Ds Apv Series
Ds Apv Series
A P V S E R I E S D ATA S H E E T
APPLICATION
DELIVERY CONTROLLERS
APV Series application delivery controllers optimize the availability,
performance and security of cloud services and enterprise
applications while reducing cost and complexity in the data center.
Powered by Array’s 64-bit SpeedCore® architecture, APV Series application delivery controllers (ADCs) cost-
effectively drive industry-leading performance across a robust set of availability, acceleration and security features
to deliver unmatched overall value. Available as high-performance appliances that feature the latest in hardware
acceleration and energy-efficient components or as agile virtual appliances that enable flexible pay-as-you-go
business models, APV Series ADCs are engineered to boost application performance in modern data center, cloud
and virtual environments and speed ROI for service provider, enterprise and public sector organizations.
A PV SE R IES DATA S H E E T
• Dedicated appliances from 2 Gbps to 140 Gbps • Intelligently load balances traffic across optimal
and virtual appliances with software upgrades WAN links to reduce costs and improve the
from 10 Mbps to 4 Gbps to scale-up and scale- performance of business-critical applications
out as needed; also available on popular public
• Application-specific certifications, guides and
cloud marketplaces such as AWS and Azure
policies for rapid deployment and accelerated
• Integrated Layer-4 and Layer-7 server load delivery of business-critical enterprise
balancing, link load balancing, global server applications
load balancing, connection multiplexing, SSL
• ePolicy™ L7 application scripting and eRoute™
acceleration, caching, compression, traffic
L4 routing for custom control of application traffic
shaping, DDoS protection, IPv6 and Web
application security • IPv6 gold certified for IPv4 preservation, IPv4/6
translation and IPv6 migration
• High-performance, kernel-level Layer-7 policy
engine for enabling customizable application • Array eCloud™ RESTful API and XML-RPC for
traffic management without impacting seamless interaction with cloud management
performance or scalability systems and 3rd party monitoring solutions
• Industry-leading performance and $/SSL TPS • Integration with VMware vRealize Orchestrator
for 2048-bit SSL with advanced client certificate and Microsoft System Center, as well as
handling for secure application support and easy OpenStack load balancing-as-a-service (LBaaS)
application integration
• N+1 clustering for up to 32 hardware or virtual
• Multi-level security including a hardened OS, instances, single system image and stateful
reverse-proxy architecture and kernel-level TCP failover for industry-leading availability and
Web firewall for guarding applications without scalability
impacting performance
• Space-efficient, redundant-power hardware
• Delivers 99.999% application availability, up to appliances that consume 10-35% less power
5x application acceleration and provides a first versus alternative solutions
line of defense for Web-enabled applications and
cloud services • Familiar CLI, intuitive cloud-friendly WebUI and
centralized management for ease of use and
• Offloads SSL processing from Web and configuration
application servers for increased efficiency,
capacity and return on investment (ROI)
A PV SE R IES DATA S H E E T
with end-to-end health monitoring and dynamic stability and performance. Additional L4 traffic
routing detects outages and monitors performance management features include VLANs, port
in real time to distribute traffic across multiple WAN forwarding, port and link redundancy and the
connections for a premium, always-on end-user ability to bundle multiple low-cost links to improve
experience. Ideal for geographically distributed bandwidth utilization and reduce costs.
applications and multi-site architectures, global
server load balancing directs traffic away from failed Application-Specific Certifications
data centers and intelligently distributes services
In conjunction with ISVs and application developer
between sites based on proximity, language,
partners, Array APV Series appliances have been
capacity, load and response times for maximum
certified to provide load balancing, acceleration
performance and availability.
and security for enterprise applications such as
Microsoft Lync 2010 and 2013, Microsoft Exchange
Application Acceleration 2010 and 2013, SAP, Oracle, eClinicalWorks and
APV Series appliances leverage multiple others. Leveraging deployment guides, businesses
acceleration technologies and optimizations to can take the guesswork out of application delivery.
deliver a premium end-user experience for a Following simple step by step instructions, IT can
wide range of applications and data services. In- rapidly and confidently configure APV appliances for
memory caching increases server efficiency and optimized delivery of business critical applications.
improves seek and response times by over 500%,
hardware or software compression can reduce Traffic Shaping & QoS
bandwidth utilization and end-user response times
Traffic shaping optimizes application traffic on WAN
by more than half and TCP connection multiplexing
links to improve bandwidth utilization and end-user
aggregates millions of short-lived client connections
response times. Supporting user-defined policies,
into persistent fast lanes that increase server
APV Series appliances prevent bandwidth-intensive
efficiency by up to 70% while improving application
applications from over-utilizing WAN links and
performance.
ensure essential applications are prioritized to meet
service level agreements. Used in conjunction with
ePolicy L7 Application Scripting link load balancing, global server load balancing
Where Array’s Layer-7 policy engine cannot meet and QoS features such as filters and class-based
application traffic management requirements, queuing, traffic shaping can dramatically improve
ePolicy scripting allows transactions and content to application performance.
be manipulated to achieve traffic distribution that
improves data center efficiency and mitigates the IPv6 Support
effect of delivering applications over the Internet.
