* The Reviewmeister continues his tour of WLAN switches Aruba is strong on security, and it offers the best combination of features.Aruba’s 5000 switch is a modular design that supports Layer 3 forwarding, letting it route traffic between IP subnets, while other vendors’ switches are fixed-port Layer 2 devices.Aruba’s provisioning software accepts GIF and JPEG images, but not CADs. It also takes multiple floors into account in planning access point placement. Once the plans are drawn, Aruba monitors production networks and alerts network managers of discrepancies between the plans and the actual radio frequency environment. In our tests, Aruba didn’t factor for the existence of a weak signal from an access point in a neighboring office, but it dynamically adjusted access point signal strength for optimal performance. In comparing average delays across all tests with long frames, Aruba’s system held up packets the least – by an average of 32.7 millisec. That’s not enough to degrade performance for most applications, but it’s still well above the 2.5-millisec best-case delay Aruba delivered in the baseline test.One likely explanation for the big jumps in delay is the queuing and retransmission that takes place when WLANs are overloaded. Aruba uses standard Ethernet framing to move traffic between switches, but uses a proprietary tunneling method for controlling traffic.Aruba’s switch offers a neat twist on rogue containment: It can distinguish between access points inside and outside a corporation. This is helpful if network managers want to disable rogues within a company but leave WLAN-enabled neighbors alone.As for securing user traffic, all switches support the 802.1x specification for user authentication. We successfully authenticated WLAN clients through all four systems using Protected Extensible Authentication Protocol (PEAP). In all cases, the switches acted as authenticators, ferrying messages between the client and a RADIUS/PEAP server.Aruba’s switch is also a stateful firewall, a unique offering in this test lineup. All switches offer simple packet filtering using access control lists based on a variety of Layer 2, 3 and 4 criteria.Aruba’s security offerings were the most compelling, from its own VPN client, to the stateful firewall on its switch, to its ability to allocate bandwidth on a per-user basis. Airespace also had a strong security story with its IPSec capabilities and support for SNMP Version 3. The Symbol and Trapeze switches offered good access controls, but lacked some of the more advanced features of the Aruba or Airespace devices.For the full report go to https://www.nwfusion.com/reviews/2003/0922rev.html Related content news Fortinet brings AI help to enterprise security teams manage threats Fortinet Advisor aims to help customers respond to threats more quickly By Michael Cooney Dec 11, 2023 3 mins Network Security Security how-to Getting started with scripting on Linux, Part 1 Once a script is prepared and tested, you can get a significant task completed simply by typing the script's name followed by any required arguments. By Sandra Henry-Stocker Dec 11, 2023 5 mins Linux feature Starkey swaps out MPLS for managed SD-WAN Hearing aid manufacturer achieves performance boost, increased reliability and cost savings after a shift from MPLS to managed SD-WAN services from Aryaka. By Neal Weinberg Dec 11, 2023 6 mins SASE SD-WAN Network Security news Nvidia races to fulfill AI demand with its first Vietnam semiconductor hub Vietnam has been a growing tech manufacturing destination for the past few years, and Nvidia said it is open to a new manufacturing partner in Vietnam. By Sam Reynolds Dec 11, 2023 3 mins CPUs and Processors Technology Industry Podcasts Videos Resources Events NEWSLETTERS Newsletter Promo Module Test Description for newsletter promo module. Please enter a valid email address Subscribe