ixload®—ipsec and network access test solution

ixload®—ipsec and network access test solution
IXLOAD ® —IPSEC AND
NETWORK ACCESS
TEST SOLUTION
DATA SHEET
ENSURE A SMOOTH GROWTH
TRANSISTION WITH PREDEPLOYMENT TESTING
HIGHLIGHTS
PROBLEM: MANAGE SUBSCRIBER
GROWTH AND SLA GUARANTESS
Subscriber growth and exploding service offerings are
challenging existing access networks. Service providers are
struggling to manage their networks with careful capacity
planning and IPv6 transitioning considerations. But with
subscribers that range from residential broadband customers
using PPPoE or DHCP, to telecommuters using IPsec and
enterprises using dedicated leased lines, it is difficult to
assess the impact of network volatility as buildout occurs.
Managed growth means avoiding outages and interface flaps
and controlling quality of experience (QoE) for real-time and
business-critical services as your access network evolves.
SOLUTION: SCALABLE EMULATION TEST
TO ENSURE DYNAMIC AND ROBUST
ACCESS NETWORKS
 Ensure smooth deployment by testing
under realistic access network
scenarios—mixed subscriber types
over same link and multiplay services
over emulated subscribers
 Stress-test and measure subscriber
management capability KPIs
 Evaluate IPv6 readiness of handling
IPv4, IPv6, and transition
technologies such as 6RD/DSLite
 Ensure reliable service and
subscriber QoE by characterizing
performance of multiplay services
over variety of network access
technologies
 Validate the scale and performance
of secure VPN gateways providing
remote access for thousands of users
For high-performing multiplay networks, service providers
need pre-deployment validation that includes realistic
simulations of the dynamic behavior of subscribers
accessing the networks. The IxLoad Network Access and
VPN test solution provides a rich set of emulations with
dynamic interface behavior that adds a new dimension of
subscriber and network realism when testing applicationaware devices.
 Validate basic network security by
testing port-based and web-based
access control
KEY FEATURES
 Realistically simulate dynamic interface setup and tear-down behavior linked with subscriber
emulation
 Simulate network ‘blackouts’ and ‘brownouts’ and assess the impact of network volatility on
application performance and subscriber QoE
 Correlate application-layer performance with network control-plane performance
VISIT IXIACOM.COM FOR MORE DETAILS ON THE IXLOAD PRODUCT
26601 Agoura Road
|
915-3616-01-1161 Rev B
Calabasas, CA 91302 USA
|
Tel + 1 -818-871-1800
|
www.ixiacom.com
Page 1
DATA SHEET
NETWORK ACCESS AND VPN TECHNOLOGIES SUPPORTED
TECHNOLOGY
PROTOCOLS
Broadband Access
DHCP, PPPoE, PPTP, and L2TP
IPv6 Transitioning
DSLite, 6RD, and SLAAC
Authentication
802.1x, EAP over UDP, and NAC
Security/VPN
IPsec
DYNAMIC CONTROL PLANE (DCP)
DCP dynamically creates and tears down interfaces during testing. With DCP, every interface is created
in conjunction with the new subscribers and the application traffic begins immediately after the interfaces
are configured, replicating real-world subscriber behavior.
Emulated users connect/disconnect from the network dynamically like in real-world
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
Apply Config
Run-time
Simulated
Users
Ramp up
NO INTERFACES
ARE BROUGHT UP
DURING THE
APPLY CONFIG
PHASE
Sustain
Ramp down
1. Test begins, interfaces comes up
DYNAMICALLY as users are spawned and traffic
associated with those users begins to flow
Time
2. If the user leaves the test, interface is torn down
DYNAMICALLY
DCP explained in the context of a test timeline
NETWORK FAILURE THRESHOLD (NFT)
NFT operates in conjunction with DCP and enables IxLoad to run tests even when some interfaces fail
during the test run. A failure threshold controls the number of allowed failures, beyond which the test is
aborted.
