Kirjeldus
The NetDefend family of Firewall/VPN Security Appliances is D-Link's answer for hardware-based network security. The new D-Link Network Security Firewall (DFL-210) is an easy-to-deploy VPN and firewall solution designed specifically for the Small Office / Home Office (SOHO) market that demands superior performance and security.
Advanced Hardware Features The DFL-210 is a powerful security solution that provides integrated Network Address Translation (NAT), SPI Firewall, advanced content filtering features, IDS protection, bandwidth management, as well as Virtual Private Network (VPN) support. The DFL-210 hardware includes four trusted LAN ports, a WAN port, and a user-configurable DMZ port to support local servers such as e-mail, Web, and FTP. The DMZ port can also be reconfigured as a WAN fail-over port. All of these features conveniently fit into a desktop chassis that can be easily integrated into your network.
Enterprise-class Security To provide enterprise-class network security, the DFL-210 has several flexible firewall features to manage, monitor, and maintain a healthy and secure network. Network management features include: Remote Management, Bandwidth Control Policies, URL/Keyword Blocking, Access Policies, and SNMP. For network monitoring, the DFL-210 supports e-mail alerts, system log, consistency checks, and real-time statistics. These features along with a firmware backup function provide and maintain maximum network performance and security.
VPN Performance For optimal VPN configuration, the DFL-210 has an integrated VPN Client and Server to support almost any required VPN policy. This high-end appliance has a hardware VPN engine to support and manage up to 100 VPN configurations. The DFL-210 can support IPSec, PPTP, and L2TP protocols in Client/Server mode and can handle pass-through traffic as well. Advanced VPN configuration options include: DES/3DES/AES/Twofish/Blowfish/CAST-128 encryption, Manual or IKE/ISAKMP key management, Quick/Main/Aggressive Negotiation modes, and VPN authentication support using either an external RADIUS server or the internal 500-user database.
Configurable User Interface The DFL-210 features an intuitive user interface that can easily be configured via D-Link’s Web-based interface and monitored using the Command Line Interface (CLI). These configuration options can be managed through Admin, Read/Write, or Read-only administrator rights. With these access management levels, any authorized user can easily configure or access the administrative functions of the DFL-210.
With businesses becoming increasingly network-dependent, the need to invest in a reliable security solution is crucial. The D-Link DFL-210 Network Security Firewall offers high return on investment through robust security features, flexible configuration, and maximum network protection for SOHO networks.
*Actual performance may vary depending on network conditions and activated services.
Põhiomadused
Liidesed
- 1 x 10/100Base-TX WAN port
- 1 x 10/100Base-TX DMZ port
- 4 x 10/100Base-TX LAN porti
Tootlikkus4 - Tulemüüri tootlikkus 80 Мbit/s
- VPN tootlikkus 25 Мbit/s
- Paralleelsete sessioonide arv 12 000
- Reeglite arv 500
Tulemüüri funktsioonid - РРРоЕ
- Läbipaistev režiim
- NAT, PAT
- Reeglite seadistamine
- Application Layer Gateway (ALG)
Võrgufunktsioonid - DHCP klient/server
- DHCP relay
- Marsruutimine reeglite järgi
- IEEE 802.1Q VLAN
- IP Multicast: IGMP v1-v3, IGMP Snoooping
Virtuaalne privaatvõrk (VPN) - Krüpteerimine (DES / 3DES / AES / Twofish / Blowfish / CAST-128)
- 100 VPN-tunnelit
- PPTP/L2TP seerver
- Hub and Spoke režiim
- IPSec NAT Traversal
Juhtimine - Konsool
- Web-liides HTTP, HTTPS
- Käsurealiides /SSH
- Tarkvara / konfiguratsiooni uuendamine
- Konfigureerimisfaili reserveerimine / taastamine
- Tsentraliseeritud juhtimissüsteem2
Аutentimine - Sisseehitatud andmebaas
- Väline andmebaas: RADIUS, LDAP
- IP sidumine MAC-aadressiga
- XAUTH IPSec autentimiseks
Registreerimine ja monitooring - Sisene registreerimine
- Väline registreerimine: Syslog seerver
- Teatised emaili
- Sündmuste registreerimine
- SNMP v1, v2c
Läbilaskeriba juhtimine - Traffic Shaping reeglite järgi
- Garanteeritud läbilaskeriba
- Мaksimaalne läbilaskeriba
- Läbilaskeriba prioriteedi järgi
Intrusion Detection (IDS) - Rünnakute signatuuride automaatne uuendamine
- DoS, DDoS rünnakutest kaitsmine
- Rünnakutest ennetamine emaili
Sisu filtreerimine - HTTP tüüp: URL, võtmesõnad
- Skriptide tüüp: Java Cookie, ActiveX, VB
- Email tüüp: «Must» nimekiri, võtmesõnad
Sertifikaadid
Sidustooted
DFL-210-IPS-12 – IDS/IDP signatuuri litsensi uuendus (12 kuud)