Hauv kev lag luam network thiab kev saib xyuas, kev daws teeb meem, thiab kev soj ntsuam kev nyab xeeb, kom raug thiab ua tau zoo tau txais cov ntaub ntawv hauv network yog lub hauv paus rau kev ua haujlwm ntau yam. Raws li ob lub ntsiab network cov ntaub ntawv tau txais cov thev naus laus zis, TAP (Test Access Point) thiab SPAN (Switched Port Analyzer, kuj tseem hu ua chaw nres nkoj mirroring) ua lub luag haujlwm tseem ceeb hauv cov xwm txheej sib txawv vim lawv cov yam ntxwv sib txawv. Kev nkag siab tob txog lawv cov yam ntxwv, qhov zoo, kev txwv, thiab cov xwm txheej siv tau yog qhov tseem ceeb rau cov engineers network los tsim cov phiaj xwm sau cov ntaub ntawv tsim nyog thiab txhim kho kev tswj hwm kev ua haujlwm hauv network.
KHOOM: Ib qho yooj yim thiab pom tau "Lossless" Data Capture Solution
TAP yog cov cuab yeej kho vajtse ua haujlwm ntawm lub cev lossis cov ntaub ntawv txuas txheej txheej. Nws lub luag haujlwm tseem ceeb yog kom ua tiav 100% kev rov ua dua thiab kev ntes cov ntaub ntawv hauv network tsis cuam tshuam nrog cov thawj lub network tsheb. Los ntawm kev sib txuas ua ke hauv kev sib txuas hauv network (piv txwv li, nruab nrab ntawm kev hloov pauv thiab lub server, lossis lub router thiab hloov), nws rov ua dua tag nrho cov ntaub ntawv sau thiab nqes nqes los ntawm qhov txuas mus rau qhov chaw saib xyuas siv "optical splitting" lossis "traffic splitting" txoj kev, rau kev ua haujlwm tom qab los ntawm kev tshuaj ntsuam cov cuab yeej (xws li network analyzers thiab Intrusion Detection Systems - IDS).
Cov yam ntxwv tseem ceeb: Centered ntawm "Integrity" thiab "Stability"
1. 100% Cov ntaub ntawv ntim ntim nrog tsis muaj kev pheej hmoo poob
Qhov no yog qhov zoo tshaj plaws ntawm TAP. Txij li TAP ua haujlwm ntawm lub cev txheej thiab ncaj qha rov ua dua hluav taws xob lossis kho qhov muag teeb liab hauv qhov txuas, nws tsis cia siab rau qhov hloov pauv CPU cov peev txheej rau cov ntaub ntawv xa mus lossis rov ua dua. Yog li ntawd, tsis hais seb lub network kev khiav tsheb yog nyob rau ntawm nws lub ncov lossis muaj cov ntaub ntawv loj loj (xws li Jumbo Frames nrog tus nqi loj MTU), tag nrho cov ntaub ntawv pob tuaj yeem raug ntes tau yam tsis muaj pob ntawv poob los ntawm kev hloov pauv tsis txaus. Qhov no "lossis capture" feature ua rau nws nyiam kev daws teeb meem rau cov xwm txheej uas xav tau cov ntaub ntawv raug txhawb nqa (xws li kev ua txhaum hauv paus ua rau qhov chaw thiab kev txheeb xyuas kev ua haujlwm hauv network).
2. Tsis muaj kev cuam tshuam rau Original Network Performance
Txoj kev ua haujlwm ntawm TAP ua kom ntseeg tau tias nws tsis ua rau muaj kev cuam tshuam rau qhov txuas network qub. Nws tsis hloov cov ntsiab lus, qhov chaw nyob / qhov chaw nyob, lossis lub sijhawm ntawm cov ntaub ntawv pob ntawv thiab tsis nyob hauv qhov hloov pauv qhov chaw nres nkoj bandwidth, cache, lossis cov peev txheej ua haujlwm. Txawm tias lub cuab yeej TAP nws tus kheej ua haujlwm tsis zoo (xws li hluav taws xob tsis ua haujlwm lossis kho vajtse puas tsuaj), nws tsuas yog ua rau tsis muaj cov ntaub ntawv tso tawm los ntawm qhov chaw saib xyuas, thaum kev sib txuas lus ntawm qhov txuas network qub tseem zoo li qub, zam kev pheej hmoo ntawm kev cuam tshuam network los ntawm kev ua tsis tiav ntawm cov khoom siv sau cov ntaub ntawv.
