Review: Infoblox ID Grid

Infoblox ID Grid provides a highly resilient platform for delivering core network services

Written by Dave Bailey

Larger Image

The Infoblox ID Grid platform is a system for running core network services over a firm’s local and distributed network infrastructures. These core services include: the Domain Name System (DNS), Dynamic Host Configuration Protocol (DHCP), IP Address Management (IPAM), Remote Access Dial-In User Service (Radius) and Trivial File Transfer Protocol (TFTP). An Infoblox ID Grid comprises appliances connected via Ethernet using the vendor’s Keystone package. This type of appliance-based architecture is intended to offer far greater resilience than the DNS/DHCP services bundled for free with Windows-based servers.

Each Infoblox appliance has a DNSone module for delivering integrated DNS and DHCP services and an onboard XML-based database, called bloxSDB, for storing information about the devices that require network services, such as desktop systems, web servers, IP phones and wireless access points. For example, it records which systems require static IP addresses, which require dynamic IP addresses, and which systems need authentication before they can be accessed, for instance, through a Radius server.

The central point of control for the grid is provided by a system or systems located at headquarters or in a datacentre or in a network operations centre. This unit is called the Grid Master, and although it can also serve up core network services locally, it also synchronises the information contained in the distributed appliances’ databases and provides monitoring and reporting functions for the entire grid. All communications between appliance members of the grid and management by network administrators uses certificate-based authentication and Secure Sockets Layer (SSL) encryption.

We reviewed Infoblox’s ID Grid platform using four appliances configured to simulate a central headquarters site with two branch offices. For this we used a pair of Infoblox-1550 appliances, which are designed for enterprise envi ronments, and a pair of Infoblox-550 systems, which are aimed at branch offices. Both systems are 1U appliances that can fit neatly into 19in racks in datacentres or wiring closets. The Infoblox-1550 features an Intel dual-core 3.2GHz processor, 4GB of system memory and a 300GB serial ATA (Sata) hard drive. Infoblox also sells a 1552 model, which has redundant, hot swappable power supplies. The network interfaces on the 550 and 1550 models are the same, comprising one standard console port, two Gigabit Ethernet LAN ports, a Gigabit Ethernet high-availability port and a 10/100Mbit/s management port.

We configured the two Infoblox-1550 systems as a high-availability pair for increased resilience, and nominated one of these as the Grid Master. The other 1550 appliance is designated the Master Candidate, and remains passive until the active appliance fails or starts a firmware upgrade. At this point the Candidate is promoted to Grid Master.

Initial set-up was done using the front-mounted console port on the Grid Master appliance. Infoblox appliances run under the Network Identity Operating System (Nios). Initially we used Nios 4.0r1, but later during our tests we upgraded to 4.1r2, a process that at first seemed quite complex but was in fact very easy, and involved no visible loss of service to our network devices.

Nios 4.1r2, which was released in March, adds features that network administrators may find useful, such as support for secure dynamic DNS updates from Microsoft client systems and support for DHCP API add-ons for Alcatel-Lucent’s VitalQIP IP address management software.

Installing an upgrade involves using the separate partition on the Master Candidate’s hard drive and copying the files onto that partition. The upgrade is then launched on the Master Candidate, which effectively becomes a guinea pig system for the upgrade. If the upgrade is successful, this system is designated the Grid Master and it can then upgrade the rest of the appliances over the ID grid. After the upgrade, we defined subnets for the branch office Infoblox-550 appliances and connected them to our datacentre pair.

After this we connected our management device – a laptop running Windows XP Professional – and downloaded Infoblox’s ID Grid Manager Java client. The management software is very simple to use. With just a few mouse clicks network administrators can easily define DNS zones, DHCP address pools and lease times, and add clients requiring, for example, TFTP or Radius services. The fact that the Infoblox grid system is hierarchical meant that we could apply DHCP options across all our appliances. Local administrator accounts can be set up to allow individual appliances to be tweaked, however.

We were disappointed with the reporting services available to administrators, which seemed pretty basic. We could view the system log and define a syslog server to take system messages and process audit log messages, as well as set systems to take Simple Network Management Protocol (SNMP) alerts. But with compliance issues becoming more and more important, Infoblox needs to improve these reporting functions.

The vendor said an upgrade scheduled for later this year should address this issue.

Tags:

Product overview

Ratings

  • Our rating: 4
  • Average user rating:

Verdict

The Infoblox ID Grid system is designed to provide a reliable, secure, easy-to-deploy and manageable platform for delivering core network services, including DNS, DHCP, IPAM, TFTP, and Radius.

Pros: Easy to set up and manage; grid architecture ensures resilience; hierarchical system speeds set-up times for branch offices.

Cons: Weak reporting services.

Best prices

reader comments

related articles

Interview: Why DNS defences need bolstering

Nominum’s Albert Gouyet explains how enterprises can protect their DNS servers 19 Jun 2006

 

Neglect DNS/DHCP at your peril

How can firms invest hugely in services like IP telephony without first ensuring their networks will cope? 28 Nov 2006

Infoblox delivers DNS and DHCP for Windows systems

Could help IT managers automate processes 07 Apr 2008

today's top stories

CIOs must embrace collaboration tools

Author Don Tapscott gives Angelica Mari his reasons for promoting social networking tools and says transparency is the key to security 04 Dec 2008

On a quest to build a connected society

BT Design’s JP Rangaswami talks to Gareth Morgan about his pivotal role in the telecoms giant’s efforts to deliver universal broadband and his plans to tap into the creativity of the open source community 04 Dec 2008

IT leaders must stand by India

A sense of perspective is the most important response from IT leaders to the attacks in Mumbai 04 Dec 2008

Case study: Clifford Chance

Law firm implements Sun platform and reduces datacentres to gain efficiency and cost synergies 03 Dec 2008

Should CRM be more sociable?

As vendors rush to add more social networking bells and whistles to their CRM products, some experts warn that users must tread carefully when venturing into online communities 03 Dec 2008

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

White papers

Search white papers

Top categories

VPN, Extranet and Intranet Solutions

WAN/ LAN Solutions

Network Security

Interoperability-Connectivity

Grid/ Utility Computing

Latest poll

Will the terrorist attacks in Mumbai affect your offshoring plans?

Will the terrorist attacks in Mumbai affect your offshoring plans?

Is India becoming a risky destination?

Previous poll results

Latest audio and video articles

Padlocked CDVideo

Technology and privacy

Watch the final video in a two-part Computing roundtable debate on the importance of putting data privacy issues at the heart of your IT plans 02 Dec 2008

Podcast imageAudio

Computing podcast - Standard Life's offshoring plans; and the prospects for government IT

The insurance giant outlines its new outsourcing strategy; and we ask if the government's economic bailout will affect its IT plans 28 Nov 2008

Latest in-depth articles

Doctors looking at a computerAnalysis

Watchdog wants IT to cure privacy woes

Information Commissioner Richard Thomas is urging organisations to put privacy protection at the top of their procurement and development criteria 04 Dec 2008

Colin McDonaldComment

Web 2.0 has potential to transform staff training

Employees can sharpen their IT skills through using the latest interactive training tools, writes Colin McDonald 04 Dec 2008

Advertisement

Primary Navigation