VT AIR 1500 Enterprise Firewall

Next Gen Firewall

Now: 1 Support Ticket included

Available Now

 3.899,00 excl. VAT

Plus 19% VAT
Delivery Time: approx. 3 - 5 Business Days
Categories: , SKU: VTAIR-1500

 3.899,00 excl. VAT

Plus 19% VAT
Delivery Time: approx. 3 - 5 Business Days
Markus H.Markus H. ★★★★★ Hab bisher einige kleine pfSense Firewalls bestellt, das hat immer gut funktioniert und ist schnell geliefert worden (nach AUT).Website ist auch sehr detailliert und übersichtlich aufgebautMarius S.Marius S. ★★★★★ Ovidijus V.Ovidijus V. ★★★★★ Fabio E.Fabio E. ★★★★★ Ich bin rundum begeistert von den Dienstleistungen und Produkten, die Voleatech bietet. Die Firewall-Lösungen sind nicht nur hochwirksam, sondern auch benutzerfreundlich und leicht zu verwalten. Das hebt sie von vielen anderen Anbietern in dieser Branche ab.Der Kundenservice verdient besondere Anerkennung. Er ist nicht nur schnell und effizient, sondern auch durchweg kundenorientiert. Fragen und Probleme werden kompetent und in kürzester Zeit gelöst, was in der heutigen Zeit leider keine Selbstverständlichkeit ist.Ich kann Voleatech ohne Einschränkungen weiterempfehlen. Wer auf der Suche nach einer erstklassigen Firewall-Lösung und exzellentem Kundenservice ist, ist hier genau richtig.Geoffrey H.Geoffrey H. ★★★★★ We always buy all our netgate appliances through Voleatech.You get good / professional and honest feedback. Also the support is wonderful and a key changer if you're in need.Patrick B.Patrick B. ★★★★★ Absolut zuvorkommender Service. Legen im Notfall alles daran das ein Projekt in kürzester Zeit funktioniert. Jederzeit wieder!Martin A.Martin A. ★★★★★ Top Service! Sehr kompetent und speditiv. Problem konnte innert Minuten (inkl. telefonischer Auskunft, Mailverkehr und Neuinstallation der Firewall) gelöst werden. Kunde ist sehr zufrieden und wir somit auch! Jederzeit zu empfehlen. Jeder bisherige Kontakt verlief so!Frank M.Frank M. ★★★★★ Wir verwenden die Voleatech VT-Firewalls in unseren Rechenzentren seit mehr als 2 Jahren. In recht komplexer Konfiguration. Mit Georedundanz und Kunden-Festverbindungen. Für uns gibt es keine bessere Lösung, weil wir folgendes gelernt haben:1. Der Support von Voleatech hat Enterprise Grade und geht darüber hinaus. Tausch von Hardware dauert 1 Tag. Support bei Bedarf sofort.2. Die Appliances sind stabil, relativ einfach zu verstehen und decken dennoch alle erdenklichen Konfigurationen von Haus aus ab. Bislang konnten wir die Firewalls weder technisch noch physisch ausreizen.3. Anpassungen und Verbesserungen werden regelmäßig geliefert. Es tut sich jedes Mal eine kleine, neue Welt auf.4. Analysen gehen können in jeder Tiefe vorgenommen werden. Mit Tools, die an Bord sind, oder TCP-Dumps auf der Konsole. Je nach Gusto.5. Über die API können Massenänderungen geskriptet werden. Auch liefern die Firewalls Logs sauber in SIEM ab.6. Das Dashboard ist übersichtlich und zeigt alles Wichtige.7. Wartungszugänge für Kunden, die nicht über Festverbindungen verfügen, sind schnell per VPN eingebunden.Wir werden weiterhin VT-Firewalls einsetzen, das Preis-Leistungs-Verhältnis ist unschlagbar.Hierbei möchten wir uns auch ganz herzlich für die gute Zusammenarbeit bedanken.Euer Team von Privatewolke.Christian (.Christian (. ★★★★★ Hallo liebes Voleatech Team,hatte über Voleatech GmbH eine NETGATE 6100 mit 128GB vorbestellt und zuvor keinerlei Berührungspunkte mit Voleatech gehabt.Die Bestellung kam im Rahmen der angekündigten Zeit zuverlässig an.Leider hatte die 6100 einen Hardwarefehler (entsprechende Crash-Logs gaben unweigerlich einen Hinweis darauf). Dieses Log habe ich an Voleatech gesendet mit der bitte um Infos ob hier etwas bekannt ist.Kurze Zeit später kam eine Rückmeldung das hierzu bisher nichts bekannt ist und man ein Ticket bei NETGATE eröffnet.Erneut sehr kurze Zeit später kam die Rückmeldung, dass