Configure Global Xpress Settings
As part of Xpress configuration, you need to configure the default settings
for tunnel features and options. As dynamic and static tunnels are created,
they will inherit these default settings. On the Global Tunnel Settings
page, you can globally enable one or more of the following tunnel features:
acceleration, compression,
and/or packing. In addition, you can
set the default options for your tunnels: firewall support, DiffServ support,
automatic host and partner discovery, and MTU size.
For security purposes, you should also define a tunnel password.
Setting Global Tunnel Options
Through the global tunnel options, you can set default values for firewall
support, DiffServ support, auto-discovery of hosts and tunnel partners,
and MTU size.
|
|
Note: To perform this task from PolicyCenter, you must first select a configuration from the Editing Configuration
drop-down list at the top of the page.
|
To set default settings for tunnel options:
1. Click the xpress tab. The current global settings are displayed next to the global tunnel settings button.
2. Click global tunnel settings. The Edit
Global Tunnel Settings window appears.
show screen
3. Set global options:
|
Option |
Description |
|
Firewall |
Enable/disable firewall support. You should enable firewall support
if the PacketShaper will be sending and receiving tunneled traffic
through a firewall tunnel (a pair of stateful firewalls). Firewall support is disabled by default.
It is not necessary to enable firewall support on each tunnel
partner. When firewall support is enabled on one end of the tunnel,
it will automatically act as if it is enabled on any partners
(although the firewall setting is not actually physically changed
on these partners).
|
|
DiffServ |
Enable/disable DiffServ mode. You will want to enable DiffServ
mode when using compression, packing, and/or acceleration on a
DiffServ network. DiffServ is disabled by default.
If an Xpress tunnel has DiffServ enabled, Xpress will inspect
all packets for its DiffServ Code Point (DSCP) value. Within the
tunnel, it will create a separate lane for each DSCP value.
When Xpress sees packets with a DSCP different from those seen
before, it will create a new lane associated with that DSCP. Any
packets with that DSCP are then sent through the associated lane.
Notes:
- When DiffServ mode is enabled, the tunneled super packets
will inherit the DiffServ markings of the original packets.
- If a super packet is marked with a different DSCP value while
it's inside the MPLS network, the partner PacketShaper at the
other end of the tunnel will remark each of the original packets
with this new value.
- Xpress supports up to five DSCP values.
If your network exceeds the maximum, the super packets in the
tunnel will not have DiffServ markings.
- Not applicable to acceleration-only tunnels
|
| Discovery |
Enable/disable the auto-discovery of local hosts and partners on all
enhanced Xpress tunnels. Discovery is enabled by default.
Note: Auto-discovery of enhanced tunnels works in enhanced mode only; it is not operable in migration mode.
When auto-discovery is enabled, you may want to limit the hosts
and partners that can use the tunneling facility. To do this, use
the tunnel discovery host and tunnel discovery partner CLI commands. Tunnel partners can also be restricted by using tunnel passwords.
When auto-discovery is disabled, you will need to manually add
hosts to tunnels using the tunnel local add and tunnel remote add commands and manually
create tunnels.
|
| MTU |
Set the Maximum Transmission Unit (MTU) used for packing and acceleration.
The MTU defines the maximum size of the super packet it's
the largest datagram than can be transmitted by an IP interface
(without it needing to be broken down into smaller units). Valid
MTU values are 100-1500; the default is 1500.
Choose auto to let the system pick the best MTU based on
other shaping settings; this setting requires traffic
shaping to be enabled. |
4. Click OK.
See also:
Configure Legacy Tunnel Settings
Select the Xpress Tunnel Mode
Enable/Disable Compression
Enable/Disable Acceleration
Enable/Disable Packing
Xpress Check List
|