SURF Feed Connection Guide



Similar documents
Networking Basics for Automation Engineers

How To Load balance traffic of Mail server hosted in the Internal network and redirect traffic over preferred Interface

Enabling NAT and Routing in DGW v2.0 June 6, 2012

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

Load Balancing ContentKeeper With RadWare

Smart Tips. Enabling WAN Load Balancing. Key Features. Network Diagram. Overview. Featured Products. WAN Failover. Enabling WAN Load Balancing Page 1

Broadband Phone Gateway BPG510 Technical Users Guide

1 Basic Configuration of Cisco 2600 Router. Basic Configuration Cisco 2600 Router

Networking and High Availability

Multi-Homing Dual WAN Firewall Router

Configuring WAN Failover with a Cisco 881 Router and an AirLink ES440

Network Services Internet VPN

UIP1868P User Interface Guide

How To Connect To Bloomerg.Com With A Network Card From A Powerline To A Powerpoint Terminal On A Microsoft Powerbook (Powerline) On A Blackberry Or Ipnet (Powerbook) On An Ipnet Box On

Digi Connect WAN Application Helper NAT, GRE, ESP and TCP/UPD Forwarding and IP Filtering

Technology Spotlight on Cellular Data Networking for SCADA system networks. Presented by Teamwork Solutions, Inc.

Using Cisco UC320W with Windows Small Business Server

IP Address and Pre-configuration Information

1 Data information is sent onto the network cable using which of the following? A Communication protocol B Data packet

PowerLink Bandwidth Aggregation Redundant WAN Link and VPN Fail-Over Solutions

VPN Only Connection Information and Sign up

CCNP Switch Questions/Answers Implementing High Availability and Redundancy

EXINDA NETWORKS. Deployment Topologies

Lab Diagramming External Traffic Flows

Skills Assessment Student Training Exam

Configuring a customer owned router to function as a switch with Ultra TV

Configuration Guide. How to Configure SSL VPN Features in DSR Series. Overview

Networking and High Availability

Firewall VPN Router. Quick Installation Guide M73-APO09-380

Video Conferencing and Firewalls

Chapter 3: IP Addressing and VLSM

M!DGE/MG102i. Application notes.

This chapter covers four comprehensive scenarios that draw on several design topics covered in this book:

Savvius Insight Initial Configuration

HOW TO CONFIGURE CISCO FIREWALL PART I

Digi Connect WAN Application Helper Configuring and Testing the Digi Connect WAN GSM

Setting up IP address distribution in a LAN

Document No. FO1101 Issue Date: Work Group: FibreOP Technical Team October 31, 2013 FINAL:

H0/H2/H4 -ECOM100 DHCP & HTML Configuration. H0/H2/H4--ECOM100 DHCP Disabling DHCP and Assigning a Static IP Address Using HTML Configuration

PC/POLL SYSTEMS Version 7 Polling SPS2000 Cash Register TCP/IP Communications

Vocia MS-1 Network Considerations for VoIP. Vocia MS-1 and Network Port Configuration. VoIP Network Switch. Control Network Switch

Packet Tracer - Subnetting Scenario 1 (Instructor Version)

Lab a Basic Subnetting

Lab - Using IOS CLI with Switch MAC Address Tables

Session Title: Exploring Packet Tracer v5.3 IP Telephony & CME. Scenario

Top-Down Network Design

WAN Failover Scenarios Using Digi Wireless WAN Routers

Chapter 1 Personal Computer Hardware hours

Essential Curriculum Computer Networking 1. PC Systems Fundamentals 35 hours teaching time

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs

How To Understand and Configure Your Network for IntraVUE

Networking TCP/IP routing and workload balancing

Meraki MX50 Hardware Installation Guide

For extra services running behind your router. What to do after IP change

L2F Case Study Overview

Configuring Static and Dynamic NAT Simultaneously

Knowledgebase Solution

IOS NAT Load Balancing for Two ISP Connections

Lab Developing ACLs to Implement Firewall Rule Sets

Quick Guide of HiDDNS Settings (with UPnP)

NETE-4635 Computer Network Analysis and Design. Designing a Network Topology. NETE Computer Network Analysis and Design Slide 1

AS/400e. TCP/IP routing and workload balancing

ERserver. iseries. TCP/IP routing and workload balancing

Best Practices: Pass-Through w/bypass (Bridge Mode)

How To Configure A Vyatta As A Ds Internet Connection Router/Gateway With A Web Server On A Dspv.Net (Dspv) On A Network With A D

What communication protocols are used to discover Tesira servers on a network?