NETWORK FEATURES
Dynamic Control
Plane Modes
 Create interface at the start of the test (static mode)
 Create interface with user
o Teardown interface with user
 Create interface at the start and teardown at the end of the command list
Network Failure
Threshold
 Maximum percentage of network interface failures that is accepted for the
test to continue running
Supported Network
Protocols
 DHCP
 PPPoE
 PPTP
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
NETWORK FEATURES
 L2TP
 IPsec
Supported
Application
Protocols
 HTTP
 FTP
 IMAP
 POP3
 SMTP
 DNS
 StetelessPeer
 RTSP
 SIP
SPECIFICATIONS
IPSEC
IP Support
 IPv4 and IPv6
Emulation
 Initiator and Responder mode
Features
 Industry’s highest performance and capacity with the PerfectStorm
hardware family
 Supports most of the popular encryption, hash, and authentication
algorithms
 Includes a complete set of IPsec benchmarking test methodologies
(IPsec QuickTests)
 Measures control plane and data plane performance and capacity
 Generates real application traffic over encrypted tunnels
 Dynamic tunnel setup and teardown options
 Supports IKEv1, IKEv2, and manual keying
 Integrated IPsec configuration wizards
 Site-to-site and remote access scenarios
 Comprehensive per-tunnel diagnostics and statistics
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
IPSEC
QuickTests
 IPSec Tunnel Setup Rate
 IPSec Tunnel Capacity
 IPSec RFC2544 Throughput/Latency
 IPSec RFC2544 Frame Loss
 IPSec RFC2544 Soak
Keying Methods
 IKEv1
 IKEv2
 Manual keying
IPsec Parameters
 Main and aggressive mode
IKE Phase1/AUTH_SA
 Hash algorithms:
o
HMAC-MD5
o
HMAC-SHA1
o
AES-XCBC-MAC-96 (RFC3566)
o
HMAC-SHA256
o
HMAC-SHA384
o
HMAC-SHA512
 Encryption algorithms:
o
DES
o
3DES
o
AES-128-CBC
o
AES-192-CBC
o
AES-256-CBC
o
AES-128-GCM ICV 8/12/16
o
AES-192-GCM ICV 8/12/16
o
AES-256-GCM ICV 8/12/16
 Multiple Proposals
 Xauth user authentication
 ModeCFG address assignment
 IKEv2 Suggested IP address
 Pseudo-random functions
o
HMAC-MD5
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
IPSEC
o
HMAC-SHA1
o
AES-XCBC
o
HMAC-SHA256
o
HMAC-SHA384
o
HMAC-SHA512
IPsec Parameters
 AH, ESP, AH+ESP
Phase 2/CHILD_SA
 Tunnel mode
 Transport mode
 Hash algorithms:
o
HMAC-MD5-96
o
HMAC-SHA1-96
o
HMAC-SHA256-128
o
HMAC-SHA384-192
o
HMAC-SHA512-256
 Encryption algorithms:
o
NULL
o
DES and 3DES
o
AES-128-CBC
o
AES-192-CBC
o
AES-256-CBC
o
AES-128-GCM ICV 8/12/16
o
AES-192-GCM ICV 8/12/16
o
AES-256-GCM ICV 8/12/16
o
AES-128-GMAC
o
AES-192-GMAC
o
AES-256-GMAC
 Multiple Proposals
 Perfect Forward Secrecy (PFS)
 Lifetime negotiation and re-keying
 IKEv1: Multiple Phase2 SAs over a single Phase1 SA
 IKEv2: Multiple ChildSAs over a single IKE SA
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
IPSEC
Authentication
 Pre-shared key
Method
 RSA, ECDSA and DSA Certificates
o
Keys of 512, 1024, 2048, 4096, and 8192 bits for RSA
o
Prime256v1, secp384r1, secp521r1 for ECDSA
 Chained Certificates
 EAP (MD5, SIM, TLS, AKA, GTC, OTP)
Certificate
Management
o
EAP vs. PreSharedKeys
o
EAP vs. Certificates
o
EAP only
 SCEP (Simple Certificate Enrollment Protocol)
 CMPv2 (Certificate Management Protocol)
 CRL (Certificate Revocation List)
 OSCP (Online Status Certificate Protocol)
DH Groups
 DH-01 (MODP-768)
 DH-02 (MODP-1024)
 DH-05 (MODP-1536)
 DH-14 (MODP-2048)
