Slashdot Mirror


Open-Source Router to Take on Cisco?

ickypick writes to tell us that CNN is running an article about the emergence of an OpenSource Router product, currently in Beta, that targets mid-size enterprise customers for about one-fifth the cost of current enterprise networking giants' hardware. From the article: "The machine runs on two Intel chips, but far more noteworthy is its software, known as XORP, or extensible open router platform. The versatile open-source application can direct data traffic for a giant corporation as easily as it can manage a home Wi-Fi network." The current release is available for download from Vyatta's web site."

48 of 393 comments (clear)

  1. I foresee a day by kc0re · · Score: 5, Insightful

    Seems like everything is Open Source now. (No, I am not complaining, i am backing it)

    We have Routers, Firewalls, IDS/IPS's, OS's, Word Processors, Spreadsheets, Presenting software. Hell. I would love to see an experiment where an entire corporate network was made, entirely of Open Source products (except for the hardware of course). From Routers to firewalls to .... You name it.

    That would be an interesting, and totally free network.
    Also very complicated

    1. Re:I foresee a day by Anonymous Coward · · Score: 5, Funny

      --Seems like everything is Open Source now.--

      everything but the women...

      you have to pay oodles up front and, eventually, you find out the eula isn't what you where led to believe, the eula changes over time and, worst of all, the source is closed. and i mean *closed*.

    2. Re:I foresee a day by networkBoy · · Score: 3, Interesting

      For this to happen it must be in the right order:

      1) OSS proponent founds business
      2) business grows and stayes with OSS
      3) Lower expense in IT infrastructure
      4) 1/profit!

      Really though, the hard part is winning over an existing business. Starting up with OSS would be magnatudes easier than converting.
      -nB

      --
      whois gawk date unzip strip find touch finger mount join nice man top fsck grep eject more yes exit umount sleep dump
    3. Re:I foresee a day by rabiddeity · · Score: 3, Interesting

      Why not the hardware too? With all the talk of MS trying to lock down hardware with "trusted computing", why shouldn't the hardware be open as well?

    4. Re:I foresee a day by m50d · · Score: 4, Insightful

      Why not hardware? I have the source code to the processor in the machine my webserver's running on. It's entirely useless to me since I don't have a chip fab, but I'm sure someone's done something cool with it.

      --
      I am trolling
    5. Re:I foresee a day by flibbajobber · · Score: 4, Insightful

      The hardware can be open source - "source" being the design files etc, in the same way that some OSS has source code available, but not necessarily the binaries. The hardware would simply be free (as in speech) rather than free (as in beer).

    6. Re:I foresee a day by peragrin · · Score: 4, Funny

      You forgot about the forced upgrades that you pay for, feature creep, and bloat.

      --
      i thought once I was found, but it was only a dream.
    7. Re:I foresee a day by hitmark · · Score: 3, Informative

      or we can wait around and see what they can pull off using FPGA based chips...

      or there is allways that printable plastic cpu experiment that someone did some years ago...

      hell, open source cpus and other logic circuits may well be a requirement for some as the stuff from the main supplyers become more and more drm-laden thanks to the power vested in the entertainment industry's bank-accounts...

      sure the performance hit will be staggering, but i dont think we will use the chips to run the latest iteration of halo, or for that matter duke nukem forever...

      speaking of that last game, i wonder if the people that named it knew how right they would be...

      --
      comment first, facts later. http://chem.tufts.edu/AnswersInScience/RelativityofWrong.htm
    8. Re:I foresee a day by NitroWolf · · Score: 3, Funny

      You forgot about the forced upgrades that you pay for, feature creep, and bloat.

      The bloat... god the bloat.

    9. Re:I foresee a day by xtal · · Score: 3, Insightful

      Freedom is never taken all at once. ..just a little tiny piece at a time. TCM is one little piece that it starts with.

      It ends with you needing a government license to buy a 500k gate FPGA.

      I wish I was joking.

      --
      ..don't panic
    10. Re:I foresee a day by value_added · · Score: 4, Funny

      Have you tried the subscription model?

