| Items |
Functional Descriptions |
| System Platform |
Highly reliable, secure, efficient, expandable and modularized Tamin product with embedded Linux operating system |
| Operating Modes |
Supports NAT, router or transparent mode |
| WAN Connections |
Static IP, DHCP, PPPoE |
| Routing Functions |
Each WAN port can provide a related routing table, from which a user selects the related external LAN (such as China Telecom network, or China Netcom network). |
| Supports routing traffic separation function: redirects the flow to the specified WAN port or LAN port, separates the Internet data flow, and expands the interconnections. |
| Plug'n Play function: directly accesses to Internet without changing the current network setting. |
| Easily configures the static routing, supports business user's multi-class complex network. |
| Supports VLAN function, bonds multiple IP to a port |
| Flow Control Functions |
Supports multi-link bonding technique, achieves bandwidth overlay and backup.
Supports IPSec tunnel bandwidth overlay using multiple PPPoE. |
| Flow Control of Service Grade supports flow control of IP address, port group, authenticated users and time, and P2P. |
| Supports multi-grade flow management, achieving QoS guarantee of various services, and independently assign bandwidth to each access control strategy; supports minimum bandwidth and maximum bandwidth limitation. |
| Applies advanced packet loss prevention techniques; supports local data queue; reduces packet loss during data transfer. |
| Supports multi-level flow management. |
| Flow control at IP level supports one-time setup of each IP’s upstream and downstream flow of a IP group and inspects each IP’s flow. |
| Firewall Functions |
Provides IP address, port group, certified users and management Control based on Stateful Inspection technology, using strategic control for various user groups. |
| Excellent Stateful Inspection engine, inspecting the state of each access to Internet through firewall. |
| Supports management control of the Application layer, including website filtering, filename filtering(pictures, Java, etc.,) key word filtering, IM control (such as MSN, YAHOO, etc.,) and defends against embedded script attacks. |
| Supports Virtual host, port mapping, and local back flow. |
| Effectively defends against DOS/DDOS, Smurf, SYN Flood and other common attacks; allows user to define Flood attack inspection strategy; controls single user’s maximum sessions to defend against UDP, ICMP and SYN attacks. |
| Fast packet-forwarding based on Hash algorithm, greatly improves firewall’s throughput. |
| Provides load balance ability to network management servers. |
| User authentication based on HTTPS user registration, and user, user group management and local user authentication; allows user to set up log-on main page and log-off upon idling. |
| MAC address bonding: supports unified MAC/IP bonding, one-stop setup and global enable. |
| Complete system log and monitor functions: classifies system log, in-flow and out-flow packet information. |
| VPN Functions |
Supports main and aggressive modes |
| Design based on the international IPSec and IKE protocol standard, to secure the connections between subnets, computers, subnet and computers. |
Encryption Algorithm: DES, 3DES and AES for IPSec VPN tunnel
Authentication: MD5,SHA1,DH2,DH5 |
| IKE with Preshared Key (automatic) ensures Perfect Forward Secrecy. |
| Provides highly reliable DDNS access technology and supports secured connections between dynamic IP addresses. |
| Supports NAT Traversal(NAT-T) and bidirectional NAT Traversal of VPN inter-connection. |
| Supports mobile users using IPSec VPN client software to securely log in. |
| Independently monitors the status of and assigns bandwidth to each VPN tunnel, ensuring high security and flexibility. |
| Supports link data compression and link KEEPALIVE。 |
| Applies fine authorization granularity control, authorizes each VPN user with great ease and flexibility,granularizes authorization down to port,and enables VPN user be emulated as local network user。 |
| Supports PPTP client access |
| Dynamic Domain Name Resolution |
Unique DDNS access technique supports dynamic IP application, encrypts all communication process for domain name resolution, and operates system very safely and reliably. |
| Allows user to have complete self management and control based on web’s dynamic domain name resolution system. |
| Management Functions |
Supports local management, remote management and monitor, provides backup and recovery of configuration data. |
| Supports DHCP service, manages dynamic IP addresses within LAN, and inspects PING. |
| Fully supports H.323 protocol, easily establishes VoIP. |
| Provides SNMP service for the integrated management. |
| Provides network diagnostic tool, such as PING command, quickly troubleshoot network problems. |
| Log Analysis |
Supports local Syslog server, provides system information of each functional module, warning log, error log, test log, VPN Client user control and access record, and selects which log record to save. |
| Supports external Syslog server, sends warning report via e-mail . |