Tel.: +49 7121 539 550|sales@voleatech.de
B2B Shop
Home » VT AIR » Rack » VT AIR 1200 Enterprise Firewall

VT AIR 1200 Enterprise Firewall

Next Generation Enterprise Firewall

Best for large VPN Router - No Licence Costs
TEST DEMO NOW!

Now: 1 Support Ticket included

Available Now

 1.599,00 ( 1.854,84 incl. VAT)

Plus 16% VAT
Delivery Time: approx. 5 - 7 Business Days
SKU: VTAIR-1200 Categories: , Brand:

Description

VT AIR 1200 Enterprise Firewall

The VT AIR 1200 is a German technology product designed specifically for a demanding enterprise and data center environment and its needs. The Enterprise Firewall VT AIR 1200 is versatile due to its modern technology (1 / 10GB RJ45, SFP +). It’s a compact, flexible and functional rack firewall that, thanks to its technology, will always grow with the needs of your business or data center.

Thanks to the VT AIR Linux operating system, you enjoy a modern, fast and versatile user interface. Designed with a focus on performance, versatility and no licensing costs, the VT AIR system is perfect for companies of all sizes.

This Enterprise Firewall can be used as LAN or WAN router, VPN router, DHCP server, DNS server and Intrusion Protection and Detection Server.

The VT AIR 1200 firewall provides you a security platform, including very high performance and speed with an excellent price-performance ratio.
2x RJ45 (10GB/s) + 8x RJ45 (1000/100/10 Mbit/s)
2x SFP+ (10000/1000 Mbit/s)
IPMI RJ45 Remote Access

Key Facts

Advantages

  • Business – Enterprise Open Source Firewall

  • No Licence Fees

  • VT AIR Software – Feature Rich Firewall

Best For

  • Medium to Large Sized Networks with 1U rack mount cabinets

  • Medium to Large Sized Branch Office with heavy loads

  • Managed Service Providers (MSP) / Managed Security Service Provider (MSSP) On Premise Appliance

  • Anyone with High-Speed 10 Gigabit and/or 1 Gigabit Connections

  • Many VPN Connections

  • Anyone with high speed connections who wish to configure IDS/IPS features

Business – Enterprise Open Source Firewall

No Licence Fees
High Quality
Top Service and Support
The smart VT AIR 1200 is the Enterprise Open Source Firewall for business and the ideal VPN router. The VT AIR 1200 combines professionalism and quality with transparency and security. Despite its exceptional properties, it stands for a quick ROI. The special feature: There are no license costs. With the VT AIR 1200, companies rely on technology that is as smart as well as cost-effective.

VT AIR – Feature Rich Firewall

VT AIR is the Linux-based system from Voleatech. The modern, user-friendly, easy-to-understand and dynamic web interface in multiple languages allows you to make all settings easily and conveniently. Whether via API or Command Line, automation is no problem with VT AIR.

Also try our central web management portal. A variety of features allow you to configure your network securely and perfectly.

LIVE DEMO
OR
Documentation
Advanced Thread Protection2020-08-25T11:34:40+02:00

VT AIR offers a variety of advanced thread protection mechanisms.

Blocking unwanted and unsafe websites via DNS sinkholing technology and advanced web filters with virus scanners and content filtering.

Various intrusion detection and protection rules are also available.

Intrusion Detection and Protection2020-08-25T11:36:28+02:00

The Intrusion Detection and Prevention System (IDS / IPS) of the VT AIR Firewall significantly improves network security by providing complete and comprehensive real-time network protection against a wide range of network threats, vulnerabilities, exploits and threats in operating systems and applications.

VT AIR scans network traffic using powerful and comprehensive rules and signature language to detect complex threats with the Surricata program.

Suricata is an open source based intrusion detection system and intrusion prevention system

Automatic signature updates are provided regularly to ensure that the VT AIR Firewall is always up to date.

Web Control/Web Protection2020-08-25T11:37:26+02:00

Advanced Web Protection combines advanced analysis functions, blacklists and ACLs to optimally protect your web traffic.

With the built-in virus scanner, you can optimally protect your web traffic.

VT AIR uses the Squid program, which is characterized by its diverse functions and security.

The web filter can be set up as a proxy, but also as a transparent HTTP / HTTPS proxy.

Stateful Deep Package Inspection2020-08-25T11:37:59+02:00

VT AIR is a stateful firewall. A stateful firewall is a network firewall that tracks the operational status and characteristics of network connections that pass through them. The firewall is configured to distinguish between legitimate network packets for different connection types.

