Choosing Tap or SPAN for Data Center Monitoring

Size: px
Start display at page:

Download "Choosing Tap or SPAN for Data Center Monitoring"

Transcription

1 Choosing Tap or SPAN for Data Center Monitoring Technical Brief Key Points Taps are passive, silent, and deliver a perfect record of link traffic, but require additional hardware and create a point of failure. SPAN ports are configurable for specific data, can capture intra-switch traffic, and create no additional expense, but may drop packets randomly and will not transmit errored packets. Choose SPAN or tap resources based on your particular monitoring needs. A mix of SPAN and tap is often superior to using one or the other exclusively. In network and security monitoring, there s an ongoing debate about the best data access method to deliver copied network traffic to monitoring tools. The debate comes down to taps or port mirroring/span technology and there are good points for both methods. There is no objectively correct answer to this debate the best practice must be decided for each data source in each network. However, because of the different characteristics from these two different technologies, we should be able to come up with a general guideline to make a sensible decision based on different monitoring scenarios, requirements, capture locations or projects. The pro and con for taps versus SPANs works out to a few key points, summarized below. Taps Pro and Con Benefits of taps include: Taps are completely passive, purely optical splitters and do not need power or IP configuration. Taps are not addressable network devices and therefore cannot be hacked. TECHNICAL BRIEF

2 A B A B A B A B A B A B A B A B A B A B A B A B A B A B A B A B MODE SYSY RPS ST DPLX SPED Catalyst 2960-S Series SI CONSOLE Technical Brief Taps vs SPAN in Network Monitoring Switches SPAN Ports Pro and Con Ingress Traffic Switch SPAN Ports Egress Traffic APCON Chassis with 16 Passive Taps Benefits of SPAN ports include: No additional cost to create a SPAN port. SPAN ports are remotely configurable from any management station that can access the configuration of the switch. SPAN ports are capable of capturing intra-switch traffic. Challenges with SPAN ports include: RMON Analyzer Taps are failsafe, especially when placed in the aggregation layers where network redundancy is already established. Taps provide total visibility into full-duplex networks and eliminate the risk of dropped packets, regardless of the bandwidth. With taps, monitoring devices receive all packets, including packets with physical errors. Taps do not groom data in any way. This is particularly helpful in troubleshooting common physical layer problems, including bad frames that can be caused by a faulty NIC or cable. Taps do not alter the time relationships of frames. This time relationship is critical for certain latency sensitive measurements. Taps do not introduce any additional jitter or distortion, which is important in VoIP and Video signal analysis. Taps can monitor both sides of a full duplex link individually. Taps do not behave differently if the traffic is IPv4 or IPv6; they pass all traffic through unaltered. Challenges with taps include: Forensic Each analysis device may need to budget 2 capture interfaces to receive both sides of a tapped link. There is an additional cost for tap hardware. Taps create an additional potential point of failure. Taps create additional deployment complexity: Split ratio and light budget loss calculation. Disruption of the production network for tap insertion. IDS SPAN ports cannot handle heavily utilized full-duplex links without dropping packets. If the throughput of all TX and RX traffic is higher than the SPAN port line rate, frames are dropped randomly by the SPAN port. To completely capture bidirectional traffic from a 10G link, a SPAN port would need up to 20G of capacity. SPAN ports drop all packets that are corrupt or those that are over- or under-sized, thus hampering some physical layer analysis. SPAN ports place a burden on a switch's CPU and fabric channels to copy all data passing through ports. This potentially affects the performance of production traffic. For example, Centralized Replication in certain switches can reduce performance. Some SPAN ports require you to monitor these factors to avoid issues: SPAN Destination Switch Fabric Replication Engine Forwarding Engine SPAN ports can change the timing of frame interaction, altering measured response times. Switches prioritize SPAN port data lower than regular portto-port data. If replicating a frame becomes an issue, the hardware will temporally drop the SPAN process and therefore stop the data flow to the SPAN port. The more SPAN sessions that are configured, the easier it is to reach this threshold. RSPAN/ERSPAN ports put the monitoring traffic into the production network, which reduces the amount of throughput available for user traffic.

