Multi-Service IPv6 core routing switch can meet users' needs for higher network security and services, and its performance and characteristics are also excellent. Here we introduce an IPv6 core Routing Switch launched by ruijie, RG-S8600 is the next generation high-density multi-service IPv6 core route switch designed for the 0.1 million m platform by ruijie network. It can meet the application requirements of Ethernet in the future and support the next generation Ethernet g Rate Interface, provides 10 vertical slot design and 6 horizontal slot design for two hosts: RG-S8606 and RG-S8610.
RG-S8600 series high-density multi-service IPv6 core Routing Switch provides 3.2 T/1.6T board bandwidth, and supports higher bandwidth expansion in the future, up to 1190 Mpps/595Mpps of two/three-tier packet forwarding rate can provide users with high-speed, non-blocking data exchange with high-density ports. RG-S8600 series high-density multi-service IPv6 core Routing Switch provides a comprehensive security protection system, provides a distributed business integration platform, to meet the future of the network for security and business higher requirements.
Product Features
The RG-S8600 series 10-Gigabit IPv6 core route switch provides 3.2 T/1.6T backboard bandwidth, and supports higher bandwidth expansion in the future, provides 1190 Mpps/595Mpps data forwarding capabilities, each line card provides a switching capability of up to Gbit/s, meeting the needs of high-density Gigabit/10 Gbit/s port line rate forwarding, and supporting the expansion of the Gbit/s interface in the future.
Powerful security and stability assurance
The host supports redundant management modules, redundant power modules, hot plugging of various modules, and other security and stability assurance technologies; the host LCD screen displays switch name, CPU utilization, memory utilization, management module and Line Card temperature, Fan and power supply status, continuous working time, and other information, and allows you to view the key status of the device in a timely manner, improves system security and stability maintenance capabilities. The host detects CPU usage in real time and provides industry-leading hardware CPU Protection Technology CPP, Control Plane Policy ), CPP technology separates the data sent to the CPU and throttling speed to avoid the CPU attack and resource consumption caused by illegal attack packets.
Virus and attack protection
Provides multiple security protection capabilities in hardware mode, such as anti-DDOS, Illegal Packet detection, data encryption, and anti-source IP address spoofing. This avoids the impact of traditional software implementation methods on the performance of the entire machine; provides the most powerful ACL feature in the industry. Based on SPOH technology, it provides a wide range of ACL technologies, including IP standards, IP extensions, MAC extensions, time, and experts, supports Input and Output ACLs in IPV4/IPV6 Dual-stack environments. It provides the distributed IPFIX monitoring technology for line cards to detect abnormal traffic in the network in a timely manner, helping to detect unsafe behaviors such as viruses and attacks in the network in advance, the detailed abnormal traffic data provided by the traffic monitoring technology is used to identify attack sources or attack means. Multiple groups of multi-port synchronous monitoring technology can be enabled at the same time, it also supports flexible input, output, and two-way data images to meet flexible network monitoring needs and improve network monitoring capabilities.
Device management security
The encrypted login and management functions of SSHv1/v2 are provided to avoid potential threats caused by plaintext transmission of management information. The source IP address restriction function of Telnet/Web login prevents unauthorized personnel from managing network devices; SNMPV3 provides encryption and authentication functions to ensure that data is sent from a valid data source, data is not tampered during transmission, and packets are encrypted to ensure data confidentiality.
Access Security
The hardware supports binding IP addresses, MAC addresses, and ports. The IPv6 core route switch can improve the access control capability of users. It supports 802.1X technology and meets the Six-element binding access restrictions; supports IGMP Source Port Check, source IP address check, and IGMP filtering to effectively control illegal multicast sources and improve network security; IGMP V3 supports notifying the addresses of Multicast Source servers that the client host wants to receive to avoid illegal multicast data streams occupying network bandwidth. It uses PVLAN Port Protection to isolate information communication between users, you do not need to use VLAN resources. You can control Unknown name packets, multicast packets, and broadcast packets based on the bandwidth rate or bandwidth percentage; the port MAC address lock, MAC address filtering, and port MAC address access limit function can block access from illegal hosts and illegal packets from accessing the network.