3. Kev them nyiaj yug rau Full-Duplex Links thiab Complex Network Environments
Cov tes hauj lwm niaj hnub no feem ntau siv hom kev sib txuas lus puv-duplex (piv txwv li, cov ntaub ntawv upstream thiab downstream tuaj yeem xa tau tib lub sijhawm). TAP tuaj yeem ntes cov ntaub ntawv ntws hauv ob qho kev taw qhia ntawm qhov txuas puv-duplex thiab tso tawm lawv los ntawm cov chaw nres nkoj saib xyuas ywj pheej, xyuas kom meej tias lub cuab yeej tshuaj xyuas tuaj yeem rov qab kho cov txheej txheem sib txuas lus ob txoj kev. Tsis tas li ntawd, TAP txhawb nqa ntau yam nqi network (xws li 100M, 1G, 10G, 40G, thiab txawm tias 100G) thiab cov hom xov xwm (twisted pair, single-mode fiber, multi-mode fiber), thiab tuaj yeem hloov kho rau cov chaw sib txuas lus ntawm ntau qhov nyuaj xws li cov chaw khaws ntaub ntawv, cov tes hauj lwm tseem ceeb, thiab cov tes hauj lwm hauv tsev kawm ntawv.
Daim Ntawv Thov Scenario: tsom rau "Kev Ntsuam Xyuas Kom Zoo" thiab "Key Txuas Saib Xyuas"
1. Network teeb meem thiab hauv paus ua rau qhov chaw
Thaum muaj teeb meem xws li poob pob ntawv, qeeb, jitter, lossis daim ntawv thov lag tshwm sim hauv lub network, nws yog qhov tsim nyog los rov qab kho qhov xwm txheej thaum qhov txhaum tshwm sim los ntawm cov ntaub ntawv pob ntawv tag nrho. Piv txwv li, yog tias lub tuam txhab cov txheej txheem lag luam tseem ceeb (xws li ERP thiab CRM) ntsib kev nkag mus tsis tu ncua, cov neeg ua haujlwm ua haujlwm thiab txij nkawm tuaj yeem xa TAP ntawm lub server thiab lub qhov hloov tseem ceeb kom ntes tau tag nrho cov ntaub ntawv pob ntawv rov qab, tshuaj xyuas seb puas muaj teeb meem xws li TCP rov xa dua, poob pob ntawv, DNS daws teeb meem qeeb, lossis cov teeb meem txheej txheem daim ntawv thov, thiab yog li ntawd nrhiav tau qhov ua rau muaj qhov txhaum sai sai (xws li teeb meem zoo ntawm qhov txuas, kev teb qeeb ntawm lub server, lossis cov teeb meem teeb tsa middleware).
2. Network Performance Baseline Tsim thiab Kev Saib Xyuas Tsis Zoo
Hauv kev ua haujlwm hauv network thiab kev saib xyuas, tsim kom muaj kev ua tau zoo raws li kev ua lag luam ib txwm muaj (xws li kev siv bandwidth nruab nrab, cov ntaub ntawv xa mus qeeb, thiab TCP kev sib txuas kev lag luam kev vam meej) yog lub hauv paus rau kev saib xyuas tsis zoo. TAP tuaj yeem khaws cov ntaub ntawv tag nrho ntawm cov kev sib txuas tseem ceeb (xws li nruab nrab ntawm cov keyboards thiab nruab nrab ntawm egress routers thiab ISPs) rau lub sijhawm ntev, pab cov neeg ua haujlwm thiab tu cov neeg ua haujlwm suav ntau yam ntsuas kev ua tau zoo thiab tsim kom muaj tus qauv tsim nyog. Thaum cov kev tsis sib haum xeeb tom ntej xws li kev tsheb khiav ceev ceev, qeeb qeeb, lossis kev tsis txaus ntseeg raws tu qauv (xws li kev thov ARP txawv txav thiab ntau cov pob ntawv ICMP) tshwm sim, qhov tsis txaus ntseeg tuaj yeem tshawb pom sai los ntawm kev sib piv nrog cov hauv paus, thiab kev cuam tshuam raws sij hawm tuaj yeem ua tiav.