3 Technical Brief Taps vs SPAN in Network Monitoring Without special configuration details and settings, VLAN tags are not normally passed through any SPAN port. This can lead to false VLAN issues and difficulty in finding actual VLAN issues. Choosing SPAN or Tap Production Network Impact The integrity of traffic forwarded to the monitoring tools is critical to provide accurate monitoring and troubleshooting results. However, the greater concern is that the data access method chosen will affect the performance of the actual production network traffic. SPAN EXAMPLE: CISCO 6500 IOS RELEASE 12.2SX On this switch, SXF7 code configures Rx SPAN in Distributed Mode, but Tx SPAN is configured in Centralized Mode. In contrast, SXI3 configures both Tx and Rx SPAN in Distributed Mode. In Distributed Mode, the packets can be replicated between the source and destination modules/interfaces without supervisor intervention. In Centralized Replication Mode, packets go from the source module/interface to the replication engine on the supervisor and are replicated to the destination module/interface. All the replicated SPAN traffic must traverse the backplane fabric, increasing backplane fabric utilization. Data centers are advised to upgrade to SXI3 on systems where Tx SPAN is required. However, regardless of SXF or SXI, Distributed Mode is supported only on modules with a local replication engine (for example, DFC based modules). None of the classic line cards support Distributed Replication. In general, taps are totally passive, especially optical fiber taps. They do not generally impact production traffic at all. However, SPAN ports might have a potential impact on the production network traffic. There are 4 key pieces involved with SPAN: 1. SPAN destination port 2. Fabric Channel 3. Replication Engine 4. Forwarding Engine Any of the 4 pieces above may become oversubscribed depending on other traffic flowing through the system, the number of replication sessions configured, types of source and destination line cards, available buffer, forwarding engine capacity, and other factors. So it is important these four areas be well-understood to avoid any adverse effects to the production traffic. To avoid oversubscription issues, Cisco recommends using Cisco EEM (Embedded Event Manager). The Embedded Event Manager is made up of TCL scripts embedded in the IOS to run commands for Replication Engine monitoring. Additionally, Cisco recommends that users continuously monitor fabric utilization. If the SPAN source interface is a VLAN, users are advised to be cautious, as fabric utilization can easily rise. SPAN Oversubscription Point Monitoring Options To monitor your network using SPAN ports without risking oversubscription on the Cisco Nexus line of switches, consider the following options: 1. Platform SNMP MIB Supported as part of CISCO-SWITCH-ENGINE- MIB and CISCO-SWITCH-FABRIC-MIB in XML API XML version of internal show commands to monitor oversubscription in EEM/TCL Supported in CLI Available in 4.2.x

4 Technical Brief Taps vs SPAN in Network Monitoring The following Cisco command sets may be used to monitor different points of oversubscription on switches running NX-OS: 1. Replication engine utilization Show hardware internal statistics device rewrite congestion asic-all i error 2. Forwarding engine throughput show hardware internal forwarding statistics L3 show hardware internal forwarding engine usage show hardware capacity forwarding EXAMPLE: CISCO NEXUS 5000 NX-OS Oversubscribing the SPAN can impact production traffic. Consider the following: 1. Resource contention to the replication engine. For example, multicast packets that use the same replication engine used to replicate SPAN packets. 2. Resource contention to the forwarding engine (60 MPPS limit on M1). For example, more forwarding engine lookups for SPAN traffic. A Tx/Rx SPAN port requires 3 lookups in the forwarding engine compared to just one for non-span traffic. 3. Fabric Virtual Output Queuing oversubscription. Spanned traffic drop at the destination is of minimal concern. The impact to the production traffic and system resources is the main concern. Cisco recommends against implementing continuous SPAN until you are able to monitor the adverse impacts, arrange notification, and be ready to respond to those notifications. Unfortunately, such monitoring can be accomplished only through the Cisco command line interface unless users upgrade their software to NX-OS version 5.2, followed by design and test of a solution for monitoring SPAN oversubscription with XML API or using EEM/TCL scripting. 3. Fabric VQI utilization show hardware fabric-utilization detail To summarize the potential impact of the continuous SPAN setup, users are advised to monitor the switch internal resource utilization after creating the SPAN. If the utilization threshold is exceeded, users are advised to turn off the SPAN to prevent any adverse impact to the production network. Obviously, monitoring a continuous SPAN setup can be quite involved and challenging. More importantly, if the SPAN port must be turned off, the monitoring tool will no longer receive its data. Tap Versus SPAN The Bottom Line When you are deciding whether to use tap or SPAN in your network monitoring system, the two primary factors on which to base your decision are the type of analysis you plan to performance and the amount of bandwidth that analysis will require. Taps are ideal when analysis requires seeing all traffic, including physical layer errors. Taps are required if your network utilization is moderate to heavy. When it comes to aggregation layer monitoring, taps are often used to ensure that the performance of production network traffic is not being impacted by a SPAN. In a latency measurement environment, taps are highly recommended to avoid the inconsistent queuing delay from a SPAN port. SPAN ports perform well on networks with lower utilization, or when analysis is not affected by dropped packets. SPAN ports on the access layer are suitable and are often used for ondemand short term network and application troubleshooting.

5 / ºc Unnamed S/N: Ver: 4 Hit [Enter] for configuration CANCEL ENTER ACI-3030-E36-6 ACI-3031-E04-1 INTELLAFLEX Blade ACI-3032-E36-1 PPS/IRIG IN OUT ACI-3030-E Packet Aggregator Packet Controller Aggregator Plus Time Stamping GPS ANT Packet Aggregator Technical Brief Taps vs SPAN in Network Monitoring Internet External Aggregation s External Firewalls ABOUT APCON APCON develops innovative, scalable technology solutions to enhance network monitoring, support IT traffic analysis, and streamline IT network management and security. APCON is the industry leader for state-ofthe-art IT data aggregation, filtering, and network switching products, as well as leading-edge managementsoftware support. Organizations in over 40 countries depend on APCON network infrastructure solutions. Customers include Global Fortune 500 companies, banks and financial services institutions, telecommunication service providers, government and military, and computer equipment manufacturers. DMZ Server Switches Internal Firewalls Internal Aggregation APCON Analyzer IDS Forensic Probe D C B A Corp. Intranet Contact Us Please sales@apcon.com or call if you have any questions Reference: ios/12-2sx/configuration/guide/book/span.html nexus5000/sw/configuration/guide/cli/cliconfigurationguide/span. html reference/nm_book/nm_15.html APCON, Inc. apcon.com APCON, Inc. All Rights company/apcon APCON is an Equal Opportunity Employer MFDV R1-0414

Tool Optimization. Benefits. Introduction. Technical Brief. Extend the usage life of tools and avoid costly upgrades

