Vyatta software是一份完整的、即刻可用的、基于Debian的发行，它被设计为能将一套标准的x86硬件转换为企业级的路由器/防火墙。Vyatta软件包括对常用网络接口、工业标准路由协议和管理协议的支持。与先前的开源软件路由项目不同，所有的这些特性都可以通过单个的命令行接口（CLI）或是基于 web的图形用户界面来配置。Vyatta软件可以以自由社区版本获得，它也以捆绑软件订购的形式提供，这包含了维护、升级和技术支持.
新版本支持 Microsoft Hyper-V; Policy-Based Routing (PBR)
Release 6.5 of the Vyatta Network OS adds significant enhancements including:
Support for Microsoft Hyper-V
Policy-Based Routing (PBR)
PBR allows incoming packets to be forwarded based on policies, rather than just on the destination address. This enables the use of policies that selectively cause packets to take different paths based on defined criteria, such as source address, packet size, protocol, etc. By implementing policies that selectively cause packets to take different paths, network administrators have a powerful new tool for organizing and managing the network. Using PBR, administrators and managers are capable of:
- Increasing quality of service by giving preferential treatment to bandwidth sensitive or high-priority traffic
- Reducing capital and operating expenses by distributing select traffic among low-bandwidth, low-cost permanent paths and high-bandwidth, high-cost, switched paths
- Prioritizing critical data over non-critical data
- Distributing traffic down multiple circuits to avoid connection overload
Virtual Tunnel Interface (VTI)
VTI is a way to represent policy-based IPsec tunnels as virtual interfaces. The advantage of representing an IPsec tunnel as an interface makes it possible to plug IPsec tunnels into the routing protocol infrastructure of a router. Therefore, it becomes possible to influence the packet path by toggling the link state of the tunnel or based on routing metrics.
A VTI provides a termination point for a site-to-site IPsec VPN tunnel and allows it to behave like routable interfaces. In addition to simplifying the IPsec configuration, it enables many common routing capabilitiesto be used because the endpoint is associated with an actual interface.
IP routing protocols are designed to select a single best path to a given destination for forwarding traffic. However, many routing protocols have enhanced support for selecting multiple paths, with certain limitations. Multiple paths are useful for traffic engineering, load sharing, load balancing and to help provide quicker failover. This also reduces the probability of a link being left unused.
BGP Multipath in Vyatta Network OS 6.5 enables the installation of multiple BGP paths to a destination into the IP routing table. BGP Multipath does not affect the BGP best path selection process. One of the available paths is still designated as the best path as per the standard algorithm and configured/operational conditions. This best path is also advertised to the BGP neighbors. The Vyatta implementations of BGP Multipath will support EBGP and IBGP, but will not support EIGBP, exclusive confed-external path set or MPLS/VPN.
IPsec for IPv6
Vyatta Network OS 6.5 delivers IPsec support for IPv6 using Internet key management protocol IKEv1. It will not deliver IPsec support for IPv6 using IKEv2. We anticipate that IKEv2 support will be introduced for both IPv4 and IPv6 in a subsequent release.
Improved VRRP Commands
The VRRP (Virtual Router Redundancy Protocol) operational mode commands have been modified to improve usability and ensure the commands are consistent with the command structure used throughout Vyatta Network OS.
Additionally, close to 200 bugs were addressed and resolved in Release 6.5, delivering a new level of product stability and system integrity for enterprise-class deployments. See the full Release Notes and Reference Guides for details on new capabilities and bug fixes for this release.
For information on installing and upgrading please read the Release Notes and the Vyatta Installation and Upgrade Guide.
最新版本vyatta ，一个基于debian防火墙的分布的" vyatta"很高兴地发布， vyatta社区版2.2 （代号camarillo ）已发表的主要储存库。这个版本增加了以下改进：边界网关协议（ bgp ）的改进-每个b gp路由政策和m d5认证骨钙素; n at的可用性增强- 型和翻译式的选择已合并成一个单一的属性为便于配置和配置指南已增强具有更大的数量和品种举例nat的;改善dhcp服务器和dhcp继电器;新的选择显示文本 ，以加强提供额外的信息包;补丁-超过1 00个问题（错误和增强）解决了这一最新情况。 "阅读其余释放公布一个更详细的清单，新的特点。