Allied Telesis AT-AR300 manual Software Features

Page 5

Software Release 2.3.1

5

Software Features

The following features are available on all routers and switches supported by this release, unless otherwise stated:

Major features NSM Hot Swap software support for models with NSM bays (“NSM Hot Swap Software Support” on page 6)

Domain Name Server Enhancements (IP) (“Domain Name Server Enhancements” on page 7)

Configurable Telnet Server Port Number (“Telnet Server Port Number” on page 9)

Up and down triggers for Ethernet interfaces (“Triggers for Ethernet Interfaces” on page 9)

Changes to the number of encryption and compression channels, depending on the amount of RAM on the router or switch (“ENCO Channels” on page 10)

IP Security (IPsec) enhancements: the Source Interface can be now be specified, and IPsec performance is enhanced (“IP Security (IPsec) Source Interface and Enhancements” on page 11)

OSPF on Demand (“OSPF on Demand” on page 12)

Paladin Firewall Enhancements (“Paladin Firewall Enhancements” on page 14)

Paladin Firewall HTTP Application Gateway (Proxy) (“Paladin Firewall HTTP Application Gateway (Proxy)” on page 21)

VRRP Port Monitoring (“VRRP Port Monitoring” on page 26)

Border Gateway Protocol version 4, phase 1 (“Border Gateway Protocol 4 (BGP-4) on page 28) (not available on AR300 Series routers).

Commands to reset interface and IP MIB counters to zero, and changes to the display of MIB counters (“IP and Interface Counters” on page 29)

An extended range of telephony functions, on AR300 and AR310 routers (“Telephony (PBX) Functionality” on page 33)

Bandwidth limiting on Rapier i Series switch ports (“Bandwidth Limiting” on page 34)

Minor improvements The DHCP server is now able to successfully allocate addresses to Macintosh devices running Open Transport version 2.5.1 and 2.5.2.

To increase switch security, the INFILTERING parameter of the SET SWITCH PORT command now defaults to ON.

The INFILTERING parameter enables or disables Ingress Filtering of frames admitted according to the ACCEPTABLE parameter, on the specified ports. Each port on the switch belongs to one or more VLANs. If INFILTERING is set to ON, Ingress Filtering is enabled: any frame received on a specified port is only admitted if the port belongs to the VLAN with which the frame is associated. Conversely, any frame received on the port is discarded if the port does not belong to the VLAN with which the frame is associated. Untagged frames admitted by the ACCEPTABLE parameter are admitted, since they have the numerical VLAN Identifier (VID) of the VLAN for which the port in an untagged member. If OFF is specified, Ingress Filtering is disabled, and no frames are discarded by this part of the Ingress Rules.

This change does not apply to AR300 or AR700 Series routers.

Software Release 2.3.1 C613-10325-00 REV B

Image 5
Contents Software Release Rapier i Series IntroductionHardware Platforms Hot Swapping Network Service Modules Hot swap an NSM out of an NSM bay Software Features NSM Hot Swap Software Support Example output from the Show Interface commandDNS Caching Domain Name Server EnhancementsServer Selection Triggers for Ethernet Interfaces Automatic Nameserver ConfigurationTelnet Server Port Number Enco Channels IP Security IPsec Source Interface Enhancements Ospf on Demand Isdn Rule-based NAT Paladin Firewall EnhancementsInterface-based NAT Time Limited Rules New Command SyntaxRelease Note Software Release Required parameters for Firewall NAT rules Parameters Web Redirection with Reverse NAT RulesFirewall and IPsec Tunnel Further ExamplesStandard NAT Show Output Paladin Firewall Http Application Gateway ProxyHttp Filters Firewall Http Proxies and Firewall PoliciesADD Firewall POLICY=zone1 HTTPFILTER=banned.htp Http Cookies Show Firewall Policy Firewall Policy DebuggingHttp Proxy Filter File Vrrp Port MonitoringWhere Stepvalue is a decimal number in the range 1 to Border Gateway Protocol 4 BGP-4 Internet Protocol IP IP and Interface CountersTo reset IP interfaces, use the command Example output from the Show IP COUNTER=INTERFACE command Example output from the Show IP COUNTER=SNMP command Telephony PBX Functionality Errata Telnet Server Bandwidth LimitingEnable Telnet Server InstallationRelease Note