      I hear it works well, though getting an extended lease time or supplementary benefits added without paying extra can be problematic.

  2. its not the software by nurb432 · · Score: 5, Insightful

    For a router, its mostly in the hardware, if it can keep up with real-life data rates.

    Software is secondary..

    --
    ---- Booth was a patriot ----
    1. Re:its not the software by Anonymous Coward · · Score: 3, Interesting

      You would indeed think so, and the hardware seperates a normal workstation from doing a job of a router (succesfully, anyhow).

      However, the Operating System nowadays means the difference between a £600 price tag and a £1800 price tag on the 1800 series. Often the offerings from Cisco involve the same hardware but a different (more capable) version of IOS. The software really does create a large premium for the networking giants, and it's not just Cisco that this can be seen at

    2. Re:its not the software by Ogun · · Score: 5, Interesting

      Wrong.
      Cisco IOS does nearly everything in software actually. Only on the big iron and catalyst based routers do you have dedicated hardware for packet forwarding. Try storming a cisco box with massive amounts of small UDP packets and see how well it copes. UDP is done in full software mode, you can't use CEF etc on UDP.
      Might have changed in the two years I've been away from the networking world, but I don't really think so.
      The slightly older 3600 series for example is just a normal PC in essence. RISC MIPS CPU, PCI for the network modules, flash for the OS.
      What the do is distribute load instead. Same thing there, the older 7500 series has the CyBys architecture, where each line card is basically a separate router talking to each other over a backplane and a RSP to hold master databases and keep sync.

      Yes, the Cisco 7600 has dedicated hardware for forwarding, but that is because it really is a catalyst 6500 switch under the hood.

      Granted, many of the interface cards do a lot of processing for that media, framing etc, which keeps load of the main CPU. But what it comes down to is that IOS is quite efficient at doing what it does, which is forward packets.

      If you want to learn more, I can strongly recommend the book "Inside Cisco IOS Software Architecture" from Cisco Press, ISBN: 1578701813

      --
      I found a fast warez site: http://warez.it.kth.se
    3. Re:its not the software by osbjmg · · Score: 3, Informative

      UDP? I think you mean IPX maybe? CEF applies to IP routing and UDP is IP. You also forgot to mention the GSR and CRS. The 6500 may not be what these guys are competing against though, I see them trying to compete with the 3600's and ISR's at this point. Either way cisco spends a great deal of time optimizing software algorithims since it is a core component of networking. Some cases hardware helps, but there are quite a few memory models throughout the different lines, and to say most is the same hardware is just not true. AIM encryption module, FWSM, 6k, 4k, 3550, 3750/3560, VPNSM, etc are all examples of hardware accelleration. Heck, even the 2950 does QoS in hardware.

    4. Re:its not the software by Ruie · · Score: 3, Interesting

      For a router, its mostly in the hardware, if it can keep up with real-life data rates.

      Not anymore. We've recently got a new Cisco router for around $2000 which turned out to be a box with 3 100-Mbit ports. And for separate $2000 a (separate) firewall box with 4 100-Mbit ports.

      I am certain that a Linux box with an opteron 1xx, couple of 64 bit PCI slots and a couple of Intel 4-port cards would be just as fast and vastly more configurable at a lower price.

    5. Re:its not the software by Anonymous Coward · · Score: 3, Interesting

      I have a Cisco 3620 router, maxed out on RAM, that couldn't even keep up with my fiber internet connection. I know it is an older router, but even with a NM-2FE2W (100Mbps) network module, it could barely do over 10Mbps. The performance specs on Cisco's site says 10-20Mbps, and with IP inspection and access lists enabled, it could maybe do 13Mbps at the most. I decided to buy an IBM x300 eSeries on eBay for $250 and run m0n0wall on it. Sure as hell beats the performance of any Cisco product for that price, and also can support much higher speeds for when my fiber service gets even quicker :) It might not have all of the features of Cisco (which I majorly miss), but I like to be able to use the speed of my connection I am paying for.

  3. More Trust by BiggRanger · · Score: 5, Interesting

    This is good since I always wonder how many back doors are in Cisco routers for Law Inforcement purposes.