das Gerät tatsächlich getauscht werden musste.Hier hatte mir Voleatech dann wirklich eine Hervorragende Lösung angeboten und ich hatte binnen kürzester Zeit ein AT-Gerät und musste dann das defekte einsenden.Ich muss noch mal hervorheben, die Reaktionszeit (Antwort auf E-Mails) ist der Wahnsinn, ich habe selten (vermutlich sogar noch nie) einen so schnell antwortenden Shop erlebt.Die Konversation war immer sehr freundlich und professionell.Ich kann Voleatech nur empfehlen und werde bei Bedarf sehr gerne wieder bei Euch bestellen.Vielen Dank!Ich wünsche Euch einen guten Rutsch ins neue Jahr und bleibt alle gesund!GrüßeC. H.Jordan W.Jordan W. ★★★★★ Very responsive to advice requests regarding the selection of a new firewall. The device was shipped the same day as i ordered and arrived earlier than expected, with a note containing the default ip / username / password of the device to get started quickly. Haven't had to read a manual yet and everything worked pretty much out of the box and met the expected performance. I'm very happy with the purchase and with the service.Thomas B.Thomas B. ★★★★★ Seit gut einem Jahr nutzen wir den Service von Voleatech GmbH. Unsere damalige Migration und die gelegentlichen Anfragen wurden immer schnell und professionell bearbeitet.Ich bin dankbar das Voleatech Team an der Seite zu haben!Denn einen schnellen Support mit passender Lösungsfindung und zu fairen Preisen an der Seite zu haben muss man erst einmal finden. Ich danke euch daher für die gute Zusammenarbeit und freue mich auf die nächsten Jahre!Johannes F.Johannes F. ★★★★★ Wir arbeiten seit 2017 mit der Voleatech GmbH zusammen und von Beginn an war die Zusammenarbeit mit allen Kollegen sehr angenehm.Durch den guten Service und die außerordentliche Fachkompetenz waren wir in der Lage, alle unsere Projekte umzusetzen.Voleatech liefert uns nicht nur die neue VT AIR-Technologie, sondern hat auch immer ein offenes Ohr für unsere Fragen und Vorschläge.Wir haben jetzt einen Netzwerkspezialisten, mit dem wir erfolgreich wachsen können.Andrea C.Andrea C. ★★★★★ Promter, kompetenter Service. Jederzeit zu Empfehlen.Nikola M.Nikola M. ★★★★★ Diese Firma kann ich nur weiterempfehlen. Um eine lange Geschichte kurz zu machen: Mir ist ein Missgeschick passiert und die Kollegen vom Service konnten mir unfassbar schnell, gut, unkompliziert weiterhelfen. Weit darüber hinaus, wie es von einem Mitbewerber erwartet werden könnte. Ich werde zukünftig nur hier meine Hardware kaufen.rudolf H.rudolf H. ★★★★★ Wir sind ein Softwareentwicklungshaus mit dem Schwerpunkt Java CMS Systeme. Die Firma Voleatech hat uns bei der Auswahl und Migration einer neuen Firewall unterstützt, da die bisher eingesetzte Firewall den wachsenden Firmenanforderungen nicht ausgereicht hat. Neben den Kosten und der Planung der Netzwerk-Infrastruktur war die Migration ein wichtiger Punkt bei uns.Die Umsetzung erfolgt reibungslos und professionell. Die Kosten Vorgabe wurde komplett eingehalten.Aus dem Erstkontakt hat sich eine vertrauensvolle Firmenbeziehung entwickelt. Wir sind froh einen so soliden und zuverlässigen Partner gefunden zu haben.Rudolf HartmannGeschäftsführerPrime Force Frankfurt GmbH & Co. KGMoritz S.Moritz S. ★★★★★ Zügiger und freundlicher Kontakt. Wir sind zufrieden!Jonah B.Jonah B. ★★★★★ Super Service und Support, schnelle Reaktionszeiten und das sogar um 20 Uhr und später! Einfach großartig.Bestellt hatte ich zwei XG-7100. Diese kamen pünktlich, wie angekündigt, an.Empfehlenswert!SvenSven ★★★★★ Ich habe vor einem Jahr eine PfSense SG-4860 bei Voleatech bestellt und hatte Anfangs leider (aufgrund eigener Inkompetenz) Schwierigkeiten, die allerdings dank dem sehr freundlichen und fähigen Support sofort gelöst werden konnten. Auch wird sehr transparent über bekannt gewordene Hardware-Probleme (C2000 Bug) berichtet. Immer wieder gerne!js_loader

