Вы находитесь на странице: 1из 40

1.

Cache
1.1

application WWW , , , E-mail, MPEG WAN

1.2 Cache

Cache Server WAN Cache Server ,

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

1. Cache
1.3 Caching

Passive Caching

: Request content server content : : , , Cache object

Active Caching

: content server content , Scheduled caching, Automated active caching

Scheduled caching : object

Automated active caching : object object object

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

1. Cache
1.4 Cache deployment ()

Proxy mode

: Client cache server


Client proxy server cache client browser(Web cache ) proxy server Cache server

Proxy mode

Internet

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

1. Cache
1.4 Cache deployment

Transparent mode

: Client cache cache traffic redirection

Client , application server cache server Redirection L4 switch, WCCP router Cache server cache bypass

Transparent mode

L4 switch WCCP based router

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

1. Cache
1.5 Cache protocol

WCCP (Web Cache Control Protocol)

Transparent caching cache server Cisco IOS protocol WCCP router HTTP, NNTP, MMS, RTSP protocol cache server

cache server cache HTTP, NNTP, MMS, RSTP cache server

ICP (Internet Cache Protocol)

Cache server cache object cache server protocol

UDP

CARP (Cache Array Routing Protocol)

cache server protocol

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

2. L4 switch
2.1 Layer 4 Switch

Layer 4 field packet forwarding

2.2 Layer 4 Switch


Layer 2 switching : MAC address MAC table broadcast Layer 3 switching : Destination IP Routing table IP packet forwarding Layer 4 switching : IP address TCP, UDP port number packet forwarding L2, L3, L4 protocol field Access List traffic filtering application data flow redirection

Routing table destination IP TCP, UDP port number network packet forwarding

transparent cache server, DNS

application Load balancing

forwarding
6

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

2. L4 switch
2.3 Layer 4 Switch

DNS Radius Firewall Farm

VPN Farm

HTTP, FTP Server Farm

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

2. L4 switch
2.4 Aplication Redirection

Application(DNS, HTTP) IP forwarding Web Cache, DNS server

Web Cache Redirection

Web Cache

Web cache Web cache

HTTP WAN

Web Cache L4 switch redirection


L4 switch HTTP cache cache

Server client web cache

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

2. L4 switch
2.4 Aplication Redirection ()

DNS Redirection

DNS request IP DNS DNS L4 redirection

DNS redirection

DNS DNS

DNS DNS DNS DNS DNS DNS load

Mobile DNS

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

2. L4 switch
2.4 Aplication Redirection ()

Host C

Host B Host A Cache Servers

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

10

2. L4 switch
2.5 Server Load Balancing (SLB)

Load balancing IP IP L4 L4 Load forwarding forwarding application

L4 Server Load balancing

Round Robin

Active feed back loop (black hole ) performance load

Weighted Round Robin

Round Robin
performance load

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

11

2. L4 switch
2.5 Server Load Balancing (SLB) ()

L4 Server Load balancing

L4 black hole Server performance load Application (HTTP, FTP, DNS, RADIUS ) backup server ASP(Application Service Provider) server farm

Server Load Balancing


Remote Backup/Overflow

DNS
10.0.0.1 To 100.1.1.1

10.0.0.2

FTP HTTP

Clients

DNS FTP
VIP 100.1.1.1

HTTP

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

12

2. L4 switch
2.6 Firewall Load Balancing (FLB)

fireWall fireWall fireWall Source IP, Destination IP hash forwarding fireWall FireWall L4 switch fireWall forwarding ICMP echo message FireWall

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

13

2. L4 switch
2.6 Firewall Load Balancing (FLB) ()

2 FLB
FireWalls

Secured Network L4 Switch L4 Switch

Internet

4 FLB (L4 )
L4 Switch L4 Switch

Secured Network L4 Switch

Internet

FireWalls

L4 Switch

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

14

3. AceDirector 3 (AD3)
3.1

(backplane) : 8G : 20MB DRAM

10/100 Mbps 8 Port * 2 Mbyte Uplink 2 Mbyte Management 2 Mbyte

Interface : 10/100base-Tx 8port, 1000base-Sx 1port Connection : 296K Connection

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

15

3. AceDirector 3 (AD3)
3.2

CPU ASIC(WebIC) 8Gbps RISC Pentium CPU 2 Packet Performance , Flash Configuration OS