    1. Re:More Trust by causality · · Score: 5, Insightful
      Could you imagine the ramifications if a company got caught with a backdoor? They could kiss their ass good bye.


      Never underestimate the power of Spin, especially when the general public has no interest in being informed about such complex subjects as network security (and lacks wisdom enough to decide that the only two reasonable courses of action are A. Learn about the subject or B. Shut the fuck up).

      If the backdoors are for law enforcement purposes, why, then Cisco is simply being a Patriotic Corporate Citizen and Doing Their Part to help Stop Internet Crime etc etc. If this became a big controversy, all it would take is for one politician or one media outlet to talk even more about how wiretapping/remote logging ability is For Your Own Good and for the sole purpose of Stopping Al-Queda or whomever the convenient bogeyman of the day may be (because Oceania has always been at war with Eastasia). Rest assured that there will be such a device/tactic handy to drown out any kind of reasonable debate about the subject, should it ever become a serious issue.

      The belief that a company which implements poor practices--such as undisclosed, intentional security hazards like backdoors--can "kiss their ass good bye" presupposes a market that consists entirely of informed, educated buyers who understand all security ramifications of their buying decisions (and such "features" that come with the package) and who always look after their own interests. Furthermore it assumes that they have enough sense to disregard any and all statements (on principle alone, as such claims have zero credibility) from any third parties who claim to know what is best for them, if only their particular set of restrictions were implemented. You will find that this last item is becoming lost upon us, especially in the USA.

      I find this presupposition to be entirely unrealistic, and for that reason open-source alternatives can only possibly be a good thing, even if only because they give the established solutions such as those offered by Cisco a reason to avoid growing complacent.
      --
      It is a miracle that curiosity survives formal education. - Einstein
  4. Support? by lordkuri · · Score: 3, Interesting

    Cisco's biggest advantage is their support network. I have yet to ever have a client that didn't buy smartnet with any of their gear.

    Granted, some of their "engineers" leave a lot to be desired, but still, PHB's like the warm fuzzy feeling.

  5. But will it... by Eli+Gottlieb · · Score: 4, Insightful

    Make money? This better be good hardware running good software, because otherwise people are just going to say "fsck it, nobody was ever fired for buying Cisco". Why? Because Cisco actually works.

    Yes, OSS community, your adversary actually works this time. Beware.

    1. Re:But will it... by Harik · · Score: 3, Interesting
      Eh. Cisco works like microsoft works. I've had my share of router trap/reset cycles, module failures and route storms with cisco gear. You just keep disabling features until you get a subset that works.

      As for 'custom hardware', when you get to the point that you need to route 10gig-e at line-speed, then you buy 'custom hardware'. Below that, you drop in quad 100m cards into a linux/BSD box and run something like quagga (or now XORP). I'm willing to bet that not many people here have many routers that really need those kinds of line speeds, so we can all white-box it for a small fraction of the price. I know my linux (100meg) router gets a once-a-year reboot for kernel upgrades. My linux NAT at home gets rebooted every time the power goes out longer then the UPS can handle...

      The only other thing that you can't get with open source is cisco hot-failover. And from the people who need that level of reliability, you can't get that from cisco either. :) To be fair, it works now, but they were selling it for quite a while in a very VERY buggy state. I'd be very exited to see an open-source router project that handles paired or triad server configurations with VIP and lockstep state updates, for true multipath redundancy. Good luck on that one, though.

    2. Re:But will it... by chivo · · Score: 4, Informative
      The only other thing that you can't get with open source is cisco hot-failover.

      Not true. CARP + PFSYNC with OpenBSD and now even FreeBSD work quite nicely. You can do not only hot failover, but also load balancing.

      --
      Sometimes I feel like a nut... Ok so it's most of the time
    3. Re:But will it... by LurkerXXX · · Score: 3, Informative

      Mod up. Carp is one of those great features like pf that the OpenBSD folks keep cranking out. Easy to set up hot-failover firewalls. And check out OpenBGPD while your talking about replacing cisco routers.