 DH-15 (MODP-3072)
 DH-16 (MODP-4096)
 DH-17 (MODP-6144)
 DH-18 (MODP-8192)
 DH-19 (ECP-256)
 DH-20 (ECP-384)
 DH-21 (ECP-512)
 DH-22 (MODP-1024-S160)
 DH-23 (MODP-2048-S224)
 DH-24 (MODP-2048-S256)
 DH-25 (ECP-192)
 DH-26 (ECP-224)
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
IPSEC
IPsec features
 Site to Site and Remote Access test scenarios
 IPsec initiator and responder modes
 VLAN and QnQ support
 NAT-T
 IPsec pre-fragmentation
 IPsec post-fragmentation
 Initial contact payload
 IKEv2 redirect
 Multiple Traffic Selectors (IKEv2)
Tunnel control
 Tunnel setup and tear down
 Persistent and non-persistent tunnels
 IPsec tunnel flapping (dynamic sessions)
 Dead peer detection (DPD)
 Rekeying support
 IKE message retry timers
 NAT Traversal (NAT-T)
 Lifetime negotiation (IKEv1)
 Re-keying
Addressing
 IPv4/IPv4
 IPv6/IPv6
 IPv4/IPv6
 IPv6/IPv4
 Single or multiple hosts behind each emulated gateway
 Unique MAC per emulated gateway
 Unique VLAN per emulated gateway
 Support for Virtual Router (Emulated Router)
RFCs
 RFC 2394, IP Compression (DEFLATE algorithm)
 RFC 2401, Security Architecture for the Internet Protocol
 RFC 2402, IP Authentication Header
 RFC 2406, IP Encapsulating Security Payload (ESP)
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
IPSEC
 RFC 2407, The Internet IP Security Domain of Interpretation for
ISAKMP
 RFC 2408, Internet Security Association and Key Management
Protocol (ISAKMP)
 RFC 2409, The Internet Key Exchange (IKE)
 RFC3566, The AES-XCBC-MAC-96 Algorithm and Its Use With IPsec
 RFC 3715, IPsec-Network Address Translation (NAT) Compatibility
Requirements
 RFC 3748, Extensible Authentication Protocol (EAP)
 RFC 3947, Negotiation of NAT-Traversal in the IKE
 RFC 3948, UDP Encapsulation of IPsec ESP Packets
 RFC 7296, Internet Key Exchange (IKEv2) Protocol
 RFC 5996, An Extension for EAP-Only Authentication in IKEv2
 IPsec Global Statistics (all ports and per test port)
Statistics
 IPsec per Tunnel Statistics
DHCP
IP Support
 IPv4 and IPv6
Emulation
 Client and Server
Features
 Setup and teardown rates - Initial rate, increment, final rate, max
outstanding
 Timeout and retransmission timers - Initial discover timeout, timeout factor,
reattempt count
 Configurable UDP client and server ports
 Suggested lease time
 Maximum DHCP message size
Commands
 IPv4 - discover, request, renew, decline, release, inform
 IPv6 - solicit, request, confirm, renew, rebind, release, reconfigure
Relay Agent
 DHCP relay agent (Option 82)
o
Multiple relay agent emulation
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
DHCP
IPv6 Features
o
Trusted network element emulation
o
Circuit ID, remote ID – sequence generator capable
o
Remote DHCP server
 IA type - permanent, temporary, prefix delegation (PD)
 DUID - LLT, LL, EN
o
DHCP relay agent
Option set
 Hexadecimal
Builder Types
 Zero length
 Boolean
 8-bit, 16-bit, and 32-bit integer
 IPv4 and IPv6 prefix, list
 IPv4 and IPv6 address, list
Default Option
List
 Subnet mask value (1)
 DHCP renewal (T1) time (58)
 Time offset in sec from UTC (2)
 DHCP rebinding (T2) time (59)
 Router addresses (3)
 User class information (77)
 DNS server addresses (6)
 DHCP relay agent (82)
 Hostname string (12)
 End (255)
 DNS name of the client (15)
 IPv6 rapid commit (14)
 Interface MTU size (26)
 IPv6 user class (15)