Procedure: You can find the problem sheet on Drive D: of the lab PCs. Part 1: Router & Switch

Cisco - Configure the 1721 Router for VLANs Using a Switch Module (WIC-4ESW)

Configuring Static IP for your Pace Devices

How to Configure an Initial Installation of the VMware ESXi Hypervisor

Configuring a BANDIT Product for Virtual Private Networks

Planning for Information Network

CQG/LAN Technical Specifications. January 3, 2011 Version

- Introduction to PIX/ASA Firewalls -

Technical Note. Monitoring Ethernet Traffic with Tolomatic ACS & Managed Switch. Contents

White Paper Copyright 2011 Nomadix, Inc. All Rights Reserved. Thursday, January 05, 2012

Lab Diagramming Intranet Traffic Flows

ON HOLD ANNOUNCER. Once you receive your audio announcer, check the packaging to ensure that all of the following items are enclosed:

Quick Installation Guide

Chapter 6 Configuring the SSL VPN Tunnel Client and Port Forwarding

Source net: Destination net: Subnet mask: Subnet mask: Router Hub

AUTO DEFAULT GATEWAY SETTINGS FOR VIRTUAL MACHINES IN SERVERS USING DEFAULT GATEWAY WEIGHT SETTINGS PROTOCOL (DGW)

Effect of Windows XP Firewall on Network Simulation and Testing

Technical Support Information Belkin internal use only

Prestige 202H Plus. Quick Start Guide. ISDN Internet Access Router. Version /2004

How To Load Balance On A Cisco Cisco Cs3.X With A Csono Css 3.X And Csonos 3.5.X (Cisco Css) On A Powerline With A Powerpack (C

DRO-210i LOAD BALANCING ROUTER. Review Package Contents

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network

Lab Configuring the PIX Firewall as a DHCP Server

configure WAN load balancing

Chapter 4 Customizing Your Network Settings

estadium Project Lab 8: Wireless Mesh Network Setup with DD WRT

Overview of WebMux Load Balancer and Live Communications Server 2005

2.0 Dual WAN Select Dual-WAN, you will see the following screen shot, Figure 0.1(Dual-WAN Screen Shot) Figure 0.1(Dual-WAN Screen Shot)

COURSE AGENDA. Lessons - CCNA. CCNA & CCNP - Online Course Agenda. Lesson 1: Internetworking. Lesson 2: Fundamentals of Networking

Application Description

NComputing L-Series LAN Deployment

VIA CONNECT PRO Deployment Guide

MULTI WAN TECHNICAL OVERVIEW

Transcription:

SURF Feed Connection Guide Tullett Prebon Information Ltd A wholly owned subsidiary of Tullett Prebon Version 6.0 3 rd August 2005

Contents 1. Introduction...3 1.1 General...3 2. Connectivity via the Internet...4 2.1 Overview...4 2.2 DNS Names & IP Addresses...4 2.3 TCP Ports...4 3. Connectivity via Leased Line...5 3.1 Overview...5 3.2 Hardware Requirements...5 3.3 Customer Site Configuration...6 3.4 Tullett plc Site Configuration...7 4. Diagrams...8 4.1 London Connectivity Overview...8 4.2 New York Connectivity Overview...9 4.3 Firewall / Architecture...10 4.4 London / New York Connectivity...11 2

1. Introduction 1.1 General This document details the network requirements for a customer to connect to Tullett Prebon for the Datasales Surf Feed. The customer will connect via a leased line to either the London or New York offices. A connection via the Internet will be available for both London and New York access for test purposes and to provide connectivity whilst waiting for the implementation of the leased line connection. s based in London and New York may connect to both sites for redundancy and provide their own internal routing. 3

2. Connectivity via the Internet 2.1 Overview To speed up the deployment of the Surf feed, the client may connect to the Surf Servers via the Internet. The production environment will need to be migrated to a leased line connection once available to guarantee the delivery of the data without unpredictable delays, which occur over the Internet. The client will need to configure their firewall to connect to either the DNS names or the IP addresses on the specified port numbers as listed below. 2.2 DNS Names & IP Addresses The SURF servers can be accessed by the following DNS names or IP Addresses: surfcb1.ldn.tullib.com 192.149.225.218 London Server A surfcb2.ldn.tullib.com 192.149.225.219 London Server B surfcb1.ny.tullib.com 192.149.224.218 New York Server A surfcb2.ny.tullib.com 192.149.224.219 New York Server B The IP Address range for the Surf servers, can be summarized by the following network ranges: 192.149.225.216 /30 London Servers 192.149.224.216 /30 New York Servers 2.3 TCP Ports A single TCP port will be assigned to each client. This port will need to be opened on the clients firewall for the above address range. 4