Tool Optimization. Benefits. Introduction. Technical Brief. Extend the usage life of tools and avoid costly upgrades Tool Optimization Technical Brief Benefits Extend the usage life of tools and avoid costly upgrades Increase the accuracy and results of data analysis Extend capacity of storage media by optimizing data

More information

Multi Stage Filtering

Multi Stage Filtering Multi Stage Filtering Technical Brief With the increasing traffic volume in modern data centers, largely driven by e-business and mobile devices, network and application performance monitoring has become

More information

Network Instruments white paper

Network Instruments white paper Network Instruments white paper ANALYZING FULL-DUPLEX NETWORKS There are a number ways to access full-duplex traffic on a network for analysis: SPAN or mirror ports, aggregation TAPs (Test Access Ports),

More information

Analyzing Full-Duplex Networks

Analyzing Full-Duplex Networks Analyzing Full-Duplex Networks There are a number ways to access full-duplex traffic on a network for analysis: SPAN or mirror ports, aggregation TAPs (Test Access Ports), or full-duplex TAPs are the three

More information

How To Monitor A Network With A Network Probe

How To Monitor A Network With A Network Probe Network Monitoring and Analysis Techniques Using Taps and SPAN Switches Networks have evolved into complex structures supporting critical business processes and communications. As this complexity has increased,

More information

How To Use A Network Instrument Ntap

How To Use A Network Instrument Ntap ntap Product Family Provides monitoring and security devices with complete visibility into full-duplex networks Network Instruments ntaps let you monitor and analyze full-duplex links. ntaps are critical

More information

Technical Bulletin. Enabling Arista Advanced Monitoring. Overview

Technical Bulletin. Enabling Arista Advanced Monitoring. Overview Technical Bulletin Enabling Arista Advanced Monitoring Overview Highlights: Independent observation networks are costly and can t keep pace with the production network speed increase EOS eapi allows programmatic

More information

Any-to-any switching with aggregation and filtering reduces monitoring costs

Any-to-any switching with aggregation and filtering reduces monitoring costs Any-to-any switching with aggregation and filtering reduces monitoring costs Summary Physical Layer Switches can filter and forward packet data to one or many monitoring devices. With intuitive graphical

More information

Secure Access Complete Visibility

Secure Access Complete Visibility PACKET CAPTURE APPLIANCE PACKET CAPTURE APPLIANCE PACKET CAPTURE APPLIANCE PACKET CAPTURE APPLIANCE Intrusion Detection Switch TAP Data Recorder VoIP Analyzer Switch Secure Access Complete Visibility Web

More information

Taps vs. SPAN The Forest AND the Trees: Full Visibility into Today's Networks

Taps vs. SPAN The Forest AND the Trees: Full Visibility into Today's Networks WHITE PAPER Taps vs. SPAN The Forest AND the Trees: Full Visibility into Today's Networks www.ixiacom.com 915-3534-01 Rev. A, September 2015 2 Table of Contents The First Line of Defense: Access... 5 Problem

More information

SPAN Port or TAP? TAP is the only viable data access technology for today s business critical networks

SPAN Port or TAP? TAP is the only viable data access technology for today s business critical networks TAP is the only viable data access technology for today s business critical networks Is SPAN port a viable data access technology for today s business critical networks, especially with today s ever increasing

More information

Monitoring Network Traffic Using SPAN

Monitoring Network Traffic Using SPAN CHAPTER 60 This chapter describes the Switched Port Analyzer (SPAN) features provided in switches in the Cisco MDS 9000 Family. It includes the following sections: About SPAN, page 60-1 SPAN Sources, page

More information

Observer Analysis Advantages

Observer Analysis Advantages In-Depth Analysis for Gigabit and 10 Gb Networks For enterprise management, gigabit and 10 Gb Ethernet networks mean high-speed communication, on-demand systems, and improved business functions. For enterprise

More information

Optimized Network Monitoring

Optimized Network Monitoring Optimized Network Monitoring Four ways matrix switching streamlines data center operation, reduces costs and positions IT for growth WHITE PAPER MARCH 2008 APCON, Inc. T 503.682.4050 800.624.6808 F 503.682.4059

More information

Cisco Integrators Cisco Partners installing and implementing the Cisco Catalyst 6500 Series Switches

Cisco Integrators Cisco Partners installing and implementing the Cisco Catalyst 6500 Series Switches Implementing Cisco Catalyst 6500 Series Switches (RSCAT6K) Fast Lane is proud to be once again on the cutting edge with this intensive 3-day Authorized course on the latest features and functionality of

More information

Network Analysis Modules

Network Analysis Modules CHAPTER 6 This chapter describes the (NAMs) and contains the following sections: Network Analysis Module (WS-SVC-NAM-1), page 6-2 Network Analysis Module (WS-SVC-NAM-2), page 6-4 NAMs monitor and analyze

More information

Enhancing Cisco Networks with Gigamon // White Paper

Enhancing Cisco Networks with Gigamon // White Paper Across the globe, many companies choose a Cisco switching architecture to service their physical and virtual networks for enterprise and data center operations. When implementing a large-scale Cisco network,

More information

Net Optics Learning Center Presents The Fundamentals of Passive Monitoring Access

Net Optics Learning Center Presents The Fundamentals of Passive Monitoring Access Net Optics Learning Center Presents The Fundamentals of Passive Monitoring Access 1 The Fundamentals of Passiv e Monitoring Access Copy right 2006 Net Optics, Inc. Agenda Goal: Present an overview of Tap