 All subnets are local (27)
 IPv6 vendor class (16)
 Broadcast address (28)
 IPv6 vendor specific info (17)
 Perform mask discovery (29)
 IPv6 reconfigure accept (20)
 Perform router discovery (31)
 IPv6 agent remote ID (37)
 ARP cache timeout (35)
 IPv6 agent subscriber ID (38)
 Vendor specific info (43)
 IPv6 agent echo request (43)
 Requested IP address (50)
 IPv6 custom option (99)
 IP address lease time (51)
RFC
 RFC 2131 Dynamic Host Configuration Protocol
 RFC 1534 Interoperation Between DHCP and BOOTP
 RFC 2132 DHCP Options and BOOTP Vendor Extensions
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
DHCP
 RFC 3046 DHCP Relay Agent Information Option
 RFC 3315 Dynamic Host Configuration Protocol for IPv6 (DHCPv6).
 RFC 3319 Dynamic Host Configuration Protocol (DHCPv6) Options for
Session Initiation Protocol (SIP) Servers
 RFC 3633 IPv6 Prefix Options for DHCP version 6
 RFC 3646 DNS Configuration options for Dynamic Host Configuration
Protocol for IPv6 (DHCPv6)
 RFC 3736 Stateless Dynamic (DHCP) Service for IPv6
Statistics
 General Session Status
 Discovers and Offers
 Session Setup and Teardown rates
PPPOE
IP Support
 IPv4 and IPv6
Emulation
 Initiator and Terminator
Features
 Full PPP stack
 Protocol support for PPPoE, PPPoEoV, PPPoEoQnQ
 VLAN and QinQ support
 Session control – setup and teardown rates, max outstanding
 LCP link control, IPCP network control and NCP address control
 DNS options including primary and secondary DNS, options
 Domain groups used to direct access to network port traffic
Options
 Desired MRU
 Keep alive - enable/disable request/reply, KA interval
 LCP configuration timeout and retries
 NCP timers and retry counts
 Authentication – none, CHAP, PAP with unique per user credentials
 Service type, name
 Access concentrator type, name, MAC
 Redial capability with timeout
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
PPPOE
RFC
 RFC 1661 PPP
 RFC 2516 PPPoE
 RFC 1332 IPCP
 RFC 1334 PAP
 RFC 1570 LCP Extensions
 RFC 1994 CHAP
Statistics
 General Session Status
 Authentication
 Establishment and Maintenance
 NCP IPCP
 Latency
L2TP
IP Support
 IPv4 and IPv6
Emulation
 Initiator and Terminator
Features
 Full L2TPv2 LAC and LNS emulation stack
 Support for L2TPoE
 Multiple PPP sessions per L2TP tunnel
 Session control – setup and teardown rates, max outstanding
 DNS options including primary and secondary DNS, Options
Options
 Control of PPP sessions per tunnel
 Hello requests and responses
 Bearer type and capability configuration
 Redial capability, redial timeout
RFC
 RFC 2661 L2TPv2
Statistics
 General Session Status
 Authentication
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
L2TP
 Establishment and Maintenance
 PPP
 L2TP Call Mgmt and Control
 L2TP Tunnel
 NCP IPCP
 Latency
6RD
Emulation
 Initiator and Terminator
Features
 Emulation of CE and BR elements
 Multiple Hosts per CE
 Session control – ARP control
Options
 Hosts per CE
 6rd Prefix
 6rd Prefix Length
 IPv4 Mask Length
 BR IPv4 IP Address
RFC
 RFC 5969, Rapid Deployment on IPv4 Infrastructures (6rd)
Statistics
 Neighbor Discovery
 6rd General - Packets Sent
 6rd General - Packets Received
 6rd General - Packets Dropped
DSLITE
Emulation
 Initiator and Terminator
Features
 Emulation of B4 and AFTR elements
 Multiple Hosts per B4