3. Connectivity via Leased Line 3.1 Overview s may connect via a single router and 256kb circuit or dual routers with dual 256kb circuits for full redundancy. The client will supply the router at both ends and provide an Ethernet port to connect to the Tullett Prebon Switches Tullett Prebon will assign to address to use for the Ethernet port. 3.2 Hardware Requirements The recommended hardware for this system is a Cisco 2610 series router, but this is only our recommendation. The customer can supply any brand or model of router as long as we are provided with an Ethernet port. The recommended configuration would be as follows: 3.2.1 London Specification Assuming X.21 Presentation Part Number Description CISCO2610 Ethernet Modular Router w/ Cisco IOS IP Software WIC-1T 1-Port Serial WAN Interface Card CAB-SS-X21MT X.21 Cable, DTE Male to Smart Serial, 10 Feet WIC-1B-S/T 1-Port ISDN WAN Interface Card (Optional) 3.2.2 New York Specification V.35 Interface Part Number Description CISCO2610 Ethernet Modular Router w/ Cisco IOS IP Software WIC-1T 1-Port Serial WAN Interface Card CAB-V35-MT V.35 Cable, DTE Male to Smart Serial, 10 Feet WIC-1B-U 1-Port ISDN WAN with NT1 Interface Card (Optional) 3.2.3 New York Specification X.21 Interface Part Number Description CISCO2610 Ethernet Modular Router w/ Cisco IOS IP Software WIC-1T 1-Port Serial WAN Interface Card CAB-SS-X21MT X.21 Cable, DTE Male to Smart Serial, 10 Feet WIC-1B-U 1-Port ISDN WAN with NT1 Interface Card (Optional) 5

3.3 Customer Site Configuration Each customer site network is unique and will design their own connectivity accordingly. This section explains what the customer needs in order to connect to Tullett Prebon Ltd via leased lines. 3.3.1 Customer Site Access Router An access router(s) will be installed on a at the customer site with a leased line(s) connecting to the access router on the Tullett Prebon Surf. 3.3.2 Customer Network Routes Depending on the customer network, routes are required to direct the traffic destined for the Surf Servers via the leased line(s). The following route can summarize all the Surf Servers: London: 192.149.225.220/30 (Range 192.149.225.220 192.149.225.223) New York: 192.149.224.220/30 (Range 192.149.224.220 192.149.224.223) This route needs to be added to the customers network and pointed to the access router installed on the Tullett Prebon. 3.3.3 Customer Firewall In the majority of cases, the access router will be located on a customer, so the customer firewall will need to be configured to allow the clients to talk to the above address range on the TCP port assigned to the client. 3.3.4 Server IP Addresses for Leased Line Connections The SURF servers can be accessed by the following IP Addresses: 192.149.225.220 London Server A 192.149.225.221 London Server B 192.149.224.220 New York Server A 192.149.224.221 New York Server B The IP Address range for the Surf servers, can be summarized by the following network ranges: 192.149.225.220 /30 London Servers 192.149.224.220 /30 New York Servers 3.3.5 Internet Backup Option As discussed in section 2, the internet can be used for connectivity to the surf servers. This solution may also be used as a backup incase the leased line circuit goes down. To allow for this scenario, the client firewall should be configured for both the Internet accessible servers and the leased line accessible servers. The same port number will be used for both options. 3.3.5.1 London 192.149.225.216 /30 London Internet Servers (Route to Internet) 192.149.225.220 /30 London Dedicated Servers (Route to ) 3.3.5.2 New York 192.149.224.216 /30 New York Internet Servers (Route to Internet) 192.149.224.220 /30 New York Dedicated Servers (Route to ) 6