For organizations needing an IPv6 Web presence,
server load balancing protocol translation (SLB-
eRoute L4 Routing PT) transforms existing IPv4 Web sites into IPv6
Using eRoute, inbound and outbound WAN traffic compatible sites and greatly reduces the need for
may be load balanced across multiple ISP links duplicate equipment, content and management.
based on preset and user-defined algorithms and Where there is a need to make the most of depleted
directed across routes optimized for maximum IPv4 resources, NAT and dual NAT (dual-stack IPv6)
A PV SE R IES DATA S H E E T
Feature Specifications
Availability
Layer 2-7 Policy & Multi-level virtual service policy routing – Static, default and backup policies and
Group Management groups – Layer 2-7 application routing policies – Layer 2-7 server persistence
– Application load balancing based on round robin, weighted round robin, least
connections, shortest response, SNMP, QoS DNSdomain and DNS security
extensions
Layer 2-3 Load IP/MAC based load balancing for any IP protocol – Round robin, persistent IP
Balancing and return to sender – Firewall, IPS/IDS, anti-spam, anti-virus and composite
applications – L2 bridging support
Layer 4 Load TCP, TCPS and UDP protocols – Round robin, weighted round robin, least
Balancing connections and shortest response – Persistent IP, hash IP, consistent hash IP,
persistent IP + port and port range – All single port TCP applications, RADIUS
and DNS server support – Composite IP application support
Layer 7 Load HTTP/HTTPS, FTP/FTPS, SIP, RTSP and RDP – L7 content switching (QoS
Balancing network and client port - SSL and SIP session ID - HTTP URL, host name,
cookie and any header - hash header, cookie and query) – URL redirect and
HTTP request/response rewrite – HTTP request filter – DDoS protection
Server Source + destination IP, Client IP, SSLID, HTTP header, URL, cookie, application
Persistence – Individual session control
Content Routing One arm, configurable reverse or transparent proxy mode per VIP –
& Switching Configurable reverse or transparent proxy mode, triangle mode – Nested L7 and
L4 policies – Combine L7 and L4 policies
A PV SE R IES DATA S H E E T
Global Server Application availability from multiple locations worldwide – DNS DoS protection
Load Balancing – Global site/service selection – Proximity and IP persistence – Load balancing
between multi-site SSL VPN deployments – SNMP pool
Link Load Balancing Outbound: round robin, weighted round robin, shortest response time, target
proximity/dynamic detection – Inbound: round robin, weighted round robin, target
proximity/dynamic detection – Integrated DNS – Outbound DNS proxy
ePolicy L7 Customize SLB policies and collaborate with SLB methods to realize load
Application balancing among real services – Analyze packet contents of HTTP, simple object
Scripting access protocol (SOAP), extensible markup language (XML) and diameter
protocols – Receive, send, analyze, and discard generic TCP and TCPS packets
– Perform pattern matching for text data – Control TCP connections – Monitor
and take statistics of traffic
eRoute L4 Routing Policy-based routing based on port, source/destination IP, UDP protocols, TCP
– RIPv1, RIPv2 and OSPF support – Return to sender (RTS)/IP flow persistence
– Port forwarding, link aggregation and port redundancy – Transparent to VPN
remote access
Application, Server ARP, ICMP, TCP, HTTP/HTTPS, DNS, Radius, MySQL, MsSQL, RTSP, SIP
& Link Health single port/protocol health checks – Multi-port health checks – Health checks
Checks by protocol and content verification – Link health checks based on physical
port, ICMP and user-defined L4 – Next gateway health checks, destination
path health checks – Ensure availability and performance of applications over
WAN links from a single point of management – Scriptable customer-defined
composite health checks
Single System Create a single VIP (single ADC instance) out of any number of dedicated,
Image virtualized or virtual APV appliances – Enable ultimate flexibility in scaling out
IPv6 Full IPv6 support – DNS64 & NAT64 – Dual Stack Lite – IPv6 to IPv4 and IPv4 to
IPv6 NAT and full IPv6 addressing – IPv6-ready gold certified
Networking Link aggregation, VLAN/MNET, NTP – Static and port-based NAT, advanced
NAT for transparent use of multiple WAN links
Acceleration
SSL Acceleration Hardware SSL processing – SSLv3 and TLSv1 – 4096-bit maximum cipher key
(2048 & 4096-bit) size (RSA or ECC) – End-to-end security (Server-side SSL communication)
– SSL session reuse and timeout control – Cipher strength reduction –
Customizable cipher suite order – Customizable SSL error pages – Sharable to