 Optional Host IP reuse across B4
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
DSLITE
 Fragmentation and Reassembly
 Session control
 DSLite Stack with a PCP Client Plug-in
Options
 Hosts per B4
 Host IP address
 Host IP address Increment
 AFTR IP address
RFC
 RFC 6333, Dual-Stack Lite Broadband Deployments Following IPv4
Exhaustion
Statistics
 Neighbor Discovery
 DSLite General - Packets Sent
 DSLite General - Packets Received
 DSLite General - Packets Dropped
 DSLite General - Fragmentation
IPV6 AUTOCONFIGURATION (SLAAC)
Emulation
 Initiator
Features
 IPv6 Stateless Address Autoconfiguration
 DHCPv6 Stateless Client
 IPv6 Neighbor Discovery
 Duplicate Address Detection (DAD)
 Session control – setup rates
Options
 Random Address for DAD
 Address and Increment for DAD
RFC
 RFC 4862, IPv6 stateless address autoconfiguration
Statistics
 IPv6 SLAAC Global Statistics
 IPv6 SLAAC Range Statistics
 IPv6 SLAAC Per-Session Statistics
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
PORT CONTROL PROTOCOL (PCP)
Emulation
 Initiator
Features
 MAP Opcode
 unsolicited unicast ANNOUNCE (Rx)
 PCP Helper
 Session control – setup rates
 Setup and Teardown Rates – Initiation and Release Procedure Rates
 Max Outstanding Procedures – Initiation and Release
 Timeout and retransmission timers - Initial Retransmission Time,
Retransmission Count, Retransmission Time, Retransmission
Duration
Options
 PCP Server IP
 Requested Lifetime
 PREFER_FAILURE
 Filter
 Suggested External IP and Port
 DS-Lite Mode (Encapsulated or Plain)
 Zero Port in Delete Request
 Don`t Renew Mappings
 Force Session Lifetime
 Zero Third Party IP for Delete
RFC
 pcp-draft 25, PCPv1
Statistics
 PCP General
 PCP Rates Control
 PCP Latency Buckets
 PCP Error
 PCP Per-Session
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
PPTP
IP Support
 IPv4 and IPv6
Emulation
 PPTP Network Server (PNS)
 PPTP Access Concentrator (PAC)
Features
 Outgoing-Call-Request
 Outgoing-Call-Reply
 Session control – setup and teardown rates, max outstanding
 LCP link control, IPCP network control and NCP address control
 DNS options including primary and secondary DNS, options
 Domain groups used to direct access to network port traffic
Options
 Desired MRU
 Keep alive - enable/disable request/reply, KA interval
 LCP configuration timeout and retries
 NCP timers and retry counts
 Authentication – none, CHAP, PAP with unique per user credentials
 Service type, name
 Access concentrator type, name, MAC
 Redial capability with timeout
RFC
 RFC 2637 Point-to-Point Tunneling Protocol (PPTP)RFC 1332 IPCP
 RFC 1334 PAP
 RFC 1570 LCP Extensions
 RFC 1994 CHAP
Statistics
 General Session Status
 Authentication
 Establishment and Maintenance
 NCP IPCP
 Latency
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
802.1X
IP Support
 IPv4 and IPv6
Emulation
 802.1x supplicant emulation with and without NAC
Authentication
Protocols
 MD5, TLS, TTLS (MSHCAPv2), PEAPv0, PEAPv1, PEAPv1 + NAC
(MSCHAPv2), FAST, FAST + NAC (MSCHAPv2, GTC)
Options
 Authentication method
 User name and password
 Host name and password
 Host authentication mode
 NAC sequence
 Setup Rate - Max Rate and Max Outstanding
 Teardown Rate - Max Rate
 Protocol Parameters
o
o
o
o
o
Authentication Period
Start Period
Max Start
Successive Start
Fragment Size
 Session Parameters