More information

Observer Probe Family

Observer Probe Family Observer Probe Family Distributed analysis for local and remote networks Monitor and troubleshoot vital network links in real time from any location Network Instruments offers a complete line of software

More information

WHITE PAPER. Network Traffic Port Aggregation: Improved Visibility, Security, and Efficiency

WHITE PAPER. Network Traffic Port Aggregation: Improved Visibility, Security, and Efficiency WHITE PAPER Network Traffic Port Aggregation: Improved Visibility, Security, and Efficiency www.ixiacom.com 915-6893-01 Rev. A, July 2014 2 Table of Contents Summary... 4 Introduction... 4 Differing Goals

More information

Network Considerations for IP Video

Network Considerations for IP Video Network Considerations for IP Video H.323 is an ITU standard for transmitting voice and video using Internet Protocol (IP). It differs from many other typical IP based applications in that it is a real-time

More information

Monitoring Load Balancing in the 10G Arena: Strategies and Requirements for Solving Performance Challenges

Monitoring Load Balancing in the 10G Arena: Strategies and Requirements for Solving Performance Challenges 2011 is the year of the 10 Gigabit network rollout. These pipes as well as those of existing Gigabit networks, and even faster 40 and 100 Gbps networks are under growing pressure to carry skyrocketing

More information

Chapter 4: Spanning Tree Design Guidelines for Cisco NX-OS Software and Virtual PortChannels

Chapter 4: Spanning Tree Design Guidelines for Cisco NX-OS Software and Virtual PortChannels Design Guide Chapter 4: Spanning Tree Design Guidelines for Cisco NX-OS Software and Virtual PortChannels 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.

More information

How To Monitor And Test An Ethernet Network On A Computer Or Network Card

How To Monitor And Test An Ethernet Network On A Computer Or Network Card 3. MONITORING AND TESTING THE ETHERNET NETWORK 3.1 Introduction The following parameters are covered by the Ethernet performance metrics: Latency (delay) the amount of time required for a frame to travel

More information

Table of Contents. Network Critical NA LLC Tel: 716-558-7280 37 Franklin Street, Suite 100 Email: sales-us@networkcritical.com

Table of Contents. Network Critical NA LLC Tel: 716-558-7280 37 Franklin Street, Suite 100 Email: sales-us@networkcritical.com Product Catalog Table of Contents Breakout TAPs...1-3 Fixed Aggregating Portable TAP...4-5 V-Line TM (Bypass) Portable TAPS...6 Breakout Portable TAP...7 V-Line (Bypass) TAPs...8-9 Smart Network Access

More information

Network Management and Monitoring Software

Network Management and Monitoring Software Page 1 of 7 Network Management and Monitoring Software Many products on the market today provide analytical information to those who are responsible for the management of networked systems or what the

More information

How to Monitor a FabricPath Network

How to Monitor a FabricPath Network How to Monitor a FabricPath Network an owiasz Mar., 0 enefits Monitor FabricPath and other physical networks with one solution Preserve tool investment, increase tool allocation and use Increase network

More information

WHITEPAPER. VPLS for Any-to-Any Ethernet Connectivity: When Simplicity & Control Matter

WHITEPAPER. VPLS for Any-to-Any Ethernet Connectivity: When Simplicity & Control Matter WHITEPAPER VPLS for Any-to-Any Ethernet Connectivity: When Simplicity & Control Matter The Holy Grail: Achieving Simplicity and Control in the IT Infrastructure Today s Information Technology decision-makers

More information

Network Performance Channel

Network Performance Channel Network Performance Channel Net Optics Products Overview MIHAJLO PRERAD, Network Performance Channel GmbH Who we are Network Performance Channel GmbH Leading global value added distributor specialized

More information

Question: 3 When using Application Intelligence, Server Time may be defined as.

Question: 3 When using Application Intelligence, Server Time may be defined as. 1 Network General - 1T6-521 Application Performance Analysis and Troubleshooting Question: 1 One component in an application turn is. A. Server response time B. Network process time C. Application response

More information

Network Agent Quick Start

Network Agent Quick Start Network Agent Quick Start Topic 50500 Network Agent Quick Start Updated 17-Sep-2013 Applies To: Web Filter, Web Security, Web Security Gateway, and Web Security Gateway Anywhere, v7.7 and 7.8 Websense

More information

Infrastructure for active and passive measurements at 10Gbps and beyond

Infrastructure for active and passive measurements at 10Gbps and beyond Infrastructure for active and passive measurements at 10Gbps and beyond Best Practice Document Produced by UNINETT led working group on network monitoring (UFS 142) Author: Arne Øslebø August 2014 1 TERENA

More information

A-7: SPAN Out of the Box Wednesday June 16, 2010 1:15 pm 2:45 pm

A-7: SPAN Out of the Box Wednesday June 16, 2010 1:15 pm 2:45 pm A-7: SPAN Out of the Box Wednesday June 16, 2010 1:15 pm 2:45 pm John HE, Hardware Engineer Founder Dualcomm Technology, Inc. SHARKFEST 10 Stanford University June 14-17, 2010 Outline This presentation

More information

Carrier Ethernet: New Game Plan for Media Converters

Carrier Ethernet: New Game Plan for Media Converters Introduction IEEE Std. 802.3ah, also referred to as Ethernet in the First Mile (EFM) standard, has a well established name within the industry today. It lays out ground rules for implementing Ethernet

More information

CCNA R&S: Introduction to Networks. Chapter 5: Ethernet

CCNA R&S: Introduction to Networks. Chapter 5: Ethernet CCNA R&S: Introduction to Networks Chapter 5: Ethernet 5.0.1.1 Introduction The OSI physical layer provides the means to transport the bits that make up a data link layer frame across the network media.

