Net Optics none manual Work with configurable 10 Gigabit ports

Page 35

Director

Work with configurable 10 Gigabit ports

The two configurable 10 Gigabit XFP ports on the front panel are designated t.1 (on the left) and t.2 (on the right). They can be used in network port lists and monitor port lists. The 10 Gigabit ports are configured for Network or Monitor as required by the filter add commands you enter. Some examples follow. If separate filter add commands require differ- ent configurations for the same XFP port, the port is configured as required for the command that was entered last.

To use both XFP ports as Network ports:

1.Enter filter add in_ports=t.1 ip_proto=6 action=redir redir_ports=m.1. A filter has been defined to select all IPv4

TCP packets from 10 Gigabit Port 1 and copy them to Monitor Port 1.

2.Enter filter add in_ports=t.1 ip_proto=17 action=redir redir_ports=m.2. A filter has been defined to select all IPv4

UDP packets from 10 Gigabit Port 1 and copy them to Monitor Port 2.

3.Enter filter add in_ports=t.2 action=redir redir_ports=m.3. A filter has been defined to copy all traffic from10

Gigabit Port 2 to Monitor Port 3.

4.Enter filter commit. The filters are activated.

XFP Port 1

XFP Port 2

 

 

Protocol =

 

 

Monitor Port 1

 

 

TCP

 

 

 

 

 

 

 

Protocol =

 

 

Monitor Port 2

 

 

 

 

 

UDP

 

 

 

 

 

 

 

 

 

 

Monitor Port 3

 

 

 

 

￿lter add t.1 ip_proto=6 action=redir redir_ports=m.1 ￿lter add t.1 ip_proto=17 action=redir redir_ports=m.2 ￿lter add t.2 action=redir redir_ports=m.3

Figure 31: Configurable 10 Gigabit XFP ports used as Network ports

To use both XFP ports as Monitor ports:

1.Enter filter add in_ports=n1.1-n1.4 action=redir redir_ports=t.1. A filter has been defined to aggregate the traffic from the first four 1 Gigabit Network Ports and copy the aggregated traffic to 10 Gigabit Port 1.

2.Enter filter add in_ports=n1.11 action=redir redir_ports=t.2. A filter (switch) has been defined to copy all the traffic from 1 Gigabit Network Port 11 to 10 Gigabit Port 2.

3.Enter filter commit. The filters are activated.

31

*** Confidential - DO NOT Distribute ***

Image 35
Contents Smart Filtering Appliance Trademarks and Copyrights Contents Filter parameters Appendix aAppendix B Appendix CChapter Introduction Passive, Secure Technology Key FeaturesEase of Use Monitor port FilteringDescription About this GuideDirector internal architecture Director ArchitectureDirector Management USB portNetwork Links Typical ApplicationMonitoring Tools External Network Tap method IBypass Switch MethodIn-line Monitoring of 10 Gigabit Links DNM / Network Port LEDs Power LEDsDirector Front Panel Monitor Port LEDsXFP Director Rear PanelChapter Installing Director Unpack and Inspect the Director device Plan the InstallationRack Mount the Director device Install Director Network ModulesInstall SFP and XFP Monitor port Modules Connect the local CLI Interface Connect Power to DirectorTo connect the CLI for remote use over the Management port Connect the remote CLI InterfaceBaud Data bits No parity 1 stop bit No flow control TipTo log into the CLI Log into the CLITo change the user name and password Configure Director using the CLIChange Director User Name and Password Change Port Modes To change the port modeAssign a New Manager IP Address To assign a new Manager IP address to DirectorSet the Current Date and Time Save and Load Director ConfigurationsTo view CLI help information Using the CLI Help CommandCurrent config file Using the CLI Command History BufferTo connect a Span port Connect Span Ports to DirectorTo connect an in-line network link Connect Director With In-line Network LinksConnect Monitoring Tools to Director Configure a Matrix Switch connection in DirectorCheck the Installation Syntax Chapter Configuring Filters Using the CLICopy Traffic From Any Network Port to Any Monitor Port Enter filter commit. The switch connection is activatedLter add inports=n1.1 action=redir redirports=m.3-m.5 Regenerate Traffic to Any Set of Monitor PortsTo create a filter that selects IPv4 packets by protocol Create FiltersLogical and filter connection Create Complex FiltersUDP View filtersConfigurable 10 Gigabit XFP ports used as Network ports Work with configurable 10 Gigabit portsNetwork Port 11 XFP Port CAM Understand filter interactionsFlow diagram now looks as follows N1.1 ipproto=UDP action=drop N1.1 m.1 Exclusive filtersUnderstand pending and active filters To change the Director filter configurationEnter filter list to view the pending filter list Filter capacity User interactionsDaisy-chaining Multiple Director Chassis Specifications, chassis Appendix a Director SpecificationsAvailable Models Specifications, DNMEnvironmental CertificationsCommand Sub-Command Parameters Example and description Appendix B Command Line InterfaceSrc=10.1.1.1 action=drop Command may includeFilter add and filter ins commands Filter add ipv6=n inports=n1.1-n1.3 ipFilter sync Load myconfiguration-1Filter list Filter runningPing Save myconfiguration-1Show myconfiguration-1 PasswdTime Sysip commitSysip ipaddr=192.168.1.2 netmask=255.255.0.0 Sysip showIs only This This command is only available at root level CommandUser show User add name=bob pw=bob-pw priv=3Director Filter Parameters Qual Value Example Description Filter parametersNum Keyword Protocol Appendix C Protocol NumbersMobile L2TP Limitations on Warranty and Liability By Net Optics, Inc. All Rights Reserved