Documente Academic
Documente Profesional
Documente Cultură
Table of Contents
i
System Description
Quidway AR 28-09 Router Table of Contents
ii
System Description
Quidway AR 28-09 Router Chapter 1 Product Overview
1.1 Introduction
Quidway AR 28-09 Router is an edge access router independently developed by
Huawei Technologies. It adopts modular design and provides a wide range of optional
SICs (Smart Interface Cards) and MIMs (Multifunctional Interface Modules) in addition
to fixed Fast Ethernet interfaces (FEs), AUX ports, and synchronous/asynchronous
serial interfaces. Compared with competitive products, the AR 28-09 features higher
cost effectiveness and excellent expandability, and therefore can serve as an access
router in large branches or a core router in small to medium-sized enterprise networks.
The AR 28-09 adopts high-speed microprocessor PowerPCs. It operates on Huawei
network operating system platform VRP (Versatile Routing Platform) which makes
configuration an easy task. The router delivers:
l Abundant network security features
l Dumb terminal access
l SNA/DLSw
l Backup solutions based on the backup center technology
l VoIP
l IP multicast
l PPPoE
l Portfolio of rich QoS features
With all these features, the router can be networked with other Quidway Series Routers
and Ethernet switches to provide overall end-to-end network solutions for medium to
large-sized enterprises and industries from telecom, ISP, finance, revenue, public
security to railway transportation.
As software and hardware of the AR 28-09 are designed in compliance with
international standards, the router can interoperate with products of other vendors at all
layers. This protects user investment to the maximum degree.
The following two figures show the front view and rear view of AR 28-09:
1-1
System Description
Quidway AR 28-09 Router Chapter 1 Product Overview
The AR 28-09 provides three fixed network interfaces: one 10/100 Mbps Ethernet
interface, one AUX port, and one synchronous/asynchronous serial interface. It also
provides one MIM slot and two SIC slots.
1.2.1 SIC
1-2
System Description
Quidway AR 28-09 Router Chapter 1 Product Overview
1.2.2 MIM
1-3
System Description
Quidway AR 28-09 Router Chapter 1 Product Overview
1-4
System Description
Quidway AR 28-09 Router Chapter 1 Product Overview
1-5
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
2-1
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
2-2
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
At layer 2, the series implements L2TP (Layer 2 Tunneling Protocol) to help the user
deliver dial-up VPDN (Virtual Private Data Network) services and leased line VPN
services.
At layer 3, the series implements the GRE (Generic Routing Encapsulation) protocol.
Combined with the IPSec technology, it provides leased line VPN with a total network
security solution covering access control, connectionless integrity and data origin
authentication, anti-replay, encryption, and traffic classification services for
communicating parties.
The user may use the two tunneling protocols separately or in conjunction for better
services.
MPLS (Multiprotocol Label Switching) combines IP and ATM technologies. By
replacing the IP header with a short fixed length label to identify traffic and drive
forwarding, MPLS allows you to achieve a higher forwarding speed while retaining
support from IP routing and control protocols. Thus, the requirements that various
emerging applications put on networks can be satisfied.
In an MPLS network, labeled packets are transmitted along an LSP (Label Switched
Path) formed by a series of LSRs (Label Switching Routers). Since LSP is virtually a
tunnel across the public network, the MPLS implementation of VPN is inherently
advantageous. MPLS VPN interconnects far-flung branches of a private network
through LSPs to form a uniform network and supports the branches to multiplex IP
addresses and different VPNs to interoperate.
