Kodi Mungatani Kuti Mugwiritse Ntchito Inline Bypass Tap Kuti Mupewe Kuchuluka Kwambiri Kapena Kugwa kwa Zida Zachitetezo?

Bypass TAP (yomwe imatchedwanso bypass switch) imapereka ma doko olowera osalephera a zida zotetezera zolumikizidwa monga IPS ndi ma firewall a m'badwo wotsatira (NGFWS). Bypass switch imayikidwa pakati pa zida zotetezera ndi kutsogolo kwa zida zotetezera kuti ipereke malo odalirika pakati pa netiweki ndi gawo lachitetezo. Amapereka chithandizo chokwanira ku ma netiweki ndi zida zotetezera kuti apewe chiopsezo cha kuzima kwa netiweki.

Yankho 1 1 Link Bypass Network Tap (Bypass Switch) - Yodziyimira payokha

Ntchito:

Bypass Network Tap (Bypass Switch) imalumikiza ku zipangizo ziwiri za netiweki kudzera pa Link ports ndipo imalumikiza ku seva ya chipani chachitatu kudzera pa Device ports.

Choyambitsa cha Bypass Network Tap (Bypass Switch) chimayikidwa ku Ping, yomwe imatumiza zopempha za Ping motsatizana ku seva. Seva ikasiya kuyankha ma ping, Bypass Network Tap (Bypass Switch) imalowa mu bypass mode.

Seva ikayamba kuyankhanso, Bypass Network Tap (Bypass Switch) imabwerera ku throughput mode.

Pulogalamuyi ingagwire ntchito kudzera mu ICMP(Ping) yokha. Palibe mapaketi a kugunda kwa mtima omwe amagwiritsidwa ntchito kuyang'anira kulumikizana pakati pa seva ndi Bypass Network Tap(Bypass Switch).

2

Yankho 2 Network Packet Broker + Bypass Network Tap (Bypass Switch)

Wogulitsa Paketi ya Network (NPB) + Kudutsa Network Tap (Kusintha kwa Bypass) -- Mkhalidwe wabwinobwino

Ntchito:

Bypass Network Tap (Bypass Switch) imalumikiza ku zipangizo ziwiri za netiweki kudzera pa Link ports ndi Network Packet Broker (NPB) kudzera pa Device ports. Seva yachitatu imalumikiza ku Network Packet Broker (NPB) pogwiritsa ntchito zingwe zamkuwa ziwiri za 1G. Network Packet Broker (NPB) imatumiza mapaketi a kugunda kwa mtima ku seva kudzera pa doko #1 ndipo imafuna kuwalandiranso pa doko #2.

Choyambitsa cha Bypass Network Tap (Bypass Switch) chayikidwa ku REST, ndipo Network Packet Broker (NPB) imayendetsa pulogalamu ya bypass.

Magalimoto ali mu njira yolumikizirana:

Chipangizo 1 ↔ Chosinthira/Chokani pa Njira ↔ NPB ↔ Seva ↔ NPB ↔ Chosinthira/Chokani pa Njira ↔ Chipangizo 2

3

Wogulitsa Paketi ya Network (NPB) + Wodutsa Pakani ya Network (Chosinthira Panjira) -- Wodutsa Panjira ya Software

Kufotokozera kwa Mapulogalamu Oletsa Kupita Patsogolo:

Ngati Network Packet Broker (NPB) sazindikira ma packet a kugunda kwa mtima, izi zithandiza kuti pulogalamu idutse.

Kapangidwe ka Network Packet Broker (NPB) kamasinthidwa kokha kuti katumize anthu obwera ku Bypass Network Tap (Bypass Switch), motero kuyikanso anthu obwera ku linki yamoyo popanda kutayika kwambiri kwa paketi.

Bypass Network Tap (Bypass Switch) sikuyenera kuyankha konse chifukwa njira zonse zodutsamo zimachitidwa ndi Network Packet Broker (NPB).

