Contact Us



 

WHAT IS THE ALTEON APPLICATION SWITCH FAMILY?

Alteon Application Switches deliver application availability, performance and security by balancing and accelerating traffic and by giving IT Managers control over their network.

Alteon Application Switches integrate routing and switching by forwarding traffic at layer 2 speed using layer 4-7 information. Application switches are commonly used for:

  • Load balancing & Layer 7 content switching
  • Acceleration – application and SSL
  • Security / denial of service (DoS) protection
  • High availability (HA) – between servers / between sites
  • Bandwidth management – QoS
  • Traffic management – block rogue applications, worms
  • WAN link load balancing – multi-homing

Alteon Application Switches are designed from the ground up as an application switch dedicated to optimizing networks for application performance. Alteon Application Switches are commonly used in server farms, data centers, web hosting sites, and networks.

WHAT OPTIONS/LICENSES ARE AVAILABLE FOR THE ALTEON APPLICATION  SWITCH?

Advanced DoS License

  • Enables protection against denial of service (DoS) attacks

Bandwidth Management

Intelligent Traffic Manager

  • Enables full traffic management and policy enforcement including bandwidth management and advanced denial of service (DoS) protection

Link Optimizer

  • Enables multi-homing without BGP for increased availability, performance, & utilization in a simplified infrastructure

Upgrade key for Alteon Application Switch 2424-SSL

Global Server Load Balancer

  • Balances server traffic load across multiple physical sites
  • Ensures high application and content availability
  • Real-time disaster recovery

Symantec™ Intelligent Network Protection (requires ITM)

2424 SSL VPN Licenses 50/100/250/500/1000 user levels

WHAT ARE SOME OF THE RECENTLY ADDED FEATURES  IN THE ALTEON APPLICATION SWITCH ?
  • Simplified user-friendly browser-based interface (BBI) for switch configuration
  • Load balancing of SIP & TLS applications based on TCP protocols
  • Added TCP health checks to monitor the health of OCS SIP service
  • Enhanced high availability and load balancing solution for Microsoft Office Communication server (OCS)
  • Increased VLANs to 2048 to expand hosted customers for carriers (ROHS compliant E-models)
  • TACACS+ Accounting enhancement for better billing and security
  • Increased Syslog servers for better tracking and troubleshooting
  • New SNMP traps with advanced health check that enhances Nortel’s MCS 5100 (Multimedia Communication Server) disaster recovery scenarios
  • Increased management IP address to 128 for increased accessing flexibility of the application switch via Telnet, SSH, SNMP or BBI
  • Improved processing distribution based on source and destination IP address to increase load balancing performance in the patented Virtual Matrix Architecture

WHAT ARE THE KEY NEW IMPROVEMENTS IN THE BROWSER-BASED INTERFACE  (BBI)?
  • Streamlined menus provide configuration, monitoring, and wizard functionality
  • Basic Server Load Balancing wizard
  • Command Line Interface (CLI) commands are now available in BBI
  • Complex configuration parameters are divided into ‘basic’ and ‘advanced’
  • ‘Delete’ or ‘Bulk Edit’ allows edit of multiple entries

WHAT IS THE SIP/OCS SOLUTION IN THE OS 26 RELEASE?
  • Streamlined menus provide configuration, monitoring, and wizard functionality
  • Basic Server Load Balancing wizard
  • Command Line Interface (CLI) commands are now available in BBI
  • Complex configuration parameters are divided into ‘basic’ and ‘advanced’
  • ‘Delete’ or ‘Bulk Edit’ allows edit of multiple entries

WHAT IS TACACS+ ACCOUNTING?

These are accounting messages sent to a TACACS+ server for recording a user’s activities on the device for the purpose of billing and/or security. Release 24.0 adds records of users’ activities after they’re authorized and authenticated, more frequent response (every 1 second) to TACACS+ server, configurable Privilege Level for each account access and configurable TACACS+ Failsafe Mechanism in event of TACACS+ failure.