3.4 Tullet Prebon Site Configuration Either a single or dual pair of routers will be installed at Tullett Prebon on the Surf. The section provides the configuration necessary to connect to the Surf Firewall. 3.4.1 Access Router The access router will be configured and managed by the client. In order to connect to the Firewall, Tullett Prebon will allocate four IP Addresses to the customer on the Surf. 3.4.1.1 London Addresses 192.168.41.W - Hiding Address 192.168.41.X - Router Ethernet Address or HSRP Address 192.168.41.Y Router A Ethernet Address (For Dual only) 192.168.41.Z Router B Ethernet Address (For Dual only) The subnet mask will be 255.255.255.0 and default gateway 192.168.41.1. 3.4.1.2 New York Addresses 192.168.225.W - Hiding Address 192.168.225.X - Router Ethernet Address or HSRP Address 192.168.225.Y Router A Ethernet Address (For Dual only) 192.168.225.Z Router B Ethernet Address (For Dual only) The subnet mask will be 255.255.255.0 and default gateway 192.168.225.1. 3.4.2 Network Address Translation To make administration easier, the client router needs to translate the source address of all clients to the hiding address allocated. This way, the Tullett Prebon Surf Firewall does not need to know about any of the customer network routes. Likewise, the client can perform a similar translation to remove Tullett Prebon addressing from their network. 7

4. Diagrams 4.1 London Connectivity Overview Send Via Internet 192.149.225.216/30 Customer Firewall Customer PC Customer Network Send Via Lease Line 192.149.225.220/30 Surf Acces s Router 1. Customer PC with Surf client installed requests a connection to the Surf Server on the assigned TCP port. The address of the server will be one of the following depending on whether the internet is used or a dedicated leased line has been installed. Internet Server A : 192.149.225.218 Internet Server B : 192.149.225.219 Dedicated Server A : 192.149.225.220 Dedicated Server B : 192.149.225.221 2. If a dedicated leased line is used and more than one firewall exists, the last hop router on the client network requires a route for 192.149.225.220/30 via the correct firewall where the router with the leased line exists. 3. The firewall permits traffic from the client to either the internet or the router on the for the specified TCP port. Where the leased line has been installed, the firewall will direct traffic destined for 192.149.225.220/30 via the router on the. 4. Where a dedicated line has been installed, the router will forward traffic to the router on the Tullett Prebon. Internet 256Kb TPI FIREWALL Surf Acces s Router 5. The router installed on the Tullett Prebon plc translates the source IP address of the clients to a private hiding address on the Tullett Prebon plc. Traffic for 192.149.225.220/30 is routed to the firewall interface 192.168.41.1. 192.149.225.216/30 192.149.225.220/30 6. The Tullett Prebon plc Firewall permits and directs the traffic from both the internet and leased line connections to the server farm. Surf Server Farm 8

4.2 New York Connectivity Overview Send Via Internet 192.149.224.216/30 Customer Firewall Customer PC Customer Network Send Via Lease Line 192.149.224.220/30 Surf Acces s Router 1. Customer PC with Surf client installed requests a connection to the Surf Server on the assigned TCP port. The address of the server will be one of the following depending on whether the internet is used or a dedicated leased line has been installed. Internet Server A : 192.149.224.218 Internet Server B : 192.149.224.219 Dedicated Server A : 192.149.224.220 Dedicated Server B : 192.149.224.221 2. If a dedicated leased line is used and more than one firewall exists, the last hop router on the client network requires a route for 192.149.224.220/30 via the correct firewall where the router with the leased line exists. 3. The firewall permits traffic from the client to either the internet or the router on the for the specified TCP port. Where the leased line has been installed, the firewall will direct traffic destined for 192.149.224.220/30 via the router on the. 4. Where a dedicated line has been installed, the router will forward traffic to the router on the Tullett Prebon plc. Internet 256Kb Tullett Prebon plc Firewall Surf Acces s Router 192.149.224.216/30 192.149.224.220/30 5. The router installed on the Tullett Prebon plc translates the source IP address of the clients to a private hiding address on the Tullett Prebon plc. Traffic for 192.149.224.220/30 is routed to the firewall interface 192.168.225.1. 6. The Tullett Prebon plc Firewall permits and directs the traffic from both the internet and leased line connections to the server farm. Surf Server Farm 9

4.3 Firewall / Architecture Surf Firewalls Internet Broadcast Servers 256 Kb 256 Kb Workstation Firewall 10

Internet Surf Firewalls 256Kb 256Kb Workstation London Broadcast Servers Firewall Internet Firewall Surf Firewalls 256Kb 256Kb Workstation NewYork Broadcast Servers 4.4 London / New York Connectivity CollinsStewart Tullett plc London CollinsStewart Tullett plc NewYork LondonOffice NewYorkOffice 11