3. Kev Tshawb Fawb Txog Kev Ua Raws Cai thiab Kev Tshawb Fawb Txog Kev Nyab Xeeb nrog Kev Ruaj Ntseg Siab
Rau kev lag luam uas yuav tsum tau muaj kev ruaj ntseg thiab ua raws li cov ntaub ntawv xws li nyiaj txiag, tsoom fwv txoj hauj lwm, thiab lub zog, nws yog tsim nyog los ua tag nrho-txoj kev soj ntsuam ntawm cov txheej txheem kis tau tus mob ntawm cov ntaub ntawv rhiab heev los yog xyuas kom meej lub network kev hem thawj (xws li APT tawm tsam, cov ntaub ntawv to, thiab siab phem code propagation). Qhov tsis zoo ntawm kev ntes ntawm TAP ua kom muaj kev ncaj ncees thiab raug ntawm cov ntaub ntawv tshawb xyuas, uas tuaj yeem ua tau raws li cov cai ntawm cov cai thiab cov cai xws li "Network Security Law" thiab "Data Security Law" rau cov ntaub ntawv khaws thiab txheeb xyuas; Nyob rau tib lub sijhawm, cov ntaub ntawv ntim puv puv kuj muab cov qauv tshuaj ntsuam xyuas nplua nuj rau kev kuaj xyuas kev hem thawj (xws li IDS / IPS thiab cov khoom siv sandbox), pab txhawm rau txheeb xyuas qhov tsawg zaus thiab cov kev hem thawj zais zais rau hauv ib txwm muaj tsheb khiav (xws li cov lej siab phem hauv kev nkag mus nkag thiab nkag mus rau hauv kev ua lag luam tsis zoo).
Kev txwv: Kev lag luam tawm ntawm Tus Nqi thiab Kev Tshaj Tawm Flexibility
Cov kev txwv tseem ceeb ntawm TAP yog nyob rau hauv nws cov nqi kho vajtse siab thiab kev xa tawm yooj yim. Ntawm qhov tod tes, TAP yog ib qho khoom siv kho vajtse, thiab tshwj xeeb, TAPs txhawb cov nqi siab (xws li 40G thiab 100G) lossis cov xov xwm fiber ntau yog kim dua li software-based SPAN function; Ntawm qhov tod tes, TAP yuav tsum tau txuas nrog hauv cov koob hauv qhov txuas txuas hauv lub network qub, thiab qhov txuas yuav tsum tau cuam tshuam ib ntus thaum lub sij hawm xa mus (xws li ntsaws thiab tshem tawm cov cables lossis optical fibers). Rau qee qhov kev sib txuas tseem ceeb uas tsis tso cai cuam tshuam (xws li kev sib txuas nyiaj txiag kev lag luam 24/7), kev xa tawm yog qhov nyuaj, thiab TAP cov ntsiab lus nkag feem ntau yuav tsum tau khaws cia ua ntej thaum lub sij hawm npaj lub network.
SPAN: Tus Nqi-zoo thiab yoog raws "Multi-Port" Cov ntaub ntawv sib sau daws teeb meem
SPAN yog ib qho software ua haujlwm tsim rau hauv cov keyboards (qee qhov high-end routers kuj txhawb nws). Nws lub hauv paus ntsiab lus yog txhawm rau txhim kho qhov hloov pauv sab hauv kom rov tsim kho tsheb los ntawm ib lossis ntau qhov chaw nres nkoj (Source Ports) lossis qhov chaw VLANs mus rau qhov chaw saib xyuas qhov chaw nres nkoj (chaw nres nkoj qhov chaw, tseem hu ua qhov chaw nres nkoj daim iav) rau kev txais tos thiab ua tiav los ntawm cov cuab yeej tshuaj xyuas. Tsis zoo li TAP, SPAN tsis xav tau cov cuab yeej kho vajtse ntxiv thiab tuaj yeem paub sau cov ntaub ntawv tsuas yog los ntawm kev cia siab rau software teeb tsa ntawm qhov hloov.
