Bay Networks Baystream 7 Instrukcja Użytkownika Strona 12

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 19
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 11
BayStream Dial VPN Services
For service providers who want to provide
Dial VPN access,BayNetworks offers
BayStream
Dial VPN Services,a complete
software suite designed to run on Bay
Networks 5000 Multi-Service Access Switch
(MSX), standalone Remote Access Servers,
and platforms running BayStream multi-
service software.
BayStream Dial VPN Services make it easy
to provide dial-in customers with simple,
secure access to the Internet and to corpo-
rate VPNs.It is heavily standards-based, for
near-plug-and-play compatibility in most
existing dial-in environments.
Today,Bay Networks Dial VPN Services is
based on the Mobile IP architecture defined
by the IETF.In order to optimize Mobile IP
for Bay Networks VPN service architecture,
several extensions were added to the
Mobile IP implementation.In Bay Networks
implementation,the Remote Access Server
(RAS) runs the Mobile IP Foreign Agent (FA)
and the BayStream Gateway runs the Mobile
IP Home Agent (HA).This implementation
provides a very secure,efficient,and scalable
Dial VPN solution.
Network Resiliency
Bay Ne two rks has a long tradition of building
highly resilient networks by building fault
resiliency into its platforms.Fully redundant
systems such as the Backbone Node router
family are crucial to maintaining 100 percent
network availability.
Also critical to the resiliency of a Dial VPN
architecture is the network administrators
ability to quickly diagnose errors and imple-
ment fixes without having to disable any of
the equipment that is providing service in
real-time.Bay Networks 5399 Remote Access
Concentrator and BayStream software
p rovide netwo rk administrators the flex i b i l i ty
and ease of use required to fix problems
with a minimal impact on service availability.
Bay Networks engineering is also constantly
looking for ways to improve system up-time
levels.By driving enhancements to existing
technology within standards bodies such
as the Frame Relay Forum and the IETF,
network level signaling,more robust trans-
port layer protocols,and fast network-wide
convergence of routing tables can be
implemented in standards and applied
to heterogeneous networking environ-
ments.By improving its own platforms
and systems,such as adding secondary
gateway support,Bay Networks continues
to lead in p roviding highly available plat-
fo rm s,s ys te m s,and services.
Scalability
In the BayStream Dial VPN Services archi-
tecture, scalability of the gateway is critical
since a large number of tunnels may
terminate in a gateway simultaneously.
There are two approaches to addressing
scalability concerns.
In one approach the gateway is built upon
Bay Networks Backbone Node router family
which,because of its unique symmetric
multiprocessor architecture,is highly
scalable.Frame Relay ports,which act as
gateway connections between the network
and the customer premise,can be spread
out among several slots without degrading
the router‘s performance.Throughput is
preserved because each slot is configured
with its own processor which handles all
calculations and forwarding activity for
that slot.
In the second approach, PPP is terminated
at the RAS.Therefore,the gateway is not
responsible for maintaining the PPP state
for each tunnel.This is different from other
architectures, particularly those built on
Layer 2 tunneling,where the device repre-
senting the tunnel termination point must
also maintain the PPP state for each tunnel,
draining processor and memory resources.
In a BayStream Dial VPN Services network
the gateway is responsible for only three
processes:maintaining a table that maps
each IP tunnel endpoint to a Frame Relay
Data Link Connection Identifier (DLCI),
forwarding packets through the gateway
according to the entries in that table,and
maintaining a proxy RADIUS client for each
subscriber.These processes can be spread
out over a number of slots.
The BayStream Dial VPN Services archi-
tecture is extremely scalable in that it
distributes processing and forwarding
decisions across the network.The RAS is
responsible for handling PPP sessions and
forwarding packets out its Ethernet port.
These are design functions for which it is
especially well-suited.The Tunnel Manage-
ment Server interacts directly with each RAS
that has a specifically defined and config-
ured relationship to it.With these functions
distributed over the network,the service
providers gateway can perform optimally.
White Paper Understanding and Implementing Dial VPN Services 11
Przeglądanie stron 11
1 2 ... 7 8 9 10 11 12 13 14 15 16 17 18 19

Komentarze do niniejszej Instrukcji

Brak uwag