Packets are analyzed with NFTables (Deep Package Inspection) and allowed or blocked on the basis of firewall rules in order to ensure optimal protection of the network traffic.

Multi Factor Authentication2020-08-25T11:38:47+02:00

Multi-factor authentication (MFA) has become the standard to prevent unauthorized access to business-critical information.

VT AIR supports multi-factor authentication with the TOTP standard for the web interface and OpenVPN to protect your infrastructure in the best possible way.

Network Flow Fastpath2020-08-25T11:39:23+02:00

VT AIR supports the acceleration of TCP and UDP connections using Network Flow Fastpath.

For this purpose, the NFTables flow table offload technology is used, which accelerates network traffic by a factor of 2-3, all with the usual network security.

With Flowtables you can accelerate packet forwarding in software with the help of a state that no longer runs through the entire network stack after a connection has been established.

XDP/eBPF2020-08-25T11:40:16+02:00

With XDP, network functions (eBPF) can be executed as soon as a packet reaches the network card and before it is moved up into the kernel’s network subsystem, which leads to a significant increase in packet processing speed. This technology allows us to achieve significantly faster firewall speeds.

In general, all of our VT AIR appliances are already prepared for XDP / eBPF.

This technology will be available in VT AIR in 2021.

DHCP2020-08-25T11:41:12+02:00

VT AIR comes with a built-in IPv4 and IPv6 Kea DHCP server.

Whether static or dynamic DHCP addresses and multiple networks, you can supply your clients with addresses without any problems.

The Kea DHCP server is also capable of high availability and can form an automatic failover with several VT AIRs.

DNS2020-08-25T11:43:07+02:00

VT AIR comes with the well-known Unbound DNS Server, which allows it to run as a stand-alone or as a forwarding DNS server. Unbound allows you to define any host overrides and domain forwarding. For security reasons, VT AIR uses different DNS block lists with categories. Encrypted DNS and DNSSEC are also not a problem.

NTP2020-08-25T11:43:43+02:00

Network Time Protocol is the most common method of synchronizing a system’s software clock with Internet time servers. It is designed to mitigate the effects of variable network latency and can typically limit the time over the public Internet to ten milliseconds. The accuracy in local networks is even better with up to a millisecond. VT AIR comes with an NTP server for the network clients.

Docker2020-08-25T11:45:10+02:00

Docker is a range of platform-as-a-service products that use virtualization at the operating system level to deliver software in packages. These are known as containers. Containers are isolated from each other and bundle their own software, libraries and configuration files. They can communicate with each other via precisely defined channels. VT AIR has support and management via the WebGUI for Docker.

Authenticator 802.1X2020-08-25T11:45:35+02:00

The IEEE 802.1X standard provides a general method for authentication and authorization in IEEE 802 networks. At the network access, a physical port in the LAN, a logical IEEE 802.1Q VLAN or a WLAN, a participant is authenticated by the authenticator, who uses an authentication server (RADIUS server) to check the authentication information transmitted by the participant (supplicant) and, if necessary, the Permits or denies access to the services offered by the authenticator (LAN, VLAN or WLAN).

VT AIR has both an 802.1X authenticator and an 802.1X supplicant.

CaptivePortal2020-08-25T11:47:13+02:00

A captive portal is a facility that is usually used in public, wireless networks in order to link the access of end devices such as laptops or smartphones to the underlying network or the Internet to the user’s consent to certain usage rules. In addition, the network provider can link access to a specific user account. VT AIR allows you to set up a captive portal for each interface with its own HTML page for authentication.

HAProxy2020-08-25T11:47:55+02:00

HAProxy is free, open source software that provides a highly available load balancer and proxy server for TCP and HTTP-based applications that distribute requests across multiple servers. VT AIR has full support for setting up and operating a HAProxy via the web interface.

NtoPNG2020-08-25T11:54:08+02:00

ntopng is a software for monitoring data traffic on a computer network. It was developed as a powerful and resource-effective replacement for ntop. With ntopng on VT AIR you can analyze and monitor your network traffic per interface, host or network segment.

SNMP2020-08-25T11:54:47+02:00

The Simple Network Management Protocol is a standard Internet protocol used to collect and organize information about managed devices on IP networks and modify that information to change device behavior. VT AIR supports SNMPv1 / v2 and the encrypted SNMPv3 for high security. Read all the attributes of the firewall with SNMP, with the special VT AIR SNMP mibs you have full control over your monitoring.