  6. Network outage? by MachineShedFred · · Score: 3, Insightful

    So who do you call when the thing breaks?

    With Cisco, I call the rep, and they have a replacement device in our datacenter within the hour, and we load up the config and get it fixed.

    Doubt you'll get that kind of service here, and that's what you pay for with Cisco.

    --
    Slashdot still doesnâ(TM)t support Unicode after it was added to the HTML standard in 1997.
    1. Re:Network outage? by NerveGas · · Score: 4, Insightful

      If you can't fix it yourself, you call someone who will charge you to fix it for you. Such support is available for nearly all medium-scale open-source projects. Asterisk is a perfect example, Digium saw the opportunity to not only sell the hardware to make it work, but to make money off of software support as well.

      --
      Oh, you're not stuck, you're just unable to let go of the onion rings.
    2. Re:Network outage? by gardyloo · · Score: 5, Funny

      So who do you call when the thing breaks?

            The A-Team.

    3. Re:Network outage? by QuantumG · · Score: 4, Insightful

      I remember a time when one bunch of people would sell products and another bunch of people would repair them when they break. Now when I buy a washing machine, no-one can fix it except the manufacturer. If I had the choice, I'd buy a washing machine that anyone can fix, but these days I don't have that choice. It's the same with my car. Same with my DVD player. Same with my television.

      Thankfully if my computer screws up I can take it to any one of many repair shops. If it's a hardware issue I'll probably call the manufacturer and see what my warrentee covers me for, but if it's a software issue, blah, as if I'd call Microsoft. Of course, if it's a laptop and I don't have a warrentee, who can I call? The manufacturer, that's it.

      So who do I call if my Linux box is on the fritz? Believe it or not, there's lots of people you can call. Because the software is open there's a whole lot of people who understand it and can fix it. Just like when the hardware is open.

      --
      How we know is more important than what we know.
    4. Re:Network outage? by Lord+Ender · · Score: 3, Funny

      I was thinking the GhostBusters, but whatever.

      --
      A slashdotter who didn't build his own computer is like a Jedi who didn't build his own lightsaber.
  7. FRISCO? by nurb432 · · Score: 5, Interesting

    Dont you mean FreeSCO?

    and that runs on pc hardware, this appears to be on custom hardware that can actually do the job. Using pc hardware only works for a small business.. the bandwidth isnt there.

    --
    ---- Booth was a patriot ----
    1. Re:FRISCO? by ross.w · · Score: 4, Interesting

      I used to use Freesco for my home network running on an old Pentium 133. It is one of the easiest products of this type to set up and one of the few that works for dial-up.

      WHen I switched to ADSL Broadband, I needed a modem anyway, and for a small price difference, I bought one with a router/firewall built into it that has an easy to use web based interface.

      My Freesco box served me well, but my power bills and the noise level in my study both dropped when I retired it.

      Freesco is a good, easy to use and versatile product, but If all you need is a home firewall/router, there are easier ways that aren't really more expensive, even when the box and software are free.

      --
      If my call is important, why am I talking to a recording?
  8. Sweet! by __aaclcg7560 · · Score: 4, Funny

    It can turn my old AMD K5 machine into a top-end Cisco machine. Does anyone have a spare ISA network card?

  9. I love open source software naming by stinky+wizzleteats · · Score: 5, Funny

    Grep. Gimp. Kugar. Krita. Kexi. LaTex. Tcl. And now, the piece de resistance - xorp.

    Why route when you can XORP!

    1. Re:I love open source software naming by DrSkwid · · Score: 5, Funny

      says stinky_wizzleteats

      --
      There are places where the networks are not touching,and there are places where they are-Boeing's Lori Gunter
  10. new company dupe project by tazanator · · Score: 3, Informative

    Imagestream has been doing this for ~8 years now ... course they provide support and all the hardware but this is doable. After all a DS3 Imagestream Rebel is only a P3 Intel and 256mb upgrade. Still it is another step in proof that cisco is not the networking god PHB's think.

