Endian 4i Edge 112 VPN Firewall Specification Guide

Page of 2
Securing everyThing
www.endian.com
Endian 4i Edge 112
Network Security
•  Stateful Packet Firewall 
• 
NEW
 
Application Control (over 160  
Protocols including Facebook, Twitter, Skype, 
WhatsApp and more)
•  Demilitarized Zone (DMZ) 
•  Intrusion Detection and Prevention (Snort) 
•  Multiple Public IP Addresses 
•  Multiple WAN 
•  Quality of Service and Bandwidth  
Management 
•  SNMP Support 
•  VoIP/SIP Support 
•  SYN/ICMP Flood Protection 
•  VLAN Support (IEEE 802.1Q Trunking) 
•  DNS Proxy/Routing
•  Anti-Spyware 
•  Phishing Protection
WAN Failover
•  Automatic WAN Uplink Failover 
•  Monitoring of WAN Uplinks 
•  Uplink Types: Ethernet (Static/DHCP), PPPoE, 
PPTP
•  Support for UMTS/GPRS/3G USB Dongles
Network Address Translation
•  Destination NAT 
•  Incoming Routed Traffic 
•  One-to-One NAT 
•  Source NAT (SNAT) 
•  IPsec NAT Traversal 
Routing
•  Static Routes 
•  Source-Based Routing 
•  Destination-Based Routing 
•  Policy-Based Routing (Based on Interface, MAC 
Address, Protocol or Port)
Bridging
•  Firewall Stealth Mode 
•  OSI Layer 2 Firewall Functionality 
•  Spanning Tree
•  Unlimited Interfaces per Bridge
High Availability
•  Hot Standby (Active/Passive) 
•  Node Data/Configuration Synchronization
Virtual Private Networking
IPsec
• 
NEW
 
Encryption: Null, 3DES, CAST-128, AES 
128/192/256-bit, 
•  Blowfish 128/192/256-bit, Twofish 128/192/256-
bit, 
•  Serpent 128/192/256-bit, Camellia 128/192/256-
bit 
• 
NEW
 
Hash Algorithms: MD5, SHA1, SHA2 
256/384/512-bit, AES-XCBC 
•  Diffie Hellman Modes: 1, 2, 5, 14, 15, 16, 17, 18, 22, 
23, 24 
•  Authentication: Pre-Shared Key (PSK), RSA Keys, 
X.509 Certificates 
•  IKEv1 & 
NEW
 
IKEv2 
•  Dead Peer Detection (DPD) 
•  NAT Traversal 
•  Compression 
•  Perfect Forward Secrecy (PFS) 
•  VPN Site-to-Site 
•  VPN Client-to-Site (Roadwarrior) 
•  L2TP User Authentication 
• 
NEW
 
XAuth User Authentication 
OpenVPN
•  True SSL/TLS VPN
•  Encryption: DES, 3DES, AES 128/192/256-bit, 
CAST5, Blowfish 
•  Authentication: Pre-Shared Key, X.509 Certificates 
•  Support for VPN over HTTPS Proxy (OpenVPN) 
•  PPTP Passthrough 
•  VPN Client-to-Site (Roadwarrior) 
•  VPN Client for Microsoft Windows,  
Mac OS X and Linux 
•  Possibility of Multiple Logins per User 
•  VPN Failover
• 
NEW
 
Multiple Server Support Scalability
• 
NEW
 
Support for Mobile Devices (Android, iOS)
User Management & Authentication 
• 
NEW
 
Unified User Management for OpenVPN, L2TP, 
XAuth
• 
NEW
 
Group Management
• 
NEW
 
Integrated Certificate Authority 
• 
NEW
 
External Certificate Authority Support
• 
NEW
 
User Password and Certificate  
Management (Two-factor Authentication)
• 
NEW
 
Multiple Authentication Servers  
(Local, LDAP, Active Directory)
Serial Communication
• 
NEW
 
Serial over IP 
• 
NEW
 
Serial-to-Serial Hardware Bridging
• 
NEW
 
Support for RS232, RS422, RS485
Event Management
• 
NEW
 
More Than 30 Individually Configurable 
Events
•  Email Notifications
• 
NEW
 
SMS Notifications
• 
NEW
 
Powerful Python Scripting Engine
Extra Services
•  NTP (Network Time Protocol) 
•  DHCP Server 
•  SNMP Server 
•  Dynamic DNS
Logging and Reporting
• 
NEW
 
Reporting Dashboard 
• 
NEW
 
Detailed System and Attack  
Reports
• 
NEW
 
Live Network Traffic Monitoring  
(powered by ntopng)
•  Live Log Viewer 
•  Network/System/Performance  
Statistics 
•  Rule-Based Logging Settings  
(Firewall Rules) 
•  Syslog: Local or Remote 
•  OpenTSA Trusted Timestamping
Management / GUI
•  Easy Web-Based Administration (SSL)
• 
NEW
 
Multi-Language Web-Interface  
(English, Italian, German, Japanese, Spanish, 
Portuguese, Turkish, Chinese, Russian)
•  Secure Remote SSH/SCP Access 
•  Serial Console 
•  Centralized Management through  
Endian Network (SSL) 
Updates and Backups
•  Scheduled Automatic Backups 
•  Encrypted Backups via E-mail 
•  Instant Recovery / Backup to  
USB Stick (Endian Recovery Key)
•  Centralized Updates through  
Endian Network 
© 2015 Endian SRL. Subject t
o change without notice. Endian and Endian UTM ar
e trademarks of Endian SRL. All other trademarks and r
egister
ed trademarks ar
e the 
pr
oper
ty of their r
espectiv
e owners.
Endian Connect Switchboard
Complete Security for IoT and M2M Networks
The Internet of Things (IoT) era is here and companies need the 
Endian Connect Switchboard to securely connect their global 
workforce to their field equipment in order to access informati-
on, monitor equipment status, provide enhanced remote services 
and much more.