More information

Intelligent Data Access Networking TM

Intelligent Data Access Networking TM Gigamon TM delivers intelligent data access solutions to enhance monitoring of service provider and enterprise data centers. The company s world-renowned GigaVUE orange boxes aggregate, filter and replicate

More information

Cisco NetFlow Generation Appliance (NGA) 3140

Cisco NetFlow Generation Appliance (NGA) 3140 Q&A Cisco NetFlow Generation Appliance (NGA) 3140 General Overview Q. What is Cisco NetFlow Generation Appliance (NGA) 3140? A. Cisco NetFlow Generation Appliance 3140 is purpose-built, high-performance

More information

Configuring IPS High Bandwidth Using EtherChannel Load Balancing

Configuring IPS High Bandwidth Using EtherChannel Load Balancing Configuring IPS High Bandwidth Using EtherChannel Load Balancing This guide helps you to understand and deploy the high bandwidth features available with IPS v5.1 when used in conjunction with the EtherChannel

More information

Layer 3 Network + Dedicated Internet Connectivity

Layer 3 Network + Dedicated Internet Connectivity Layer 3 Network + Dedicated Internet Connectivity Client: One of the IT Departments in a Northern State Customer's requirement: The customer wanted to establish CAN connectivity (Campus Area Network) for

More information

WHITE PAPER. Monitoring Load Balancing in the 10G Arena: Strategies and Requirements for Solving Performance Challenges

WHITE PAPER. Monitoring Load Balancing in the 10G Arena: Strategies and Requirements for Solving Performance Challenges WHITE PAPER Monitoring Load Balancing in the 10G Arena: Strategies and Requirements for Solving Performance Challenges www.ixiacom.com 915-6914-01 Rev. A, July 2014 2 Table of Contents Load Balancing A

More information

Whitepaper. A Guide to Ensuring Perfect VoIP Calls. www.sevone.com blog.sevone.com info@sevone.com

Whitepaper. A Guide to Ensuring Perfect VoIP Calls. www.sevone.com blog.sevone.com info@sevone.com A Guide to Ensuring Perfect VoIP Calls VoIP service must equal that of landlines in order to be acceptable to both hosts and consumers. The variables that affect VoIP service are numerous and include:

More information

White Paper: Validating 10G Network Performance

White Paper: Validating 10G Network Performance White Paper: Validating 10G Network Performance TABLE OF CONTENTS» Introduction» The Challenge of Testing 10G Connections» 10G Network Performance Test with Path Visibility» What Settings to Use» Measuring

More information

6/8/2011. Document ID: 12023. Contents. Introduction. Prerequisites. Requirements. Components Used. Conventions. Introduction

6/8/2011. Document ID: 12023. Contents. Introduction. Prerequisites. Requirements. Components Used. Conventions. Introduction Page 1 of 9 Products & Services Understanding EtherChannel Load Balancing and Redundancy on Catalyst Switches Document ID: 12023 Contents Introduction Prerequisites Requirements Components Used Conventions

More information

FWSM introduction Intro 5/1

FWSM introduction Intro 5/1 Intro 5/0 Content: FWSM introduction Requirements for FWSM 3.2 How the Firewall Services Module Works with the Switch Using the MSFC Firewall Mode Overview Stateful Inspection Overview Security Context

More information

Monitoring Network Traffic Using SPAN

Monitoring Network Traffic Using SPAN 22 CHAPTER This chapter describes the switched port analyzer (SPAN) features provided in switches in the Cisco MDS 9000 Family. It includes the following sections: About SPAN, page 22-2 SPAN Sources, page

More information

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs As a head of the campus network department in the Deanship of Information Technology at King Abdulaziz University for more

More information

Implementing Cisco Quality of Service QOS v2.5; 5 days, Instructor-led

Implementing Cisco Quality of Service QOS v2.5; 5 days, Instructor-led Implementing Cisco Quality of Service QOS v2.5; 5 days, Instructor-led Course Description Implementing Cisco Quality of Service (QOS) v2.5 provides learners with in-depth knowledge of QoS requirements,

More information

10 Port L2 Managed Gigabit Ethernet Switch with 2 Open SFP Slots - Rack Mountable

10 Port L2 Managed Gigabit Ethernet Switch with 2 Open SFP Slots - Rack Mountable 10 Port L2 Managed Gigabit Ethernet Switch with 2 Open SFP Slots - Rack Mountable StarTech ID: IES101002SFP The IES101002SFP 10-port Ethernet switch delivers flexibility and control of your network by

More information

Deploying Network Taps for improved security

Deploying Network Taps for improved security DATACOM SYSTEMS INC Deploying Network Taps for improved security A guide to improving security visibility A DATACOM SYSTEMS WHITE PAPER Improve Visibility A network security detection and prevention scheme

More information

Improving Quality of Service

Improving Quality of Service Improving Quality of Service Using Dell PowerConnect 6024/6024F Switches Quality of service (QoS) mechanisms classify and prioritize network traffic to improve throughput. This article explains the basic

More information

Fail-Safe IPS Integration with Bypass Technology

Fail-Safe IPS Integration with Bypass Technology Summary Threats that require the installation, redeployment or upgrade of in-line IPS appliances often affect uptime on business critical links. Organizations are demanding solutions that prevent disruptive

More information

UCS Network Utilization Monitoring: Configuration and Best Practice

UCS Network Utilization Monitoring: Configuration and Best Practice UCS Network Utilization Monitoring: Configuration and Best Practice Steve McQuerry Technical Marketing Engineer Unified Computing Systems Cisco Systems, Inc. Document Version 1.0 1 Copyright 2013 Cisco

More information

This topic lists the key mechanisms use to implement QoS in an IP network.

