest WebSite

A Standard Modest WebSite A Standard Modest WebSite 3-tier application using Servlets and JDBC HTTP Servlet JDBC JSP...... Servlet DBMS Clients Application Server Roadmap Want to grow to robust enterprise-scale systems: replicated

More information

Global Server Load Balancing (GSLB) Concepts

Global Server Load Balancing (GSLB) Concepts Global Server Load Balancing (GSLB) Concepts Section Section Objectives GSLB Overview GSLB Configuration Options GSLB Components Server Mode Configuration 2 Global Server Load Balancing (GSLB) Key ACOS

More information

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 6: Content Switching (CSW) Revision 0310

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 6: Content Switching (CSW) Revision 0310 Introduction to ServerIron ADX Application Switching and Load Balancing Module 6: Content Switching (CSW) Revision 0310 Objectives Upon completion of this module the student will be able to: Define layer

More information

SERVERIRON INTERNET TRAFFIC MANAGEMENT

SERVERIRON INTERNET TRAFFIC MANAGEMENT Internet IronWare Feature Set Includes SwitchBack, Symmetric Server Load Balancing, Global Server Load Balancing, and Firewall Load Balancing High Performance Layer 4-7 Application Enabled Switching Concurrent

More information

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 5: Server Load Balancing (SLB) Revision 0310

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 5: Server Load Balancing (SLB) Revision 0310 Introduction to ServerIron ADX Application Switching and Load Balancing Module 5: Server Load Balancing (SLB) Revision 0310 Objectives Upon completion of this module the student will be able to: Describe

More information

High Availability. Palo Alto Networks. PAN-OS Administrator s Guide Version 6.0. Copyright 2007-2015 Palo Alto Networks

High Availability. Palo Alto Networks. PAN-OS Administrator s Guide Version 6.0. Copyright 2007-2015 Palo Alto Networks High Availability Palo Alto Networks PAN-OS Administrator s Guide Version 6.0 Contact Information Corporate Headquarters: Palo Alto Networks 4401 Great America Parkway Santa Clara, CA 95054 www.paloaltonetworks.com/company/contact-us

More information

High Availability. FortiOS Handbook v3 for FortiOS 4.0 MR3

High Availability. FortiOS Handbook v3 for FortiOS 4.0 MR3 High Availability FortiOS Handbook v3 for FortiOS 4.0 MR3 FortiOS Handbook High Availability v3 2 May 2014 01-431-99686-20140502 Copyright 2014 Fortinet, Inc. All rights reserved. Fortinet, FortiGate,

More information

53-1002685-01 17 December 2012. ServerIron ADX. Global Server Load Balancing Guide. Supporting Brocade ServerIron ADX version 12.5.

53-1002685-01 17 December 2012. ServerIron ADX. Global Server Load Balancing Guide. Supporting Brocade ServerIron ADX version 12.5. 17 December 2012 ServerIron ADX Global Server Load Balancing Guide Supporting Brocade ServerIron ADX version 12.5.00 2012 Brocade Communications Systems, Inc. All Rights Reserved. Brocade, the B-wing symbol,

More information

Chapter 51 Server Load Balancing

Chapter 51 Server Load Balancing Chapter 51 Server Load Balancing Introduction... 51-3 Overview... 51-3 Server Load Balancer on the Router... 51-5 TCP Virtual Balancer... 51-6 Route-Based Virtual Balancer... 51-6 HTTP Virtual Balancer...

More information

Cisco ASA, PIX, and FWSM Firewall Handbook

Cisco ASA, PIX, and FWSM Firewall Handbook Cisco ASA, PIX, and FWSM Firewall Handbook David Hucaby, CCIE No. 4594 Cisco Press Cisco Press 800 East 96th Street Indianapolis, Indiana 46240 USA Contents Foreword Introduction xxii xxiii Chapter 1 Firewall

More information

What's New in Cisco ACE Application Control Engine Module for the Cisco Catalyst 6500 and Cisco 7600 Series Software Release 2.1.0