multiple SLB services – SSL selfcheck – Server name indication (SNI)
Traffic Shaping Guarantees application performance – Rate shaping for setting user-defined
rate limits on critical applications – QoS for traffic prioritization – Supports CBQs
and borrow and unborrow bandwidth from queues – Advanced ACL (SLB QoS)
– Supports QoS filters based on ports and protocols including TCP, UDP and
ICMP
A PV SE R IES DATA S H E E T
Security
WebWall Web Hardened OS – Secure access only, access control based on client certificate
Application Security information and access method – Customer configurable SSL/TLS version,
cipher suite and minimum cipher strength – Tamper-proof key and certificate
protection – WebWall stateful packet-inspection firewall – Over 1000 ACL
rules without performance degradation – Proxy-based firewall – TCP syn-flood
protection – Flash and surge event protection – DoS protection – HTTP access
method control – URL filtering – HTTP/DNS cache for mitigating DDoS – Web
Application Firewall – Deep application data inspection for dealing with attacks
such as SQL injection and cross-site scripting – Detects and responds to known
application vulnerabilities – Programmable to deal with future threats
DDoS Protection Protocol Attacks: SSL invalid packet, SSL handshake attack, HTTP invalid
(SLB) packet attack – Application Attacks: HTTP slow attack, HTTP flood attack,
bandwidth consumption attack – DDoS attack logging
Client-Server CSR and private key generation – Self-signed certificate support – Import
Certificate certificate and private key – Import certificate format – Extensive certificate
Management support – Certificate backup and restore – Wildcard certificate support – Server
Name Indication (SNI)
Client Certificate Turbo client certificate verification – Root and intermediate CA import – Basic
Authentication & client certificate verification – Certificate chain support – Certificate revocation
Authorization list (HTTP, FTP, LDAP) – Online certificate status protocol (OCSP, HTTP/
HTTPS) – Certificate-based access control – Inside SSL server, two-way
certificates
Client Certificate Parse client certificate field information with different language/encoding – Pass
Application individual field/group and field/customer format to back-end applications – HTTP
Integration header, URL and cookie – Integrated with proxy rewrite – Detailed SSL statistics
A PV SE R IES DATA S H E E T
Management
System Centralized cluster management – Secure CLI, WebUI and SSH remote
management – XML-RPC for integration with 3rd party management and
monitoring – SNMP V2/V3 and private MIBs – Syslog (UDP or TCP) –
Administrator and operator account management – E-mail, paging and alerting
capability – Multiple configuration files and unit configuration synchronization
– Online troubleshooting – Real-time monitoring – Role-based administration
control – HTTP/2 support
eCloud API Interface for cloud management systems to control and monitor hardware
and virtual APV appliances – Assists interaction between components such
as virtual machines in CloudOS environments – Remote management of APV
appliances – Notification of events on APV appliances – eCloud demo integrated
on APV appliance – Supports integration with OpenStack Load Balancing-as-
a-Service(LBaaS), VMware Cloud Orchestrator (vCO) and Microsoft System
Center standards
App Tier
Internal U
sers
Web Tier
L4/L7 Load
Balancing
Link Load
Global Se Balancing
rver Load
Balancing
ePolicy, eR
WebWall W
oute, eClo
ud API
APV Connectio
eb Applica n Multiple
tion Securit SSL Accele xing
y ration
IPv6 Dynamic Ca
ching
Adaptive
Compressi
on
N+1 Cluste
ring
External U
sers
A PV SE R IES DATA S H E E T
Product Specifications
● = STANDARD O = OPTIONAL
AppVelocity AppVelocity-S
LLB ● ● ● ●
GSLB O O O O
L7 Policy Engine ● ● ● ●
ePolicy Scripting ● ● ● ●
eRoute Routing ● ● ● ●
Transparent Proxy ● ● ● ●
SSL (SW) ● ●
SSL (HW) ● ●
Compression (SW) ● ● ● ●
Compression (HW) ●
RAM Caching ● ● ● ●
Traffic Shaping ● ● ● ●
Web Application Security
(Including WAF) ● ● ● ●
IPv6 Support ● ● ● ●
Multi-language WebUI ● ● ● ●
Fast Failover ● ● ● ●
Clustering ● ● ● ●
1 GbE Copper ● ● ● ● ● ● o
1 GbE Fiber o ● o o o
10 GbE Fiber o ● ● ● ● ● ● ●
Regulatory
ICES-003, EN 55024, CISPR 22, AS/NZS 3548, FCC, 47FR part 15 Class A, VCCI-A. APV6600FIPS only: FIPS140-2 Level 2
Compliance
vAPV
With the exception VMware ESXi 4.1 or Later
2 Virtual CPUs
of hardware SSL XenServer 5.6 or Later
acceleration, vAPV 4 Virtual Network Adapters
OpenXen 4.0 or Later
virtual application 2GB RAM
delivery controllers KVM 1.1.1-1.8.1 or later
40GB Disk
support all APV Hyper-V (Windows Server 2012)
features.
