Routing Security Server failure detection and recovery Protocol support Redundancy



Similar documents
Server Load Balancing Configuration Guide Cisco IOS Release 12.2SX

CCNP Switch Questions/Answers Implementing High Availability and Redundancy

Avaya P330 Load Balancing Manager User Guide

Cisco Wireless Security Gateway R2

AppDirector Load balancing IBM Websphere and AppXcel

Securing Networks with PIX and ASA

Firewall Load Balancing

Implementing the Application Control Engine Service Module

Citrix NetScaler 10 Essentials and Networking

Cisco ACE 4710 Application Control Engine

How To Use The Cisco Ace Module For A Load Balancing System

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

Radware s AppDirector and AppXcel An Application Delivery solution for applications developed over BEA s Weblogic

Cisco Certified Security Professional (CCSP)

Availability Digest. Redundant Load Balancing for High Availability July 2013

White Paper Copyright 2011 Nomadix, Inc. All Rights Reserved. Thursday, January 05, 2012

CNS-208 Citrix NetScaler 10.5 Essentials for ACE Migration

Troubleshooting and Maintaining Cisco IP Networks Volume 1

5.0 Network Architecture. 5.1 Internet vs. Intranet 5.2 NAT 5.3 Mobile Network

HUAWEI OceanStor Load Balancing Technical White Paper. Issue 01. Date HUAWEI TECHNOLOGIES CO., LTD.

- Introduction to PIX/ASA Firewalls -

Cisco Application Networking Manager Version 2.0

Cisco Actualtests Exam Questions & Answers

Canadian Securities Exchange enhances Trading Network by adding a FIX Protocol Router Appliance

IOS Server Load Balancing

Deployment Topologies

What's New in Cisco ACE Application Control Engine Module for the Cisco Catalyst 6500 and Cisco 7600 Series Software Release 2.1.0

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners

Enabling Multiple Wireless Networks on RV320 VPN Router, WAP321 Wireless-N Access Point, and Sx300 Series Switches

Content Switching Module for the Catalyst 6500 and Cisco 7600 Internet Router

Cisco Wide Area Application Services (WAAS) Software Version 4.0

Top-Down Network Design

Smart Tips. Enabling WAN Load Balancing. Key Features. Network Diagram. Overview. Featured Products. WAN Failover. Enabling WAN Load Balancing Page 1

Building a Highly Available and Scalable Web Farm

Networking and High Availability

Overview: Load Balancing with the MNLB Feature Set for LocalDirector

How To Manage A Netscaler On A Pc Or Mac Or Mac With A Net Scaler On An Ipad Or Ipad With A Goslade On A Ggoslode On A Laptop Or Ipa On A Network With

APV9650. Application Delivery Controller

Chapter 11 Cloud Application Development

Cisco IOS Firewall. Scenarios

Avaya P333R-LB. Load Balancing Stackable Switch. Load Balancing Application Guide

Formación en Tecnologías Avanzadas

Citrix NetScaler 10.5 Essentials for ACE Migration CNS208; 5 Days, Instructor-led

CNS-208 Citrix NetScaler 10 Essentials for ACE Migration

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners

Purpose-Built Load Balancing The Advantages of Coyote Point Equalizer over Software-based Solutions

New Features in Cisco IOS Software Release 12.2(33)SXI2

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners

Configuring Health Monitoring

DEPLOYMENT GUIDE Version 1.1. DNS Traffic Management using the BIG-IP Local Traffic Manager

UPPER LAYER SWITCHING

Figure 41-1 IP Filter Rules

Configuring DHCP Snooping

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection.

CNS-208 CITRIX NETSCALER 10.5 ESSENTIALS FOR ACE MIGRATION

Layer 4-7 Server Load Balancing. Security, High-Availability and Scalability of Web and Application Servers

Superior Disaster Recovery with Radware s Global Server Load Balancing (GSLB) Solution

Gigabit SSL VPN Security Router

CTS2134 Introduction to Networking. Module Network Security

Chapter 2 TOPOLOGY SELECTION. SYS-ED/ Computer Education Techniques, Inc.