What's New in Cisco ACE Application Control Engine Module for the Cisco Catalyst 6500 and Cisco 7600 Series Software Release 2.1.0 What's New in Cisco ACE Application Control Engine Module for the Cisco Catalyst 6500 and Cisco 7600 Series Software Release 2.1.0 PB458841 Product Overview The Cisco ACE Application Control Engine Module

More information

Configuring Health Monitoring

Configuring Health Monitoring CHAPTER 6 This chapter describes how to configure the health monitoring on the CSM and contains these sections: Configuring Probes for Health Monitoring, page 6-1 Configuring Route Health Injection, page

More information

Deploying SAP NetWeaver Infrastructure with Foundry Networks ServerIron Deployment Guide

Deploying SAP NetWeaver Infrastructure with Foundry Networks ServerIron Deployment Guide Deplloyiing SAP NetWeaver Inffrastructure s wiith Foundry Networks ServerIron Deployment Guide July 2008 Copyright Foundry Networks Page 1 Table of Contents Executive Overview... 3 Deployment Architecture...

More information

Chapter 7 Configuring Trunk Groups and Dynamic Link Aggregation

Chapter 7 Configuring Trunk Groups and Dynamic Link Aggregation Chapter 7 Configuring Trunk Groups and Dynamic Link Aggregation This chapter describes how to configure trunk groups and 802.3ad link aggregation. Trunk groups are manually-configured aggregate links containing

More information

Networking and High Availability

Networking and High Availability TECHNICAL BRIEF Networking and High Availability Deployment Note Imperva appliances support a broad array of deployment options, enabling seamless integration into any data center environment. can be configured

More information

Chapter 11 Network Address Translation

Chapter 11 Network Address Translation Chapter 11 Network Address Translation You can configure an HP routing switch to perform standard Network Address Translation (NAT). NAT enables private IP networks that use nonregistered IP addresses

More information

IOS Server Load Balancing

IOS Server Load Balancing IOS Server Load Balancing This feature module describes the Cisco IOS Server Load Balancing (SLB) feature. It includes the following sections: Feature Overview, page 1 Supported Platforms, page 5 Supported

More information

Troubleshooting the Firewall Services Module

Troubleshooting the Firewall Services Module 25 CHAPTER This chapter describes how to troubleshoot the FWSM, and includes the following sections: Testing Your Configuration, page 25-1 Reloading the FWSM, page 25-6 Performing Password Recovery, page

More information

WHITE PAPER MICROSOFT LIVE COMMUNICATIONS SERVER 2005 LOAD BALANCING WITH FOUNDRY NETWORKS SERVERIRON PLATFORM

WHITE PAPER MICROSOFT LIVE COMMUNICATIONS SERVER 2005 LOAD BALANCING WITH FOUNDRY NETWORKS SERVERIRON PLATFORM NOTE: Foundry s ServerIron load balancing switches have been certified in Microsoft s load balancing LCS 2005 interoperability labs. Microsoft experts executed a variety of tests against Foundry switches.

More information

Chapter 6 Configuring IP

Chapter 6 Configuring IP Chapter 6 Configuring IP This chapter describes the Internet Protocol (IP) parameters on HP ProCurve routing switches and switches and how to configure them. After you add IP addresses and configure other

More information

Networking and High Availability

Networking and High Availability yeah SecureSphere Deployment Note Networking and High Availability Imperva SecureSphere appliances support a broad array of deployment options, enabling seamless integration into any data center environment.

More information

Chapter 4 Rate Limiting

Chapter 4 Rate Limiting Chapter 4 Rate Limiting HP s rate limiting enables you to control the amount of bandwidth specific Ethernet traffic uses on specific interfaces, by limiting the amount of data the interface receives or

More information

Deployment Guide AX Series with Active Directory Federation Services 2.0 and Office 365

Deployment Guide AX Series with Active Directory Federation Services 2.0 and Office 365 Deployment Guide AX Series with Active Directory Federation Services 2.0 and Office 365 DG_ADFS20_120907.1 TABLE OF CONTENTS 1 Overview... 4 2 Deployment Guide Overview... 4 3 Deployment Guide Prerequisites...

