Saturday, January 29, 2011

【 Weak current College 】 see offsite affiliates how to implement multiple link load balancing---Power By 【 China power house network 】



Currently, many enterprises in order to improve the information publishing performance and reliability, to several telecom operators also leased Internet line, therefore has two or two above Internet connection link, these users want through multiple links using the network platform and resources, but this network construction forms, export revealed the following problems should be solved.
At the same time, for one or more of the regional branches of the company structure, organization and control enterprise remote branch office network access, so that the branch structure of enjoyment and company equally excellent network access environment, unified access control and security, has become a major challenge to be addressed.

Enterprise WAN link network problems:

1. a single point of failure for the link:

A single Internet connection link of any single point of failure, once the link failure will cause the entire corporate network.

2, link performance bottlenecks:

A single Internet connection link bandwidth is limited, can not meet all the users on the enterprise's internal Internet access required bandwidth, but also failed to meet a large number of Internet users access to the enterprise.

3, network security protection capacities:

Now anyone on the Internet are a wide variety of network attacks, the router itself on the network attacks protection capacity is very limited, DOS/DDoS network attack on wide area network consists of devices have a serious impact.

Existing multiple link, there is no connection between each other, this leads to two links cannot be completely independent, each use; two or more separate independent access, link, link up may not mean that bandwidth cannot be fully utilized; any link interruptions can affect the normal work of the Internet, lack of fault tolerance mechanisms.

Solution:

Faced with these problems, you should exit the enterprise network to deploy a Barracuda Load Balancer LinkBalancer330 link, as shown in the following figure:

LB330 link load balancer deployed in enterprise dedicated routers, H3C routers connect DDN line, and other locations of branch of the Internet, the branch office by headquarters of Netcom and telecommunications exports uniform external access to the Internet, at the same time enjoying all the internal access to the LAN.

This can be achieved on several internet access link load balancing, and at the same time achieve all outbound traffic (internal Office users to access the internet) and the inbound traffic (internet users access to an internal server) bi-directional load balance, and you can choose according to the smart algorithm, the optimal path to achieve optimal access speed. If when a ISP1 fails, the load balancer can be timely detected, and the internal and external network traffic to ISP2, network can still run correctly. LB330 link load balancers support up to 3 external links. In addition, LB330 link load balancers have against DoS/DDoS, effectively protect the internal network of servers from attack.

Programme features:

1. the increase in exports bandwidth, and provides redundant WAN links.

2. adoption of intelligent algorithms that are available through the optimal path to achieve internal and external network access.

3. can withstand DoS and DDoS attacks and effective protection of the intranet server.

Select the reason: Barracuda

1. the aggregated link bandwidth

Barracuda link equalization function buildings automatically aggregate bandwidth of multiple access, the administrator can choose the best price/performance ratio of a home or home access to multiple lower bandwidth access to the best of the best bandwidth investment protection.

2, link redundancy

If a link failure, Barracuda link equalization function automatically switches to the traffic of other good links, without the need for manual operation. Link failures, Barracuda can automatically detect periodically, once detected this link to return to normal, will enable this link again. Because Barracuda have link health detection capabilities, so be sure that link redundancy.

3. bandwidth management and QoS

Barracuda link balance machine buildings provide bandwidth management function, different applications can set different priorities, such as Web browsing and email is set to high priority on the protection of their bandwidth and streaming media and some point-to-point (p2p) applications can be configured to low priority. The priority setting of flexibility to ensure that the bandwidth low-priority application does not interfere with normal business applications.

4. traditional firewall (as a boundary equipment, Barracuda link balancing machines also have firewall function):

? A) network address translation (NAT), this feature allows the Barracuda link balance machine can be isolated from the external network to the intranet of a flow.

? B) one-to-one address mapping, one-to-one address mapping allows the Barracuda to public network IP directly assigned to a network device, while outside the network have access to internal applications, such as SMTP application.

? C) port translation, the same external address can be converted according to the port to a different internal server; multiple links of the same port can also convert to the same internal devices, which will facilitate external access to internal servers.

? D) IP access list that helps administrators to allow or block inbound or outbound traffic.

5Barracuda link balance machine-also provides the following network services:

? A) DHCPserver, Barracuda link balance machine according to the DHCP protocol to automatically assign IP addresses, and traditional DHCP server, you can view at any time to Hecht, or management of address allocation table.

? B) DNScachingserver, Barracuda link balance machine can be configured as a DNS query to the server, open the DNS cache function, the internal network are resolved through the Barracuda can, if the cache does not resolve, Zander will proxy wants ISP DNS queries and sends the results back to the internal network, so that common DNS query will be complete on the Barracuda. SSL offload and acceleration: avoid SSL encryption and decryption operations to the server the extra pressure to increase server capacity, ensure access of HTTPS, safe, reliable and efficient.






No comments:

Post a Comment