Mylinking™ Network Packet Broker(NPB) ML-NPB-5410II
6*25/40/100GE QSFP28 plus 48*1/10GE SFP+, Max 2.16Tbps
1-Overviews
● A full visual control of Traficc Capturing device(6*40/100GE QSFP28, 40GE/100GE interfaces can be split into 4 x 10GE/25GE interfaces and 48*1/10G SFP+ total 54 ports Rx/Tx duplex processing)
● A full Data Scheduling Management device(duplex Rx/Tx processing)
● A full pre-processing and re-distribution device(bidirectional bandwidth 2.16Tbps)
● Supported collection & reception of link data from different network element locations
● Supported collection & reception of link data from different switch routing nodes
● Supported raw packet collected, identified, analyzed, statistically summarized and marked
● Supported to realize irrelevant upper packaging of Ethernet traffic forwarding, supported all kinds of Ethernet packaging protocols, and aslo 802.1q/q-in-q, IPX/SPX, MPLS, PPPO, ISL, GRE, PPTP etc. protocol packaging
● Supported raw packet output for monitoring equipment of BigData Analysis, Protocol Analysis, Signaling Analysis, Security Analysis, Risk Management and other required traffic.
● Supported real-time packet capture analysis, data source identification
● VxLAN, VLAN, MPLS, GTP, GRE, ERSPAN Header Stripping, supported the VxLAN, VLAN, MPLS, GTP, GRE, ERSPAN header stripping to forward in the original data packet
2-Intelligent Traffic Processing Abilities
ASIC Chip Plus Multicore CPU
1080Gbps + 1080Gbps intelligent traffic processing capabilities. Can operate at full capacity, 1080Gbps input + 1080Gbps output
100GE Capturing
6*40/100GE QSFP28, 40GE/100GE interfaces can be split into 4 x 10GE/25GE interfaces and 48*1/10G SFP+ total 54 ports Rx/Tx duplex processing, up to 2.16Tbps Traffic Data Transceiver at same time, for network Data Acquisition, simple
Data Replication
Packet replicated from 1 port to multiple N ports, or multiple N ports aggregated, then replicated to multiple M ports
Data Aggregation
Packet replicated from 1 port to multiple N ports, or multiple N ports aggregated, then replicated to multiple M ports
Data Distribution
Classified the incoming metdata accurately and discarded or forwarded different data services to multiple interface outputs according to white list, blacklist or user’s predefined rules.
Data Filtering
It can accurately classify incoming data streams and discard or forward different data services to multiple output interfaces based on whitelist or blacklist rules. It supports flexible combinations based on Ethernet type, VLAN, IP quintuple, and message characteristics, further meeting the deployment needs of various network security devices, protocol analysis, signaling analysis, and other traffic monitoring needs.
Load Balance
Supported hash algorithm load balancing can be performed based on L2-L4 layer characteristics to ensure the session integrity of the data stream received by the bypass monitoring device. In addition, members of the diversion port group can flexibly exit (link DOWN) or join (link UP) when the link status changes. The distribution group automatically redistributes traffic to ensure dynamic load balancing of the port output traffic.
UDB Matching
Supports matching of any key field in the first 128 bytes of the message. Users can customize the offset value, key field length, and content, and determine the traffic output policy based on user configuration.
Single fiber Transmission
Support single-fiber transmission at port rates of 10 G, 40 G, and 100 G to meet the single-fiber data receiving requirements of some back-end devices and reduce the input cost of fiber auxiliary materials when a large number of links need to be captured and distributed
40GE 100GE Port Breakout
Supports port splitting, that is, supports splitting a 40GE/100GE interface into 4×10GE/25GE interfaces, flexibly meeting the access of various types of port-type links.
Tunnel Packet Termination
Supports GRE tunnel termination, each port of the device can be individually configured with 16 IP addresses
Packet Protocol Identify
● Can identify VLAN, QinQ, and MPLS labeled packets
● Can identify IPv4/IPv6 packets
● Can identify VxLAN, GRE, GTP, IPoverIP and other tunnel packets
● Can identify IP fragment packets
● Other packets can be identified through custom offset signatures (UDB)
Interface FEC
100GE interfaces support FEC (Forward Error Correction)
Tag Processing
Support stripping of VLAN labels (up to 2 layers)
Support stripping of MPLS labels (up to 6 layers)
Support adding VLAN tags
Ethernet encapsulation independence
Support realize Ethernet upper layer encapsulation-independent traffic forwarding, transparently support various Ethernet encapsulation protocols, and seamlessly support various protocol encapsulations such as 802.1Q/Q-IN-Q, IPX/SPX, MPLS, PPPO, ISL, GRE, PPTP, etc.