More information

Configuring System Message Logging

Configuring System Message Logging CHAPTER 1 This chapter describes how to configure system message logging on the Cisco 4700 Series Application Control Engine (ACE) appliance. Each ACE contains a number of log files that retain records

More information

Chapter 37 Server Load Balancing

Chapter 37 Server Load Balancing Chapter 37 Server Load Balancing Introduction... 37-3 Overview... 37-3 Server Load Balancer on the Switch... 37-5 TCP Virtual Balancer... 37-6 Route-Based Virtual Balancer... 37-6 HTTP Virtual Balancer...

More information

CCNP Switch 642-813 Questions/Answers Implementing High Availability and Redundancy

CCNP Switch 642-813 Questions/Answers Implementing High Availability and Redundancy Which Catalyst 6500 switch component integrates on individual line modules as well as on the supervisor engine? A. CPU B. Flash C. ASIC D. NVRAM Answer: C Cisco Catalyst 6500 Series with Cisco IOS Software

More information

150-420. Brocade Certified Layer 4-7 Professional 2010. Version: Demo. Page <<1/8>>

150-420. Brocade Certified Layer 4-7 Professional 2010. Version: Demo. Page <<1/8>> 150-420 Brocade Certified Layer 4-7 Professional 2010 Version: Demo Page QUESTION NO: 1 Given the command shown below, which statement is true? aaa authentication enable default radius local A.

More information

Cisco Configuring Commonly Used IP ACLs

Cisco Configuring Commonly Used IP ACLs Table of Contents Configuring Commonly Used IP ACLs...1 Introduction...1 Prerequisites...2 Hardware and Software Versions...3 Configuration Examples...3 Allow a Select Host to Access the Network...3 Allow

More information

Troubleshooting the Firewall Services Module

Troubleshooting the Firewall Services Module CHAPTER 25 This chapter describes how to troubleshoot the FWSM, and includes the following sections: Testing Your Configuration, page 25-1 Reloading the FWSM, page 25-6 Performing Password Recovery, page

More information

Configuring Static and Dynamic NAT Translation

Configuring Static and Dynamic NAT Translation This chapter contains the following sections: Network Address Translation Overview, page 1 Information About Static NAT, page 2 Dynamic NAT Overview, page 3 Timeout Mechanisms, page 4 NAT Inside and Outside

More information

NLoad Balancing Stackable Switch

NLoad Balancing Stackable Switch NLoad Balancing Stackable Switch Now you can implement load balancing when and where you need it to support all your information applications. The, the most recent addition to the Avaya P330 stackable

More information

VERITAS Cluster Server Traffic Director Option. Product Overview

VERITAS Cluster Server Traffic Director Option. Product Overview VERITAS Cluster Server Traffic Director Option Product Overview V E R I T A S W H I T E P A P E R Table of Contents Traffic Director Option for VERITAS Cluster Server Overview.............................................1

More information

F5 Configuring BIG-IP Local Traffic Manager (LTM) - V11. Description

F5 Configuring BIG-IP Local Traffic Manager (LTM) - V11. Description F5 Configuring BIG-IP Local Traffic Manager (LTM) - V11 Description This four-day course gives networking professionals a functional understanding of the BIG-IP LTM v11 system as it is commonly used, as

More information

IOS Server Load Balancing

IOS Server Load Balancing IOS Server Load Balancing This feature module describes the Cisco IOS Server Load Balancing (SLB) feature. It includes the following sections: Feature Overview, page 1 Supported Platforms, page 5 Supported

More information

Content Switching Module for the Catalyst 6500 and Cisco 7600 Internet Router

Content Switching Module for the Catalyst 6500 and Cisco 7600 Internet Router Content Switching Module for the Catalyst 6500 and Cisco 7600 Internet Router Product Overview The Cisco Content Switching Module (CSM) is a Catalyst 6500 line card that balances client traffic to farms

More information

Outline VLAN. Inter-VLAN communication. Layer-3 Switches. Spanning Tree Protocol Recap