WHAT ARE SOME OF THE PERFORMANCE/FUNCTIONALITY FEATURES  INTRODUCED IN EARLIER VERSIONS OF THE ALTEON APPLICATION SWITCH  OPERATING SYSTEM?
  • Full Layer 7 SIP load balancing
  • Support for WAP - Wireless Access Protocol
  • Support for Windows Terminal Services
  • Support for IBM’s Workload Manager
  • Support for Oracle Enterprise Manager
  • Connection Pooling (TCP Multiplexing)
  • P2P Filtering and P2P Rate Limiting (ITM)
  • Enhanced Global Server Load Balancing
  • BOGON (bogus IP) Filtering
  • TPS Enforcement point
  • Multi Packet Inspection – for “chaining” of patterns groups in ITM
  • Packet Counters
  • Contract Based Mirroring to isolate traffic for troubleshooting
  • High Availability – Stateful Failover
  • Port Teaming
  • VPN Load Balancing Persistence – “glues” the IKE connection to the IPSec connection – perfect when VPN links flap
  • Buddy Server Health Check
  • IPv6 Support
  • XML Configuration API
  • Hosted Overlap NAT Support
  • 802.1s and 802.1w – support for Multiple Spanning Tree (MSTP) and Rapid Spanning Tree (RSTP) respectively
  • FTP Transfer Support
  • Comprehensive Boot Logging
  • Port Aliasing
  • Loadable Service Diagnostics –for easier trouble-shooting

WHAT KIND OF SIP SUPPORT DOES THE SOLUTION OFFER?
  • Manages and distributes SIP traffic over UDP
  • Maintains availability of SIP proxy with application level health checking and automatic failover
  • Ensures call persistence based on SIP call ID or source IP, even in the case of failover
  • Intelligent ICMP error handling
  • Improve performance by offloading proxy’s response to SIP client health/info checks
  • Secures proxy with wire speed NAT transparent to SIP clients
  • IP addresses of SIP proxies are hidden
  • Secures traffic with SSL acceleration
  • Extensive SIP gleaning

HOW HAS GSLB (GLOBAL SERVER LOAD BALANCING) BEEN IMPLEMENTED?

Starting from Release 23.01 Alteon Application Switch OS supports Distributed Site Selection Protocol (DSSP) v. 2.0 with:

  • Supports server response time, CPU utilization, session availability, and session utilization in the remote site updates
  • Can be configured to send updates over TCP ports besides port 80, and can handle additional parameter exchanges
  • Network Preference Table – supports multiple servers as opposed to two servers in previous versions
  • Rule and metric preference per virtual server/domain – each virtual server/domain can use different rules, listing different metric preferences, supporting load balancing vs. multiple site high availability
  • New static and load site selection metrics
  • Prioritization and weighting of GSLB metrics

WHAT KIND OF WIRELESS SUPPORT DOES THE ALTEON APPLICATION SWITCH  OFFER?

Wireless Application Protocol (WAP) is an open, global specification for a suite of protocols designed to allow wireless devices to communicate and interact with other devices. It empowers mobile users with wireless devices to easily access and interact with information and services instantly by allowing non-voice data, such as text and images, to pass between these devices and the Internet. Wireless devices include cellular phones, pagers, Personal Digital Assistants (PDAs), and other hand-held devices.

WAP supports most wireless networks and is supported by all operating systems with the goal of inter-operability. A WAP Gateway translates Wireless Markup Language (WML) – which is a WAP version of HTML–into HTML/HTTP so that requests for information can be serviced by traditional Web servers.

To load balance WAP traffic among available parallel servers, the switch must provide persistency so that the clients can always go to the same WAP gateway to perform WAP operation. The Alteon Application Switch OS allows you to configure the Alteon Application Switch to select a WAP gateway for each client request based on one of the following three methods:

  • Static session entry via TPCP – Transparent Proxy Control Protocol. TPCP is a proprietary protocol that is used to establish communication between RADIUS servers and the Alteon Application Switch
  • RADIUS snooping
  • RADIUS/WAP persistence

WHAT IS IBM’S ENTERPRISE WORKLOAD MANAGER AND IBM’S SASP  PROTOCOL?

IBM’s Enterprise Workload Manager Enterprise Workload Manager (EWLM) is a product in the IBM Virtualization Engine Suite for Servers. EWLM dynamically monitor server resources and provides input on load balancing decisions. The Workload Manager takes into account a server’s CPU, storage capacity, and network traffic in any final weighting decisions. The Workload Manager uses an implementation of the SASP protocol to perform this task.