A PV SE R IES DATA S H E E T
Ordering Information
AW960006 APV2600 AppVelocity ADC (SLB, LLB, 8x1GbE copper AW960022 APV2600-S2 AppVelocity-S TPS Boost Dual Power
ports, 2x1GbE SFP ports (SX Fiber incl.), 1U) Supplies ADC (SLB, LLB, 8x1GbE copper ports, 2x1GbE
SFP ports (SX Fiber incl.), 25,000 SSL TPS 1K Keys or
AW960007 APV2600-S1 AppVelocity-S TPS ADC (SLB, LLB,
5,000 SSL TPS 2K Keys, 1U)
8x1GbE copper ports, 2x1GbE SFP ports (SX Fiber incl.),
14,000 SSL TPS 1K Keys or 2,800 SSL TPS 2K Keys, AW960023 APV2600T AppVelocity Dual Power Supplies ADC (SLB,
1U) LLB, 4x1GbE copper ports, 2x10GbE SFP+ ports, 1U)
AW960008 APV2600-S2 AppVelocity-S TPS Boost ADC (SLB, LLB, AW960024 APV2600T-S1 AppVelocity-S Dual Power Supplies ADC
8x1GbE copper ports, 2x1GbE SFP ports (SX Fiber incl.), (SLB, LLB, 4x1GbE copper ports, 2x10GbE SFP+ ports,
25,000 SSL TPS 1K Keys or 5,000 SSL TPS 2K Keys, 14,000 SSL TPS 1K Keys or 2,800 SSL TPS 2K Keys,
1U) 1U)
AW960009 APV2600T AppVelocity ADC (SLB, LLB, 4x1GbE copper AW960025 APV2600T-S2 AppVelocity-S TPS Boost Dual Power
ports, 2x10GbE SFP+ ports, 1U) Supplies ADC (SLB, LLB, 4x1GbE copper ports,
2x10GbE SFP+ ports, 25,000 SSL TPS 1K Keys or 5,000
AW960010 APV2600T-S1 AppVelocity-S TPS ADC (SLB, LLB,
SSL TPS 2K Keys, 1U)
4x1GbE copper ports, 2x10GbE SFP+ ports, 14,000 SSL
TPS 1K Keys or 2,800 SSL TPS 2K Keys, 1U) AW960026 APV2600T AppVelocity Dual Power Supplies ADC (SLB,
LLB, 4x1GbE copper ports, 2x1GbE SFP ports (SX Fiber
AW960011 APV2600T-S2 AppVelocity-S TPS Boost ADC (SLB,
incl.), 2x10GbE SFP+ ports, 1U)
LLB,4x1GbE copper ports, 2x10GbE SFP+ ports, 25,000
SSL TPS 1K Keys or 5,000 SSL TPS 2K Keys, 1U) AW960027 APV2600T-S1 AppVelocity-S Dual Power Supplies ADC
(SLB, LLB, 4x1GbE copper ports, 2x1GbE SFP ports (SX
AW960012 APV2600T AppVelocity ADC (SLB, LLB, 4x1GbE copper
Fiber incl.), 2x10GbE SFP+ ports, 14,000 SSL TPS 1K
ports, 2x1GbE SFP ports (SX Fiber incl.), 2x10GbE SFP+
Keys or 2,800 SSL TPS 2K Keys, 1U)
ports, 1U)
A PV SE R IES DATA S H E E T
A PV SE R IES DATA S H E E T
1371 McCarthy Blvd. Milpitas, CA 95035 | Phone: (408) 240-8700 Toll Free: 1-866-MY-ARRAY | www.arraynetworks.com
VERSION: FEB-2016-REV-A
© 2016 Array Networks, Inc. All rights reserved. Array Networks, the Array Networks logo, AppVelocity, eCloud, ePolicy, eRoute, SpeedCore and WebWall are all trademarks of Array Networks, Inc. in the United States and other
countries. All other trademarks, service marks, registered marks, or registered service marks are the property of their respective owners. Array Networks assumes no responsibility for any inaccuracies in this document. Array Networks
reserves the right to change, modify, transfer, or otherwise revise this publication without notice.