Cov yam ntxwv tseem ceeb: Centered ntawm "Nqi-Effectiveness" thiab "Flexibility"
1. Zero Ntxiv Cov Nqi Kho vajtse thiab kev xa khoom yooj yim
Txij li thaum SPAN yog ib qho kev ua haujlwm tsim rau hauv qhov hloov pauv firmware, tsis tas yuav yuav cov khoom siv kho vajtse tshwj xeeb. Kev sau cov ntaub ntawv tuaj yeem ua tau sai sai tsuas yog los ntawm kev teeb tsa los ntawm CLI (Command Line Interface) lossis Web tswj interface (xws li qhia qhov chaw nres nkoj, saib xyuas chaw nres nkoj, thiab tsom iav kev taw qhia (inbound, outbound, lossis bidirectional)). Qhov "zero hardware cost" feature ua rau nws yog qhov kev xaiv zoo tshaj plaws rau cov xwm txheej uas muaj peev nyiaj tsawg lossis kev xav tau kev saib xyuas ib ntus (xws li kev xeem ntawv luv luv thiab kev daws teeb meem ib ntus).
2. Kev them nyiaj yug rau Multi-Source Port / Multi-VLAN Traffic Aggregation
Ib qho txiaj ntsig tseem ceeb ntawm SPAN yog tias nws tuaj yeem hloov tsheb los ntawm ntau qhov chaw nres nkoj (xws li cov neeg siv cov chaw nres nkoj ntawm ntau qhov nkag-txheej hloov pauv) lossis ntau VLANs rau tib lub chaw saib xyuas tib lub sijhawm. Piv txwv li, yog tias kev lag luam kev lag luam thiab kev saib xyuas cov neeg ua haujlwm yuav tsum tau saib xyuas kev khiav tsheb ntawm cov neeg ua haujlwm terminals nyob rau hauv ntau lub tuam tsev (suav nrog VLANs sib txawv) nkag mus rau hauv Is Taws Nem, tsis tas yuav xa cov khoom siv sib cais ntawm qhov egress ntawm txhua VLAN. Los ntawm kev sib sau cov tsheb khiav ntawm cov VLANs mus rau ib qho chaw saib xyuas los ntawm SPAN, kev tsom xam hauv nruab nrab tuaj yeem pom tau, txhim kho qhov yooj yim thiab kev ua haujlwm ntawm kev sau cov ntaub ntawv.
3. Tsis tas yuav cuam tshuam tus thawj Network Txuas
Sib txawv ntawm kev xa tawm ntawm TAP, ob qho tib si qhov chaw nres nkoj thiab qhov chaw saib xyuas ntawm SPAN yog qhov chaw nres nkoj zoo tib yam ntawm qhov hloov. Thaum lub sij hawm configuration txheej txheem, tsis tas yuav tsum tau ntsaws thiab unplug lub network cables ntawm thawj qhov txuas, thiab tsis muaj kev cuam tshuam rau kev sib kis ntawm cov tsheb qub. Txawm hais tias nws yuav tsum tau kho qhov chaw nres nkoj lossis lov tes taw SPAN ua haujlwm tom qab, nws tuaj yeem ua tau tsuas yog los ntawm kev hloov kho qhov teeb tsa los ntawm kab hais kom ua, uas yooj yim rau kev khiav lag luam thiab tsis muaj kev cuam tshuam nrog kev pabcuam hauv network.