Outline VLAN. Inter-VLAN communication. Layer-3 Switches. Spanning Tree Protocol Recap Outline Network Virtualization and Data Center Networks 263-3825-00 DC Virtualization Basics Part 2 Qin Yin Fall Semester 2013 More words about VLAN Virtual Routing and Forwarding (VRF) The use of load

More information

How To Configure The Fortigate Cluster Protocol In A Cluster Of Three (Fcfc) On A Microsoft Ipo (For A Powerpoint) On An Ipo 2.5 (For An Ipos 2.2.5)

How To Configure The Fortigate Cluster Protocol In A Cluster Of Three (Fcfc) On A Microsoft Ipo (For A Powerpoint) On An Ipo 2.5 (For An Ipos 2.2.5) FortiGate High Availability Guide FortiGate High Availability Guide Document Version: 5 Publication Date: March 10, 2005 Description: This document describes FortiGate FortiOS v2.80 High Availability.

More information

Configuring the Transparent or Routed Firewall

Configuring the Transparent or Routed Firewall 5 CHAPTER This chapter describes how to set the firewall mode to routed or transparent, as well as how the firewall works in each firewall mode. This chapter also includes information about customizing

More information

Guide to Network Defense and Countermeasures Third Edition. Chapter 2 TCP/IP

Guide to Network Defense and Countermeasures Third Edition. Chapter 2 TCP/IP Guide to Network Defense and Countermeasures Third Edition Chapter 2 TCP/IP Objectives Explain the fundamentals of TCP/IP networking Describe IPv4 packet structure and explain packet fragmentation Describe

More information

Cisco Local Director Abstract. Stephen Gill E-mail: gillsr@cymru.com Revision: 1.0, 04/18/2001

Cisco Local Director Abstract. Stephen Gill E-mail: gillsr@cymru.com Revision: 1.0, 04/18/2001 Cisco Local Director Abstract Stephen Gill E-mail: gillsr@cymru.com Revision: 1.0, 04/18/2001 Contents Introduction... 2 Dispatch v. Directed... 2 Network Configuration Options... 3 Switched Environment

More information

Transparent Cache Switching Using Brocade ServerIron and Blue Coat ProxySG

Transparent Cache Switching Using Brocade ServerIron and Blue Coat ProxySG Transparent Cache Switching Using Brocade ServerIron and Blue Coat ProxySG This document provides best-practice guidance for Brocade ServerIron ADC deployments using Transparent Cache Switching (TCS) with

More information

BCLE in a Nutshell Study Guide for Exam 150-320. Exam Preparation Materials

BCLE in a Nutshell Study Guide for Exam 150-320. Exam Preparation Materials BCLE in a Nutshell Study Guide for Exam 150-320 Exam Preparation Materials Revision May 2010 Corporate Headquarters - San Jose, CA USA T: (408) 333-8000 info@brocade.com European Headquarters - Geneva,

More information

Configuring the BIG-IP and Check Point VPN-1 /FireWall-1

Configuring the BIG-IP and Check Point VPN-1 /FireWall-1 Configuring the BIG-IP and Check Point VPN-1 /FireWall-1 Introducing the BIG-IP and Check Point VPN-1/FireWall-1 LB, HALB, VPN, and ELA configurations Configuring the BIG-IP and Check Point FireWall-1

More information

Firewall Firewall August, 2003

Firewall Firewall August, 2003 Firewall August, 2003 1 Firewall and Access Control This product also serves as an Internet firewall, not only does it provide a natural firewall function (Network Address Translation, NAT), but it also

More information

High Availability Failover Optimization Tuning HA Timers PAN-OS 6.0.0

High Availability Failover Optimization Tuning HA Timers PAN-OS 6.0.0 High Availability Failover Optimization Tuning HA Timers PAN-OS 6.0.0 Revision C 2013, Palo Alto Networks, Inc. www.paloaltonetworks.com Contents Overview... 3 Passive Link State Auto Configuration (A/P)...