This topic lists the key mechanisms use to implement QoS in an IP network. IP QoS Mechanisms QoS Mechanisms This topic lists the key mechanisms use to implement QoS in an IP network. QoS Mechanisms Classification: Each class-oriented QoS mechanism has to support some type of

More information

Deploying Probes and Analyzers in an Enterprise Environment

Deploying Probes and Analyzers in an Enterprise Environment Network Instruments White Paper Deploying Probes and Analyzers in an Enterprise Environment As an IT manager, you need visibility into every corner of the network, from the edge to the core. A distributed

More information

Migrate from Cisco Catalyst 6500 Series Switches to Cisco Nexus 9000 Series Switches

Migrate from Cisco Catalyst 6500 Series Switches to Cisco Nexus 9000 Series Switches Migration Guide Migrate from Cisco Catalyst 6500 Series Switches to Cisco Nexus 9000 Series Switches Migration Guide November 2013 2013 Cisco and/or its affiliates. All rights reserved. This document is

More information

Best Practices in Gigabit Capture

Best Practices in Gigabit Capture Network Instruments White Paper Best Practices in Gigabit Capture How to obtain accurate, line-rate captures with your gigabit investment Analysis is a necessary component of network management. Understanding

More information

FASTIRON II SWITCHES Foundry Networks award winning FastIron II family of switches provides high-density

FASTIRON II SWITCHES Foundry Networks award winning FastIron II family of switches provides high-density Delivers Industry Leading Price, Performance and Flexibility to Wiring Closets, Desktops and Server Farms Provides High-density 10/100 Mbps Ethernet and Gigabit Ethernet Copper Connectivity to Workstations

More information

Enhanced Visibility, Improved ROI

Enhanced Visibility, Improved ROI Abstract Enhanced Visibility, Improved ROI The IT Security/Network Infrastructure Management departments within an organization have access to some of the richest and most useful enterprise data. Because

More information

Expert Reference Series of White Papers. VMware vsphere Distributed Switches

Expert Reference Series of White Papers. VMware vsphere Distributed Switches Expert Reference Series of White Papers VMware vsphere Distributed Switches info@globalknowledge.net www.globalknowledge.net VMware vsphere Distributed Switches Rebecca Fitzhugh, VCAP-DCA, VCAP-DCD, VCAP-CIA,

More information

Gaining Operational Efficiencies with the Enterasys S-Series

Gaining Operational Efficiencies with the Enterasys S-Series Gaining Operational Efficiencies with the Enterasys S-Series Hi-Fidelity NetFlow There is nothing more important than our customers. Gaining Operational Efficiencies with the Enterasys S-Series Introduction

More information

Ethernet Link SGI-4844F

Ethernet Link SGI-4844F Ethernet Link SGI-4844F 44 ports 100/1000Mbps SFP + 4 Combo port RJ-45 + 100/1000Mbps SFP slot Layer 2+ Managed Ethernet Switch Overview LinkPro SGI-4844F is a layer-2+ gigabit access switch equipped with

More information

"Charting the Course... ... to Your Success!" QOS - Implementing Cisco Quality of Service 2.5 Course Summary

Charting the Course... ... to Your Success! QOS - Implementing Cisco Quality of Service 2.5 Course Summary Course Summary Description Implementing Cisco Quality of Service (QOS) v2.5 provides learners with in-depth knowledge of QoS requirements, conceptual models such as best effort, IntServ, and DiffServ,

More information

AlliedWare Plus OS How To Use sflow in a Network

AlliedWare Plus OS How To Use sflow in a Network AlliedWare Plus OS How To Use sflow in a Network Introduction sflow is an industry-standard sampling system that is embedded in Allied Telesis' high-performing Layer 3 switches. sflow enables you to use

More information

Configuring EtherChannels

Configuring EtherChannels 25 CHAPTER This chapter describes how to configure EtherChannel interfaces. For complete syntax and usage information for the commands used in this chapter, refer to the Catalyst 2950 Desktop Switch Command

More information

Efficient Network Monitoring Access

Efficient Network Monitoring Access Abstract Organizations that rely on the reliability, security, and performance of their networks can no longer afford to wait for outages or security breaches to occur before installing test access points.

More information

Redefine Network Visibility in the Data Center with the Cisco NetFlow Generation Appliance

Redefine Network Visibility in the Data Center with the Cisco NetFlow Generation Appliance White Paper Redefine Network Visibility in the Data Center with the Cisco NetFlow Generation Appliance What You Will Learn Modern data centers power businesses through a new generation of applications,

More information

SNMP Monitoring: One Critical Component to Network Management

SNMP Monitoring: One Critical Component to Network Management Network Instruments White Paper SNMP Monitoring: One Critical Component to Network Management Although SNMP agents provide essential information for effective network monitoring and troubleshooting, SNMP

More information

What s New in VMware vsphere 5.5 Networking

What s New in VMware vsphere 5.5 Networking VMware vsphere 5.5 TECHNICAL MARKETING DOCUMENTATION Table of Contents Introduction.................................................................. 3 VMware vsphere Distributed Switch Enhancements..............................

