s*****g 发帖数: 1055 | 1 http://www.vyatta.com/
The idea is not new at all, but Vyatta is claiming is that its software
running on a out-of-shelf PC has better performance than Cisco ISRs.
It has most critical features a small to medium enterprise edge box would need, routing protocols, firewalling, site2site and remote access VPN (especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can compete with Cisco ISR in terms of performance,IOS is purposely built for fast-switching packets after all, besides I | v**n 发帖数: 951 | 2 I am interested too.
please keep us posted. Thanks
software
would need, routing protocols, firewalling, site2site and remote access
VPN (especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that
it can compete with Cisco ISR in terms of performance,IOS is purposely
built for fast-switching packets after all, besides IPsec
encryption/decryption will eat up a lot of CPU cycles if there is no
separate module takes the load off CPU. Of course, feature richness
wise, it does not co: me eve
【在 s*****g 的大作中提到】 : http://www.vyatta.com/ : The idea is not new at all, but Vyatta is claiming is that its software : running on a out-of-shelf PC has better performance than Cisco ISRs. : It has most critical features a small to medium enterprise edge box would need, routing protocols, firewalling, site2site and remote access VPN (especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can compete with Cisco ISR in terms of performance,IOS is purposely built for fast-switching packets after all, besides I
| l***y 发帖数: 791 | 3 High performance for certain things, but only in certain scenarios. Not as
feature rich. Of course, if you're exactly those scenarios, and know a thing
or two about iptables, and like to tinker with opensource, then why not?
need, routing protocols, firewalling, site2site and remote access VPN (
especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can
compete with Cisco ISR in terms of performance,IOS is purposely built for
fast-switching packets after all, besides IPsec encryp
【在 s*****g 的大作中提到】 : http://www.vyatta.com/ : The idea is not new at all, but Vyatta is claiming is that its software : running on a out-of-shelf PC has better performance than Cisco ISRs. : It has most critical features a small to medium enterprise edge box would need, routing protocols, firewalling, site2site and remote access VPN (especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can compete with Cisco ISR in terms of performance,IOS is purposely built for fast-switching packets after all, besides I
| z**r 发帖数: 17771 | 4 某些方面性能超过ISR没啥奇怪的,毕竟ISR本来就是低端router。但是像你说的,ISR
在很多情况打开feature后,performance还可以差不多,俺比较怀疑vyatta也能这样,
毕竟CPU based设备在这方面本身就有trade off,feature可以很容易加,但是性能就
不好说了
need, routing protocols, firewalling, site2site and remote access VPN (
especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can
compete with Cisco ISR in terms
with Cisco's ASA/ISRs, main features we will be using is GRE/IPsec with
OSPF on top of it, remote access VPN, IPS, SIP gateway/SBC. If this software
does what Vyatta cl
【在 s*****g 的大作中提到】 : http://www.vyatta.com/ : The idea is not new at all, but Vyatta is claiming is that its software : running on a out-of-shelf PC has better performance than Cisco ISRs. : It has most critical features a small to medium enterprise edge box would need, routing protocols, firewalling, site2site and remote access VPN (especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can compete with Cisco ISR in terms of performance,IOS is purposely built for fast-switching packets after all, besides I
| c*a 发帖数: 806 | 5 做做router reflector还可以,反正都是redundant
ISR
software
【在 z**r 的大作中提到】 : 某些方面性能超过ISR没啥奇怪的,毕竟ISR本来就是低端router。但是像你说的,ISR : 在很多情况打开feature后,performance还可以差不多,俺比较怀疑vyatta也能这样, : 毕竟CPU based设备在这方面本身就有trade off,feature可以很容易加,但是性能就 : 不好说了 : : need, routing protocols, firewalling, site2site and remote access VPN ( : especially GRE/IPsec), IPS/IDS, VoIP, QoS etc. I highly doubt that it can : compete with Cisco ISR in terms : with Cisco's ASA/ISRs, main features we will be using is GRE/IPsec with : OSPF on top of it, remote access VPN, IPS, SIP gateway/SBC. If this software
| z**r 发帖数: 17771 | 6 route reflector主要一般没有traffic,就是control plane的东西,所以你说的对,
做RR应该可以,就是不知道可靠性如何,即使是redundant,但是一旦用到RR的地方,
一般都是比较大的网络,不知道大家对两台pc放心否,呵呵
【在 c*a 的大作中提到】 : 做做router reflector还可以,反正都是redundant : : ISR : software
|
|