More information

Cisco Application Networking Manager Version 2.0

Cisco Application Networking Manager Version 2.0 Cisco Application Networking Manager Version 2.0 Cisco Application Networking Manager (ANM) software enables centralized configuration, operations, and monitoring of Cisco data center networking equipment

More information

APV9650. Application Delivery Controller

APV9650. Application Delivery Controller APV9650 D a t a S h e e t Application Delivery Controller Array Networks APV Series of Application Delivery Controllers optimizes the availability, user experience, performance, security and scalability

More information

Troubleshooting and Maintaining Cisco IP Networks Volume 1

Troubleshooting and Maintaining Cisco IP Networks Volume 1 Troubleshooting and Maintaining Cisco IP Networks Volume 1 Course Introduction Learner Skills and Knowledge Course Goal and E Learning Goal and Course Flow Additional Cisco Glossary of Terms Your Training

More information

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 7: Global Server Load Balancing (GSLB) Revision 0310

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 7: Global Server Load Balancing (GSLB) Revision 0310 Introduction to ServerIron ADX Application Switching and Load Balancing Module 7: Global Server Load Balancing (GSLB) Revision 0310 Objectives Upon completion of this module, the student will: Be able

More information

EE0-511. Easy CramBible Lab DEMO ONLY VERSION EE0-511. F5 Big-Ip v9 Local Traffic Management

EE0-511. Easy CramBible Lab DEMO ONLY VERSION EE0-511. F5 Big-Ip v9 Local Traffic Management Easy CramBible Lab EE0-511 F5 Big-Ip v9 Local Traffic Management ** Single-user License ** This copy can be only used by yourself for educational purposes Web: http://www.crambible.com/ E-mail: web@crambible.com

More information

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network Olga Torstensson SWITCHv6 1 Components of High Availability Redundancy Technology (including hardware and software features)

More information

Load Balancing Trend Micro InterScan Web Gateway

Load Balancing Trend Micro InterScan Web Gateway Load Balancing Trend Micro InterScan Web Gateway Deployment Guide rev. 1.1.7 Copyright 2002 2015 Loadbalancer.org, Inc. 1 Table of Contents About this Guide... 3 Loadbalancer.org Appliances Supported...

More information

How To Understand and Configure Your Network for IntraVUE

How To Understand and Configure Your Network for IntraVUE How To Understand and Configure Your Network for IntraVUE Summary This document attempts to standardize the methods used to configure Intrauve in situations where there is little or no understanding of

More information

INTRODUCTION TO FIREWALL SECURITY

INTRODUCTION TO FIREWALL SECURITY INTRODUCTION TO FIREWALL SECURITY SESSION 1 Agenda Introduction to Firewalls Types of Firewalls Modes and Deployments Key Features in a Firewall Emerging Trends 2 Printed in USA. What Is a Firewall DMZ

More information

Configuring Failover. Understanding Failover CHAPTER

Configuring Failover. Understanding Failover CHAPTER CHAPTER 15 This chapter describes the security appliance failover feature, which lets you configure two security appliances so that one takes over operation if the other one fails. This chapter includes

More information

Configuring Class Maps and Policy Maps

Configuring Class Maps and Policy Maps CHAPTER 4 Configuring Class Maps and Policy Maps This chapter describes how to configure class maps and policy maps to provide a global level of classification for filtering traffic received by or passing

More information

Load Balancing SIP Quick Reference Guide v1.3.1

Load Balancing SIP Quick Reference Guide v1.3.1 Load Balancing SIP Quick Reference Guide v1.3.1 About this Guide This guide provides a quick reference for setting up SIP load balancing using Loadbalancer.org appliances. SIP Ports Port Protocol 5060

More information

ExamPDF. Higher Quality,Better service!

ExamPDF. Higher Quality,Better service! ExamPDF Higher Quality,Better service! Q&A Exam : 1Y0-A21 Title : Basic Administration for Citrix NetScaler 9.2 Version : Demo 1 / 5 1.Scenario: An administrator is working with a Citrix consultant to

More information

Configuring Network Address Translation

Configuring Network Address Translation CHAPTER5 Configuring Network Address Translation The information in this chapter applies to both the ACE module and the ACE appliance unless otherwise noted. This chapter contains the following major sections

More information

Procedure: You can find the problem sheet on Drive D: of the lab PCs. Part 1: Router & Switch