o
o
o
o
o
o
DUT Test Mode
Machine Auth Prefix
Authorized on No Response
Disable sending Logoff
Always use multicast
Use VLAN to identify the supplicant
 Wait Before Run
 Certificate Options
o
o
Run-Time Certificate Generation
Certificate Server URL
 NAC
o
o
o
Posture List
Application State List
Posture Sequence List
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
EAPOUDP
IP Support
 IPv4 and IPv6
Emulation
 Hosts attempting network access via EAPoUDP
NAC Modes
 NAC-L2-IP (switch port) also known as NAC LAN Port IP (LPIP)
 NAC-L3-IP (router port) also known as NAC Gateway IP (GWIP)
Authentication
Protocols
 PEAPv1 + NAC
Options
 Authentication method
 FAST + NAC
 User name
 User password
 Host name
 Host password
 Host authentication mode
 NAC sequence
 Setup Rate
o
o
Max Rate
Max Outstanding
 Protocol Parameters
o
o
o
o
o
o
o
o
o
Wait for Completion
Trigger Origin
Trigger Type
Trigger Count
Cookie Size
Timeout
Fragment Size
Port
ChangeNacResponse
 NAC
o
o
o
Posture List
Application State List
Posture Sequence List
 Wait Before Run
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
WEBAUTH
IP Support
 IPv4 and IPv6
Emulation
 Hosts attempting access to web servers
Features
 Emulation of host authentication through Web Authentication
 Web-based authentication supported by way of the following HTML
pages o
o
o
Login Page
Success Page
Login-Fail Page
 WebAuth ARP Control – useful for IP switches that use ARP probes to
determine whether or not a host is active on a port
Options
 Input values, e.g. username, password
 Expect
o
o
Success
Failure
 Setup Rate
o
o
o
Max Rate
Enable Max Outstanding
Max Outstanding
 Protocol Parameters
o
o
o
o
o
o
Wait for Completion
Renew DHCP After Successful Authentication
Protocol Type
Port Number
Response Delay
Number of Retries
 URL & Fields
o
o
o
Request URL
Redirect Login URL
Redirect Failure URL
 Authentication
o
o
o
Success Text
Failure Text
Timeout
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
WEBAUTH
 Policy Check
o
o
Perform Policy Check
Success Text
Timeout
 ARP Control
PLATFORM OPTIONS
VISIT IXIACOM.COM FOR MORE INFORMATION ON
IXNETWORK PLATFORM OPTIONS
Virtual Platform
 IxLoad Virtual Edition (VE)
Chassis
 XGS-12 HS/HSL/SD Chassis
 XGS-2 HS/HSL/SD Chassis
 PerfectStorm Fusion 10/1GbE, 40GbE, & 100GbE
Load Modules
 PerfectStorm 10/1GbE, 40GbE, & 100GbE
 PerfectStorm ONE Fusion 10/1GbE, 40GbE, & 100GbE
 PerfectStorm ONE 10/1GbE, 40GbE, & 100GbE
 Xcellon-Ultra NP
 NGY-NP SFP+/BASE-T 10GbE
 XMVDC Dual PHY 1GbE
TECHNOLOGY SOLUTIONS
VISIT IXIACOM.COM FOR MORE INFORMATION ON
IXLOAD TECHNOLOGY SOLUTIONS
 IxLoad Overview—Converged Multiplay Service Validation
 IxLoad Virtual Edition (VE) L4-7 Application Performance Testing
 IxLoad Data Test Solution
 IxLoad Video Test Solution
 IxLoad Voice Test Solution
 IxLoad IPsec and Network Access Test Solution
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
IXLOAD ORDERING INFORMATION
CHASSIS LICENSES
PART NUMBER
925-3371
DESCRIPTION
IxLoad Multiplay-2016, Software Bundle, Layer 4-7 Performance Test
Application Data-Video-Voice-Security package. Includes:
 Data: Enables support for HTTP, HTTPS, TCP Session, FTP, DNS, Mail
(SMTP, POP3 and IMAP), Database, SSH, RADIUS, TFTP, ApplicationReplay, DHCP, LDAP, Telnet, Stateless-Peer and StreamBlaster emulations.