VT AIR 1500 Enterprise Firewall

The VT AIR 1500 is a German technology product designed specifically for a demanding enterprise and data center environment and its needs. The Enterprise Firewall VT AIR 1500 is versatile due to its modern technology (1 / 10GB RJ45, SFP +). It’s a compact, flexible and functional rack firewall that, thanks to its technology, will always grow with the needs of your business or data center.

Thanks to the VT AIR Linux operating system, you enjoy a modern, fast and versatile user interface. Designed with a focus on performance, versatility and no licensing costs, the VT AIR system is perfect for companies of all sizes.

This Enterprise Firewall can be used as LAN or WAN router, VPN router, DHCP server, DNS server and Intrusion Protection and Detection Server.

The VT AIR 100 firewall provides you a security platform, including very high performance and speed with an excellent price-performance ratio.
VTAIR1500_front-800x800.png
2x RJ45 (10GB/s) + 9x RJ45 (1000/100/10 Mbit/s)
2x SFP+ (10000/1000 Mbit/s)
2x Hot Swap HDD
IPMI RJ45 Remote Access

Key Facts

Advantages

  • Business – Next Gen Firewall

  • No Licence Fees

  • VT AIR Software – Feature Rich Firewall

Best For

  • Medium to Large Sized Networks with 1U rack mount cabinets

  • Medium to Large Sized Branch Office with heavy loads

  • Managed Service Providers (MSP) / Managed Security Service Provider (MSSP) On Premise Appliance

  • Anyone with High-Speed 10 Gigabit and/or 1 Gigabit Connections

  • Many VPN Connections

  • Anyone with high speed connections who wish to configure IDS/IPS features

Business – Next Gen Firewall

VTAIR1500_front-800x800.png
No Licence Fees
High Quality
Top Service and Support
The smart VT AIR 1500 is the Enterprise Open Source Firewall for business and the ideal VPN router. The VT AIR 1500 combines professionalism and quality with transparency and security. Despite its exceptional properties, it stands for a quick ROI. The special feature: There are no license costs. With the VT AIR 1500, companies rely on technology that is as smart as well as cost-effective.

VT AIR – Next Generation Firewall

VT AIR is the next gen firewall for the enterprise market. It belongs to the third generation of firewall technology. It combines proven technologies with the latest generation approaches.

The graphic shows the advantages of the VT AIR Next Gen Firewall at a glance. It offers effective protection and always focuses on prevention. VT AIR offers comprehensive network security because it prevents attacks in advance and does not offer hackers a gateway into your business. One thing is certain: In the digital world, comprehensive security is only possible with the latest technology. This means for your company: Using VT AIR, your data enjoy the highest level of protection.