    --
    I'm told you are what you eat, does that mean I can be you by tomorrow with some A1?
  11. Could be promising for some markets by squidguy · · Score: 4, Interesting

    This could be a hit, if the costs keep down, for the small-medium business and home broadband markets. But I have trouble seeing how this will take significant market share in the Enterprise except for perhaps edge or LAN devices. For one thing, you pay Cisco, Juniper, Foundry, whomever for wire-speed implementations (among other issues) that rely largely on the ASICs and the overarching hardware architecture, beyond just the OS.

    For the home market, there are already open-source software solutions such as for the Linksys WRT54-series wireless router, which is itself based on the GPL. See http://www.wi-fiplanet.com/tutorials/print.php/356 2391 for more info.

    Until someone funds an open-source chip foundry, these won't replace the core.

  12. Software is not the issue. by NerveGas · · Score: 3, Informative

    The largest impediment is not software, but hardware. The two benefits to a Cisco are that (A) there is someone who *will* fix your problem for a fee, and (B) You can buy an interface card for ANY network type out there.

    As for (A), the same will likely become available for this if it isn't already.
    (B) is a lot harder. When you get into odd network types and high-speed telco lines, it becomes a bit more difficult - it isn't as easy as just calling your Cisco salesmonkey and buying the card you need.

    It should be noted, however, that adding a card to a Cisco isn't always painless. I've had to upgrade the OS - which involved upgrading both memory and flash - just to support another ETHERNET card. How many decades has Ethernet been around for, and they want an OS upgrade to support one? And only to support an additional card, the built-in ethernet worked just fine.

    Right now, we're using a Linux router for ethernet routing within our data center, which it handles just fine. As soon as our Sangoma cards show up, it's also going to handle a T3 to our office as well - but only clearchannel, we can't split it between phone and data (as I'd like to do.)

    A while back, I had a rather perverse thought. You can hook up a LOT of interfaces to a high-end Cisco, and most routed telecom isn't very high-bandwidth. A T3, at a measly 45 megabit, is still very small considering the throughput of today's hardware. An OC3, at 155 megabits, still isn't much. The perverse thought was that if someone would come up with T1 and T3 modules with integrated CSU/DSUs that connected via USB or firewire, you could stuff a machine chock-full of 4-port controller cards, and be able to hook up 20 or more interfaces very quickly, and easily. In theory, each USB controller card *should* be able to push the ~200 megabits without much trouble, and even a plain old 32/33 PCI bus could *almost* handle the 110 MB/s of all 20 lines at full-tilt. Realistically, however, I do know that USB has many deficiencies which entirely prevent it from fulfilling that task.

    --
    Oh, you're not stuck, you're just unable to let go of the onion rings.
  13. Well the top three questions I'd have by Sycraft-fu · · Score: 4, Insightful

    This is all assuming I'm willing to go unsupported, of course.

    1) By far the most important is what kind of interfaces can I get for it. Of course I can get ethernet but what about T1, DSL, SONET, etc. If all this does is route packets over ethernet, which I then need to plug in to another router to get to my WAN, that's not so useful. I'd say over 90% of the Cisco routers I see in business are for WAN connections. If you are going to have to buy those anyhow, then what's the point?

    2) What kind of load can it handle? Having something that can do a gig is all well and good, but can it still do a gig with 20,000 clients generating 50,000+ connections? That's where many budget routers and firewalls fall flat. They do everything in software so they can do the traffic no problem, but it's the concurrency that kills them.

    3) Does it support layer-3 switching? That's where you in effect route the first packet of a flow and switch the rest. Leads to much lower impact on the router, and lower pings. Can't do it going from one media to another, but for internal routing it's the way to go.

    This is, as mentioned, not considering support. I mean it's all well and good to slap some NICs in a system, load an OS that can route traffic, and call it a router/firewall/whatever, but it's something else entirely to see that survive under a real load. We see that all the time on campus when we test new potential devices. They promise gig throughput, something I have no doubt they deliver, and less than we use, but they instantly crash when exposed to our network. Why? Well we have like 30,000-40,000 comptuers or so that generate hundreds of thousands of concurrent connections. They just aren't equipped to process that kind of load and they stop passing traffic. The Ciscos, however, that compose the entire core, edge, and distribution parts of the network, operate without problems.