Procedure: You can find the problem sheet on Drive D: of the lab PCs. Part 1: Router & Switch University of Jordan Faculty of Engineering & Technology Computer Engineering Department Computer Networks Laboratory 907528 Lab. 2 Network Devices & Packet Tracer Objectives 1. To become familiar with

More information

Magnum Network Software DX

Magnum Network Software DX Magnum Network Software DX Software Release Notes Software Revision 3.0.1 RC5, Inc. www..com www..com/techsupport email: support@.com This document contains Confidential information or Trade Secrets, or

More information

A1.1.1.11.1.1.2 1.1.1.3S B

A1.1.1.11.1.1.2 1.1.1.3S B CS Computer 640: Network AdityaAkella Lecture Introduction Networks Security 25 to Security DoS Firewalls and The D-DoS Vulnerabilities Road Ahead Security Attacks Protocol IP ICMP Routing TCP Security

More information

Chapter 8 Security Pt 2

Chapter 8 Security Pt 2 Chapter 8 Security Pt 2 IC322 Fall 2014 Computer Networking: A Top Down Approach 6 th edition Jim Kurose, Keith Ross Addison-Wesley March 2012 All material copyright 1996-2012 J.F Kurose and K.W. Ross,

More information

7750 SR OS System Management Guide

7750 SR OS System Management Guide 7750 SR OS System Management Guide Software Version: 7750 SR OS 10.0 R4 July 2012 Document Part Number: 93-0071-09-02 *93-0071-09-02* This document is protected by copyright. Except as specifically permitted

More information

TechBrief Introduction

TechBrief Introduction TechBrief Introduction Leveraging Redundancy to Build Fault-Tolerant Networks The high demands of e-commerce and Internet applications have required networks to exhibit the same reliability as the public

More information

INVITATION FOR BIDS (IFB) NO. 08-093 FURNISH, DELIVER, AND INSTALL APPLICATION DELIVERY SWITCHES FOR INFORMATION TECHNOLOGY SERVICES

INVITATION FOR BIDS (IFB) NO. 08-093 FURNISH, DELIVER, AND INSTALL APPLICATION DELIVERY SWITCHES FOR INFORMATION TECHNOLOGY SERVICES INVITATION FOR BIDS (IFB) NO. 08-093 TO FURNISH, DELIVER, AND INSTALL APPLICATION DELIVERY SWITCHES FOR INFORMATION TECHNOLOGY SERVICES UNIVERSITY OF HAWAII HONOLULU, HAWAII APRIL, 2008 BOARD OF REGENTS

More information

- Redundancy and Load Balancing -

- Redundancy and Load Balancing - 1 - Redundancy and Load Balancing - Importance of Redundancy High availability is critical in most environments. Even a brief outage due to hardware failure may be considered unacceptable. Consider the

More information

Basic & Advanced Administration for Citrix NetScaler 9.2

Basic & Advanced Administration for Citrix NetScaler 9.2 Basic & Advanced Administration for Citrix NetScaler 9.2 Day One Introducing and deploying Citrix NetScaler Key - Brief Introduction to the NetScaler system Planning a NetScaler deployment Deployment scenarios

More information

NETASQ MIGRATING FROM V8 TO V9

NETASQ MIGRATING FROM V8 TO V9 UTM Firewall version 9 NETASQ MIGRATING FROM V8 TO V9 Document version: 1.1 Reference: naentno_migration-v8-to-v9 INTRODUCTION 3 Upgrading on a production site... 3 Compatibility... 3 Requirements... 4

More information

Server Load Balancing Configuration Guide Cisco IOS Release 12.2SX

Server Load Balancing Configuration Guide Cisco IOS Release 12.2SX Server Load Balancing Configuration Guide Cisco IOS Release 12.2SX Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800

More information

Firewalls. Chapter 3

Firewalls. Chapter 3 Firewalls Chapter 3 1 Border Firewall Passed Packet (Ingress) Passed Packet (Egress) Attack Packet Hardened Client PC Internet (Not Trusted) Hardened Server Dropped Packet (Ingress) Log File Internet Border

More information