VT AIR Next Generation Firewall (NGFW)
Advanced Threat Protection2020-10-27T12:05:40+01:00

VT AIR offers a variety of advanced threat protection mechanisms.

Blocking unwanted and unsafe websites via DNS sinkholing technology and advanced web filters with virus scanners and content filtering.

Various intrusion detection and protection rules are also available.

Application Control2020-11-28T12:24:44+01:00

Application Control allows you to create firewall rules on the application level.

Traditional firewalls, which only identify ports, protocols and IP addresses, cannot identify and control applications, but a next generation firewall can. VT AIR Next Generation Firewall allows you to create firewall rules based on applications.

Intrusion Detection and Protection2020-08-25T11:36:28+02:00

The Intrusion Detection and Prevention System (IDS / IPS) of the VT AIR Firewall significantly improves network security by providing complete and comprehensive real-time network protection against a wide range of network threats, vulnerabilities, exploits and threats in operating systems and applications.

VT AIR scans network traffic using powerful and comprehensive rules and signature language to detect complex threats with the Surricata program.

Suricata is an open source based intrusion detection system and intrusion prevention system

Automatic signature updates are provided regularly to ensure that the VT AIR Firewall is always up to date.

Network Flow Fastpath2020-08-25T11:39:23+02:00

VT AIR supports the acceleration of TCP and UDP connections using Network Flow Fastpath.

For this purpose, the NFTables flow table offload technology is used, which accelerates network traffic by a factor of 2-3, all with the usual network security.

With Flowtables you can accelerate packet forwarding in software with the help of a state that no longer runs through the entire network stack after a connection has been established.

Multi Factor Authentication2020-08-25T11:38:47+02:00

Multi-factor authentication (MFA) has become the standard to prevent unauthorized access to business-critical information.

VT AIR supports multi-factor authentication with the TOTP standard for the web interface and OpenVPN to protect your infrastructure in the best possible way.

Stateful Deep Package Inspection2020-08-25T11:37:59+02:00

VT AIR is a stateful firewall. A stateful firewall is a network firewall that tracks the operational status and characteristics of network connections that pass through them. The firewall is configured to distinguish between legitimate network packets for different connection types.

Packets are analyzed with NFTables (Deep Package Inspection) and allowed or blocked on the basis of firewall rules in order to ensure optimal protection of the network traffic.

Web Control/Web Protection2020-08-25T11:37:26+02:00

Advanced Web Protection combines advanced analysis functions, blacklists and ACLs to optimally protect your web traffic.

With the built-in virus scanner, you can optimally protect your web traffic.

VT AIR uses the Squid program, which is characterized by its diverse functions and security.

The web filter can be set up as a proxy, but also as a transparent HTTP / HTTPS proxy.

XDP/eBPF2020-08-25T11:40:16+02:00

With XDP, network functions (eBPF) can be executed as soon as a packet reaches the network card and before it is moved up into the kernel’s network subsystem, which leads to a significant increase in packet processing speed. This technology allows us to achieve significantly faster firewall speeds.

In general, all of our VT AIR appliances are already prepared for XDP / eBPF.

This technology will be available in VT AIR in 2021.

Authenticator 802.1X2020-08-25T11:45:35+02:00

The IEEE 802.1X standard provides a general method for authentication and authorization in IEEE 802 networks. At the network access, a physical port in the LAN, a logical IEEE 802.1Q VLAN or a WLAN, a participant is authenticated by the authenticator, who uses an authentication server (RADIUS server) to check the authentication information transmitted by the participant (supplicant) and, if necessary, the Permits or denies access to the services offered by the authenticator (LAN, VLAN or WLAN).

VT AIR has both an 802.1X authenticator and an 802.1X supplicant.

CaptivePortal2020-08-25T11:47:13+02:00

A captive portal is a facility that is usually used in public, wireless networks in order to link the access of end devices such as laptops or smartphones to the underlying network or the Internet to the user’s consent to certain usage rules. In addition, the network provider can link access to a specific user account. VT AIR allows you to set up a captive portal for each interface with its own HTML page for authentication.