Kudutsa kwa Magalimoto mu Mapulogalamu Osaloledwa:

Chipangizo 1 ↔ Chosinthira/Chokani pa Njira ↔ NPB ↔ Chosinthira/Chokani pa Njira ↔ Chipangizo 2

1

Wogulitsa Paketi ya Network (NPB) + Wodutsa Pakani ya Network (Chosinthira Chakudutsa) -- Chodutsa cha Hardware

Kufotokozera kwa Hardware Bypass:

Ngati Network Packet Broker (NPB) yalephera kapena kulumikizana pakati pa Network Packet Broker (NPB) ndi Bypass Network Tap (Bypass Switch) kwachotsedwa, Bypass Network Tap (Bypass Switch) imasintha kupita ku bypass mode kuti ulalo wa nthawi yeniyeni ugwire ntchito.

Pamene Bypass Network Tap (Bypass Switch) ilowa mu bypass mode, Network Packet Broker (NPB) ndi seva yakunja zimalambalalidwa ndipo sizilandira magalimoto aliwonse mpaka Bypass Network Tap (Bypass Switch) ibwerera ku throughput mode.

Njira yodutsa imayambika pamene Bypass Network Tap (Bypass Switch) siilumikizidwanso ku magetsi.

Magalimoto osagwiritsidwa ntchito pa zipangizo zamagetsi:

Chipangizo 1 ↔ Chosinthira/Chokani pa Cholowera ↔ Chipangizo 2

4

Yankho 3 Mabomba Awiri a Bypass Network (Maswichi a Bypass) pa ulalo uliwonse

Malangizo okonza:

Mu dongosololi, ulalo umodzi wa mkuwa wa zipangizo ziwiri zolumikizidwa ku seva yodziwika umadutsa ndi ma Bypass Network Taps awiri (Bypass Switches). Ubwino wa izi kuposa njira imodzi yodutsa ndi wakuti pamene kulumikizana kwa network packet broker (NPB) kwasokonekera, seva imakhalabe gawo la ulalo wamoyo.

5

Ma Tap a Network a Bypass awiri (Ma Switch a Bypass) pa ulalo uliwonse - Software Bypass

Kufotokozera kwa Mapulogalamu Oletsa Kupita Patsogolo:

Ngati Network Packet Broker (NPB) siizindikira mapaketi a kugunda kwa mtima, idzalola mapulogalamu kudutsa. Bypass Network Tap (Bypass Switch) sikuyenera kuchitapo kanthu konse chifukwa ma bypass onse amachitidwa ndi Network Packet Broker (NPB).

Kudutsa kwa magalimoto mu mapulogalamu odutsa:

Chipangizo 1 ↔ Bypass Switch/Tap 1 ↔ Network Packet Broker(NPB) ↔ Bypass Switch/Tap 2 ↔ Chipangizo 2

6

 

Ma Tap a Network a Bypass awiri (Ma Switch a Bypass) pa ulalo uliwonse - Hardware Bypass

Kufotokozera kwa Hardware Bypass:

Ngati Network Packet Broker (NPB) yalephera kapena kulumikizana pakati pa Bypass Network Tap (Bypass Switch) ndi Network Packet Broker (NPB) kwatayika, ma Bypass Network Taps (Bypass Switches) onse awiri amasinthidwa kukhala bypass mode kuti asunge ulalo wogwira ntchito.

Mosiyana ndi makonda a "1 Bypass pa ulalo uliwonse", seva ikadali mu ulalo womwe ulipo.

Magalimoto osagwiritsidwa ntchito pa zipangizo zamagetsi:

Chipangizo 1 ↔ Chosinthira/Chotsani 1 ↔Seva ↔ Chosinthira/Chotsani 2 ↔ Chipangizo 2

7

Yankho 4 Ma Tap awiri a Bypass Network (Ma Switch a Bypass) amakonzedwa pa ulalo uliwonse pamasamba awiriwa

Malangizo okhazikitsa:

Zosankha: Ma Network Packet Broker awiri (NPBs) angagwiritsidwe ntchito kulumikiza mawebusayiti awiri osiyana pa ngalande ya GRE m'malo mwa Network Packet Broker imodzi (NPB). Ngati seva yolumikiza mawebusayiti awiriwa yalephera, idzadutsa seva ndi magalimoto omwe angagawidwe kudzera mu ngalande ya GRE ya Network Packet Broker (NPB) (monga momwe zasonyezedwera pa Zithunzi pansipa).

8

9


Nthawi yotumizira: Marichi-06-2023