Network VPN Router / Firewall
D-Link NetDefend DFL-210
VPN-DL-DFL210
Overview:
Designed
specifically for the Small Office/Home Office, the DFL-210 Network
Security Firewall has numerous flexible features to help you manage,
monitor and maintain a healthy and secure network.
Features:
-
Advanced
Firewall Security with VPN Server/Client
-
Manage up
to 100 VPN Tunnels1
-
Intelligent Bandwidth Management
Actual
performance may vary depending on network conditions and activated
services.
Description
The NetDefend
family of Firewall/VPN Security Appliances is D-Links answer for
hardware-based network security. The new D-Link Network Security
Firewall (DFL-210) is an easy-to-deploy VPN and firewall solution
designed specifically for the Small Office / Home Office (SOHO) market
that demands superior performance and security.
-
Advanced Hardware Features
The DFL-210 is a powerful security solution that provides integrated
Network Address Translation (NAT), SPI Firewall, advanced content
filtering features, IDS protection, bandwidth management, as well as
Virtual Private Network (VPN) support. The DFL-210 hardware includes
four trusted LAN ports, a WAN port, and a user-configurable DMZ port
to support local servers such as e-mail, Web, and FTP. The DMZ port
can also be reconfigured as a WAN fail-over port. All of these
features conveniently fit into a desktop chassis that can be easily
integrated into your network.
-
Enterprise-class Security
To provide enterprise-class network security, the DFL-210 has
several flexible firewall features to manage, monitor, and maintain
a healthy and secure network. Network management features include:
Remote Management, Bandwidth Control Policies, URL/Keyword Blocking,
Access Policies, and SNMP. For network monitoring, the DFL-210
supports e-mail alerts, system log, consistency checks, and
real-time statistics. These features along with a firmware backup
function provide and maintain maximum network performance and
security.
-
VPN
Performance
For optimal VPN configuration, the DFL-210 has an integrated VPN
Client and Server to support almost any required VPN policy. This
high-end appliance has a hardware VPN engine to support and manage
up to 100 VPN configurations. The DFL-210 can support IPSec, PPTP,
and L2TP protocols in Client/Server mode and can handle pass-through
traffic as well. Advanced VPN configuration options include:
DES/3DES/AES/Twofish/Blowfish/CAST-128 encryption, Manual or IKE/ISAKMP
key management, Quick/Main/Aggressive Negotiation modes, and VPN
authentication support using either an external RADIUS server or the
internal 500-user database.
-
Configurable User Interface
The DFL-210 features an intuitive user interface that can easily be
configured via D-Links Web-based interface and monitored using the
Command Line Interface (CLI). These configuration options can be
managed through Admin, Read/Write, or Read-only administrator
rights. With these access management levels, any authorized user can
easily configure or access the administrative functions of the
DFL-210.
With
businesses becoming increasingly network-dependent, the need to invest
in a reliable security solution is crucial. The D-Link DFL-210 Network
Security Firewall offers high return on investment through robust
security features, flexible configuration, and maximum network
protection for SOHO networks.
Specifications:
Technical Specifications |
Firewall Mode of Operation |
|
Layer 3
Mode: Route Mode, NAT Mode |
|
Layer 2
Mode: Transparent Mode |
|
Network
Address Translation (NAT) |
|
Port
Address Translation (PAT) |
|
Policy-Based NAT |
|
Port
Forwarding |
|
Static
Address Translation (SAT) |
|
Time
Scheduled Policies |
|
VPN Security |
|
VPN
Tunnels: 100* (IPSec, PPTP, L2TP) |
|
IPSec
LAN-to-LAN / Roaming User |
|
PPTP/L2TP
Server/Client |
|
IPSec/PPTP/L2TP
Pass-through |
|
IPSec
NAT-Traversal |
|
DHCP over
IPSec |
|
Encryption
Transform: DES, 3DES, AES, Twofish, Blowfish,
CAST-128 |
|
XAUTH
(Extended Authentication) for IPSec Authentication |
|
Firewall Security |
|
Stateful
Packet Inspection (SPI) |
|
Policy-Based User Authentication |
|
DoS/DDoS
Attack Protection |
|
RADIUS,
LDAP, IAS |
|
HTTP
Traffic Filter: Keyword, URL, Exempt List |
|
Script
Filter: Java Applet, Java Scripts, VB Scripts,
Cookies, ActiveX |
|
Network Service |
|
Static IP
address |
|
PPPoE for
xDSL |
|
PPTP/L2TP
Client for xDSL |
|
DHCP
Client for WAN Interface |
|
BigPond
Cable, Telia Compliance |
|
Internal
DHCP Server |
|
DHCP Relay |
|
WAN
Failover/Load Sharing** |
|
IP Alias |
|
Static
Routes |
|
Policy-Based Routing |
|
DNS
Resolving of Remote Gateway |
|
Dynamic
DNS Poster |
|
Custom
Application Layer Gateway |
|
Support
IEEE 802.1q VLAN Tag (8) |
|
Firewall
Policies per VLAN Tag |
|
DHCP
Server per VLAN Tag |
|
Bandwidth Management |
|
Guaranteed
Bandwidth |
|
Maximum
Bandwidth |
|
Priority-Bandwidth Utilization |
|
Policy-Based Traffic Shaping |
|
Time-Scheduled Traffic Shaping |
|
Bandwidth
Management in VPN Tunnel |
|
System |
|
SYSLog
Support |
|
Firmware
Configuration Backup |
|
E-mail
Alerts |
|
Management
HTTP/HTTPS/SSH |
|
Simple
Network Time Protocol (SNTP) |
|
Simple
Network Management Protocol (SNMP) |
|
Configuration Consistency Checks |
|
Intrusion Detection System |
|
NIDS
Pattern Auto Update |
|
Attack
Alarm via E-mail Notification |
|
Device Ports |
|
WAN: 1
10/100BASE-TX Port |
|
LAN: 4
10/100BASE-TX Ports |
|
DMZ/WAN2:
1 10/100BASE-TX Port |
|
Console
Port: Serial COM Port |
|
Diagnostic LED |
|
Power |
|
System |
|
LAN
(Link/Activity per Port) |
|
WAN
(Link/Activity per Port) |
|
DMZ
(Link/Activity per Port) |
|
Power Input |
|
5VDC, 3.0A
Switching External Power Supply |
|
Power Consumption |
|
Dimensions |
|
Item:
9.25 x 6.38 x 1.42 |
|
Packaging:
10.79 x 8.19 x 4.64 |
|
Weight |
|
Item: 1.1
lbs |
|
Packaging:
2.66 lbs |
|
Temperature |
|
Operating:
32°F to 140°F |
|
Storage:
-4°F to 158°F |
|
Humidity |
|
5% to 95%
(Non-Condensing) |
|
Emission (EMI) |
|
FCC Class
A |
|
CE |
|
C-Tick |
|
Safety |
|
UL |
|
TUV |
|
LVD
(EN60950) |
|
Warranty |
|
1 Year
Limited*** by D-LInk |
|
* Actual
performance may vary depending on network conditions and activated
services.
** DMZ configured as WAN2 required.
*** 1-Year Limited Warranty available only in the USA and Canada.
Product specifications, size and shape are subject
to change without notice, and actual product appearance may differ
from that depicted herein.
|