DHCP2020-08-25T11:41:12+02:00

VT AIR comes with a built-in IPv4 and IPv6 Kea DHCP server.

Whether static or dynamic DHCP addresses and multiple networks, you can supply your clients with addresses without any problems.

The Kea DHCP server is also capable of high availability and can form an automatic failover with several VT AIRs.

DNS2020-08-25T11:43:07+02:00

VT AIR comes with the well-known Unbound DNS Server, which allows it to run as a stand-alone or as a forwarding DNS server. Unbound allows you to define any host overrides and domain forwarding. For security reasons, VT AIR uses different DNS block lists with categories. Encrypted DNS and DNSSEC are also not a problem.

Docker2020-08-25T11:45:10+02:00

Docker is a range of platform-as-a-service products that use virtualization at the operating system level to deliver software in packages. These are known as containers. Containers are isolated from each other and bundle their own software, libraries and configuration files. They can communicate with each other via precisely defined channels. VT AIR has support and management via the WebGUI for Docker.

HAProxy2020-08-25T11:47:55+02:00

HAProxy is free, open source software that provides a highly available load balancer and proxy server for TCP and HTTP-based applications that distribute requests across multiple servers. VT AIR has full support for setting up and operating a HAProxy via the web interface.

NtoPNG2020-08-25T11:54:08+02:00

ntopng is a software for monitoring data traffic on a computer network. It was developed as a powerful and resource-effective replacement for ntop. With ntopng on VT AIR you can analyze and monitor your network traffic per interface, host or network segment.

NTP2020-08-25T11:43:43+02:00

Network Time Protocol is the most common method of synchronizing a system’s software clock with Internet time servers. It is designed to mitigate the effects of variable network latency and can typically limit the time over the public Internet to ten milliseconds. The accuracy in local networks is even better with up to a millisecond. VT AIR comes with an NTP server for the network clients.

SNMP2020-08-25T11:54:47+02:00

The Simple Network Management Protocol is a standard Internet protocol used to collect and organize information about managed devices on IP networks and modify that information to change device behavior. VT AIR supports SNMPv1 / v2 and the encrypted SNMPv3 for high security. Read all the attributes of the firewall with SNMP, with the special VT AIR SNMP mibs you have full control over your monitoring.

BGP/OSPF2020-08-25T11:59:52+02:00

FRR is used for dynamic routing, which allows BGP and OSPF (v4 or v6).

Firewall Performance2020-08-25T12:02:48+02:00

VT AIR offers high firewall performance with NFTables, Flowtable Offload Technology and, in the future, XDP / eBPF.

High Availability2020-08-25T12:02:31+02:00

VT AIR comes fully equipped with high availability functionality. Use virtual IPs (VRRP) between multiple VT AIRs to enable failover without interruptions. The VT AIR configuration is automatically transferred from the master to the slaves and DHCP can also be used in HA operation to compensate for a failure. High availability is a must for critical installations and VT AIR enables smooth operation.

Interfaces2020-08-25T11:57:39+02:00

VT AIR offers a multitude of options for using and configuring interfaces. Real Interface, VLAN, QinQ, Bond, Bridge, PPP, PPTP, GRE, IPIP, SIT SHDSL, VDSL and MacVLAN are supported. In addition, various settings can be made IPv4 / IPv6, Static IP, DHCP Client, SLAAC, Mac, MTU, MSS, Link Mode, 802.1x (Suplicant) … and much more.

Routing2020-08-25T11:58:58+02:00

VT AIR offers static and dynamic routes. Gateways can be monitored using ping and intelligently interconnected in routing tables, either in failover or load balancing mode. A policy routing can also be set using firewall rules or a routing table can be assigned to clients. FRR is used for dynamic routing, which allows for BGP and OSPF (v4 or v6).

QoS2020-08-25T12:00:43+02:00

QoS is implemented with the Linux tool Traffic Control (TC) and allows incoming (ingress) or outgoing (egress) traffic to be classified according to categories and rules. QoS can easily be assigned to clients via firewall rules.