  14. 5 years late? by Garak · · Score: 3, Interesting

    This seems to be alittle late to be jumping into this market. Most of the big players are starting to switch over to multilayer switching. Software routers are only needed where you need to do something like NAT or firewalling.

    If your big enough to need a routing protocol like BGP, your going to need some serious hardware. Software based routers running on off the self hardware are fine for 100mbit ethernet routing, but beyond 100mbit you need some specialized hardware.

    I really don't see any advanage this system has over a linux router with the usual tools(zebra/quagga, ip, ifconfig, iptables, ebtables, etc...)

    --
    God, root, what is the difference?
  15. Packet Forwarding is so 1990's by saridder · · Score: 3, Interesting

    The game has long since moved from just forwarding packets to providing intelligence in the network. Now companies want integrated security, voince, application intelligence and application (l5-L7) optimization, QOS, high availability, etc.. none of which you'll find in an open source router. This is why the networking companies stay in business. If companies wanted cheap packet forwarders, they would have bought linksys, 3com, huawiei, hp or any other me-too commodity router. They didn't and Cisco won.

    --
    --- RFC 1149 Compliant.
  16. XORP + Click by jd · · Score: 3, Informative
    You really want to run Xorp alongside MIT's Click, as that gives you the best routing capability. The two are intended to interoperate, but there's bugger all documentation on doing this.


    The number 1 problem with Xorp is that it supports only a tiny fraction of standard Internet routing protocols. They don't have the developers to support anything more than a bare-bones software router. If you're only going to use what they have, it's no big deal. (NOTE: I am only including actual common routing protocols, here. There are over 150 routing protocols defined and implemented by somebody, but few routers support more than 3% and only the Really Major Routers even pass the 10% mark.)


    The number 2 problem is that it lets the native OS deal with all of the QoS. This means that Xorp isn't guaranteed to behave the same on different platforms. It's not a lethal problem and some (including the Xorp developers) consider it a major bonus. I'm not convinced it's a good thing, though. It makes multicasting very confusing.


    The final problem is that Click will normally be run as a kernel module, but Xorp is in userspace. This means you've a LOT of context switching when running in such a mode. Because you want minimum latency, the overhead of pushing packets into userspace in the first place might not be efficient enough.


    I believe Xorp to be a good product. It is also the ONLY software router that is (a) Open Source and (b) being maintained (Quagga, Zebra and MRT are all dead, and GateD was withdrawn). I don't know if the Xorp group want more core developers, but I desperately hope that third-party developers offer patches and modules for it to beef up the abilities.


    (Linux is an important software router. NetBSD and OpenBSD could be, if the routing software was good enough. The three of them should have the low-to-medium router market totally sewn up in no time flat, in a very short timeframe. That won't happen, though, if there's not enough independent interest and support.)

    --
    It's a small world and it smells funny; I'd buy another if it wasn't for the money; Take back what I paid (SoM)
  17. XORP spawned from Click... by shadowmatter · · Score: 4, Informative

    Eddie Kohler, whose PhD thesis at MIT was the Click modular router (which from what I understand turned into the "engine" behind XORP), is one of the principal designers and developers of XORP. They published a paper at NSDI last year, which you can read here (Warning: PDF). It states very clearly what the goal of XORP is, and how well it performs. Quite interesting.

  18. Market by nurb432 · · Score: 3, Insightful

    Except that the 'uninformed masses' are not ciscos main market.. we arent talking about twinkees here... ( and i know of one case where a bakery chain went down hard, due to one mistake.. the 'general public' understood what happened, and the place was out of business in 6 months, after nearly 100 years of being in the business )

    Most of Cisco's market undersands the technology and security ramifications, and i think they would drop cisco in a heartbeat if this were to happen. Or at least i would hope they would...

    --
    ---- Booth was a patriot ----
  19. Re:Naive by NerveGas · · Score: 3, Interesting

    There are companies releasing high-end networking products that are nothing more than a PC motherboard and their software. A while back, one of the load-balancer companies (I think it was f5, but I don't recall for sure) contracted with Tyan to build their motherboards, with 4 (or more ) gigE controllers, each on it's own PCI-X bus, and Tyan also sold the board to the public.