The AR 28 series can work as both Label Edge Routers (LERs) and LSRs. If a router is
at the edge of a label area, it works as LER to connect an MPLS area with a non-MPLS
area or another MPLS area, and to classify services, distribute labels, and
encapsulate/strip off multi-tier labels. Inside an MPLS area, the AR 46 series work as
LSRs to switch labeled packets.
l MPLS L2VPN offers MPLS network-based L2 VPN services. From the perspective
of users, an MPLS network is a two-layer switching network, through which L2
connectivity can be established between sites.
l BGP/MPLS VPN provides MPLS network-based L3 VPN services. The use of
MPLS allows easy IP-based VPN implementation and great VPN expandability
and management. In addition, VPNs constructed using MPLS make it possible to
implement value-added services. Multiple VPNs can be formed from a single
access point, each representing a distinctive service. This enables a network to
transmit different types of services in a flexible way.
2.7 DCC
Quidway AR 28 Series Routers provide the user with a perfect dial-up solution through
two dial-up modes, namely C-DCC (Circular dial-up Control Center) and RS-DCC
(Resource-Shared DCC). In some circumstances, routers establish connections for
2-3
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
communications only when they want to transmit information between them. Therefore,
the transmitted data are time-independent, bursty, and in a small amount. The
presence of DCC provides a flexible, cost-effective, and efficient solution for such
applications.
The implementation of RS-DCC can provide much complete functions. With it, the AR
28 Series can have multiple dial-up subscribers share a physical interface through the
configuration of dialer pool and place different calls for them as well.
In practice, DCC guarantees the trunk line communications through preparing a
backup line. In the event that the trunk line fails to provide normal communication
services due to the onset of line faults or any other causes, DCC can use the secondary
channel to keep the service going normally. In addition, the AR 28 Series can also
implement DCC callback including PPP callback, and ISDN caller ID callback.
2-4
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
packet header) transmitted over the low-speed PPP serial links. Hence, the network
resource utilization is improved.
Voice RADIUS is also fulfilled. Whenever a voice call is generated, the AR 28 series will
report the statistics of the call, such as communications duration, number of packets,
and number of bytes to the RADIUS Server for communications accounting.
2.9.1 IPSec
2-5
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
The two sides of communication perform encryption and data source authentication at
IP layer to implement confidentiality, integrity, authentication, and anti-replay of packets
in transmission.
IPSec may use the ESP or AH protocol to process packets. For high security,
complicated encryption/decryption/authentication algorithms are often used. Since the
IPSec software on a router consumes a lot of CPU resources on encryption/decryption
algorithm operations, the overall performance may be degraded. To solve this problem,
you can insert an encryption card into a modularized router, on which IPSec operations
are processed by hardware. This can improve IPSec processing efficiency, as well as
overall performance of a router.
2.9.3 Portal
Portal is also called portal website. Portal authentication is also called web
authentication, which mainly falls into two categories: fast authentication and normal
authentication.
Portal works on this principle: Unauthenticated users can only access certain website
servers, and any access packets to any other servers on the Internet are redirected to a
portal server unconditionally for authentication.
2.9.4 PKI/CA
Public key infrastructure (PKI) is a system which uses public key technology and digital
certificate to protect system security and authenticates digital certificate users. It
provides a whole set of security mechanism by combining software/hardware systems
and security policies together.
2.9.5 SSHv1.5/v2.0
When routers are connected by remote users across insecure networks, secure shell
(SSH) can provide them authentication and security fencing off IP spoofing, plain-text
password interception, and other attacks. When serving as an SSH server, the router
may accept connections from multiple SSH clients.
2.9.6 URPF
Unicast reverse path forwarding (URPF) serves as a safeguard against source address
based network attacks.
2-6
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
I. iManager N2000
Quidway AR 28 Series Routers adopt modular Huawei NMS iManager N2000, and
support SNMP V1/V2c/V3 and the client/server architecture. The AR 28 Series can
separately operate in a UNIX (SUN or HP) or ORACLE/SYBASE environment.
iManager N2000 can manage and monitor all the data communication devices
developed by Huawei Technologies and the networks supporting MIBII devices, and
provide multilingual graphic user interfaces (GUIs). The AR 28 Series provide real-time
management of topology, faults, performance, configuration tools, and device log. The
NMS itself runs the functions of monitoring, security, and user management. QoS
management and VPN management and other service management are also
available.