Interfaces2020-08-25T11:57:39+02:00

VT AIR offers a multitude of options for using and configuring interfaces. Real Interface, VLAN, QinQ, Bond, Bridge, PPP, PPTP, GRE, IPIP, SIT SHDSL, VDSL and MacVLAN are supported. In addition, various settings can be made IPv4 / IPv6, Static IP, DHCP Client, SLAAC, Mac, MTU, MSS, Link Mode, 802.1x (Suplicant) … and much more.

Routing2020-08-25T11:58:58+02:00

VT AIR offers static and dynamic routes. Gateways can be monitored using ping and intelligently interconnected in routing tables, either in failover or load balancing mode. A policy routing can also be set using firewall rules or a routing table can be assigned to clients. FRR is used for dynamic routing, which allows for BGP and OSPF (v4 or v6).

BGP/OSPF2020-08-25T11:59:52+02:00

FRR is used for dynamic routing, which allows BGP and OSPF (v4 or v6).

QoS2020-08-25T12:00:43+02:00

QoS is implemented with the Linux tool Traffic Control (TC) and allows incoming (ingress) or outgoing (egress) traffic to be classified according to categories and rules. QoS can easily be assigned to clients via firewall rules.

High Availability2020-08-25T12:02:31+02:00

VT AIR comes fully equipped with high availability functionality. Use virtual IPs (VRRP) between multiple VT AIRs to enable failover without interruptions. The VT AIR configuration is automatically transferred from the master to the slaves and DHCP can also be used in HA operation to compensate for a failure. High availability is a must for critical installations and VT AIR enables smooth operation.

Firewall Performance2020-08-25T12:02:48+02:00

VT AIR offers high firewall performance with NFTables, Flowtable Offload Technology and, in the future, XDP / eBPF.

IPSec2020-08-25T12:04:23+02:00

Internet Protocol Security (IPsec) is a protocol suite that enables secure communication over potentially insecure IP networks such as the Internet. VT AIR offers full support for IPSec with Strongswan. Whether tunnel or transport mode, with or without an interface, with VT AIR you can connect your locations conveniently and securely.

OpenVPN2020-08-25T12:04:53+02:00

OpenVPN is free software for setting up a virtual private network (VPN) via an encrypted TLS connection. VT AIR supports OpenVPN as a client or as a server and enables you to set up a VPN for your employees quickly and easily.

WireGuard2020-08-25T12:06:08+02:00

WireGuard is free software for setting up a virtual private network (VPN) via an encrypted connection. WireGuard enables a very fast and modern VPN. VT AIR supports WireGuard natively, whether for clients, site to site or mesh.

WebGUI2020-08-25T12:06:33+02:00

The modern, easily understandable and dynamic web interface, which is created in numerous languages, allows you to make all settings conveniently and easily – in the interests of the user.

REST API2020-08-25T12:08:13+02:00

VT AIR comes with a modern REST API interface, via which all settings can be made conveniently and easily. Regardless of whether you have 1 or 1000 devices, with the REST API, the settings on all devices can be changed in seconds.

Zentrales Managementportal2020-08-25T12:08:51+02:00

VT AIR offers a central management portal where you can see all devices in one place and thus easily access them. With our secure and innovative connector, you can directly access the web interface or the command line in the portal or run updates directly.

Technical Data

CPU

Intel Xeon D 2123IT, 2.2 GHz, 4 Core

NIC

2x 10GbE Intel SFP+ Ports
2x 10GbE Intel RJ45 Ports
4x 1Gbps Intel RJ45

Remote Management

1x 1Gbps RJ45 IPMI

SSD

256GB M.2 SSD SATA

RAM

8 GB DDR4

Console-Port

VGA

USB Ports

2x USB 3.0 ports

LED

Power/Status/SATA Activity

Size

Standard 19″ 1U rack mount

Cooling

Active control chassis fans

Power

100-240V, Internal Power Supply
German Powercord IEC320-C13

Environment

0°C to 45°C Operating Temp
8% to 90% Operating Relative Humidity (non-condensing)

Certificates

Electromagnetic Emissions: FCC Class B, EN 55032, EN 61000-3-2/3-3, CISPR 32

Electromagnetic Immunity: EN 55024 (EN 61000-4-2, EN 61000-4-3, EN 61000-4-4, EN 61000-4-5, EN 61000-4-6, EN 61000-4-8, EN 61000-4-11)

Environmental: Directive 2011/65/EU, Deligated Directive (EU) 2015/863, and Directive 2012/19/EU

Safety: CE Marking (Europe)

Software

VT AIR Linux

Updates

1 Year included

VT AIR OS is our specially developed, Linux based, operating system. The intuitively usable OS is at the core of the VT AIR Software. Based upon the “Debian Linux Distribution” it gives us flexibility, access to a fast amount of precompiled software packages and stable software.

