How does the Network Security Controller determine how to distribute traffic?
The Network Security Controller aggregates 10GbE traffic to 1GbE ports for inspection by Proventia GX Network Intrusion Prevention System sensors.
There is an internal switch that maps the 10GB traffic to various configurations of 1GB ports. All flows that start on a port pair (1GB segment) will be maintained on that 1GB segment. The distribution of flows is based on a hashing algorithm that is based on source & Destination MAC address and IP address plus protocol and port number for 5-tuple enabled by default (L4_long_hash_en=1). Disabled uses only source & Destination MAC address and IP address.
There is no active management of the traffic to load balance on the 1GB ports.
If the above information does not resolve your issue, please contact IBM Security Systems Technical Support.
|Security||IBM Security Network Controller||Not Applicable||Firmware||1.0|