IBM’s WLM software allows you to specify end-to-end performance goals for distributed requests. WLM runs on an entity responsible for reporting or managing a group of members. This entity is known as the Domain Manager (DM). DM recommends a weight for each application/server in the group. This weight recommendation is based on the business importance, topology and ability of the system to meet its business goals. This recommended weight helps the application switch make intelligent server load balancing decisions.

DESCRIBE SUPPORT FOR MICROSOFT WINDOWS TERMINAL SERVICES

Windows Terminal Services refer to a set of technologies that allow Windows users to run Windows-based applications remotely on a computer running as the Windows Terminal Server. The Alteon Application Switch OS v24.0 includes load balancing and persistence options aimed specifically at Windows Terminal Services.

Application health checking and load balancing can be performed on Windows Terminal Servers via support for Microsoft’s WTS protocol (RDP).

DOES THE ALTEON APPLICATION SWITCH SUPPORT RSTP AND MSTP?

Alteon Application Switch OS v24.0 and onwards supports Multiple Spanning Tree Protocol (MSTP) and Rapid Spanning Tree Protocol (RSTP) as defined in the IEEE 802.1S (MSTP) and 802.1W (RSTP) standards.
In Alteon Application Switch OS v24.0, MSTP is implemented such that up to 2048 VLANs can be mapped to any of the 16 spanning tree instances. Each spanning tree instance handles multiple VLANs that have the same Layer 2 topology but each spanning tree instance can have a topology independent of other instances. As well, MSTP provides multiple forwarding paths for data traffic, enables load balancing, and improves overall network fault tolerance.

Rapid Spanning Tree Protocol (RSTP) provides rapid convergence of the spanning tree and provides for the fast reconfiguration critical for networks carrying delay-sensitive traffic such as voice and video.

IEEE 802.1s Multiple Spanning Tree extends the IEEE 802.1w Rapid Spanning Tree Protocol through multiple Spanning Tree Groups. MSTP maintains up to 16 spanning-tree instances that correspond to STP Groups 1-16.

WHAT IS CONNECTION POOLING (TCP MULTIPLEXING)?

Connection pooling significantly increases network performance by reducing connection load on servers and by avoiding the constant interruption of connection setup and tear down.

In a connection pooled environment, a pool of server connections is maintained for servicing client connections. When a client requests a connection, an unused connection is selected from the server pool and used to service the request. When the client request is complete, the server connection is returned to the pool and the client connection dropped.

In release v23.0 and higher, this feature will only support the HTTP and HTTPS protocols over TCP with delayed binding enabled.

WHAT SECURITY FEATURES DOES THE SWITCH SUPPORT?

The Alteon Application Switch builds security into the fabric of your network by providing unmatched protection against denial of service (DoS) attacks, secure management, secure communications through award winning SSL VPN, SSL acceleration, blocking rogue applications and high availability (including active/active HA) and multi-homing.

HOW DOES THE ALTEON APPLICATION SWITCH DEFEND AGAINST DOS  ATTACKS?

The Alteon Application Switch uses a number of technologies to defend against DoS attacks. These include:

  • Delayed binding
  • Inspection for malformed packets
  • Deep packet inspection for vulnerability or exploit signatures
  • Rate limiting of ARP, ICMP, TCP and UDP protocols
  • Traffic shaping
  • Access control lists
  • Bogon (bogus IP) filtering

WHAT SSL INTEGRATION FEATURES ARE AVAILABLE ON ALTEON APPLICATION SWITCHES?

The Alteon Application Switches with integrated SSL (2424-SSL) support all of the following SSL features:

  • Perform load balancing and other traffic management services on encrypted sessions
  • Maintain encryption to back-end servers utilizing true end-to-end encryption with integrated traffic management
  • Plug-n-play cluster scalability
  • SSL acceleration to offload server processing

WHAT IS WAN LINK MULTI-HOMING?

WAN link load balancing allows you to configure the Alteon Application Switch to balance user session traffic among a pool of available WAN Links.

To handle the high volume of data on the Internet, corporations are using more than one Internet Service Provider (ISP) as a way to increase reliability of Internet connections. Such enterprises with more than one ISP are referred to as being multi-homed. In addition to reliability a multi-homed network architecture enables enterprises to distribute load among multiple connections and to provide more optimal routing.