Daim Ntawv Thov Scenario: tsom mus rau "Kev Ntsuas Tus Nqi Tsawg" thiab "Centralized Analysis"
1. Kev saib xyuas tus neeg siv tus cwj pwm hauv Campus Networks / Enterprise Networks
Nyob rau hauv tsev kawm ntawv cov tes hauj lwm los yog kev lag luam tes hauj lwm, cov thawj coj feem ntau yuav tsum tau saib xyuas seb cov neeg ua hauj lwm terminals puas muaj kev txhaum cai (xws li nkag mus rau cov websites tsis raug cai thiab rub tawm software pirated) thiab seb puas muaj coob tus P2P downloads los yog video kwj nyob bandwidth. Los ntawm kev sib sau ua ke ntawm cov neeg siv cov chaw nres nkoj ntawm kev nkag-txheej hloov mus rau qhov chaw saib xyuas los ntawm SPAN, ua ke nrog kev txheeb xyuas kev khiav tsheb (xws li Wireshark thiab NetFlow Analyzer), kev saib xyuas lub sijhawm ntawm tus neeg siv tus cwj pwm thiab kev txheeb cais ntawm kev ua haujlwm bandwidth tuaj yeem ua tiav yam tsis muaj peev txheej kho vajtse ntxiv.
2. Kev daws teeb meem ib ntus thiab kev xeem ntawv luv luv
Thaum muaj teeb meem ib ntus thiab qee zaus tshwm sim hauv lub network, lossis thaum tsim nyog yuav tsum tau ua qhov kev sim tsheb khiav ntawm daim ntawv thov siv tshiab (xws li lub kaw lus OA sab hauv thiab lub rooj sib tham video), SPAN tuaj yeem siv los tsim kom muaj chaw khaws ntaub ntawv sai. Piv txwv li, yog tias ib lub tuam tsev tshaj tawm tsis tu ncua hauv kev sib tham hauv video, cov neeg ua haujlwm thiab cov neeg saib xyuas tuaj yeem teeb tsa SPAN ib ntus kom pom cov tsheb khiav ntawm qhov chaw nres nkoj uas lub rooj sib tham video server nyob rau ntawm qhov chaw saib xyuas. Los ntawm kev txheeb xyuas cov ntaub ntawv ncua sij hawm, pob ntawv poob tus nqi, thiab kev ua haujlwm bandwidth, nws tuaj yeem txiav txim siab seb qhov txhaum yog tshwm sim los ntawm qhov tsis txaus network bandwidth lossis cov ntaub ntawv pob poob. Tom qab qhov kev daws teeb meem tiav lawm, SPAN kev teeb tsa tuaj yeem raug kaw yam tsis muaj kev cuam tshuam rau kev ua haujlwm hauv network tom ntej.
3. Traffic Statistics thiab Simple Auditing hauv Me thiab Nruab Nrab Networks
Rau cov me me thiab nruab nrab cov tes hauj lwm (xws li cov lag luam me thiab cov chaw soj ntsuam hauv tsev kawm ntawv), yog tias qhov kev xav tau ntawm kev sau cov ntaub ntawv kev ncaj ncees tsis siab, thiab tsuas yog kev txheeb xyuas cov tsheb khiav yooj yim (xws li kev siv bandwidth ntawm txhua qhov chaw nres nkoj thiab tsheb feem ntawm Top N daim ntawv thov) lossis kev soj ntsuam kev ua raws cai (xws li sau lub vev xaib sau npe nkag los ntawm cov neeg siv) xav tau tag nrho, SPAN tuaj yeem xav tau. Nws cov nqi qis thiab yooj yim-rau-xa cov yam ntxwv ua rau nws xaiv tus nqi zoo rau cov xwm txheej zoo li no.
