Book Image

Implementing NetScaler VPX??? - Second Edition

By : Marius Sandbu
Book Image

Implementing NetScaler VPX??? - Second Edition

By: Marius Sandbu

Overview of this book

With a large demand for responsive websites and availability of services, IT administrators are faced with an ever-rising need for services that are optimized for speed. NetScaler VPX is a software-based virtual appliance that provides users with the comprehensive NetScaler feature set. Implementing apps and cloud-based services is much easier with its increased service performance and integrated security features. This book will give you an insight into all the new features that NetScaler VPX™ has to offer. Starting off with the basics, you will learn how to set NetScaler up and configure it in a virtual environment including the new features available in version 11, such as unified gateway and portal theme customization. Next, the book will cover how to deploy NetScalar on Azure and Amazon, and you will also discover how to integrate it with an existing Citrix infrastructure. Next, you will venture into other topics such as load balancing Microsoft and Citrix solutions, configuring different forms of high availability Global Server Load Balancing (GSLB), and network optimization. You will also learn how to troubleshoot and analyze data using NetScaler's extensive array of features. Finally, you will discover how to protect web services using an application firewall and will get to grips with other features such as HTTP, DOS, and AAA.
Table of Contents (15 chapters)
Implementing NetScaler VPX™ Second Edition
Credits
About the Author
About the Reviewer
www.PacktPub.com
Preface
Index

Access lists


NetScaler also has support for the traditional access control list (ACL), where we can define four types of lists. All of them have the option to define protocol, but simple ACLs only support TCP/UDP, while extended has a long list of different protocols, such as EGP, ICMP, GRE, and so on.

  • Simple ACL: This defines only DENY rules for source IP addresses.

  • Simple ACL6: This defines only DENY rules for source IPv6 addresses.

  • Extended ACL: This allows us to define DENY/ALLOW/BRIDGE rules for source IP, source-range and destination IP, or destination IP-range. It also allows us to configure source MAC and destination MAC.

  • Extended ACL6: This allows us to define DENY/ALLOW/BRIDGE rules for source IPv6, source-range and destination IPv6, or destination IPv6-range. It also allows us to configure source MAC and destination MAC.

Simple ACLs are only stored in memory and cannot be seen in the running configuration, so when we define a simple ACL, it has the TTL of 8 seconds and therefore...