vyatta特性详解
2014-02-13 15:06:16 阿炯

Vyatta是一款完整的、基于Debian的企业级的路由器/防火墙,功能丰富,配置更合适于系统网络管理人员,在此总结一些它的具体特性。

路由功能(bgp、ospf、rip)
IPv4/IPv6 Routing


BGPv4, BGPv6
OSPFv2
BGP Multipath
RIPv2
Static Routes
Policy-Based Routing
IPv6 Policy
IPv6 SLAAC
Multicast

IP地址管理(dhcp、dns)
IP Address Management


Static
DHCP Server
DHCP Client
DHCP Relay
Dynamic DNS
DNS Forwarding
IPv6 DNS Resolver
IDHCPv6 Server, Client
DHCPv6 Relay

数据协议封装
Encapsulations


Ethernet
802.1Q VLANs
PPP
PPPoE
IP in IP
Frame Relay
MLPPP
HDLC
GRE

防火墙
Firewall


Stateful Inspection Firewall
Zone-based Firewall
P2P Filtering
IPv6 Firewalling
Time-based Firewall Rules
Rate Limiting
ICMP Type Filtering
Stateful Failover

VPN通道(ipsec、l2tp、pptp、openvpn)
Tunneling/VPN


SSL-based OpenVPN
Site to Site VPN (IPSec)
Remote VPN (PPTP, L2TP, IPsec)
Virtual Tunnel Interface
OpenVPN Client Auto-Configuration
Layer 2 Bridging over GRE
Layer 2 Bridging over OpenVPN
OpenVPN Dynamic Client
Dynamic Multipoint VPN

附加的安全特性(支持多种加密算法和方式)
Additional Security


Network Address Translation
3DES, AES Encryption
MD5 and SHA-1 Authentication
RSA, Diffie Helman Key Management
NAT Traversal
Role-Based Access Control

(高端)设备驱动
WAN/LAN Device Drivers


WAN Device Drivers - T1/E1
Intel 10/100 Mbps - 10 Gbps
Broadcom 10/100 Mbps - 10 Gbps
IEEE 802.11 wireless
Drivers in 2.6.31 Linux Kernel
Synchronous Serial - V.35, X.21, RS-422, EIA530

性能优化(负载均衡及带宽管理)
Performance Optimization


WAN Link Load Balancing
Ethernet Link Bonding
Web Caching
MLPPP
ECMP
Bandwidth Management

服务质量策略
QoS Policies


Priority Queuing
Network Emulator
Round Robin
Random/Weighted Random
Classful Queuing
Ethernet Header Matching
VLAN Tag
IPv6 Address
Port Mirroring

高可用(从数据层面到应用协议容错)
High Availability


Stateful Firewall/NAT Failover
VRRP
High-Availability Clustering
Configuration Replication
RAID 1
IPsec VPN Clustering
Protocol Fault Isolation

管理及授权
Administration and Authentication


Integrated CLI
Web GUI
Brocade Vyatta Remote Access API
Telnet
SSHv2/SSH Public Key
Binary Image Install
Image Cloning
RADIUS
TACACS+
X.509 Digital Certificate Authentication
Single Configuration File

调试和日志记录
Diagnostics and Logging


tcpdump
Wireshark Packet Capture
BGP MD5 Support
Serial Loopback Commands
Netflow/sFlow
LLDP
Syslog
SNMPv2c
SNMP for IPv6

参考地址
http://www.brocade.com/products/all/network-functions-virtualization/product-details/5400-vrouter/specifications.page