Products - Search -> "xstream 40"
Aggregation, Filtering, and Load Balancing for 10GbE/40GbE Networks
The need to monitor and inspect all traffic on high-volume 10GbE and 40GbE networks pressures organizations to invest heavily in new 10/40GbE tools, or risk oversubscribing their current tools. The Ixia xStream™ 40 is a network packet broker (NPB) for high-speed networks, purpose-built for fail-safe inline security tool deployments and out-of-band network traffic monitoring.
The xStream 40 offers a comprehensive set of high availability (HA) features that are critical for fail-safe inline security tools deployment. Smart load-balancing enables deployment of multiple tools in parallel to increase the overall throughput, thus removing bottlenecks typically seen on a single security device. It also supports tools such as SSL decryptors, intrusion prevention systems (IPSs), firewalls, and web accelerators in serial for service-chaining. This enables banks, retailers, and government and health organizations to support many different enterprise network deployment scenarios.
The xStream 40 also features Ixia´s unique "Double Your Ports" feature (simplex connections), which provides industry-leading port density in a compact form factor. Moreover, each of the four 40GbE ports can be configured as four independent 10GbE ports, allowing a maximum of 64 10GbE ports. Furthermore, you can even combine four independent 10GbE ports into a single 40GbE, using the same MTP to LC fan-out cable, effectively yielding a maximum of 16 40GbE ports in the chassis.
Aggregation and Filtering
xStream 40 provides one-to-one, many-to-one, one-to-many, and many-to-many mappings of network links to monitor ports. Traffic from any set of network links and SPAN ports can be aggregated into a single stream and copied to any monitor port. xStream 40 is also a smart filtering appliance that directs traffic of interest to monitoring tools. Using the TapFlow™ filtering technology, each tool gets only the traffic it needs for its particular purpose, resulting in higher scalability and better security. The TapFlow hardware filtering engine processes traffic at full 40/10Gbps line speeds while filtering the traffic by protocol, IP address, TCP/UDP port, VLAN, and more.
Load Balancing Solution
The xStream 40 is a purpose-built appliance for distributing a traffic load to multiple tools. SFP+/QSFP+ ports and an integrated multi-speed flow distribution engine make xStream 40 ideal for distributing and load-balancing traffic from 10GbE and 40GbE links to multiple 1GbE and 10GbE tools.
It can also aggregate traffic from multiple 1GbE and 10GbE links and distribute it to 1GbE, 10GbE, or 40GbE tools. With the addition of a monitoring load balancer, these multiple 1GbE, 10GbE, or 40GbE tools can share the load to process increasing volumes of traffic more cost-effectively than investing in new 40GbE or 10GbE tools. Not only is the CAPEX lower, but major savings also accrue through avoiding the disruption and learning curve of integrating complex new tools into the environment.
Highly reliable and foolproof HA feature supports Active-Active and Active-Standby modes with both Auto Sync and Manual Sync options to maintain configuration and state synchronization between the primary and secondary xStream 40 units. The HA link between the primary and secondary units can also be protected with a second link connected using a pair of spare ports. Load Balancing Group (LBG) supports spare ports with N:M tool redundancy where N active ports are protected by M warm standby tools. When tools are deployed in inline serial (service chaining), tools in the front can be safely bypassed when they fail so tools in rear can continue inspecting the traffic. Coupled with HA features in Ixia´s iBypass series, complex use cases can be implemented with extreme high availability.
xStream 40 supports timestamping of packets on the fly at line rate with nanosecond accuracy, supporting high-speed, low-latency trading environments. Using the PTPv2 (IEEE 1588) protocol, xStream 40 guarantees that the timestamping will remain accurate. The timestamp can be appended to packets on the fly with or without recalculation of the CRC.
