Application Delivery Guarantees Business Continuity

Hillstone AX Series Application Delivery Controllers (ADCs) are the next generation of enterprise-class application delivery optimization products. The Hillstone ADC supports a full range of load balancing functions, including link load balancing (LLB), server load balancing (SLB) and global server load balancing (GSLB). In addition, the AX Series supports health checks for applications, servers and links, first-level network attack protection, SSL offload, application and data acceleration via caching, and more. The Hillstone ADC can greatly improve the availability and scalability of core applications and business platforms, and effectively improve the operational efficiency of enterprise data centers. Together with Hillstone security products such as next generation firewalls, the Hillstone ADC can provide end-to-end application delivery and security capabilities for your applications and business operations.

High-performance Server Load Balancing

Hillstone’s AX Series provides server load balancing with highcapacity concurrent and new session processing capabilities. It intelligently adjusts traffic distribution based upon the health status of server nodes, and automatically completes switching to ensure the best user experience as well as application high availability.

Intelligent, Efficient and Dynamic Link Load Balancing

Hillstone’s AX Series ADC offers enterprise-class link load balancing technology. It features an innovative adaptive link selection control algorithm that can detect link connectivity, bandwidth utilization, delay, packet loss and jitter in real time, and adjust the traffic forwarding rules based upon the actual link quality and performance.

High-performance SSL Offload for Secured Applications

Hillstone’s ADC supports SSL hardware acceleration technology that provides industry-leading 2048- bit SSL processing performance. By offloading SSL traffic to the Hillstone ADC’s dedicated SSL processing resources, the server workload is significantly reduced resulting in improved server performance and scalability.

Full-featured IPv6

In addition to IPv6 support, the Hillstone ADC supports IPv6 application layer transformation technology to help IPv4 websites and networks seamlessly upgrade to or interoperate with IPv6.

End-to-end Security Protection

Together with Hillstone Networks’ next-generation firewalls, CloudEdge, CloudHive and other security products, the Hillstone ADC can provide end-to-end security protection capabilities from network access to data centers.

Key features

  • L4 and L7 server load balancing
  • Source IP-based session persistence
  • HTTP content switching based on URL, HTTP header, cookie
  • HTTP content rewriting
  • Redirection for HTTP requests
  • Supports IPv6
  • Supports HTTP2.0
  • Supports WebSocket protocol
  • Supports fastHTTP mode
  • Predefined and custom health checks for ICMP, TCP, UDP, HTTP, HTTPS, SMTP, POP3, IMAP, DNS protocols and third-party objects
  • Supports email exchange protocol / RADIUS protocol health checks
  • HTTP caching (jpg, doc, ppt, xls, html, css, js, pdf, swf, mp3, avi, flv, mp4)
  • TCP connection multiplexing
  • HTTP compression (doc, ppt, xls, html, css, js)
  • Software SSL offload; supported versions include SSLv2, SSLv3, TLS 1.0, TLS1.1, TLS1.2
  • Hardware SSL offload
  • Predefined and custom encryption algorithms
  • SSL connection multiplexing
  • Load balance persistence algorithm based on session ID
  • Supports SSL proxy
  • Works in conjunction with sBDS and NIPS to identify encrypted traffic
  • Supports IP address library and ISP address library with automatic update
  • Policy routing supports domain name and geographic location routing
  • System management via WebUI, Console, Telnet and SSH
  • Role-based authorization of administrators, auditors and operators
  • Access control on the administrator address for remote management
  • Supports WebUI administrators to bind to trust domain, and certificate authentication for administrators
  • Configuration for password complexity and minimum length restrictions
  • Supports SNTP, and synchronization of system time from multiple NTP servers
  • Supports multiple configuration files and configuration file backup and recovery
  • Supports hping, tcpdump and curl operation and maintenance tools
  • Application identification based on application characteristics, behavior and related information
  • Multi-dimensional application definitions
  • Thousands of application signatures
  • Application signature database updated in real-time
  • Supports a variety of log types, including event logs, network logs, configuration logs, NAT logs, SLB logs, health check logs, etc.
  • Log storage in both local device and server
  • Email alarms and log alarms
  • Real-time WebUI display of system resource utilization and hardware status
  • Monitoring and graphical display of the SLB status
  • Device status monitoring on mobile devices via CloudView
  • Supports forwarding SLB log, health check binary log to HSA
  • Deployment via one-arm reverse proxy, routing, transparent, or DSR
  • Supports static routing, ISP routing, policy routing, and RIP dynamic routing protocol, and supports import of ISP information
  • HA / AP mode
  • Supports configuration, session, health checks, PKI synchronization
  • Policy control
  • VSYS
  • Supports VMware / KVM / Xen / Hyper-V / AWS / Alibaba Cloud virtualization deployment
  • QoS
  • Session limiting
  • Supports DNS proxy
  • DNS proxy blacklist and whitelist
  • Inbound SmartDNS
  • SmartDNS supports IP address library and ISP address library with automatic updates
  • Supports A, AAAA, NS, CNAME, PTR, MX, TXT, SRV
  • Recursive forwarding
  • DNS transparent proxy