 Video: Enables support for basic RTSP, IPTV (Multicast), Video-ADVANCED
(VoD), Adobe Flash Client, Apple HLS Client, Microsoft Silverlight Client,
Adobe HDS Client and DASH Client emulations. Includes Video Quality
VQMON engine for up to 10Gbps and TCP VQ Video quality for TCP video
traffic for up to 10 Gbps.
 Voice: Advanced VoIP SIP & RTP, Audio Codecs, H.323, VoLTE extensions,
and Bulk SIP & MGCP. Includes: Voice Quality engine for up to 10Gbps,
Video Quality engine for up to 10Gbps conversational video traffic.
 ADVNET: Enables support for Advanced Access networking protocols such
as DHCP for IP address acquisition, DHCP Server, PPP, L2TP and IPsec.
 Storage: iSCSI, CIFSv1, CIFSv2 (SMB2), SMB3, NFSv3 Client, NFSv4
Client, NFS4.1 Client, Cloud Storage Client, DCBX, FCoE and FC; Note the
FCoE and FC emulation is only supported on selected load modules.
 Access: DHCP, PPP, L2TP, L2TP, IPsec, IPsec Performance Benchmarking
QuickTest & SuiteB Cryptographic, 6RD, DSLITE and IPv6 SLAAC, 8021X,
NAC and WEBAUTH.
 Security: Enables support for a collection of vulnerabilities and malware
attacks with 1-year subscription service and DDoSv2.
 Software Impairment.
Note: some of the features are available only on specific load modules
925-3375
IxLoad-ACCESS-VPN-2016, Software Bundle, Layer 4-7 Performance Test
Application; Enables support for IPsec VPN testing and Advanced Access
networking protocols; includes DHCP, PPP, L2TP, L2TP, IPsec, IPsec
Performance Bechmarking QuickTest & SuiteB Cryptographic, support for IPv6
transition technologies like 6RD, DSLITE and IPv6 SLAAC and network
authentication protocols such as 8021X, NAC and WEBAUTH to emulate the
network infrastructure for the application traffic. Also includes: basic HTTP, FTP
and Stateless (Stateless Peer and StreamBlaster) traffic generation. Note: some
of the features are available only on specific load modules.
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
APPLIANCE LICENSES
PART NUMBER
925-6321
925-6117
DESCRIPTION
IxLoad, PerfectStorm ONE Multiplay, Software Bundle, Layer 4-7 Performance
Test Application; Data, Storage, Voice, Video and Access & VPN bundle for
PerfectStorm ONE appliances; includes:
 925-6121
IxLoad PerfectStorm ONE DATA
 925-6112
IxLoad PerfectStorm ONE VIDEO
 925-6113
IxLoad PerfectStorm ONE VOICE
 925-6117
IxLoad PerfectStorm ONE Access & VPN
IxLoad PerfectStorm ONE ACCESS + VPN, Software, Layer 4-7 Performance
Test Application. Includes: 925-6104 IxLoad PerfectStorm ONE BASIC (HTTP,
HTTPS, DNS, ADVNET-DHCP, WAP, Stateless Peer) IPsec, IPsec SUITES B,
IPsec Quick Tests, PPP, L2TP, L2TP/IPsec IPv6 Transitioning: SLAAC, 6rd,
DSLite ADVNET: DHCP, DHCPv6 (client & server). Includes: ADVNET-802.1X,
ADVNET-NAC, ADVNET-WEBAUTH. Requires IxLoad Framework, 925-0001,
which is free with adjoining software purchase.