2-7
System Description
Quidway AR 28-09 Router Chapter 2 Product Features
tool. Leveraging the MIB (Management Information Base) of the device itself, Quidview
supports browsing the device configuration information, monitoring the device
operation, and implementing other essential network management functions. In
addition, it can be integrated with other NMSs, such as HP OpenView, IBM NetView,
WhatsUpGold, SNMPc, or iManager N2000, to provide a uniform network management
solution, fulfilling complete network management from device level to network level.
Thus, it can help users decrease the product cost while maintaining the diversified
functions. Quidview also includes the tool components EasyConfig, NSC&NDA and
Traffic View.
Quidway AR 28 Series Routers are available with multiple maintenance methods,
including local maintenance, remote maintenance, and centralized maintenance. In
addition, the AR 28 Series provide complete alarm, test, diagnosis, track, and log
functions, which facilitate the routine system maintenance and management.
2-8
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Item Description
1 console port
1 AUX port
Fixed interface
1 synchronous/asynchronous serial interface
1 x 10/100 Mbps Ethernet interface
1 MIM slot
Slot
2 SIC slots
System power
50 W
consumption
3-1
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Item Description
Attribute Description
Connector RJ-45
Interface standard EIA/TIA-232
Baud rate 9600 bps
Command line interface
Connecting to the character terminal
Supported services Connecting to the serial interface of the local PC
and running the terminal emulation program on
the PC
3-2
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Attribute Description
Connector RJ-45
Interface standard EIA/TIA-232
Baud rate 300 bps to 115.2 kbps
Modem dial-up
Supported service Providing the console port function in case a
console port failure
Description
Attribute
Synchronous mode Asynchronous mode
Connector DB-50
Interface standard V.24 V.35
and operating EIA/TIA-232
mode DTE/DCE DTE/DCE
Maximum baud
64 kbps 2.048 Mbps 115.2 kbps
rate
Attribute Description
Connector RJ-45
Interface type MDI
10/100 Mbps autosensing
Operating mode
Full/half duplex
3-3
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Attribute Description
3-4
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Attribute Description
Ping, traceroute
DHCP server
DHCP relay
DHCP/BOOTP client, DHCP accounting
DNS client
DNS static
DNS proxy
IP DDNS
applications HWPing
IP accounting
UDP helper
NTP
Telnet
TFTP client
FTP client
FTP server
Static routing management
Dynamic routing protocols
l RIP-1/RIP-2
l OSPF
l BGP
l IS-IS
l MBGP
l MSDP
Routing policy
LDP
LSPM
MPLS MPLS L3VPN (MPLS)
MPLS L2VPN
VPN instance
3-5
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Attribute Description
Local authentication
AAA RADIUS
HWTACACS
ASPF
Firewall
ACL
IKE
IPSec
Data security
Encryption card
Network Portal
security
L2TP
NAT/NAPT
PKI/CA
Other RSA
security SSHv1.5/2.0
technologies URPF
DVPN
GRE
EAD
VRRP
Backup center
Reliability Dual PSUs, OIR of PSUs and fan modules, and hot swappable
interface cards (available on the AR46 series only)
Auto detect
CAR
Traffic policing
LR
Congestion
FIFO, PQ, CQ, WFQ, CBQ, RTPQ
management
Congestion
WRED
avoidance
Traffic
GTS
QoS shaping
FR QoS
MPLS QoS
MP QoS/LFI
Other QoS
PPP/MPoFR QoS
technologies
cRTP/IPHC
ATM QoS
Sub-interface QoS
3-6
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Attribute Description
Reverse Telnet
Terminal RSH
services Rlogin client
POS access
FXS
FXO
Interface Analog E&M
E1VI/T1VI
BSV
R2
DSSI
Signaling
Q.SIG
Digital E&M
H.225
H.323
H.245
GK client GK client
SIP SIP
G.711A law
Voice G.711U law
G.723R53
G.723R63
G.726R16
Codec
G.726R24
G.726R32
G.726R40
G.729a
G.729R8
RTP/cRTP
Media
IPHC
process
Voice backup
Fax Fax
Voice RADIUS
Others
VoFR
3-7
System Description
Quidway AR 28-09 Router Chapter 3 Specifications and Functionality
Attribute Description
SNMPv1/v2c/v3
MIB
Network
SYSLOG
management
BIMS
RMON II
Command line management
Local File system management
management Auto config
Maintainabi
Dual image
lity
Console port login
AUX port login
TTY port login
User access Telnet (VTY) login
management SSH login
FTP login
X.25 PAD login
XModem
For VRP features in the above table, refer to VRP3.4 System Description.