L4 RISC , L3 Packet Forward Engine

L4 Session 2 Mbyte SDRAM H/W Web Os , Web OS ASIC , MAC


Management Module

RISC RISC

Multi-Gigabit switch backplane

4MB SRAM 2MB Flash

RISC

Switch Modules

Fwd Engine
ASIC

RISC RISC

Fwd Engine
ASIC

Fwd RISC RISC

Engine

RISC 2MB

.....

RISC RISC ASIC 2MB 2MB

Uplink Module

2MB

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

16

3. AceDirector 3 (AD3)
3.3

Feature Set SLB(Server Load Balancing) SLB with NAT WCT with NAT WCR Dynamic NAT URL Parsing Filters

Session 336 K 168 K 168 K 256 K 168 K 168 K 256 K

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

17

3. AceDirector 3 (AD3)
3.4

Auto, Half, Full Duplex ACE Director 3 10/100Mbps Port 802.3(10Mbps), 802.3u(100Mbps) 802.3x(Flow Control) 802.2(LLC) 802.1d(Spanning Tree) ACE Director 3 RIP Static Routing Protocol Load Balancing VIP : Round-Robin, Hash, Least-Connections, Min-Miss Web Cache Redirection EMS GUI View , , SNMP MIB

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

18

4. Configuration
4.1

10.254.100.100

Cache server

10.51.1.84 Port 5

10.51.1.110

Client

Client

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

19

4. Configuration
4.2 console

Speed : 9600 Data bit : 8 Parity bit : none Stop bit : 1 Flow Cntl : none

To AD3 (Male) 2 3 5

To PC (female) 2 3 5

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

20

4. Configuration
4.3
Boot version 8.0.49 Press <esc> for maintenance kernel.... The switch is booted with factory default configuration. To ease the configuration of the switch, a "Set Up" facility which

ACEdirector 3
Rebooted because of power cycle. Booting complete 23:51:08 Fri Dec 14, 2001: Version 8.0.49 from FLASH image1, factory default config block. Enter password: admin <--------

will prompt you with those configuration items that are essential
to the operation of the switch is provided. Would you like to run "Set Up" to configure the switch? [y/n] n -----------------------------------------------------------[Main Menu] info stats cfg oper boot maint diff apply save revert exit >> Main# - Information Menu - Statistics Menu - Configuration Menu - Operations Command Menu - Boot Options Menu - Maintenance Menu - Show pending config changes [global command] - Apply pending config changes [global command] - Save updated config to FLASH [global command] - Revert pending or applied changes [global command] - Exit [global command, always available]

System Information at 23:51:12 Fri Dec 14, 2001 ACEdirector 3 sysName: sysLocation: Last boot: 23:51:08 Fri Dec 14, 2001 (power cycle) MAC address: 00:60:cf:42:61:90 Hardware Revision: A Hardware Part No: 200009a02 Software Version 8.0.49 (FLASH image1), factory default configuration. IP (If 1) address: 0.0.0.0

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

21

4. Configuration
4.4 help

>> Main# [Main Menu] info stats cfg oper boot maint diff apply save revert

Tab

------------------------------------------------------------ Information Menu - Statistics Menu - Configuration Menu - Operations Command Menu - Boot Options Menu - Maintenance Menu - Show pending config changes [global command] - Apply pending config changes [global command] - Save updated config to FLASH [global command] - Revert pending or applied changes [global command]

exit

- Exit

[global command, always available]

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

22

4. Configuration
4.5 L4 switch IP address

>> Main# /cfg/ip/if 1 ------------------------------------------------------------

