Dell PowerConnect J-8208 Release Notes JUNOS version 10.3 - Page 51

Configuration Overview, DPNSS/DASS 2 extensions to IUA Protocol DUA

Page 51 highlights

Stream Control Transmission Protocol Overview • Aggregate Server Access Protocol (ASAP) • Bearer Independent Call Control (BICC) • Direct Data Placement Segment chunk (DDP-segment) • Direct Data Placement Stream session control (DDP-stream) • DPNSS/DASS 2 extensions to IUA Protocol (DUA) • Endpoint Handleescape Redundancy Protocol (ENRP) • H.248 Protocol (H248) • H.323 Protocol (H323) • ISDN User Adaptation Layer (IUA) • MTP2 User Peer-to-Peer Adaptation Layer (M2PA) • MTP2 User Adaptation Layer (M2UA) • MTP3 User Adaptation Layer (M3UA) • Q.IPC • Reserved • Simple Middlebox Configuration (SIMCO) • SCCP User Adaptation Layer (SUA) • Transport Adapter Layer Interface (TALI) • v5.2 User Adaptation Layer (V5UA) SCTP can transport signaling messages to and from Signaling System 7 (SS7) for 3G mobile network through M3UA, M2UA or SUA. SCTP is a packet-based transport protocol. SCTP provide reliable and secure transport, minimized end-to-end delay, short failover time in case of network failures and both sequence and no-sequence transport. Configuration Overview You should configure at least one SCTP profile to enable the security device to perform stateful inspection on all SCTP traffic. The stateful inspection of SCTP traffic will drop some anomalous SCTP packets. The SCTP firewall supports deeper inspection: • Packet filtering-The profile configuration of drop packets for special SCTP payload protocol and M3UA service enables packet filtering. • Limit-rate-Controls the packets rate of SCCP in M3UA service. The SCTP deeper inspection requires the following steps: • Creating an SCTP profile • Configuring the filtering and limiting parameters • Binding the SCTP profile to a policy 51

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65

Aggregate Server Access Protocol (ASAP)
Bearer Independent Call Control (BICC)
Direct Data Placement Segment chunk (DDP-segment)
Direct Data Placement Stream session control (DDP-stream)
DPNSS/DASS 2 extensions to IUA Protocol (DUA)
Endpoint Handleescape Redundancy Protocol (ENRP)
H.248 Protocol (H248)
H.323 Protocol (H323)
ISDN User Adaptation Layer (IUA)
MTP2 User Peer-to-Peer Adaptation Layer (M2PA)
MTP2 User Adaptation Layer (M2UA)
MTP3 User Adaptation Layer (M3UA)
Q.IPC
Reserved
Simple Middlebox Configuration (SIMCO)
SCCP User Adaptation Layer (SUA)
Transport Adapter Layer Interface (TALI)
v5.2 User Adaptation Layer (V5UA)
SCTP can transport signaling messages to and from Signaling System 7 (SS7) for 3G
mobile network through M3UA, M2UA or SUA. SCTP is a packet-based transport protocol.
SCTP provide reliable and secure transport, minimized end-to-end delay, short failover
time in case of network failures and both sequence and no-sequence transport.
Configuration Overview
You should configure at least one SCTP profile to enable the security device to perform
stateful inspection on all SCTP traffic. The stateful inspection of SCTP traffic will drop
some anomalous SCTP packets. The SCTP firewall supports deeper inspection:
Packet filtering
—The profile configuration of drop packets for special SCTP payload
protocol and M3UA service enables packet filtering.
Limit-rate
—Controls the packets rate of SCCP in M3UA service.
The SCTP deeper inspection requires the following steps:
Creating an SCTP profile
Configuring the filtering and limiting parameters
Binding the SCTP profile to a policy
51
Stream Control Transmission Protocol Overview