Cisco ACE Application Control Engine: ACEBC Catalyst 6500 and 4710 Applicance Boot Camp

DATA CENTER. Best Practices for High Availability Deployment for the Brocade ADX Switch

Cisco Active Network Abstraction 4.0

Cisco ASA, PIX, and FWSM Firewall Handbook

WAN Optimization Integrated with Cisco Branch Office Routers Improves Application Performance and Lowers TCO

VERITAS Cluster Server Traffic Director Option. Product Overview

2. Are explicit proxy connections also affected by the ARM config?

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

SFWR ENG 4C03 Class Project Firewall Design Principals Arash Kamyab March 04, 2004

Networking and High Availability

Cisco Easy VPN on Cisco IOS Software-Based Routers

White Paper. Telenor VPN

How To Load Balance On A Cisco Cisco Cs3.X With A Csono Css 3.X And Csonos 3.5.X (Cisco Css) On A Powerline With A Powerpack (C

Krishan Sabnani Bell Labs. Converged Networks of the Future

Network Virtualization

ExamPDF. Higher Quality,Better service!

Application Note Secure Enterprise Guest Access August 2004

Internet Security Firewalls

Jive Core: Platform, Infrastructure, and Installation

Steelcape Product Overview and Functional Description

Alteon Web OS. Intelligent Internet. What s New in Alteon Web OS Alteon Web OS Benefits. Product Brief

Cisco Networking Professional-6Months Project Based Training

GPRS and 3G Services: Connectivity Options

Cisco Application Networking for BEA WebLogic

NLoad Balancing Stackable Switch

Cisco Application Networking for IBM WebSphere

Technical papers Virtual private networks

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network

Content Scanning for secure transactions using Radware s SecureFlow and AppXcel together with Aladdin s esafe Gateway

CNS-205 Citrix NetScaler 10 Essentials and Networking

NETE-4635 Computer Network Analysis and Design. Designing a Network Topology. NETE Computer Network Analysis and Design Slide 1

Cisco Nexus 1000V Switch for Microsoft Hyper-V

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

Industrial Network Security for SCADA, Automation, Process Control and PLC Systems. Contents. 1 An Introduction to Industrial Network Security 1

DPtech ADX Application Delivery Platform Series

Catalyst 6500/6000 Switches NetFlow Configuration and Troubleshooting

"Charting the Course... Implementing Citrix NetScaler 11 for App and Desktop Solutions CNS-207 Course Summary

Transcription:

Cisco IOS SLB and Exchange Director Server Load Balancing for Cisco Mobile SEF The Cisco IOS SLB and Exchange Director software features provide a rich set of server load balancing (SLB) functions supporting the protocols and component configurations commonly found in application server deployments and mobile wireless environments. The Cisco IOS SLB and Exchange Director features are fully integrated into Cisco IOS Software running on Cisco Catalyst 6500 Series and Cisco 7600 Series supervisor engine line cards (Figure 1). This provides a low-cost, efficient load balancing solution that requires no additional hardware. Figure 1. Catalyst 6500 Series and Cisco 7600 Series with Integrated Cisco IOS SLB and Exchange Director Solution Overview The Cisco IOS SLB feature is a Cisco IOS Software-based solution that provides load balancing for a variety of networked devices and services, including: Application servers based on protocols such as HTTP, Telnet, FTP, Domain Name Server (DNS), etc. Firewalls Service nodes, such as authentication, authorization, and accounting (AAA) servers, Web caches, etc. In addition, Cisco IOS SLB supports the Exchange Director, which enables advanced loadbalancing routing capabilities for the following additional service nodes: Cisco Service Exchange Framework for Mobile (Mobile SEF) components: Cisco Content Services Gateway (CSG) Cisco Gateway GPRS Support Node (GGSN) Cisco Packet Data Serving Node (PDSN) Cisco Home Agents All contents are Copyright 1992 2007 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 1 of 1

Other components for mobile, public wireless LAN (PWLAN), and service provider networks: Wireless Application Protocol (WAP) gateways Protocol optimization gateways Third-party GGSNs and Home Agents Other RADIUS-aware flow gateways. These gateways are proxies or routing nodes that receive RADIUS authorization and accounting requests for users that route flows through the gateways. The Exchange Director binds the RADIUS and data flows to the same gateway, ensuring that the gateway receives a complete and consistent view of the network activity for the user. The Exchange Director also adds the following features: Enhanced failover capabilities for single-chassis failover within Mobile SEF service nodes on Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers. When used with Stateful Switchover (SSO), Cisco IOS SLB stateful backup for redundant route processors provides full Cisco IOS SLB stateful failover for these platforms. Flow persistence, which provides intelligent return routing of load-balanced IP flows. Figure 2. Cisco IOS SLB Deployment Key Features This section describes the general features provided by Cisco IOS SLB, as well as the specific features provided by the Exchange Director for Cisco Mobile SEF. Cisco IOS SLB features: Routing Security Server failure detection and recovery Protocol support Redundancy All contents are Copyright 1992 2007 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 2 of 5