IPSec2020-08-25T12:04:23+02:00

Internet Protocol Security (IPsec) is a protocol suite that enables secure communication over potentially insecure IP networks such as the Internet. VT AIR offers full support for IPSec with Strongswan. Whether tunnel or transport mode, with or without an interface, with VT AIR you can connect your locations conveniently and securely.

OpenVPN2020-08-25T12:04:53+02:00

OpenVPN is free software for setting up a virtual private network (VPN) via an encrypted TLS connection. VT AIR supports OpenVPN as a client or as a server and enables you to set up a VPN for your employees quickly and easily.

WireGuard2020-08-25T12:06:08+02:00

WireGuard is free software for setting up a virtual private network (VPN) via an encrypted connection. WireGuard enables a very fast and modern VPN. VT AIR supports WireGuard natively, whether for clients, site to site or mesh.

WebVPN2020-11-20T12:24:52+01:00

WebVPN allows you to access an RDP / VNC / SSH or Telnet server via a WebVPN portal via the browser. VT AIR allows your users to access the devices with the browser without a client.

WebGUI2020-08-25T12:06:33+02:00

The modern, easily understandable and dynamic web interface, which is created in numerous languages, allows you to make all settings conveniently and easily – in the interests of the user.

REST API2020-08-25T12:08:13+02:00

VT AIR comes with a modern REST API interface, via which all settings can be made conveniently and easily. Regardless of whether you have 1 or 1000 devices, with the REST API, the settings on all devices can be changed in seconds.

Central Management Portal2020-11-20T12:21:02+01:00

VT AIR offers a central management portal where you can see all devices in one place and thus easily access them. With our secure and innovative connector, you can directly access the web interface or the command line in the portal or run updates directly.

Technical Data

CPU

Intel Xeon D 2146NT, 2.3 GHz, 8 Core, Intel Quick Assist

CPU Cores

8 Cores

NIC

2x 10GbE Intel SFP+ Ports
2x 10GbE Intel RJ45 Ports
9x 1Gbps Intel RJ45

Remote Management

1x 1Gbps RJ45 IPMI

SSD

2x 240GB Datacenter SSD SATA Hot Swap (RAID1)

RAM

32 GB DDR4 ECC Reg

Expansion

2x PCI-E 3.0 16x slots

Console-Port

VGA

USB Ports

2x USB 3.0 ports

LED

Power/Status/SATA Activity

Size

Standard 19″ 1U rack mount

Cooling

Active control chassis fans

Power

100-240V, Internal Power Supply
German Powercord IEC320-C13

Environment

0°C to 45°C Operating Temp
8% to 90% Operating Relative Humidity (non-condensing)

Certificates

Electromagnetic Emissions: FCC Class B, EN 55032 Class B, EN 61000-3-2/3-3, CISPR 32 Class B

Electromagnetic Immunity: EN 55024/CISPR 24, (EN 61000-4-2, EN 61000-4-3, EN 61000-4-4, EN 61000-4-5, EN 61000-4-6, EN 61000-4-8, EN 61000-4-11) Other: VCCI-CISPR 32 and AS/NZS CISPR 32

Environmental: Directive 2011/65/EU, Deligated Directive (EU) 2015/863, and Directive 2012/19/EU

Safety: CSA/EN/IEC/UL 60950-1 Compliant, UL or CSA Listed (USA and Canada), CE Marking (Europe)

Software

VT AIR Linux

Updates

1 Year included

VT AIR Next Gen Firewall is a Linux based firewall system delivering high firewall throughput
while containing large number of Features to manage your network.
 
VT AIR runs on the Linux Operating System Debian and it utilizes a custom Linux Kernel for maximum compatibility and network speed.
VT AIR is designed and built using open source software projects.

Read more in the VT AIR Documentation.

