2. Multi-function Dual WAN Security Gateway RS-1200 Security Gateway can offer complete advance Firewall ,2-Way Bandwidth manager , VPN servers, Messenger Control , Access Authentication , and much more functions in an all-in-one box. Introduction
3. Specification: Processor : Intel IXP425 , 266 MHz Memory: 8MB Flash ROM, 64MB SDRAM RS-1200 Hardware overview WAN1 WAN2 LAN DMZ Connect two different ISP network service , like ADXL, Cable modem, Leased line, Connect to LAN network Like switch, hub, or LAN pc. Connect to DMZ network Hardware overview
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14. AirLive RS Family Security Gateway Comparison comparison 1 (10/100) ╳ ╳ DMZ port ○ ○ ○ Support xDSL/Cable/Leased Line 2 (10/100) 1 (10/100) 1 (10/100) Shield RJ-45 Ethernet UTP port WAN port 1 (10/100) 1 (10/100) 4 (10/100) Shield RJ-45 Ethernet UTP port LAN port ( Switch Hub ) 8 MB (Flash) 8 MB (Flash) 16MB (Flash) Flash ROM 64 MB 64 MB 32 MB DRAM Intel IXP425, 266 MHz Intel IXP425, 400 MHz Waveplus MIPS 100 Mhz CPU Hardware RS-1200 RS-2000 RS-1000
15. AirLive RS Family Security Gateway Comparison 20~25 50 5-10 Concurrent users comparison RS-1200 RS-2000 RS-1000 ○ ○ ╳ Messages to display ○ ○ ╳ URL to redirect Authentication Status 20 ╳ ╳ Authentication Group ( Max entry ) 200 200( Policy ) 200 ( Policy ) Authentication User ( Max entry ) Authentication 25Mbps 50Mbps 10Mbps Qos Max. Bandwidth (MB) limited 100 100 100 QoS ( Max entry ) ○ ○ ○ Priority-bandwidth utilization ○ ○ ○ Guaranteed Bandwidth QoS Bandwidth Manager Function RS-1200 RS-2000 RS-1000 6,500 8,000 150 New Sessions / Second 45,000 45,000 16,500 Max Concurrent Sessions 9 Mbps 15 Mbps ╳ 3DES Encryption 11 Mbps 16 Mbps ╳ Authentication (No Encryption) VPN 70 Mbps 100 Mbps 13 Mbps WAN-LAN Throughput Performance
16. AirLive RS Family Security Gateway Comparison comparison RS-1200 RS-2000 RS-1000 50 ╳ ╳ DMZ To WAN ( Max entry ) 50 ╳ ╳ DMZ To LAN ( Max entry ) 100 ╳ ╳ WAN To DMZ ( Max entry ) 50 ╳ ╳ LAN To DMZ ( Max entry ) 100 50 50 Incoming ( Max entry ) 300 200 100 Outgoing ( Max entry ) ○ ○ ○ Max. Concurrent Sessions Policy Control Policy Function RS-1200 RS-2000 RS-1000 ○ ╳ ╳ DNS ○ ╳ ╳ ICMP WAN Port connection status ○ ╳ ╳ OutBound Load-balancing Inbound / Outbound Function
17. Q & A Q & A Q1 : if client is get private ip address automatically From DHCP server; how can i configure to blocking like MSN service for this client ? A1 : DHCP client can't be blocking for using some pre-defined service (like MSN,Skype), but MIS can setup the IP address and get the unique MAC address by this PC as address policy object and choose " get the static ip address from DHCP “ in policy object function << so that means this client will not be assign dynamic ip address every time >> this address policy object. Q2 : for SOHO use, if they want to simply connect the internet and also want have a basically security. is that very complex to configure that ? A2 : for this issue, only setup one outgoing policy rule : from inside_any to outside_any service--> HTTP action--> Permit ALL . and press ok button that will work immediately. so except this rule, any service from outside to inside wil be deny and drop Note. firewall Policy definition is very flexible and can set by IP, by service, by Qos , by Schedule and combine each together so depend on the usage, but RS-xx Family security gateway can offer you complete security functions. Q3 : when I setup Qos upstream or downstream bandwidth, do it will affect the network throughput ? A3 : Yes, because Qos is one of Policy Object that you can define like Setting a policy that can restrict the user’s downstream and upstream bandwidth, netowrk throughput including Qos bandwidth usage . So RS-1200 have 70Mbps means NAT Maximum throughput when not use Qos.
18. Thank You The RS-1200 is a product that combines the most important and useful security features in one package. It allows you to take complete control over your network Conclusion