Exchange Director features: GPRS load balancing GPRS load balancing without GTP Cause Code Inspection GPRS load balancing with GTP Cause Code Inspection Home Agent Director RADIUS load balancing WAP load balancing Stateful backup of redundant route processors Flow persistence Support for client traffic arriving on MPLS tunnels Key Benefits Cisco IOS SLB and Exchange Director provide the following benefits for Mobile SEF solutions: High performance is achieved by distributing client requests across a cluster of servers. Administration of server applications is easier. Clients know only about virtual servers; no administration is required for real server changes. Security of the real server is provided because its address is never announced to the external network. Users are familiar only with the virtual IP address. Additionally, filtering of unwanted traffic can be based on both IP address and IP port numbers. Ease of maintenance with no downtime is achieved by allowing physical (real) servers to be transparently placed in or out of service. High availability, scalability, and redundancy of network elements help ensure maximum network uptime, and enable failover solutions in the event of device downtime. Management is easy with CISCO-SLB-MIB. CONFIGURATION LIMITS Up to 500 Cisco IOS SLB virtual servers can be configured. A maximum of two access VLANs can be configured in a virtual server configuration. SLB does not support load balancing of flows between clients and real servers that are on the same LAN or VLAN. Cisco IOS SLB VRF-aware is supported with the Supervisor Engine 720 running Cisco IOS Software Release 12.2(18)SXE or later and the Supervisor Engine 32 running Release 12.2(18)SXF5 or later. Tables 1 and 2 summarize the performance of Cisco IOS SLB and Exchange Director with Cisco Catalyst 6500 Series and Cisco 7600 Series Supervisor Engine 720-3BXL, Supervisor Engine 32- GE-3B or 32-10GE-3B, respectively. All contents are Copyright 1992 2007 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 3 of 5

Performance Summary Table 1. Performance with Supervisor Engine 720-3BXL Max connections per second Max concurrent connections Throughput SLB* 20,000 2,000,000 8G FWLB** 10,000 1,000,000 8G RLB*** 30,000 8,000,000 Refer to Supervisor Engine 720-3BXL data sheet Table 2. Performance with Supervisor Engine 32-GE-3B or 32-10GE-3B Max connections per second Max concurrent connections Throughput SLB* 10,000 500,000 4G FWLB** 5,000 250,000 4G RLB*** 15,000 2,000,000 Refer to the Supervisor Engine 32 data sheet * SLB Server load balancing at Layer 4 ** FWLB Firewall load balancing *** RLB RADIUS load balancing RLB subscriber traffic will be switched in hardware once the route flow is created. RLB throughput is only limited by the switch throughput then. Refer to the following data sheet for throughput numbers: www.cisco.com/en/us/products/hw/switches/ps708/products_data_sheet09186a0080159856.html Supported Platforms Table 3. Hardware Supported Hardware and Software Platforms Software Release Cisco Catalyst 6500 Series/7600 Series Supervisor Engines 720-3B and 720-3BXL (WS-SUP720-3B and WS-SUP720-3BXL) Cisco Catalyst 6500 Series/7600 Series Supervisor Engines 32-GE-3B and 32-10GE-3B (WS-SUP32-GE-3B and WS-SUP32-10GE-3B) Cisco IOS Software Release 12.2(18)SXD and later Cisco IOS Software Release 12.2(18)SXF5 and later Ordering Information Table 4. Cisco IOS SLB and Exchange Director Ordering Information Product Number FR-IOSSLB FR-IOSSLB= FR-EXCHDR FR-EXCHDR= Product Description Cisco IOS Server Load Balancing Feature License IP Services Cisco IOS package required Exchange Director Feature License IP Services Cisco IOS package required Note: One license covers redundant supervisor engine configurations. All contents are Copyright 1992 2007 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 4 of 5

Service and Support Cisco offers a wide range of services programs to accelerate customer success. These innovative services programs are delivered through a unique combination of people, processes, tools, and partners, resulting in high levels of customer satisfaction. Cisco services help you to protect your network investment, optimize network operations, and prepare your network for new applications to extend network intelligence and the power of your business. For more information about Cisco Services, see Cisco Technical Support Services or Cisco Advanced Services. Additional Information For more information about Cisco mobile wireless products and solutions, visit: http://www.cisco.com/go/mobile. For more information about Cisco Mobile Wireless Center for the Cisco Service Exchange Framework for Mobile, visit: http://www.cisco.com/en/us/partner/products/ps6401/index.html. For more information about detailed features and configuration for Cisco IOS SLB and Exchange Director, visit: http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122newft/122limit/122sx/122sxf1 8/slbsxf5.htm#wp3600742. Printed in USA C78-425699-00 08/07 All contents are Copyright 1992 2007 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 5 of 5