1.28 Tbps; no packets dropped as long as monitor traffic does not exceed monitor port bandwidth
Ultra low latency of 350 nanoseconds, any packet size, any-port to any-port, any amount of regeneration and filtering (excluding aggregation head-of-line blocking delays)
Flow coherent, hash-based, 5-tuple (SIP, DIP, SPORT, DPORT, protocol), 2-tuple (SIP+DIP), or other combinations of L2-L4 header fields including SMAC, DMAC, ethertype, and VLAN; out-of-band, inline, tool sharing; 40G-to-10G and 10G-to-1G data rate conversion; link-state awareness; Heartbeat monitoring of inline tool health; 1 to 8 independent load balance groups with up to 16 load-balanced outputs per group; load balancing multicast
Timestamping with nano second accuracy and support for PTPv2 (IEEE 1588)
Aggregation, any number of ports; regeneration, any number of ports; any-to-any, any-to-many, many-to-any, and many-to-many; any port can be used as an input, an output, or both simultaneously
Filter by IP source address, IP destination address, MAC source address, MAC destination address, source port, destination port, protocol, network port or port group, VLAN
MPLS Label, GTP Tunnel ID, DSCP, TOS, User Defined
Current utilization, total packets, total bytes, CRC errors. More than 100 detailed traffic statistics and counters including RMON, All counters can be exported as CSV files
Truncate size is configurable by the user
Server allows authentication of users from external AAA servers using either RADIUS or TACACS+ protocols
Web UI, Serial console, SSH, SNMPv3, SNMPv2, SNMPv1, Remote software upgrades, back up and restore configuration, Role-Based Access Control Management, Netconf
Operating Temperature: 0°C to 40°C
Storage Temperature: -10°C to 70°C
Relative Humidity: 10% min, 95% max, non-condensing
Dimensions: 1.72" high x 15.5" deep x 17.4" wide
Mounting: Surface or 19" rack mount (1U)
Weight: 15.0 lbs
Ports: (48) SFP+, (4) QSFP ports or (64) SFP+ with a splitter cable
Management Port: (1) RJ45 10/100/1000 Copper
Configuration (CLI) Port: (1) Cisco DB9 to RJ45
DC Receptacle: Terminal peak, 12-14 gauge wire
Power: (2) AC universal or (2) -48VDC, redundant
Fans: (5) hot-swappable modules (u+1 configuration)
AC Input: 100-240VAC, 5.29-2.2A, 50/60Hz
DC Input: -40VDC nominal -40 to -72VDC, 13.9A
(All ports) Link LEDs
(All ports) Activity LEDs
(2) Power LEDs
Safety: MET, CE
EMC: FCC, VCCI, C-Tick, KC, ME06, CCC, AR
Environmental: RoHS, WEEE
Protocol: Fully IEEE 802.3 compliant
- Purpose-built tool for load balancing
- Flow-coherent traffic distribution for multiple inline tools or monitoring tools working in parallel
- Supports tool sharing multiple independent links can share a pool of monitoring devices
- TapFlow - multi-layer filtering engine for layer 2-4 filtering
- Aggregation of input traffic from multiple links
- Packet slicing
- Any-to-any, many-to-many port mapping
- RMON statistics (packet count, utilization, etc.), All counters can be exported as CSV files
- Works with external taps, SPAN ports, and bypass switches
- Up to 64 1-Gigabit SFP+, 10-Gigabit, and up to 4 QSFP 40G ports
- Dual redundant hot-swappable AC or DC power supplies
- Inline tool load balancing (IPS): Leverages 1G, 10G, and 40G? monitoring tool investments
- Improves 10G network compliance and security management
- Relieves oversubscribed tools through load balancing and packet slicing
- Link-State awareness
- Heartbeat monitoring of attached tools
- VLAN tag management
- Any port can be used for monitor or network
- MPLS label filtering
- Port rate limiting
- High Availability (HA)
- Timestamping with nanosecond accuracy
- MPLS Stripping
- Any Packet stripping
- Netconf for SDN Integration Intuitive Web UI, SSH access
- Secure Web based management
- Advanced SNMPv3 integrates with all major NMS and Indigo Pro
- TACACS+/RADIUS support
- Role-Based Access Control Management
- Graphical Drag & Draw Filters