12.07.2015 Views

BROCADE IP PRIMER

BROCADE IP PRIMER

BROCADE IP PRIMER

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

NetScreen – 204BI4XGBI4XGBI24CBI24CBI24CPOWERALARM16STATUS-1SE SIONT X RX T X RX T X RX T X RXT X RX T X RX T X RX T X RX12BigIron RX-8NETWORKS71318HAFLASH19242530CONSOLE MODEM COMPACT FLASH 1TX / RX LINK313637424348AC OK DC OK ALMEJECT SYS AC OK DC OK ALMEJECT SYS AC OK DC OK ALMEJECT SYS AC OK DC OK ALMBI24CBI24CBI24CBI24CBI24CBI4XGBI4XGT X RX T X RX T X RX T X RXT X RX T X RX T X RX T X RX10/100EJECT SYS2TX /RX LINK10/1003TX /RX LINK10/1004TX /RX LINK10/100BI4XGBI4XGBI24CBI24CBI24C16T X RX T X RX T X RX T X RXT X RX T X RX T X RX T X RX12BigIron RX-8NETWORKS7131819242530313637424348AC OK DC OK ALMEJECT SYS AC OK DC OK ALMEJECT SYS AC OK DC OK ALMEJECT SYS AC OK DC OK ALMBI24CBI24CBI24CBI24CBI24CBI4XGBI4XGT X RX T X RX T X RX T X RXT X RX T X RX T X RX T X RXEJECT SYSFirewall Load Balancing(FWLB)17We've explored many of the SLB and SLB-related functions of the ServerIron.We've seen how it can provide caching services transparently. Now let's seewhat ServerIrons can do for firewalls.Why Would I Want to Load Balance Firewalls?Firewalls are a necessary protection method, especially for networks connectedto the Internet. The world is filled with people with malicious intent, orwho simply have too much time on their hands. To protect your network, you'llwant to funnel all of the traffic that's coming in from the Internet (and goingout to the Internet) through a firewall, that can analyze packets and discardthose that are undesirable.What's the problem? Notice that I said “a” firewall. What does that tell you? Asnecessary as a firewall is, if all traffic to and from the Internet passes througha single firewall, the firewall becomes a single point of failure.INTERNETFirewallIf the firewall fails, all traffic to and from the Internet would cease.Many firewall manufacturers provide active/standby (and even active/active)solutions for their products to help eliminate the single point of failure problem.The problem is that these solutions usually use just two firewalls. What ifyour needs exceed the capability of those two firewalls? You've got to buy twoBrocade <strong>IP</strong> Primer 373

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!