Hierarchical qos, 13 security features, 13 security features -17 – Panasonic NN46240-501 User Manual

Page 43: Security features

Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".

Advertising
background image

Nortel Secure Router 8000 Series

Configuration Guide - Basic Configuration

1 Product overview

Hierarchical QoS

Hierarchical QoS (HQoS) is a QoS technology that can control traffic and perform queue
scheduling simultaneously on the basis of the user’s priority. HQoS uses a two-level
scheduling mode:

Priority Queue (PQ)

Confirmed Bandwidth Priority Queue (CBPQ)

HQoS supports complete traffic statistics. You can view the bandwidth usage of all services
and distribute bandwidth properly according to traffic analysis.

1.3.13 Security features

To ensure security, the Secure Router 8000 Series performs the following functions:

performs Authentication, Authorization and Accounting (AAA) functions

builds up distributed client/server secure access applications based on the ITU-T
RADIUS protocol specifications

provides AAA services for local, logon, and dial-up users to prevent unauthorized access
based on the Password Authentication Protocol (PAP) and Challenge Handshake
Authentication Protocol (CHAP) specification

The Secure Router 8000 Series supports protocol security authentication as follows:

PPP supports PAP and CHAP authentication modes.

Routing protocols including RIPv2, OSPF, IS-IS, and BGP support plain text
authentication and MD5 encrypted text authentication.

SNMP supports SNMPv3 encryption and authentication.

The Secure Router 8000 Series supports the mirroring function. With mirroring, the system
sends a copy of the packet on the current node to one specific packet analysis device from an
observing port without interrupting services. You can define the mirroring port number and
connect the port with the packet analysis device to monitor tragic.

In compliance with the command levels, users are divided into four levels. A user can use
only the commands with levels no higher than the user’s level.

The Secure Router 8000 Series supports the Network Address Translation (NAT) function and

relays the access between private and public networks. It converts a private IP address to a
public IP address or changes the mix of internal IP address and port to a mix of external IP

address and port. This enables the hosts of an internal network to access Internet resources

without risking the privacy of the internal network.

Issue 5.3 (30 March 2009)

Nortel Networks Inc.

1-17

Advertising