Layer 3 services
Layer 3 servicesLayer 3 services
Layer 3 services
Address Resolution Protocol
Address Resolution ProtocolAddress Resolution Protocol
Address Resolution Protocol
(ARP): determines the MAC address of another IP host in the same subnet; supports static ARPs;
gratuitous ARP allows detection of duplicate IP addresses; proxy ARP allows normal ARP operation between subnets or when
subnets are separated by a Layer 2 network
Dynamic Host Configuration Protocol
Dynamic Host Configuration ProtocolDynamic Host Configuration Protocol
Dynamic Host Configuration Protocol
(DHCP): simplifies the management of large IP networks and supports client and
server; DHCP Relay enables DHCP operation across subnets
Layer 3 routing
Layer 3 routingLayer 3 routing
Layer 3 routing
Layer 3 IPv4 routing
Layer 3 IPv4 routingLayer 3 IPv4 routing
Layer 3 IPv4 routing
: provides routing of IPv4 at media speed; supports static routes, RIP and RIPv2, OSPF, IS-IS, and BGP
Routing Information Protocol
Routing Information ProtocolRouting Information Protocol
Routing Information Protocol
(RIP)
and RIPng support
and RIPng supportand RIPng support
and RIPng support
: provides complete support of RIP for both IPv4 and IPv6
OSPF and OSPFv3 support
OSPF and OSPFv3 supportOSPF and OSPFv3 support
OSPF and OSPFv3 support
: provides complete support of OSPF for both IPv4 and IPv6
IS-IS and IS-ISv6 support
IS-IS and IS-ISv6 supportIS-IS and IS-ISv6 support
IS-IS and IS-ISv6 support
: provides complete support of IS-IS for both IPv4 and IPv6
Layer 3 IPv6 routing
Layer 3 IPv6 routingLayer 3 IPv6 routing
Layer 3 IPv6 routing
: provides routing of IPv6 at media speed; supports static routes, RIPng, OSPFv3, IS-ISv6, and BGP4+
Bidirectional Forwarding Detection
Bidirectional Forwarding DetectionBidirectional Forwarding Detection
Bidirectional Forwarding Detection
(BFD): enables link connectivity monitoring and reduces network convergence time for
RIP, OSPF, BGP, IS-IS, VRRP, MPLS, and IRF
Virtual Router Redundancy Protocol (VRRP) and VRRP Extended
Virtual Router Redundancy Protocol (VRRP) and VRRP ExtendedVirtual Router Redundancy Protocol (VRRP) and VRRP Extended
Virtual Router Redundancy Protocol (VRRP) and VRRP Extended
: allow quick failover of router ports
Policy-based routing
Policy-based routingPolicy-based routing
Policy-based routing
: makes routing decisions based on policies set by the network administrator
IGMPv1, v2, and v3
IGMPv1, v2, and v3IGMPv1, v2, and v3
IGMPv1, v2, and v3
: allow individual hosts to be registered on a particular VLAN
PIM-SSM, PIM-DM, and PIM-SM
PIM-SSM, PIM-DM, and PIM-SMPIM-SSM, PIM-DM, and PIM-SM
PIM-SSM, PIM-DM, and PIM-SM
(for IPv4 and IPv6): support IP Multicast address management and inhibition of DoS attacks
Equal-Cost Multipath
Equal-Cost MultipathEqual-Cost Multipath
Equal-Cost Multipath
(ECMP): enables multiple equal-cost links in a routing environment to increase link redundancy and
scale bandwidth
Security
SecuritySecurity
Security
Defense-in-depth security
Defense-in-depth securityDefense-in-depth security
Defense-in-depth security
: provides integrated and distributed security enforcement that can be managed from a central
location, such as the HP Intelligent Management Center (IMC)
Advanced processor queuing mechanism
Advanced processor queuing mechanismAdvanced processor queuing mechanism
Advanced processor queuing mechanism
: helps prevent denial-of-service (DoS) attacks, while DHCP snooping helps ensure
that devices can only receive an IP address from a legitimate DHCP server on the network
RADIUS / HWTACACS:
RADIUS / HWTACACS:RADIUS / HWTACACS:
RADIUS / HWTACACS:
eases switch management security administration by using a password authentication server
Secure Shell
Secure ShellSecure Shell
Secure Shell
(SSHv2): encrypts all transmitted data for secure, remote CLI access over IP networks
IEEE 802.1x-based dynamic delivery of QoS/ACLs/VLANs:
IEEE 802.1x-based dynamic delivery of QoS/ACLs/VLANs:IEEE 802.1x-based dynamic delivery of QoS/ACLs/VLANs:
IEEE 802.1x-based dynamic delivery of QoS/ACLs/VLANs:
allows complete control over user network access
Guest VLAN
Guest VLANGuest VLAN
Guest VLAN
: similar to IEEE 802.1X, it provides a browser-based environment to authenticated clients
Port isolation
Port isolationPort isolation
Port isolation
: secures and adds privacy, and prevents malicious attackers from obtaining user information
Port security
Port securityPort security
Port security
: allows access only to specified MAC addresses, which can be learned or specified by the administrator
MAC-based authentication
MAC-based authenticationMAC-based authentication
MAC-based authentication
: allows or denies access to the switch based on client MAC address
IP source guard
IP source guardIP source guard
IP source guard
: helps prevent IP spoofing attacks
HTTPS management
HTTPS managementHTTPS management
HTTPS management
: provides secure Web management
URPF
URPFURPF
URPF
: limits malicious traffic on a network
Multi-Customer Edge (MCE)-Multicast Virtual Routing and Forwarding
Multi-Customer Edge (MCE)-Multicast Virtual Routing and ForwardingMulti-Customer Edge (MCE)-Multicast Virtual Routing and Forwarding
Multi-Customer Edge (MCE)-Multicast Virtual Routing and Forwarding
(MVRF): provide MPLS Edge router support
Public Key Infrastructure
Public Key InfrastructurePublic Key Infrastructure
Public Key Infrastructure
(PKI): is used to control access
Convergence
ConvergenceConvergence
Convergence
Voice VLAN
Voice VLANVoice VLAN
Voice VLAN
: automatically assigns VLAN and priority for IP phones, simplifying network configuration and maintenance
LLDP-MED
LLDP-MEDLLDP-MED
LLDP-MED
: is a standard extension that automatically configures network devices, including LLDP-capable IP phones
Internet Group Management Protocol
Internet Group Management ProtocolInternet Group Management Protocol
Internet Group Management Protocol
(IGMP): is used by IP hosts to establish and maintain multicast groups; supports v1, v2,
and v3; utilizes Any-Source Multicast (ASM) or Source-Specific Multicast (SSM) to manage IPv4 multicast networks
Protocol Independent Multicast
Protocol Independent MulticastProtocol Independent Multicast
Protocol Independent Multicast
(PIM): is used for IPv4 and IPv6 multicast applications; supports PIM Dense Mode (DM),
Sparse Mode (SM), and Source-Specific Mode (SSM)
QuickSpecs
HP A5820 Switch Series
HP A5820 Switch SeriesHP A5820 Switch Series
HP A5820 Switch Series
Overview
DA - 13791 Worldwide — Version 6 — September 26, 2011
Page 3