VIRTUAL EDITION LICENSES
PART NUMBER
DESCRIPTION
939-9513
IxLoad VE Tier-3 1G Floating SUBSCRIPTION License. Includes the following
IxLoad protocols supported on IxLoad VE for a duration of 1-Year: Data (HTTP,
HTTPS, FTP, TFTP, DNS, DHCP, LDAP, Radius), Mail (IMAP, POP3, SMTP),
Storage (SMB, NFS, iSCSI, Storage I/O), Voice (VoIP SIP, VoLTE), Video
(DASH, Flash,HDS, HLS, IPTV VoD, MS IPTV, Silverlight), IPsec, IxLoad- Attack
and IxLoad-AppLibrary. Enables 1 Gig throughput per unit.
939-9533
IxLoad VE Tier-3 10G Floating SUBSCRIPTION License. Includes the following
IxLoad protocols supported on IxLoad VE for a duration of 1-Year: Data (HTTP,
HTTPS, FTP, TFTP, DNS, DHCP, LDAP, Radius), Mail (IMAP, POP3, SMTP),
Storage (SMB, NFS, iSCSI, Storage I/O), Voice (VoIP SIP, VoLTE), Video
(DASH, Flash,HDS, HLS, IPTV VoD, MS IPTV, Silverlight), Ipsec, IxLoad- Attack
and IxLoad-AppLibrary. Enables 10 Gig throughput per unit.
939-9514
IxLoad VE Tier-4 1G Floating SUBSCRIPTION License. Includes the following
IxLoad protocols supported on IxLoad VE for a duration of 1-Year: Data (HTTP,
HTTPS, FTP, TFTP, DNS, DHCP, LDAP, Radius), Mail (IMAP, POP3, SMTP),
Storage (SMB, NFS, iSCSI, Storage I/O), Voice (VoIP SIP, VoLTE), Video
(DASH, Flash,HDS, HLS, IPTV VoD, MS IPTV, Silverlight), IPsec, IxLoad- Attack
and IxLoad-AppLibrary. Includes EPC and WiFi Offload protocols. Enables 1 Gig
throughput per unit.
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
DATA SHEET
Part Number
Description
939-9534
IxLoad VE Tier-4 10G Floating SUBSCRIPTION License. Includes the following
IxLoad protocols supported on IxLoad VE for a duration of 1-Year: Data (HTTP,
HTTPS, FTP, TFTP, DNS, DHCP, LDAP, Radius), Mail (IMAP, POP3, SMTP),
Storage (SMB, NFS, iSCSI, Storage I/O), Voice (VoIP SIP, VoLTE), Video
(DASH, Flash,HDS, HLS, IPTV VoD, MS IPTV, Silverlight), IPsec, IxLoad- Attack
and IxLoad-AppLibrary. Includes EPC and WiFi Offload protocols. Enables 10
Gig throughput per unit.
IXIA WORLDWIDE
HEADQUARTERS
26601 AGOURA RD.
CALABASAS, CA 91302
(TOLL FREE NORTH AMERICA)
1.877.367.4942
(OUTSIDE NORTH AMERICA)
+1.818.871.1800
(FAX) 818.871.1805
www.ixiacom.com
IXIA EUROPEAN
HEADQUARTERS
IXIA TECHNOLOGIES EUROPE LTD
CLARION HOUSE, NORREYS DRIVE
MAIDENHEAD SL6 4FL
UNITED KINGDOM
SALES +44.1628.408750
(FAX) +44.1628.639916
26601 Agoura Road | Calabasas, CA 91302 USA
915-3616-01-1161 Rev B
|
IXIA ASIA PACIFIC
HEADQUARTERS
101 THOMSON ROAD,
#29-04/05 UNITED SQUARE,
SINGAPORE 307591
SALES +65.6332.0125
(FAX) +65.6332.0127
Tel + 1-818-871-1800
|
www.ixiacom.com
Page
Was this manual useful for you? yes no
Thank you for your participation!

* Your assessment is very important for improving the work of artificial intelligence, which forms the content of this project

Download PDF

advertising