[IP Interface 1 Menu]


addr mask broad vlan ena dis del cur - Set IP address - Set subnet mask - Set broadcast address - Set VLAN number - Enable IP interface - Disable IP interface - Delete IP interface - Display current interface configuration >> IP Interface 1# apply -----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. Also note that the following changes are still pending, waiting for a reset of the switch to take effect: >> IP Interface 1# addr 10.51.1.84 Current IP address: 0.0.0.0 255.0.0.0 10.255.255.255 >> IP Interface 1# New pending IP address: 10.51.1.84 Pending new subnet mask: Pending new broadcast address: Current value... new value... ------------------------------Use of BOOTP enabled => disabled >> IP Interface 1# ena Current status: disabled New status: enabled

Switch is set to use BOOTP for IP address assignment. Do you want to DISABLE the use of BOOTP? [y/n] n Use of BOOTP not changed.

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

23

4. Configuration
4.6 Cache server IP
>> IP Interface 1# /cfg/slb/real 1 -----------------------------------------------------------[Real server 1 rip name weight maxcon tmout backup inter retry DOWN restr UP addlb remlb - Add URL path for URL load balance - Remove URL path for URL load balance - Set number of successful attempts to declare server Menu] - Set IP addr of real server - Set server name - Set server weight - Set maximum number of connections - Set minutes inactive connection remains open - Set backup real server - Set interval between health checks - Set number of failed attempts to declare server

ena dis

- Enable real server - Disable real server

del
cur

- Delete real server


- Display current real server configuration cache server IP 0.0.0.0

>> Real server 1 # rip 10.51.1.110 Current real server IP address:

New pending real server IP address: 10.51.1.110 Warning: server did not respond to ping. >> Real server 1 # ena Current status: disabled New status: enabled

remote
proxy submac nocook

- Enable/disable remote site operation


- Enable/disable client proxy operation - Enable/disable source MAC address substitution - Enable/disable no available URL cookie operation

>> Real server 1 # apply -----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. >> Real server 1 #

exclude - Enable/disable exclusionary string matching

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

24

4. Configuration
4.7 Real server group
>> Real server 1 # /cfg/slb/group 1 -----------------------------------------------------------[Real server group 1 Menu]

metric
health backup name add rem del cur

- Set metric used to select next server in group


- Set health check type - Set backup real server or group - Set real server group name - Add real server - Remove real server - Delete real server group - Display current group configuration

content - Set health check content

realthr - Set real server failure threshold

>> Real server group 1# add 1 Real server 1 added to real server group 1. >> Real server group 1# apply -----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. >> Real server group 1#

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

25

4. Configuration
4.8 Client http request redirection filter
>> Real server group 1# /cfg/slb/filt 2 -----------------------------------------------------------[Filter 2 Menu]

adv
smac dmac sip smask dip dmask proto sport dport action group rport nat invert ena dis del cur

- Filter Advanced Menu


- Set source MAC address - Set destination MAC address - Set source IP address - Set source IP mask - Set destination IP address - Set destination IP mask - Set IP protocol - Set source TCP/UDP port or range - Set destination TCP/UDP port or range - Set action - Set real server group for redirection - Set real server port for redirection - Set which addresses are network address translated - Enable/disable filter inversion - Enable filter - Disable filter - Delete filter - Display current filter configuration

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

26

4. Configuration
4.8 Client http request redirection filter ()

>> Filter 2

# sip any

source IP any

>> Filter 2

# action redir redir

Current source address:

Current action: allow Pending new action: >> Filter 2

New pending source address: any >> Filter 2 # dip any destination IP any

# rport http

redirection port 0 http filter group 1

Current destination address:

Current real server port: New pending real server port: >> Filter 2 # group 1

New pending destination address: any >> Filter 2 # proto tcp tcp source port any any tcp protocol any

Current protocol: Pending new protocol: >> Filter 2

Current real server group:

New pending real server group: 1 >> Filter 2 New status: # ena enabled

# sport any

Current source port or range:

Current status: disabled

Pending new source port or range: >> Filter 2 # dport http

>> Filter 2
destination service port any http Current destination port or range: Pending new destination port or range:

# apply

-----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. >> Filter 2 #

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

27

4. Configuration
4.9 Non-cached traffic bypass default filter
>> Filter 2 [Filter 224 # ../filt 224 Menu] >> Filter 224 # sip any any

Current source address:

------------------------------------------------------------

New pending source address: any >> Filter 224 # dip any any

adv
smac dmac sip smask dip dmask proto sport dport action group rport nat invert ena dis del cur

- Filter Advanced Menu


- Set source MAC address - Set destination MAC address - Set source IP address - Set source IP mask - Set destination IP address - Set destination IP mask - Set IP protocol - Set source TCP/UDP port or range - Set destination TCP/UDP port or range - Set action - Set real server group for redirection - Set real server port for redirection - Set which addresses are network address translated - Enable/disable filter inversion - Enable filter - Disable filter - Delete filter - Display current filter configuration

Current destination address:

New pending destination address: any >> Filter 224 # proto any any any

Current protocol: Pending new protocol: >> Filter 224

# action allow allow

Current action: allow Pending new action: >> Filter 224 # ena

Current status: disabled

New status:
>> Filter 224

enabled
# apply

-----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. >> Filter 224 #

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

28

4. Configuration
4.10 Client port filter
>> SLB port 5# add 2 Filter 2 added to port 5. filter 2

>> SLB port 5# add 224


>> Filter 224 # ../port 5 [SLB port 5 Menu] client server - Enable/disable client processing - Enable/disable server processing client port Filter 224 added to port 5. >> SLB port 5# filt enable

filter 224

------------------------------------------------------------

Current port 5 filtering: disabled New port 5 filtering: >> SLB port 5# apply -----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. Also note that the following changes are still pending, waiting for a reset of the switch to take effect: Current value... Filtering: Filter 2: Filter 224: >> SLB port 5# new value... ------------------------------enabled

hotstan - Enable/disable hot-standby processing intersw - Enable/disable inter-switch processing proxy pip filt add rem - Enable/disable use of PIP for ingress traffic - Set Proxy IP address for port - Enable/disable filtering - Add filter to port - Remove filter from port

cur

- Display current port configuration

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

29

4. Configuration
4.11 configuration

>> SLB port 5# .. [Layer 4 Menu] real group virt filt port gslb url sync adv on

(layer 4)

------------------------------------------------------------ Real Server Menu - Real Server Group Menu - Virtual Server Menu - Filtering Menu - Layer 4 Port Menu - Global SLB Menu - URL Resource Definition Menu - Config Synch Menu - Layer 4 Advanced Menu - Globally turn Layer 4 processing ON

>> Layer 4# on Current status: OFF New status: ON

>> Layer 4# apply -----------------------------------------------------------------Apply complete; don't forget to "save" updated configuration. >> Layer 4#

off
cur

- Globally turn Layer 4 processing OFF


- Display current Layer 4 configuration

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

30

4. Configuration
4.12

>> Layer 4# save Request will first copy the FLASH "active" config to "backup", then overlay FLASH "active" with new config. Confirm saving to FLASH [y/n]: y Compressing FLASH................ New config successfully saved to FLASH. Switch is currently set to use factory default config block on next boot. Do you want to change that to the active config block? [y/n] y Next boot will use active config block. >> Layer 4#

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

31

4. Configuration
4.13

>> Main# /info/slb

slb

-----------------------------------------------------------[Server Load Balancing Information Menu] sess real virt filt port gslb dump - Session Table Information Menu - Show real server information - Show virtual server information - Show redirect filter information - Show port information - Show GSLB information - Show all layer 4 information

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

32

4. Configuration
4.14 configuration

/cfg/port 1 ena

>> Main# /cfg/dump


script start "ACEdirector 3" 4 /**** DO NOT EDIT THIS LINE! /* Configuration dump taken 3:21:16 Sat Dec 15, 2001 /* Version 8.0.49, Base MAC address 00:60:cf:42:61:90 /* /cfg/sys idle 5 bootp ena snmp w http ena wport 80 /* /* /* /* /*

tag dis
pvid 1 cont 256 /cfg/port 1/fast speed any fctl both mode any auto on /cfg/port 2 ena tag dis pvid 1 cont 256 /cfg/port 2/fast speed any fctl both mode any auto on