Software

Functionality

GUI

Modern and dynamic Webgui

All settings can easily be done in the Webgui

Dynamic Dashboard with widgets

Languages: German, English, Spanish

OS

VTAIR Linux
Webgui (Copyright Voleatech GmbH)
Contains Open Source Software

Interfaces

Real Interface, VLAN, QinQ, Bond, Bridge, PPP, PPTP, GRE, GRETAP, IPIP, SIT SHDSL, VDSL, MacVLAN

Interface Settings

IPv4/IPv6, Static IP, DHCP Client, SLAAC, Mac, MTU, MSS, Link Mode, and so on.

Bridge

VLAN aware Bridge
untagged and tagged VLANs per Port
STP, RSTP
Settings for Treeprio, Maxhops, Aging, BPDUFilter, Pathcosts, Restricted Root Port

Bond

Modes: Loadbalance Round Robin, Active/Backup, Load Balance with XOR, LAG (802.3ad), Adaptive transmit load balancing, Adaptive Loadbalancing

Firewall

Aliases, Firewalling, NAT
Filtering in Layer 2, Layer 3 or Layer 4
Extended Filter settings

App Control

Application Layer Filtering
Application Detection based Firewall Rules

Intrusion Protection

Suricata IPS
Intrusion Protection Rulesets

Webfilter

Squid Proxy and Webfilter Virusscanner (ClamAV)
Transparent HTTP/HTTPS Proxy
Blocklists Auto Update

Services

Cron, DNS, DHCP (v4+v6), DHCP Relay, NTP, SNMP (v2/v3), DynDNS

QoS

Limiter, Traffic Shaping

Routing

Static, BGP, OSPF, Multiple Routing Tables, Gateway Groups and Load Balancing

VPN

OpenVPN (Certificates, User, Shared Key)
IPSec IKEv1/IKEv2 (Certificates and PSK)
WireGuard
WebVPN

Others

Certificate Management, Virtual IPs

APPs

Docker Apps, Individual Apps

Addons

APC UPS, Avahi, 802.1X Authenticator, CaptivePortal, HAProxy Reverse Proxy, IGMPProxy, Ntopng

Encryption

Algorithms: AES-CBC, AES-CFB, AES-GCM, AES-OFB, BF-CBC, CAMELLIA, DES, usw.

Hash: MD5, SHA1, SHA224, SHA256, SHA384, SHA512, ecdsa-with-SHA1, usw.

Tools

Webconsole, iftop, ping, tcpdump, traceroute, backups, usw.

Diagnostics

ARP & ND, ARPing, Auditlogs, BGP, Bridge, DHCP, Dynamic Routing, Gate- ways, Interfaces, IPSec, Logfiles, Remote Syslog, OpenVPN, OSPF, QoS, Routes, Services, SFP, SHDSL, States, STP, …

Other

Extensive System Settings

User- and Groupmanagement

SSH Root access

REST API (Automation)

Further functionality

 

Packages per Second

Test Speed
XDP Offloader ~13.500.000 pps
Normal ~7.000.000 pps
Max. Connections ~40.000.000

iperf3

Test Speed
 Firewall XDP 37.74 Gb/s
Firewall 37.74 Gb/s
App Control/Intrusion Protection 4.32 Gb/s
IPSec VPN (AES-256 GCM) 4.21 Gb/s
OpenVPN (AES-256 GCM) 1.41 Gb/s
Wireguard 5.78 Gb/s

IMIX Traffic

Test Speed
Firewall XDP 35.21 Gb/s
Firewall 18.38 Gb/s
App Control/Intrusion Protection 4.79 Gb/s
IPSec VPN (AES-256 GCM) 1.90 Gb/s
OpenVPN (AES-256 GCM) 563 Mb/s
Wireguard 2.12 Gb/s

1. Throughput Daten basieren auf bidirectionalem Traffic

2. Iperf3 Traffic ist TCP 1460 Bytes + TCP framing

3. IMIX Traffic besteht aus UDP Traffic 7x 64 Byte packets, 4x 594 Byte packets, 1x 1514 Byte packets (ohne Ethernet FCS)

4. App Control/Intrusion Protection ist Worst Case Performance

Go to Top