More information

Configuring DHCP Snooping

Configuring DHCP Snooping CHAPTER 19 This chapter describes how to configure Dynamic Host Configuration Protocol (DHCP) snooping on Catalyst 4500 series switches. It provides guidelines, procedures, and configuration examples.

More information

Auditing the LAN with Network Discovery

Auditing the LAN with Network Discovery Application Note Auditing the LAN with Network Discovery Introduction This application note is one in a series of papers about troubleshooting local area networks (LAN) from JDSU Communications Test and

More information

Net Optics xbalancer and McAfee Network Security Platform Integration

Net Optics xbalancer and McAfee Network Security Platform Integration Under the McAfee SIA Partner Program, Net Optics is integrating its xbalancer with the McAfee Network Security Platform (NSP). This partnership will enable mutual customers to realize the benefits of load

More information

Virtual PortChannels: Building Networks without Spanning Tree Protocol

Virtual PortChannels: Building Networks without Spanning Tree Protocol . White Paper Virtual PortChannels: Building Networks without Spanning Tree Protocol What You Will Learn This document provides an in-depth look at Cisco's virtual PortChannel (vpc) technology, as developed

More information

Observer Probe Family

Observer Probe Family Observer Probe Family Distributed analysis for local and remote networks Monitor and troubleshoot vital network links in real time from any location Network Instruments offers a complete line of software

More information

HIGH-PERFORMANCE SOLUTIONS FOR MONITORING AND SECURING YOUR NETWORK A Next-Generation Intelligent Network Access Guide OPEN UP TO THE OPPORTUNITIES

HIGH-PERFORMANCE SOLUTIONS FOR MONITORING AND SECURING YOUR NETWORK A Next-Generation Intelligent Network Access Guide OPEN UP TO THE OPPORTUNITIES HIGH-PERFORMANCE SOLUTIONS FOR MONITORING AND SECURING YOUR NETWORK A Next-Generation Intelligent Network Access Guide OPEN UP TO THE OPPORTUNITIES Net Optics solutions dramatically increase reliability,

More information

CMA5000 SPECIFICATIONS. 5710 Gigabit Ethernet Module

CMA5000 SPECIFICATIONS. 5710 Gigabit Ethernet Module CMA5000 5710 Gigabit Ethernet Module SPECIFICATIONS General Description The CMA5710 Gigabit Ethernet application is a single slot module that can be used in any CMA 5000. The Gigabit Ethernet test module

More information

A Guide to Simple IP Camera Deployment Using ZyXEL Bandwidth Solutions

A Guide to Simple IP Camera Deployment Using ZyXEL Bandwidth Solutions A Guide to Simple IP Camera Deployment Using ZyXEL Bandwidth Solutions 2015/7/22 ZyXEL Communications Corporation Barney Gregorio Overview: This article contains guidelines on how to introduce IP cameras

More information

Generic On-Line Diagnostics

Generic On-Line Diagnostics Generic On-Line Diagnostics 1 What Is Generic On-Line Diagnostics? (GOLD) 2 What Is GOLD? GOLD stands for Generic OnLine Diagnostics GOLD is a platform independent distributed framework that provides a

More information

Cisco Network Analysis Module Software 4.0

Cisco Network Analysis Module Software 4.0 Cisco Network Analysis Module Software 4.0 Overview Presentation Improve Operational Efficiency with Increased Network and Application Visibility 1 Enhancing Operational Manageability Optimize Application

More information

Cisco Nexus 7000 Series Supervisor Module

Cisco Nexus 7000 Series Supervisor Module Cisco Nexus 7000 Series Supervisor Module The Cisco Nexus 7000 Series Supervisor Module (Figure 1) scales the control plane and data plane services for the Cisco Nexus 7000 Series system in scalable data

More information

Firewalls P+S Linux Router & Firewall 2013

Firewalls P+S Linux Router & Firewall 2013 Firewalls P+S Linux Router & Firewall 2013 Firewall Techniques What is a firewall? A firewall is a hardware or software device which is configured to permit, deny, or proxy data through a computer network

More information

Integrating Telrex CallRex Call Recording Solution with the Cisco Unified Communications 500 Series for Small Business

Integrating Telrex CallRex Call Recording Solution with the Cisco Unified Communications 500 Series for Small Business Integrating Telrex CallRex Call Recording Solution with the Cisco Unified Communications 500 Series for Small Business This application note provides guidelines and configuration instructions for the Cisco

More information

Region 10 Videoconference Network (R10VN)

Region 10 Videoconference Network (R10VN) Region 10 Videoconference Network (R10VN) Network Considerations & Guidelines 1 What Causes A Poor Video Call? There are several factors that can affect a videoconference call. The two biggest culprits

More information

How To Balance On A Cisco Catalyst Switch With The Etherchannel On A Fast Ipv2 (Powerline) On A Microsoft Ipv1 (Powergen) On An Ipv3 (Powergadget) On Ipv4

