Lancom Systems 1781VA-4G 62042 Benutzerhandbuch

Produktcode
62042
Seite von 10
VPN
DNS forwarding according to DNS domain, e.g. internal names are translated by proprietary DNS servers in the VPN. External names are translated
by Internet DNS servers
Specific DNS forwarding
Enables the use of IPv4 VPN over IPv6 WAN connections
IPv4 VPN over IPv6 WAN
VPN throughput (max., AES)
320 Mbps
1418-byte frame size UDP
60 Mbps
256-byte frame size UDP
Firewall throughput (max.)
560 Mbps
1518-byte frame size UDP
100 Mbps
256-byte frame size UDP
Hardware firewall throughput (max.)
930 Mbps
HW-NAT TCP
Content Filter (optional)
Activate the 30-day trial version after free registration under http://www.lancom.eu/routeroptions
Demo version
Worldwide, redundant rating servers from IBM Security Solutions for querying URL classifications. Database with over 100 million entries covering
about 10 billion web pages. Web crawlers automatically search and classify web sites to provide nearly 150,000 updates per day: They use text
classification by optical character recognition, key word searches, classification by word frequency and combinations, web-site comparison of text,
images and page elements, object recognition of special characters, symbols, trademarks and prohibited images, recognition of pornography and
nudity by analyzing the concentration of skin tones in images, by structure and link analysis, by malware detection in binary files and installation
packages
URL filter database/rating server*
Database based online check of web sites (HTTP/HTTPS). HTTPS websites are checked based on DNS names of HTTPS server certificates or based
on “Reverse DNS lookup“ of IP addresses.
URL check*
Filter rules can be defined in each profile by collecting category profiles from 58 categories, for example to restrict Internet access to business
purposes only (limiting private use) or by providing protection from content that is harmful to minors or hazardous content (e.g. malware sites).
Clearly structured selection due to the grouping of similar categories. Content for each category can be allowed, blocked, or released by override
Categories/category profiles*
Each category can be given an optional manual override that allows the user to access blocked content on a case-by-case basis. The override
operates for a limited time period by allowing the category or domain, or a combination of both. Optional notification of the administrator in case
of overrides
Override**
Lists that are manually configured to explicitly allow (whitelist) or block (blacklist) web sites for each profile, independent of the rating server.
Wildcards can be used when defining groups of pages or for filtering sub pages
Black-/whitelist
Timeframes, blacklists, whitelists and categories are collected into profiles that can be activated separately for content-filter actions. A default
profile with standard settings blocks racist, pornographic, criminal, and extremist content as well as anonymous proxies, weapons/military, drugs,
SPAM and malware
Profiles
Timeframes can be flexibly defined for control over filtering depending on the time of day or weekday, e.g. to relax controls during break times for
private surfing
Time frames
Activation of the content filter by selecting the required firewall profile that contains content-filter actions. Firewall rules enable the flexible use of
your own profiles for different clients, networks or connections to certain servers
Flexible firewall action
Response pages displayed by the content filter in case of blocked sites, errors or overrides can be custom designed. Variables enable the inclusion
of current information such as the category, URL, and rating-server categorization. Response pages can be issued in any language depending on
the language set in the user's web browser
Individual display pages (for blocked, error,
override)
As an alternative to displaying the device's own internal response pages to blockings, errors or overrides, you can redirect to external web servers
Redirection to external pages
Automatic notification of license expiry by e-mail, LANmonitor, SYSLOG or SNMP trap. Activation of license renewal at any time before expiry of
the current license (the new licensing period starts immediately after expiry of the current license)
License management
Display of the number of checked and blocked web pages by category in LANmonitor. Logging of all content-filter events in LANmonitor; log file
created daily, weekly or monthly. Hit list of the most frequently called pages and rating results. Analysis of the connection properties; minimum,
maximum and average rating-server response time
Statistics
Messaging in case of content-filter events optionally by e-mail, SNMP, SYSLOG or LANmonitor
Notifications
Wizard sets up the content filters for a range of typical scenarios in a few simple steps, including the creation of the necessary firewall rules with
the corresponding action
Wizard for typical configurations
Simultaneous checking of HTTP(S) traffic for a maximum of 100 different IP addresses in the LAN
Max. users
Categorization is maintained by IBM. Neither IBM or LANCOM can guarantee full accuracy of the categorization.
*) Note
LANCOM 1781VA-4G
Features as of: LCOS 9.00