DFL-870 效能
Firewall Mode of Operation
-
Network Address Translation (NAT)
-
Port Address Translation (PAT)
-
Policy-base NAT
-
Time-Scheduled policies configuration
D-Link ZoneDefense™ Technology
Virtual Private Network (VPN)
-
IPSec Mode: Tunnel mode, Transport mode
-
Encryption Method: DES/3DES/AES/Twofish/Blowfish/CAST-128/NULL
-
Authentication Algorithm: MD5, SHA-1
-
Support PPTP/L2TP/IPSec VPN Server
-
Site to Site VPN, Remote Access VPN for IPSec
-
VPN Tunnel Keep Alive
-
Redundant VPN Gateway
-
Support VPN Hub and Spoke
IP Assignment & Routing
Networking
-
Support Multiple WAN Link
-
Support IEEE 802.1q VLAN
-
IP Multicast: IGMP
-
DDNS Client
-
H.323 NAT Traversal
-
Support ALG (Application Layer Gateway) for layer 7 security: HTTP, FTP, H.323, POP3, SMTP, SIP, TFTP, TLS 1.0 (RFC2246)
System Management
-
Install Wizard
-
Console Interface
-
Web UI Interface
User Authentication
-
Build-in user database
-
External user database:
-
RADIUS
-
Microsoft IAS
-
Microsoft Active Directory and Novell eDirectory, (support LDAP v3 and LDAP Referrals, RFC4510-4519 complaint).
-
Run-Time Web-based authentication with internal and external user database
-
Customize Web Authentication Page
-
RADIUS Accounting for External Accounting Server
-
User Group-Base authentication
-
Support multiple authentication servers at the same time
-
XAUTH (Extended Authentication) for IPSec authentication
|
Logging and Monitoring
-
Internal log capacity
-
Log viewer
-
Email notification
-
Support external log server: syslog server
-
Support 8 log receivers
-
Real-Time performance monitor
-
Event log and alarm
-
Sorting/Filtering/Search log messages
-
Support SNMP v1, v2c
-
SNMP Trap
-
SNMP Standard MIB-II and Custom MIB
-
VPN tunnel monitor
Bandwidth Management
-
Guaranteed Bandwidth
-
Maximum Bandwidth
-
Priority-Bandwidth utilization
-
Policy-Based traffic shaping
-
Time-Scheduled traffic shaping
-
Bandwidth Management in VPN tunnel
-
Dynamic Bandwidth Balancing
-
Differentiated Services (DiffServ)
-
IP based connection limit
-
IM/P2P Applications Traffic Shaping (IDP Traffic Shaping)
High Availability
-
WAN Failover (Interface Failover)
-
Route Failover with ICMP Monitoring
-
Host Monitor for Route Monitoring
-
Active-Passive HA mode
-
Device Failure detection
-
Dead Link Detection/Interface Detection
-
Configuration synchronization
-
Firewall/VPN session synchronization
-
Average failover time: < 800ms
-
Network notification on failover
Intrusion Detection and Prevention System (IPS/IDP)
-
Support advanced IPS/IDP update service with 17,000+ signature databases.
-
NIDS pattern auto update
-
DoS, DDoS attack protection
Anti-Virus Protection
-
Support Kaspersky Anti-Virus databases
-
Support protocol: HTTP, FTP, SMTP, POP3
-
Anti-Virus pattern auto update
Dynamic Web Content Filtering
-
HTTP Type: Web URL filter. (Only for HTTP protocol, it doesn’t support HTTPS protocol)
-
Scripts Type: Java Applet, Java Scripts, VB Scripts, Cookies, Active X.
-
Web content categories: 32 Categories
-
Customize Forbidden Web Page
-
Maximum file size protection
-
Request URL reclassification
-
Allow User Override
-
Local database URL Cache
Traffic Load Balancing
Email Security
-
Support Protocol: SMTP and POP3
-
Sender/Recipient Email address Blacklist/Exempt List filtering (for SMTP protocol only)
-
MIME header check for file extensions filtering
-
Email rate protection (for SMTP protocol only)
-
Email size protection (for SMTP protocol only)
-
Anti-Spam (for SMTP protocol only)
-
Real-Time DNSBL/Open Relay Database Server
-
Weight-based DNS blacklist
-
Customize spam tag information in email subject
-
Forward blocked emails
|