Item |
Specification |
Ethernet |
ARP
QinQ
Link aggregation, including dynamic aggregation and static aggregation
Aggregation of interface with different rates
Port mirroring, flow mirroring
FlexE
Interface channelization |
IP service |
NAT, NAT444, NAT multi-instance, VPN NAT, NAT logging
NetStream v5/v8/v9 packet format, IPv4/IPv6/MPLS packet statistics
Network Quality Analyzer (NQA)
DNS, DNS proxy
DHCP server, DHCP relay, DHCP client
UDP helper |
IPv6 |
IPv6 ND, IPv6 PMTU, dual-stack forwarding
IPv6 ACL
DHCPv6 server/client
DNS AAA request, proxy
IPv6 tunneling: Manual IPv6 tunneling, IPv6-over-IPv4 tunneling, GRE tunneling, automatic IPv4-compatible IPv6 tunneling, 6to4 tunneling, ISATAP tunneling
6PE, 6VPE (IPv6 MPLS L3VPN)
NAT64, NAT46
NATPT, NPTv6 |
Unicast routing |
IPv4 and IPv6 dual-stack
Static routing, RIP, RIPng, OSPF, OSPFv3, IS-IS, IS-ISv6, BGP, BGP4+
VRRP, VRRPv3
IPv4 to IPv6 transition
ECMP, UCMP
Policy-based routing
Routing policy
Static routing, FRR, OSPF FRR, ISIS FRR, BGP FRR |
Mulitcast |
PIM-DM, PIM-SM, PIM-SSM, MSDP, MBGP, anycast-RP
IGMPv1/v2/v3
PIM6-DM, PIM6-SM, PIM6-SSM
Multicast Listener Discovery (MLDv1/v2)
Multicast policy and multicast QoS |
MPLS VPN |
MPLS label distribution protocol including LDP and RSVP-TE
P/PE, compliant with RFC2547bis
Inter-AS MPLS VPN options (Option A/Option B/Option C)
HoPE
Multi-role host
Layer 2 VPN, Layer 3 VPN, inter-AS Layer 2 VPN, inter-AS Layer 3 VPN
MPLS TE FRR, LDP FRR
6PE, 6vPE
Multicast VPN
MPLS VPN failure location, MPLS ping/traceroute
L2VPN access to L3VPN |
SDN |
VXLAN, EVPN
PCEP
Network information collection protocol including BGP-LS
NETCONF, YANG
MPLS SR, SRv6
CBTS
OpenFlow
BGP FlowSpec
Telemetry
Traffic switchover from SRv6 TE to SRv6 BE
SRv6 policy tuning based on latency/bandwidth/packet loss ratio |
High availability |
Redundancy designs for key components including MPUs, power supplies, and fan trays
Intelligent fan tray speed regulation
NSR, GR
BFD (association with other protocols supported)
Fast route convergence
iFIT, which can detect network failures in real time, locate network failures quickly, and implement visible management of performance data |
ACL |
IPv4 and IPv6 ACL and extended ACLs
Layer 2, Layer 3 and Layer 4 ACLs
Inbound and outbound packet filtering ACLs |
QoS |
Traffic classification based on port, MAC address, IP address, IP priority, DSCP priority, TCP/UDP port number, or protocol type
Traffic policing: CAR
Source address or destination address-based rate limit (subnet-based rate limit supported)
GTS
Priority marking/remarking
Queue scheduling mechanisms: FIFO, PQ, CQ, WFQ, RTPQ, CBWFQ
Congestion avoidance algorithms: Tail-drop, WRED
Rate limit
MPLS QoS
IPv6 QoS
Hierarchical QoS (HQoS)
QoS Policy Propagation on BGP (QPPB) |
Security |
Hierarchical user management and password protection, password control
AAA (RADIUS authentication, TACACS+ authentication)
Portal authentication (support for association with EAS and portal bypass)
ACL, ACL acceleration, time-based access control
Packet filtering firewall, ASPF
Attack defense on the control plane
Attack detection and prevention
URPF
PKI certificates
SSH 1.5/2.0
IPSec, IPSec multi-instance, IKE
Encryption algorithm: SM1, SM2, SM3, SM4 |
VPN |
GRE tunneling (point-to-multipoint mode supported)
IPSec tunneling
L2TP tunneling
ADVPN tunneling
GDVPN tunneling
SSL VPN tunneling |
System management |
In-band network management and out-of-band network management
CLI configuration from the console port or over Telnet or SSH2.0
File download and upload over FTP, TFTP, XMODEM, or SFTP
SNMPv1/v2/v3
RMONv1/v2 (groups 1, 2, 3, and 9)
NTP
Failure alarming
Syslog
Traceroute
Multi-user line access to the device via Telnet |