Cov Kev Txwv: Qhov Tsis Zoo ntawm Kev Ncaj Ncees ntawm Cov Ntaub Ntawv thiab Kev Cuam Tshuam ntawm Kev Ua Haujlwm
1. Kev pheej hmoo ntawm cov ntaub ntawv poob thiab kev ntes tsis tiav
Kev rov ua dua ntawm cov ntaub ntawv pob khoom los ntawm SPAN tso siab rau CPU thiab cov peev txheej cache ntawm qhov hloov. Thaum lub tsheb khiav ntawm qhov chaw nres nkoj nyob rau ntawm nws lub ncov (xws li tshaj qhov hloov pauv lub peev xwm cache) lossis qhov hloov pauv tau ua haujlwm ntau ntawm kev xa mus rau tib lub sijhawm, CPU yuav muab qhov tseem ceeb los xyuas kom meej qhov kev xa tawm ntawm cov tsheb qub, thiab txo lossis ncua kev rov ua dua ntawm SPAN tsheb, ua rau pob ntawv poob ntawm qhov chaw saib xyuas. Tsis tas li ntawd, qee qhov kev hloov pauv muaj kev txwv ntawm qhov piv txwv ntawm SPAN (xws li tsuas yog txhawb nqa kev rov ua dua ntawm 80% ntawm kev khiav tsheb) lossis tsis txhawb nqa tag nrho cov ntaub ntawv loj loj (xws li Jumbo Frames). Tag nrho cov no yuav ua rau cov ntaub ntawv sau tsis tiav thiab cuam tshuam rau qhov tseeb ntawm cov txiaj ntsig kev tshuaj ntsuam tom ntej.
2. Kev Ua Haujlwm Hloov Chaw thiab muaj peev xwm cuam tshuam rau Network Kev Ua Haujlwm
Txawm hais tias SPAN tsis cuam tshuam ncaj qha rau thawj qhov txuas, thaum tus naj npawb ntawm cov chaw nres nkoj loj lossis cov tsheb thauj mus los hnyav, cov txheej txheem cov ntaub ntawv rov ua dua tshiab yuav tuav CPU cov peev txheej thiab sab hauv bandwidth ntawm qhov hloov. Piv txwv li, yog tias cov tsheb khiav ntawm ntau lub 10G chaw nres nkoj tau tsom mus rau 10G qhov chaw saib xyuas, thaum tag nrho cov tsheb khiav ntawm cov chaw nres nkoj ntau tshaj 10G, tsis yog tsuas yog qhov chaw nres nkoj saib xyuas raug kev txom nyem los ntawm pob ntawv poob vim tsis txaus bandwidth, tab sis CPU siv qhov hloov pauv kuj tseem tuaj yeem nce ntxiv, yog li cuam tshuam rau tag nrho cov ntaub ntawv chaw nres nkoj xa mus rau qhov ua tau zoo.
3. Muaj nuj nqi nyob ntawm tus qauv hloov thiab txwv tsis pub muaj kev sib raug zoo
Qib ntawm kev txhawb nqa rau SPAN muaj nuj nqi sib txawv heev ntawm cov keyboards ntawm cov tuam txhab sib txawv thiab cov qauv. Piv txwv li, cov keyboards qis kawg tsuas yog txhawb nqa ib qho chaw saib xyuas nkaus xwb thiab tsis txhawb VLAN mirroring lossis tag nrho-duplex tsheb mirroring; SPAN kev ua haujlwm ntawm qee qhov hloov pauv muaj qhov txwv "ib-txoj kev mirroring" (piv txwv li, tsuas yog tsom iav sab hauv lossis sab nraud, thiab tsis tuaj yeem tsom mus rau ob txoj kev tsheb khiav tib lub sijhawm); Tsis tas li ntawd, cross-switch SPAN (xws li mirroring qhov chaw nres nkoj tsheb ntawm kev hloov A mus rau qhov chaw saib xyuas ntawm qhov hloov B) yuav tsum tau tso siab rau cov kev cai tshwj xeeb (xws li Cisco's RSPAN thiab Huawei's ERSPAN), uas muaj kev teeb tsa nyuaj thiab tsis sib xws, thiab nyuaj rau hloov mus rau ib puag ncig ntawm kev sib xyaw ua ke ntawm ntau lub tuam txhab.