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

33

4. Configuration
4.14 configuration ()

/cfg/port 3 ena

/cfg/port 5 ena

tag dis
pvid 1 cont 256 /cfg/port 3/fast speed any fctl both mode any auto on /cfg/port 4 ena tag dis pvid 1 cont 256 /cfg/port 4/fast speed 0? fctl none mode 0? auto off

tag dis
pvid 1 cont 256 /cfg/port 5/fast speed any fctl both mode any auto on /cfg/port 6 ena tag dis pvid 1 cont 256 /cfg/port 6/fast speed any fctl both mode any auto on

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

34

4. Configuration
4.14 configuration ()

/cfg/port 7 ena /cfg/port 9

tag dis
pvid 1 cont 256 /cfg/port 7/fast speed any fctl both mode any auto on /cfg/port 8 ena tag dis pvid 1 cont 256 /cfg/port 8/fast speed any fctl both mode any auto on

ena
tag dis pvid 1 cont 256 /cfg/port 9/gig fctl both auto on /* /* /* /* /* /* /* /* /* /*

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

35

4. Configuration
4.14 configuration ()

/cfg/ip rearp 10 metrc strict /cfg/ip/if 1 ena addr 10.51.1.84 mask 255.0.0.0 broad 10.255.255.255 vlan 1 /cfg/ip/frwd/on dirbr disabled /* /* /cfg/slb/url/redir cooki dis

/cfg/slb/url/lb add "any"

/*
/* /cfg/slb on /cfg/slb/adv direc dis imask 255.255.255.255 mnet 0.0.0.0 mmask 255.255.255.255 pmask 255.255.255.255 grace dis btshf 0 matrix ena /cfg/slb/real 1 ena rip 10.51.1.110 weight 1 maxcon 200000

urlal ena
nocache ena hash disable header dis host

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

36

4. Configuration
4.14 configuration ()

backup none inter 2

remot dis
tmout 10 retry 4 restr 8 proxy ena submac dis nocook dis exclude dis /cfg/slb/group 1 metric leastconns backup none healt tcp realthr 0 add 1 /* /* /cfg/slb/gslb/lookup lookups disabled

/* /* /cfg/slb/filt 2 ena actio redir sip any smask 0.0.0.0 dip any dmask 0.0.0.0 proto tcp sport any dport http group 1

rport 80
/cfg/slb/filt 2/adv

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

37

4. Configuration
4.14 configuration ()

/cfg/slb/filt 224 ena

actio allow
sip any smask 0.0.0.0 dip any dmask 0.0.0.0 proto any /cfg/slb/filt 224/adv /cfg/slb/port 5/ filt ena add 2 add 224 /* /* /* /* /script end /**** DO NOT EDIT THIS LINE! >> Configuration#

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

38

4. Configuration
4.15 configuration backup

4.13 dump text file . , file file console configuration .

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

39

4. Configuration
4.16 default configuration
>> Main# boot -----------------------------------------------------[Boot Options Menu] image conf tftp reset cur - Select software image to use on next boot - Select config block to use on next boot - Download new software image via TFTP - Reset switch [WARNING: Restarts Spanning Tree] - Display current boot options

>> Boot Options# conf Currently set to use active config block on next boot. Specify new block to use ["active"/"backup"/"factory"]: factory Next boot will use factory default config block instead of active. >> Boot Options# reset

Reset will use software "image1" and the factory default config block.
>> Note that this will RESTART the Spanning Tree, >> which will likely cause an interruption in network service. Confirm reset [y/n]: y Resetting at 4:27:18 Sat Dec 15, 2001...

Copyrights 2001 by Comtec Informations Co., Ltd. All rights reserved

40

Вам также может понравиться