VxLAN, VLAN, MPLS, GTP, GRE, ERSPAN Header Stripping
Supported the VxLAN, VLAN, MPLS, GTP, GRE, ERSPAN header stripping to forward in the original data packet
Mylinking™ Network Visibility Platform
Supported Mylinking™ Matrix-SDN Visibility Control Platform Access
1+1 Redundant Power System(RPS)
Supported 1+1 Dual Redundant Power System
3-Typical Application Structures
3.1 Centralized Collection Replication/Aggregation Application(as following)
3.2 Unified Schedule Application(as following)
4-Specifications
|
ML-NPB-5410II Mylinking™ Network Packet Broker TAP/NPB Functional Parameters |
|
|
Business Interface |
|
| Interface specifications | 48 SFP+ ports, 6 QSFP28 ports |
| Interface rate | Supports GE, 10GE, 25GE, 40GE, and 100GE rates |
| Access module | QSFP28 pluggable optical module |
| SFP+ pluggable optical/electrical module | |
| 40GE/100GE interfaces can be split into 4 x 10GE/25GE interfaces | |
| Single fiber transmission | Supported |
| Single fiber receiving | Supported |
| Interface FEC | 100GE interfaces support FEC (Forward Error Correction) |
|
Processing Performance |
|
| Overall performance | Can operate at full capacity, 1080Gbps input + 1080Gbps output |
| Port performance | Each port can run at 100% line speed |
|
Packets Identification |
|
| Can identify VLAN, QinQ, and MPLS labeled packets | |
| Can identify IPv4/IPv6 packets | |
| Can identify VxLAN, GRE, GTP, IPoverIP and other tunnel packets | |
| Can identify IP fragment packets | |
| Other messages can be identified through custom offset signatures (UDB) | |
|
Packets Filtering |
|
| Number of rule entries | Support mask rulesNumber of unit group rules: 9,000
Number of regular quintuple rules: 4000 Number of compound multi-group rules: 1500 (tunnel packet identification disabled) Number of compound multi-group rules: 1000 (tunnel packet identification enabled) |
| Rule Tuple | Input Port |
| Source/destination MAC address | |
| VLAN ID | |
| Ethernet Type field | |
| Packet length | |
| Layer 3 protocol type | |
| Outer/inner source and destination IP addresses or address segments (outer or inner layer of the tunnel) | |
| TCP/UDP source/destination port or port range | |
| TCP Flag | |
| IP fragment marking | |
| IPv6 flow label | |
| Packet length range | |
| IP TOS/DSCP marking/ECN/TCP effective length | |
| User-defined signature (UDB), within the first 128 bytes of the message, up to 4 bytes are matched, and can be discontinuous | |
| Composite Rules | Supports the above multi-group compound rule matching |
|
Message modification |
|
| Tunnel Encapsulation | Support tunnel encapsulation message header stripping(VxLAN, GRE, GTP, ERSPAN) |
| Tunnel message termination | Supports GRE tunnel termination, each port of the device can be individually configured with 16 IP addresses |
| MAC address replacement | Modify the target MAC |
| Modify the source MAC to the output port MAC | |
| Tag processing | Support stripping of VLAN tags (up to 2 layers) |
| Support stripping of MPLS labels (up to 6 layers) | |
| Support adding VLAN tags | |
|
Packet Forwarding |
|
| Blacklist and whitelist | Support message forwarding (whitelist) or discarding (blacklist) operations |
| Load Balancing | Supports HASH-based same-source and same-destination load balancing output:SIPDIPSIP + SPortDIP+DPortSIP + DIPSIP+SPort+DIP+DPort |
| Supports up to 64 output groups, and the number of members in each group can be different | |
| Support symmetric HASH load balancing and diversion output | |
| Supports sending the same source input traffic to multiple load balancing port groups at the same time | |
| Supports multi-port input traffic aggregation and sends it to multiple load balancing port groups at the same time | |
| Unknown message | By default, all packets are discarded, and forwarding output can be set. |
| Data Flow | Support multi-port input aggregation |
| Support multi-port output replication/splitting | |
|
Management Configuration |
|
| Management interface | Provides two 10/100/1000M adaptive interfaces, each with its own IP address |
| Provides 1 CONSOLE management interface | |
| Management Agreement | Support HTTPS protocol (web interface) |
| Support SSH protocol (CLI interface) | |
| Support SNMP V1/V2c/V3 protocol | |
| Alarm upload | Actively upload alarms through SNMP Trap |
| Remote upgrade | Support web interface/SSH remote software upgrade |
| Remote Access | Supports remote access via multi-hop routers |
| Logging | Supports logging of all status, alarms, system events, and key operations |
| The rolling retention period for log records is at least 1 year | |
| Time Management | Support NTP time synchronization to provide a time benchmark for logging |
| Built-in RTC circuit, the time of device power failure is not lost | |
| Permission Management | Support user hierarchical permission management |
|
Management Configuration |
|
| Information Security | Support management plane information security features |
| Configuration File | Support import/export configuration files |
|
Working Conditions |
|
| Input power | AC specification: 100VAC~240VAC, 192VDC~288VDC (high voltage DC) |
| DC specification: -36VDC~ -72VDC | |
| Support 1+1 power redundancy backup | |
| Heat dissipation method | Active chassis fan cooling |
| Operating temperature | 0℃ ~ +45℃,10% ~ 95% RH |
| Storage temperature | -45℃ ~ +70℃,10% ~ 95% RH |
| Power consumption of the whole machine | <180W |
| Machine weight | <7kg |
| Host size | Without mounting ears: 392 mm (D) × 440 mm (W) × 44 mm (H) |
| Deployment requirements | Ensure there is enough space around the device's fan outlet and heat dissipation holes |
| A well-ventilated indoor environment without direct sunlight | |
|
Product Certification |
|
| Environmental friendly | Compliant with RoHS2.0 Directive (2011/65/EU and 2015/863 EU) |