Kev Sib Piv Qhov Txawv Tseem Ceeb thiab Cov Lus Qhia Xaiv ntawm TAP thiab SPAN
Core Difference Sib piv
Txhawm rau kom pom tseeb qhov sib txawv ntawm ob, peb muab piv rau lawv los ntawm qhov ntev ntawm cov yam ntxwv ntawm kev ua haujlwm, kev cuam tshuam kev ua haujlwm, tus nqi, thiab cov xwm txheej siv tau:
| Sib piv Dimension | TAP (Test Access Point). | SPAN (Switched Port Analyzer). |
| Data Capture Integrity | 100% lossless ntes, tsis muaj kev pheej hmoo poob | Cia siab rau cov peev txheej hloov pauv, ua rau cov pob ntawv poob ntawm cov tsheb loj, kev ntes tsis tiav |
| Kev cuam tshuam rau Original Network | Tsis muaj kev cuam tshuam, txhaum tsis cuam tshuam rau qhov txuas thawj | Siv lub switch CPU/bandwidth thaum muaj neeg coob coob, tej zaum yuav ua rau kev ua haujlwm ntawm network poob qis |
| Tus nqi kho vajtse | Yuav tsum tau yuav cov khoom siv tshwj xeeb, tus nqi siab | Built-in hloov muaj nuj nqi, xoom ntxiv kho vajtse nqi |
| Deployment Flexibility | Yuav tsum tau txuas rau hauv series hauv qhov txuas, kev cuam tshuam hauv network xav tau rau kev xa tawm, kev hloov pauv tsawg | Software configuration, tsis muaj network cuam tshuam yuav tsum tau, txhawb ntau qhov chaw sib sau ua ke, siab yooj |
| Siv tau Scenarios | Cov kev sib txuas tseem ceeb, qhov tseeb qhov chaw txhaum, kev soj ntsuam kev nyab xeeb siab, kev sib txuas siab | Kev soj ntsuam ib ntus, kev txheeb xyuas tus neeg siv tus cwj pwm, kev sib txuas me me thiab nruab nrab, kev xav tau qis |
| Compatibility | Txhawb ntau tus nqi / xov xwm, ywj siab ntawm tus qauv hloov | Nyob ntawm qhov hloov chaw tsim khoom / qauv, qhov sib txawv loj hauv kev txhawb nqa kev ua haujlwm, kev teeb tsa kev sib tshuam sib txuas |
Cov lus pom zoo xaiv: "Kev Sib Tw Zoo" Raws li qhov xav tau ntawm Scenario
1. Cov xwm txheej qhov twg TAP nyiam dua
○Kev soj ntsuam ntawm cov kev sib txuas tseem ceeb hauv kev lag luam (xws li cov ntaub ntawv chaw tseem ceeb hloov pauv thiab egress router txuas), yuav tsum tau ua kom ntseeg tau qhov kev ncaj ncees ntawm cov ntaub ntawv ntes;
○Network txhaum hauv paus ua rau qhov chaw (xws li TCP retransmission thiab daim ntawv thov lag), yuav tsum tau soj ntsuam kom raug raws li cov ntaub ntawv ntim puv puv;
○Kev lag luam uas muaj kev ruaj ntseg thiab kev ua raws cai (nyiaj txiag, tsoom fwv txoj haujlwm, lub zog), yuav tsum tau ua kom tau raws li kev ncaj ncees thiab tsis cuam tshuam cov ntaub ntawv tshawb xyuas;
○Cov cheeb tsam hauv zej zog siab (10G thiab siab dua) lossis cov xwm txheej nrog cov ntaub ntawv loj loj, yuav tsum tsis txhob muaj pob ntawv poob hauv SPAN.