    The main reason that Cisco doesn't use commodity PC parts in their low- to mid- end routers is that if people knew they were getting nothing more than a $4,000 PC for their $15,000, they'd be pretty pissed. Also, there would be that many more people trying to "crack" IOS to make it run on white-boxes, and that opens up a whole new line of revenue drain for Cisco. (Not that people don't obtain unlicensed copies for their Cisco hardware, though...)

    --
    Oh, you're not stuck, you're just unable to let go of the onion rings.
  20. Can I have a hit of what you are smoking? by Some+Random+Username · · Score: 4, Informative

    OpenBSD ships with its own RIP, BGP and OSPF daemons. Its BGP daemon is BY FAR better than xorp and quagga, and its BSD licensed of course. OpenBSD is already a fantastic software router, maybe you should try using it instead of ignorantly telling us what it "could be"?

  21. Re:Naive by causality · · Score: 5, Insightful

    To a point, I agree with you. I like hardware; it just works. Flash back to several years ago when WinModems were first introduced... Remember what a disaster they were, especially for anyone who didn't fit the anticipated M$-using profile? They were cheaper yes, but also lower quality, more proprietary, and OS-dependent when compared to hardware modems. It was not very long until anyone buying a modem had to shop around very carefully to avoid being stuck with this type of shit. Because I do not use any Microsoft software (but they make decent mice), this was my experience before broadband became available in my area.

    I don't want to see this happen to routers. With the reliability/availability that is usually demanded of a router, and the fact that routers are typically only implemented by either a knowledgable user or a hired technician, I do not anticipate this will actually be a problem.

    However, I have encountered your "oh well they usually learn" arrogance before. Hell, from time to time I might display this myself. You know, the idea that anyone who disagrees with you or who wants to use a different solution for their needs than what you would use could only be suffering from a lack of education and must not have any valid point. It's just a dismissal. Dismissal is a favorite tactic of otherwise logical, composed people who do not care to truly examine a particular issue and are not honest about this unwillingness upfront.

    The main question your post raises for me is that there is an unstated assumption there that Cisco is absolutely dominating this market (which I do not dispute) and is therefore THE sensible choice (this is the part I find questionable). Support contracts, features, performance, blah blah blah... To me these are not the central issue because you can get your desired balance of these by shopping around. So, just explain this one thing to me - how is a majority Cisco marketshare good for anyone other than Cisco?

    FYI, I agree that software routers cannot match the raw performance of dedicated specialty hardware, but I also agree that fire is hot and liquid water is wet. I get the impression that neither Xorp nor any other software router is going to be marketed to Fortune 100 companies in an attempt to directly compete with Cisco, but rather is intended for small to medium sized networks. How many mom-n-pop setups and local businesses ever turn into multimillion dollar enterprises? For this reason I do not consider the "they all migrate one day" statement to be the showstopper that you seem to believe it is.

    --
    It is a miracle that curiosity survives formal education. - Einstein
  22. Re:Uh... by Ed+Bugg · · Score: 4, Informative

    Switches and routing are different things, you can't really compare the two. And again, in their router module, if you implement any sort of ACL, are you still avoiding process-switching?

    This used to be the case waaaayyyy long time ago (ok we're talking years not decades) but starting in Cisco's Cat5500 series they've started pushing the FIB (Forwarding Information Base) into hardware as much as possible... Update an ACL and the assocated FIB gets updated. It started off with the first packet of a flow gets processed switch (i.e. routed) and then the rest of the flow after that gets switched after that, now with Cat6500s with a current supervisor card and fabric enabled host cards it's not even that. ACLs (now VACLs) modify the FIBs directly and everything is directly switched, TTLs decremented as they pass through, counters incremented etc (aren't ASICs nice)... allowing the processor lazely handle the hum-drum work of responding to SNMP requests that dump information tables that would chock a small horse.

    --
    -- Ed Bugg --You have freedom of choice, but not of consequences.--