Specflow Policy Flow Protection Bypass Switch Based On Network Packet Broker Vendors
|
|
Specflow Policy Flow Traction Series Protection of Network Packet Generator based on Network Packet Broker
1.Overviews NetTAP® bypass switch manual is researched and developed by Chengdu Shuwei Communication Technology Co., Ltd, which can be used for flexible deployment of various types of serial security equipment while providing high network reliability. By deploying NetTAP® Smart Bypass Protector:
2.Intelligent Bypass Swtich Application Solution “Specflow” Policy Flow Traction Series Protection
Figure 1 SpecFlow Specific traffic series protection
As shown in Figure 1 above, when the security network device only needs to deal with the specific traffic in series security protection, through the NetTAP® "bypass switch" traffic per-processing function, through the traffic screening strategy to connect the security device " Concerned "traffic is sent back directly to the network link, and the" concerned traffic section "is traction to the in-line safety device to perform safety checks. This will not only maintain the normal application of the safety detection function of the safety device, but also reduce the inefficient flow of the safety equipment to deal with the pressure; at the same time, the "policy flow traction protector" can detect the working condition of the safety device in real time. The safety device works abnormally bypasses the data traffic directly to avoid disruption of network service. The NetTAP® Traffic Traction Protector can identify traffic based on the L2-L4 layer header identifier, such as VLAN tag,source / destination MAC address, source IP address, IP packet type, transport layer protocol port, protocol header key tag, and so on. A variety of matching conditions flexible combination can be defined flexibly to define the specific traffic types that are of interest to a particular security device and can be widely used for the deployment of special security auditing devices (RDP, SSH, database auditing, etc.).
3. Bypass Switch Bypass TAP Technical Characteristics SpecFlow/FullLink Protection The NetTAP® "INLINE Network Security Bypass Swtich based on Network TAP Strategic Traffic Protector" supports serial protection for complete link traffic and a serial protection mode for a specific traffic type. Users can choose the appropriate deployment mode according to the deployment requirements of different security devices. FullLink protection mode. In this mode, the Policy Traffic Traction Protector forwards all traffic from the deployed link to the security device and performs real-time monitoring of the state of the security device. If the status of the security device is abnormal, the protector will automatically switch to the bypass state ensures network availability. SepcFlow protection mode. In this mode, the Policy Traffic Traction Protector forwards some of the user-specified traffic types in the deployment link to the security device for processing. The remaining traffic is automatically bypassed without passing through the security device. While the protector on the state of the safety device to perform real-time monitoring, once the safety device status is abnormal, the protector will automatically switch to bypass state to ensure the availability of the network.
4. Bypass Switch Bypass TAP Technical Specifications
|
||||||||||||||||||||||
| Product Tags: ethernet tap inline network tap |
|
Network Bypass Switching Tap to Protect Firewall and IPS for Inline Network Security |
|
Bypass Tap with Out of Band Network Management Tools To Keep Network Link Active |
|
Inline Bypass TAP Threat Prevention Virtual Or Physical Network And Cloud Out Of Band |
|
Anti DDoS Protector Inline Bypass TAP Detect Heartbeat Message Respond |
|
Inline Bypass Switch Heartbeat Package Passive Optical TAP HTTP WEB TELNET SSH Management |
|
Network Switch Bypass Switch Ethernet TAP Detect Heartbeat Packet Respond With Dynamic Load Balancing |