3-8
System Description
Quidway AR 28-09 Router Chapter 4 Applications and Solutions
4-1
System Description
Quidway AR 28-09 Router Chapter 4 Applications and Solutions
l At the data center of the bank, the AR 28-40/28-80 is used to connect with the
dependent business halls through the master DDN lines and standby PSTN/ISDN
lines.
l At each business hall of the bank, the AR 28-09 is used to connect the dump
terminals through asynchronous serial ports and to connect the ATM and/or SNA
clients through synchronous serial ports.
l In the supermarket, the AR 28-09 is used to connect point of sale (PoS) machines
with the network center of the bank through PSTN, thus implementing the
value-added services.
4-2
System Description
Quidway AR 28-09 Router Chapter 4 Applications and Solutions
switching network and the IP network, providing enterprises with voice solution of high
quality and low cost.
4-3
System Description
Quidway AR 28-09 Router Chapter 4 Applications and Solutions
4-4
System Description
Quidway AR 28-09 Router Chapter 4 Applications and Solutions
l Quidway AR 28-09 Router connects to the MAN through a 10/100M Ethernet port,
implementing the broadband access of LAN.
l The AR 28-09 connects with the server clusters through a 10/100M Ethernet port
and connects with the internal LAN through another.
4-5
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
Optional
AUX cable 1
Available from the external cable kit
Optional
Ethernet cable 1/2
Available from the external cable kit
Synchronous/
asynchronous serial
1 Optional
interface cable
(DB-50)
& Note:
l “Required” items are provided as part of ordered units. You do not need to order
them separately.
l “Optional” items are provided only when ordered.
5-1
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
While ordering interface cards and modules, you need to select cables from the
external cable kit as shown in Table 5-2 if multiple cable options are available. When
doing that, you need to consider line properties and number of interfaces.
Interface
card and Cable Remarks
module
5-2
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
Interface
card and Cable Remarks
module
5-3
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
Interface
card and Cable Remarks
module
5-4
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
Interface
card and Cable Remarks
module
NDEC — —
HNDE — —
5-5
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
Interface
card and Cable Remarks
module
5-6
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
& Note:
l “Required” items are provided as part of ordered units. You do not need to order
them separately.
l “Optional” items are provided only when ordered.
l “External cable kit/external fiber-optic cable kit” is a collection of cables/fiber-optic
cables which could be delivered on demand and independent of units.
Select cables appropriate to the interface cards and modules you selected. For more
information, refer to Quidway AR 28 Series Routers Installation Manual.
5-7
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
Coaxial
Optional For extending E1 75-ohm coaxial cables
connector
Network
For extending E1 120-ohm twisted pairs and T1/T1VI
interface Optional
cables
connector
75-ohm
8E1/4E1
Optional —
conversion
cable
120-ohm
8E1/4E1
Optional —
conversion
cable
8T1/4T1
conversion Optional —
cable
5-8
System Description
Quidway AR 28-09 Router Chapter 5 Ordering Guide
The external fiber-optic cable kit for the AR 28-09 provides both single-mode and
multi-mode fiber-optic cables.
5-9