Radware s Multi-homing Solutions White Paper May 5, 2003 North America Radware Inc. 575 Corporate Dr Suite 205 Mahwah, NJ 07430 Tel 888 234 5763 International Radware Ltd. 22 Raoul Wallenberg St Tel Aviv 69710, Israel Tel 972 3 766 8666 www.radware.com
Page - 2-1. Introduction This document outlines the differences between Radware multi-homing products: 1. : a full-featured, high-performing link manager designed for bandwidthintensive and performance-demanding networks. Usually, these networks are found at the headquarters and regional offices of large enterprises. manages the operation of all Internet links across multi-homed networks, optimizing content delivery for reliable, cost-effective and secure connectivity. Depending on the traffic throughput requirements and IP performance needs of the network, can be deployed any one of Radware s three Switch platforms. From large regional offices through leading national carriers, the Switch platforms provide an all-encompassing multi-homing solution. 2. EL: a limited throughput link manager targeted at regional offices. Sold only on the Switch I platform, EL has two major limitations. First, the bandwidth is limited to 10 MB with the North American (NA) license, and 5 MB with the Rest of the World (ROW) license. Second, there is no ability to purchase a license. However, EL is upgradeable to a full, unlimited bandwidth with a change of license. Customers can then choose to add a license. 3. : a small desktop box with feature set designed to meet the needs of Remote Offices and Offices (ROBO). provides ROBOs with increased connectivity flexibility, leading to sharply reduced connectivity costs. Offices are also able, for the first time, to maintain accelerated and uninterrupted connectivity to the central office by intelligently routing Internet traffic, including VPN sessions, across multiple Internet links. In this way, organizations benefit from increased employee productivity while saving connectivity costs. 4. UpLink - is a small desktop box that enables small and medium enterprises (SME) to manage two independent ISP links simultaneously, enabling businesses to deploy more cost-effective connectivity solutions. By connecting UpLink on the edge of their local network, enterprises benefit both from the ability to multi-home their network, thus guaranteeing 24/7 Internet connectivity while significantly reducing connectivity costs.. The table below compares the different multi-homing product line and their respective target markets and key differences.
Page - 3 - Product Switch III Target Market Carriers and Large Enterprise HQ Limit support Ports Unlimited Yes 1 10 Gbe +7 Gbe +16 FE Box type Switch II Carriers and Large Enterprise HQ Unlimited Yes 5 Gbe +16 FE Or 7 Gbe Switch I Large Regional Office Unlimited Yes 8 FE Or 8 FE+2 Gbe EL Regional Office 5 MB ROW 10MB NA Two steps upgrade path 8FE Or 8 FE+2 Gbe ROBO 5 MB No 8 FE Desk top UpLink SME 5 MB Simplified BWM 8 FE Desk top
Page - 4-2. Product Comparison The following table lists the features of our multi-homing solution: Feature UpLink EL on Switch I, II, and III Yes Upgradeable to No 1 Yes, to a limited application Yes, in two steps Port Options 8 FE 8 FE 8 FE Varies with respect to platform (see above) Supported NHRs (Service Providers) Limit Device Health Monitoring 2 10 10 10 5 MB 5 MB 5 MB ROW license 10 MB NA license Web-based Secure web based management Ping checks to local routers, and two Service Provider s NHRs. Enhanced CLI Configware Insite Telnet SSH Web-based Secure webbased management Advanced Health Monitoring: Fully configurable health checks, with the ability to define any layer 2 through 7 health checks on any network element, up to 10 elements in a path. ASI: 200 MB ASII: 1GB ASIII: 3 GB and EL and EL 1 If a possible future upgrade is needed, EL on Switch I should be offered, which has full functionality and upgradeable in capacity and.
Page - 5 - Feature UpLink EL Port Rules None Yes Yes Yes Device Redundancy Link Load Balancing Algorithms Firewall and VPN load balancing Multi-site multi-link load balancing for VPN sessions Network Proximity Checks Network Address Translation (NAT) Yes, proprietary redundancy with another UpLink Inbound & Outbound traffic Round Robin Least a of traffic Least a of bytes Yes, proprietary protocol and VRRP support Inbound & Outbound traffic Round Robin Least a of traffic Fewest Number of Users Windows NT SNMP statistics. Hashing Response time No Yes Yes Yes No Yes Yes Yes Yes. Users can configure: Weights to consider hops and latency Static (1-to-1) Dynamic (manyto-1) Yes. Users can configure: Inbound and/or outbound sessions Weights for hops and latency results Static and dynamic proximity Static Dynamic Static Dynamic on Switch I, II, and III and EL and EL and EL Static Dynamic
Page - 6 - Feature UpLink DNS Support VLAN Support Security EL Yes Yes Yes Yes For only one VLAN Limited functionality for only four services: HTTP, HTTPS, Mail, and FTP. Yes Yes Yes Limited Chargeable upgrade to full None Limited Chargeable upgrade to full security modules on Switch I, II, and III Full : Full control over the traffic Classifier, which provides a very flexible policy definition. Various prioritization levels into queues. Ability to limit, guarantee and borrow bandwidth. See BWM documentation for more detail. Chargeable upgrade to security modules: 1. Security with over 1000 attack signatures 2. DoS Shield: protection against Denial of Service attacks