Siemens 5890 User Manual Page 4

  • Download
  • Add to my manuals
  • Print
  • Page
    / 4
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 3
technical
Siemens Home and Office Communication Devices
4849 Alpha Road . Dallas, TX 75244
Phone +1(972) 852-1000
Fax +1(972) 852-1001
E-mail info.s[email protected]
Web www.icn.siemens.com/subscriber
Copyright© 2005 Siemens Home and Office Communication Devices LLC. All rights reserved. Siemens and the Siemens logo are trademarks of Siemens
AG, Germany. All other trademarks are held by their respective companies. Siemens reserves the right to make changes to product specifications at any
time without notice.
Software Features
Security
Secure Management
• User authentication (PAP/CHAP) with PPP (RFC 1334,
RFC 1994)
• Password control for configuration manager
• SNMP community name reassignment
• Telnet/SNMP port reassignment/Access Control List
• Role-based management
Five pre-configured templates
Up to 15 user names stored in the local database
• RADIUS management authentication support
• SSH and IPSec secure management channels
Basic Business Firewall
• Filter on source and/or destination IP address/port value
• Filter on SYN, ACK flags and ICMP
• Apply input, output, transmit, and receive filters on
each interface
• Stateful inspection when NAT is enabled
• Logging and scripting
ICSA-compliant Stateful Inspection Firewall
• Provides enterprise-grade firewall protection from
Common Denial of Service (DoS) attacks and
exploits including Killwin, Land, Ping of Death,
Smurf, Teardrop, Tiny Fragments, and WinNuke
Distributed Denial of Service (DDoS) attacks
including ICMP, SYN and UDP floods
Other hacking attacks including IP address
sweeping, IP spoofing, port scanning
• Opens ports to serve legitimate requests and
automatically closes them when the request or
session ends
• Full-time Stateful Packet Inspection with built-in
support for most popular applications
• No pre-defined limit on the number of rules that can be
created and applied
• All firewall messages can be logged to the router
console and to syslog servers
• Maintains a log of the most recently dropped packets in
the browser-based user interface
Secure Virtual Private Networking
• L2TP, IPSec, and L2TP inside of IPSec
• No pre-defined limit on VPN tunnels
• IPSec Tunnel and Transport modes with AH and ESP
• Internet Key Exchange (IKE) including Aggressive Mode
• DES (56-bit) and 3DES (168-bit) encryption
• Supports Perfect Forward Secrecy (DH Groups 1 and 2)
• Provides protection from replay attacks
• Implements RFCs 1321, 1828, 1829, 2085, 2104,
2401-2410, 2412, 2420, 2437, 2451, and 2631
(Groups 1 and 2
)
Configuration, Management
and Monitoring
• Easy setup through a browser-based user interface
• Configuration and management using HTTP, serial
console, SNMP, SSH, or Telnet
• Out-of-band configuration and management using
serial console port
• Supports dedicated routed management PVC in bridged
and routed mode
• TFTP download/upload of new software, configuration
files, and scripts
• Stores backup copy of firmware on dual bank flash
memory for system recovery
• Performance monitoring data available using SNMP
• Dynamic event and history logging
• Network boot using a BootP server (RFC 2131,
RFC 2132)
• Syslog server support
• Telnet Server & Client
IP Quality of Service (IP QoS)
• DiffServ traffic prioritization through ToS byte marking
• Weighted Fair Queuing traffic prioritization
• Configurable queue weighting
• Configurable traffic prioritization policies by
Date, day of week, and time
Source and destination addresses
Port, protocol, and application
Protocols
ATM
• Encapsulation (IP, Bridging, and Bridge Encapsulated
Routing) (RFC 2684/1483)
• PPP over ATM (LLC and VC multiplexing) (RFC 2364)
• Classical IP over ATM (RFC 2225)
• Classical IP (RFC 1577)
• AAL5
• Virtual Circuit (VC) traffic shaping (CBR, PCR, UBR, VBR)
• No pre-defined limit on VCs
• I.610 OAM F5 end-to-end and segment LoopBack
• Initiates and responds to LoopBack signaling
Frame Relay
• Support of frame relay ANSI T1.618 and
CCITT Q.922 formats
• DLCI support
• Inverse ARP support
• LMI support including LMI protocol discovery
• LLCP auto-update
• CIR & EIR rate enforcement
• Network congestion management
PPP (RFC 1661, RFC 2364)
• PPP over Ethernet (RFC 2516)
• PPP over ATM (RFC 2364)
• Bridging (RFC 1638)
• IP Routing (RFC 1331)
• IPX Routing (RFC 1552)
• Multiclass extensions to MLPPP (RFC 2686)
• MLPPP (RFC 1990)
• Data compression of up to 4:1 (STAC™ LZS) (RFC 1974)
• Van Jacobson header compression (RFC 1144)
• Spoofing and filtering (IP-RIP, IPX-RIP, SAP, Watchdog
serialization)
• Automatic IP and DNS assignment (RFC 1877)
Routing
• TCP/IP with RIP1 (RFC 1058), RIP1-compatible and RIP2
(RFC 1389), or static routing on the LAN and/or WAN
• Novell® IPX with RIP/SAP (RFC 1552)
• DHCP server (RFC 2131, RFC 2132), relay agent (RFC
1542), and client (RFC 2132)
Automatically defers to other DHCP servers on
the network
Automatically adjusts to changes in LAN
IP addressing
No pre-defined limit on DHCP clients
• DNS relay
• Multiple subnets on the LAN support NAT, RIP1, RIP2,
ARP and IP filters
• Virtual routes can be defined based on user IP addresses
or ranges
IP Address Translation
• Network renumbering (RFC 1631)
• Network Address Translation (NAT/PAT/NAPT)
• NAT passthrough support for numerous applications
including IPSec, PPTP, H.323, SIP and NetMeeting
• Supports public Web and e-mail servers with NAT
Hardware Features
WAN Interface
• G.SHDSL, 2-wire
• SDSL, 2B1Q
• IDSL, 2B1Q
LAN Interface
• Built-in 5-port 10/100 Base-T Ethernet switch with
link status LED for each port
• Auto detects full or half duplex operation
• Auto detects regular or crossover cable for easy
connection to a switch or hub
• Ports can be configured individually and manually for:
– Enabling/disabling
– Speed and duplex
– Port mirroring
Serial Interface
• One asynchronous serial console port
Product Enclosure
• Front panel LED status for Power, Test, WAN and LAN
• Rear panel LED status for each Ethernet port link
• Installation options: Desktop or wall-mount
Global network of innovation
Page view 3
1 2 3 4

Comments to this Manuals

No comments