The Alteon Application Switch software provides a solution for enterprises that wish to optimize utilization of Internet connectivity. This comprehensive solution helps enterprises to direct traffic over the best connection to maximize performance, maximize corporate bandwidth investments, and effectively remove existing deployment and management barriers for multi-homed networks.

WHAT ARE THE ADVANTAGES OF USING THE ALTEON APPLICATION SWITCH   FOR WAN LINK MULTI-HOMING?

The Alteon Application Switch:

  • Makes multi-homing easy to configure
  • It provides redundancy (if one of the ISP links go down, then the other ISP link takes over)
  • It provides backup (you can use a low speed ISP link as a backup for a high speed ISP link)
  • If an ISP reaches its session limit, then Alteon Application Switch automatically deletes it from the group
  • It is easy to manage

What is ITM?

Intelligent Traffic Management (ITM) is an application built into the Alteon Application Switch operating system that uses packet consolidation and deep packet inspection to examine, classify and manage application traffic flows. ITM is used to ensure that applications receive the appropriate bandwidth priority and security treatment. Application traffic can be monitored, discarded, prioritized, rate limited, or rate shaped.

Unlike many other traffic analysis solutions, ITM inspects and shapes IP traffic at all layers.

WHAT ARE ITM’S FEATURES?
  • Allow or deny traffic
  • Bogon support to deny traffic from unassigned IP ranges
  • Rate limit traffic
  • IP limit traffic
  • Shape traffic
  • Redirect traffic
  • Generate detailed traffic reports and trends
  • Change Differentiated Services Code Point (DSCP) value
  • Classify non-IP traffic
  • Identify and block rogue applications such as Skype, Bittorrent and eMule
  • Guarantee bandwidth (VoIP, Streaming Media, P2P, etc.)
  • DoS detection and remediation
  • User definable application signatures for flexible application flow inspection
  • Complete monitoring and reporting package
  • Single box solution enables intelligent traffic management, security acceleration, and application switching while reducing network costs
  • Scalable architecture and hardware engine to ensure ultra-high performance
  • Tight integration with Symantec’s Intelligent Network Protection and Symantec’s LiveUpdate to detect the latest and most critical threats.

WHAT ARE THE COMPONENTS OF ITM?

ITM is comprised of three distinct components; the management module (ASEM client), the processing module, and the reporting module (ASEM server). The processing module runs on the Alteon Application Switch, the management module is a Java applet that runs on ASEM client and the reporting module is a Java application running a server.

HOW DOES THE ALTEON APPLICATION SWITCH SUPPORT THE ORACLE  ENTERPRISE MANAGER?

To advance efficiency and improve optimization at a low-cost to the customers, an Alteon Application switch “plug-in” is now available for the Oracle Enterprise Manager 10g Grid Control. Using open standards-based XML API, the plug-in enables customers to view, in real-time, switch statistics such as CPU utilization, Port statistics, server load balancing information and other switch monitoring information. With both Oracle Enterprise Manager 10g Grid Control and Alteon Application switch plug-in, customers can verify and examine the network as well as the Oracle data center more reliably and efficiently.

HOW DOES IT WORK WITH MICROSOFT AND NORTEL PRODUCTS TO CREATE  AN ENTERPRISE-CLASS MULTIMEDIA COMMUNICATIONS SOLUTION?

The Microsoft-Nortel Converged Office solution integrates Nortel IP telephony systems with Live Communications Server 2005 to provide SIP-based, business-grade desktop call control. The integration between Office Communicator and Nortel Communication Server (CS) 1000 enables end users to determine when colleagues are available and access communications from the desktop phone or from Office Communicator.

The Alteon Application Switch has been designed and tested to tightly integrate with the Microsoft-Nortel Converged Office solution to enhance the availability, performance and security of the solution. The Alteon Application Switch allows the Microsoft-Nortel Converged Office solution to be deployed across the enterprise through peerless load-balancing, instant in-call failover and security against intrusions and denial of service attacks.

WHAT IS THE VIRTUAL MATRIX ARCHITECTURE (VMA)?

VMA is a fast, rich, flexible architecture that makes efficient use of the entire system’s capacity while providing the parallel performance of distributed processing. With VMA, all processors (switch, management, application) share load, but no single processor must see all traffic. VMA ensures that all the processing available on a Alteon Application Switch is applied optimally to the incoming traffic, ensuring high performance and eliminating bottlenecks.