VT AIR packages are installed on top of the debian packages and allow you to manage and use all the features of a great network firewall and router.

Read more in the VT AIR Documentation.

Software

Functionality

GUI

Modern and dynamic Webgui

All settings can easily be done in the Webgui

Dynamic Dashboard with widgets

Languages: German, English, Spanish

OS

VTAIR Linux
Webgui (Copyright Voleatech GmbH)
Contains Open Source Software

Interfaces

Real Interface, VLAN, QinQ, Bond, Bridge, PPP, PPTP, GRE, GRETAP, IPIP, SIT SHDSL, VDSL, MacVLAN

Interface Settings

IPv4/IPv6, Static IP, DHCP Client, SLAAC, Mac, MTU, MSS, Link Mode, and so on.

Bridge

VLAN aware Bridge
untagged and tagged VLANs per Port
STP, RSTP
Settings for Treeprio, Maxhops, Aging, BPDUFilter, Pathcosts, Restricted Root Port

Bond

Modes: Loadbalance Round Robin, Active/Backup, Load Balance with XOR, LAG (802.3ad), Adaptive transmit load balancing, Adaptive Loadbalancing

Firewall

Aliases, Firewalling, NAT
Filtering in Layer 2, Layer 3 or Layer 4
Extended Filter settings

Services

Cron, DNS, DHCP (v4+v6), DHCP Relay, NTP, SNMP (v2/v3), DynDNS,

QoS

Limiter, Traffic Shaping

Routing

Static, BGP, OSPF, Multiple Routing Tables, Gateway Groups and Load Balancing

VPN

OpenVPN (Certificates, User, Shared Key)
IPSec IKEv1/IKEv2 (Certificates and PSK)
WireGuard

Others

Certificate Management, Virtual IPs

APPs

Docker Apps, Individuelle Apps

Addons

APC UPS, Avahi, 802.1X Authenticator, CaptivePortal, HAProxy Reverse Proxy, IG- MPProxy, Ntopng, Suricata IDS/IPS, Squid Proxy and Webfilter

Encryption

Algorithms: AES-CBC, AES-CFB, AES-GCM, AES-OFB, BF-CBC, CAMELLIA, DES, usw.

Hash: MD5, SHA1, SHA224, SHA256, SHA384, SHA512, ecdsa-with-SHA1, usw.

Tools

Webconsole, iftop, ping, tcpdump, traceroute, backups, usw.

Diagnostics

ARP & ND, ARPing, Auditlogs, BGP, Bridge, DHCP, Dynamic Routing, Gate- ways, Interfaces, IPSec, Logfiles, Remote Syslog, OpenVPN, OSPF, QoS, Routes, Services, SFP, SHDSL, States, STP

Other

Extensive System Settings

User- and Groupmanagement

SSH Root access

REST API (Automation)

Further functionality

 

Datasheet VT AIR 1200

User Manual VT AIR 1200

SNMP Mibs VT AIR

Packages per Second

Test Speed
Maximum ~4.350.000 pps

iperf3

Test Speed
Firewall 37.742 Gb/s
Firewall + IPS 3.910 Gb/s
IPSec VPN (AES-256 GCM) 3.977 Gb/s
OpenVPN (AES-256 GCM) 243 Mb/s

IMIX Traffic

Test Speed
Firewall 12.59 Gb/s
Firewall + IPS 2.03 Gb/s
IPSec VPN (AES-256 GCM) 610 Mb/s
OpenVPN (AES-256 GCM) 122 Mb/s

1. Throughput Data are based on bidirectional traffic

2. Iperf3 Traffic is TCP 1460 Bytes + TCP framing

3. IMIX Traffic is sets of UDP Traffic 7x 64 Byte packets, 4x 594 Byte packets, 1x 1514 Byte packets (Ethernet FCS not counted)

4. IPSec and OpenVPN Traffic is a single Connection/Tunnel on one CPU

Go to Top