How To Balance On A Cisco Catalyst Switch With The Etherchannel On A Fast Ipv2 (Powerline) On A Microsoft Ipv1 (Powergen) On An Ipv3 (Powergadget) On Ipv4 Cisco - Understanding EtherChannel Load Balancing and Redundancy on Catalyst Switch...Page 1 of 10 Understanding EtherChannel Load Balancing and Redundancy on Catalyst Switches Document ID: 12023 Contents

More information

IP SLAs Overview. Finding Feature Information. Information About IP SLAs. IP SLAs Technology Overview

IP SLAs Overview. Finding Feature Information. Information About IP SLAs. IP SLAs Technology Overview This module describes IP Service Level Agreements (SLAs). IP SLAs allows Cisco customers to analyze IP service levels for IP applications and services, to increase productivity, to lower operational costs,

More information

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise 157.8 hours teaching time

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise 157.8 hours teaching time Essential Curriculum Computer Networking II Cisco Discovery 3: Introducing Routing and Switching in the Enterprise 157.8 hours teaching time Chapter 1 Networking in the Enterprise-------------------------------------------------

More information

Ixia Director TM. Powerful, All-in-One Smart Filtering with Ultra-High Port Density. Efficient Monitoring Access DATA SHEET

Ixia Director TM. Powerful, All-in-One Smart Filtering with Ultra-High Port Density. Efficient Monitoring Access DATA SHEET Ixia Director TM Powerful, All-in-One Smart Filtering with Ultra-High Port Density The Ixia Director TM is a smart filtering appliance that directs traffic of interest to your monitoring tools. Now you

More information

Cisco Nexus 1000V Switch for Microsoft Hyper-V

Cisco Nexus 1000V Switch for Microsoft Hyper-V Data Sheet Cisco Nexus 1000V Switch for Microsoft Hyper-V Product Overview Cisco Nexus 1000V Switches provide a comprehensive and extensible architectural platform for virtual machine and cloud networking.

More information

www.careercert.info Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark.

www.careercert.info Please purchase PDF Split-Merge on www.verypdf.com to remove this watermark. 2007 Cisco Systems, Inc. All rights reserved. DESGN v2.0 3-11 Enterprise Campus and Data Center Design Review Analyze organizational requirements: Type of applications, traffic volume, and traffic pattern

More information

A Summary of Network Traffic Monitoring and Analysis Techniques

A Summary of Network Traffic Monitoring and Analysis Techniques http://www.cse.wustl.edu/~jain/cse567-06/ftp/net_monitoring/index.html 1 of 9 A Summary of Network Traffic Monitoring and Analysis Techniques Alisha Cecil, acecil19@yahoo.com Abstract As company intranets

More information

Network Simulation Traffic, Paths and Impairment

Network Simulation Traffic, Paths and Impairment Network Simulation Traffic, Paths and Impairment Summary Network simulation software and hardware appliances can emulate networks and network hardware. Wide Area Network (WAN) emulation, by simulating

More information

Troubleshooting LANs with Wirespeed Packet Capture and Expert Analysis

Troubleshooting LANs with Wirespeed Packet Capture and Expert Analysis Application Note Troubleshooting LANs with Wirespeed Packet Capture and Expert Analysis Introduction This application note is one in a series of local area network (LAN) troubleshooting papers from JDSU

More information

IMPLEMENTING CISCO QUALITY OF SERVICE V2.5 (QOS)

IMPLEMENTING CISCO QUALITY OF SERVICE V2.5 (QOS) IMPLEMENTING CISCO QUALITY OF SERVICE V2.5 (QOS) COURSE OVERVIEW: Implementing Cisco Quality of Service (QOS) v2.5 provides learners with in-depth knowledge of QoS requirements, conceptual models such

More information

SLA para aplicaciones en redes WAN. Alvaro Cayo Urrutia

SLA para aplicaciones en redes WAN. Alvaro Cayo Urrutia SLA para aplicaciones en redes WAN Alvaro Cayo Urrutia Quién es FLUKE NETWORKS? Enterprise SuperVision (ESV) Soluciones portátiles de prueba y análisis LAN y WAN distribuidas Infrastructure SuperVision

More information

Troubleshooting LANs with Network Statistics Analysis

Troubleshooting LANs with Network Statistics Analysis Application Note Troubleshooting LANs with Network Statistics Analysis Introduction This application note is one in a series of local area network (LAN) troubleshooting papers from JDSU Communications

More information

Configuring NetFlow-lite

Configuring NetFlow-lite CHAPTER 55 Note NetFlow-lite is only supported on Catalyst 4948E Ethernet Switch. This chapter describes how to configure NetFlow-lite on the Catalyst 4948E switch. NetFlow-lite provides traffic monitoring

More information

The Advantages of Cloud Services

The Advantages of Cloud Services Cloud-Based Services: Assure Performance, Availability, and Security What You Will Learn Services available from the cloud offer cost and efficiency benefits to businesses, but until now many customers

More information

Cisco Bandwidth Quality Manager 3.1

Cisco Bandwidth Quality Manager 3.1 Cisco Bandwidth Quality Manager 3.1 Product Overview Providing the required quality of service (QoS) to applications on a wide-area access network consistently and reliably is increasingly becoming a challenge.

More information

Networking Topology For Your System

Networking Topology For Your System This chapter describes the different networking topologies supported for this product, including the advantages and disadvantages of each. Select the one that best meets your needs and your network deployment.

More information