2. Scenarios qhov twg SPAN nyiam
○Cov tes hauj lwm me me thiab nruab nrab nrog cov peev nyiaj tsawg, lossis cov xwm txheej tsuas yog xav tau kev txheeb xyuas cov tsheb khiav yooj yim (xws li kev ua haujlwm bandwidth thiab cov ntawv thov saum toj kawg nkaus);
○Kev daws teeb meem ib ntus lossis kev sim daim ntawv thov luv luv (xws li kev sim tshiab tso tawm), yuav tsum tau xa mus sai yam tsis muaj peev txheej ua haujlwm ntev;
○Kev saib xyuas hauv nruab nrab ntawm ntau qhov chaw nres nkoj / ntau VLANs (xws li kev saib xyuas cov neeg siv hauv tsev kawm ntawv tus cwj pwm), yuav tsum muaj kev sib sau ua ke kom yooj yim;
○Kev saib xyuas cov kev sib txuas tsis yog cov tub ntxhais kawm (xws li cov neeg siv cov chaw nres nkoj ntawm kev nkag-txheej hloov), nrog rau cov kev xav tau qis rau cov ntaub ntawv khaws kev ncaj ncees.
3. Hybrid Siv Scenarios
Hauv qee qhov chaw sib koom ua ke, ib txoj kev xa tawm hybrid ntawm "TAP + SPAN" tuaj yeem raug txais yuav. Piv txwv li, xa TAP rau hauv cov kev sib txuas tseem ceeb ntawm cov chaw khaws ntaub ntawv kom paub meej cov ntaub ntawv ntim tag nrho rau kev daws teeb meem thiab kev soj ntsuam kev nyab xeeb; configure SPAN in access-layer or aggregation-layer switches to aggregate scattered user traffic for behavior analysis and bandwidth statistics. Qhov no tsis yog tsuas yog ua tau raws li kev soj ntsuam xyuas cov kev xav tau ntawm cov txuas tseem ceeb tab sis kuj txo cov nqi xa tawm tag nrho.
Yog li, raws li ob lub thev naus laus zis thev naus laus zis rau kev tau txais cov ntaub ntawv network, TAP thiab SPAN tsis muaj qhov "zoo lossis qhov tsis zoo" tab sis tsuas yog "qhov txawv ntawm qhov xwm txheej hloov pauv". TAP yog lub hauv paus ntawm "tsis muaj kev ntes" thiab "kev ntseeg ruaj khov", thiab tsim nyog rau cov xwm txheej tseem ceeb uas yuav tsum muaj siab rau cov ntaub ntawv kev ncaj ncees thiab kev ruaj ntseg network, tab sis muaj tus nqi siab thiab tsis tshua muaj kev xa tawm yooj; SPAN muaj qhov zoo ntawm "xoom tus nqi" thiab "kev yoog raws thiab yooj yim", thiab tsim nyog rau cov nqi qis, ib ntus, lossis tsis yog cov xwm txheej, tab sis muaj kev pheej hmoo ntawm cov ntaub ntawv poob thiab kev ua haujlwm.
Thaum lub sijhawm ua haujlwm thiab kev saib xyuas lub network tiag tiag, cov kws ua haujlwm network yuav tsum xaiv cov kev daws teeb meem tsim nyog tshaj plaws raws li lawv tus kheej cov kev xav tau ua lag luam (xws li seb nws puas yog qhov txuas tseem ceeb thiab seb puas xav tau kev tshuaj xyuas kom raug), cov nqi peev nyiaj, qhov loj ntawm lub network, thiab cov kev cai ua raws li txoj cai. Tib lub sijhawm, nrog rau kev txhim kho ntawm cov nqi network (xws li 25G, 100G, thiab 400G) thiab kev txhim kho ntawm cov kev cai ruaj ntseg network, TAP thev naus laus zis kuj tseem niaj hnub txhim kho (xws li kev txhawb nqa kev faib tsheb ntse thiab kev sib sau ua ke ntau lub chaw nres nkoj), thiab cov chaw tsim khoom hloov pauv kuj tseem niaj hnub txhim kho qhov kev ua haujlwm SPAN (xws li kev txhim kho lub peev xwm cache thiab txhawb nqa kev poob qis). Yav tom ntej, ob lub thev naus laus zis yuav ua lawv lub luag haujlwm ntxiv hauv lawv cov teb thiab muab kev txhawb nqa cov ntaub ntawv zoo dua thiab raug rau kev tswj hwm network.
Lub sijhawm tshaj tawm: Lub Kaum Ob Hlis-08-2025

