SlideShare uma empresa Scribd logo
1 de 18
AirLive RS-1200 Product introduction
Multi-function Dual WAN Security Gateway RS-1200 Security Gateway can offer complete advance  Firewall ,2-Way  Bandwidth manager ,  VPN  servers,  Messenger Control ,  Access Authentication , and much more functions in an  all-in-one  box.  Introduction
Specification: Processor :  Intel IXP425 ,  266 MHz  Memory:  8MB  Flash ROM,  64MB  SDRAM    RS-1200 Hardware overview WAN1  WAN2 LAN  DMZ  Connect two different ISP network service , like ADXL, Cable modem, Leased line, Connect to LAN network Like switch, hub, or LAN pc. Connect to DMZ network Hardware overview
Key Features ,[object Object],[object Object],[object Object],The RS-1200 offer 2 of WAN interface for load balancing and redundancy   Administrators can control the bandwidth speed for downstream and upstream traffic separately.  If you want to work from home or connect 2 office networks together over Internet securely  ,[object Object],DMZ port is a specific hardware port that lets outside user from internet access your servers without exposing your network to attack.  Key Features
Key Features ,[object Object],[object Object],[object Object],Up to 4 real IP addresses are supported let you setting each with its own NAT table This feature is useful for system administrator who want to limit certain service to certain  individuals regardless of which station they use  RS-1200 have Content filter function that can filtering for restrict access for specified Web site,  blocking Script, P2P application (like eMule,  Bit Torrent  ) , Internet Message application  (like ICQ, MSN,Skype..)  ,[object Object],All the packets that go through RS-1200 must pass the policy permission (except VPN). Therefore, the LAN, WAN, and DMZ network have to set the applicable policy when establish network connection.  Key Features
Outbound Load balancing  ,[object Object],   WAN1 : ISP A connection (WAN IP: 61.11.11.11) WAN2 : ISP B connection (WAN IP:211.22.22.22)  user1 user2 user3 user4 For setting  Auto balanced  mode example, when WAN1 traffic is busy, now user3,user4 want to connect to internet , user3,user4 will be auto sense  through WAN2 for internet connection. That increase the upstream bandwidth. functions
Redundancy ,[object Object],   WAN1 : ISP A connection (WAN IP: 61.11.11.11) WAN2 : ISP B connection (WAN IP211.22.22.22)  user1 user2 user3 User 4 If the WAN1 connection is fail, RS-1200 will auto sense the client to connect internet  through  WAN2, so the feature can maintaining a reliable connection   functions
[object Object],So let outside user from internet access your servers without exposing your network to attack .   This setup can protects your local network from the traffic to the server group   functions You can put your server group  on the DMZ port,  like Web Server, FTP server.. and put your PC network on the regular LAN port.
[object Object],By configuring the QoS, you can control the OutBound and InBound Upstream/Downstream Bandwidth.  The RS-1200 configures the bandwidth by different QoS, and selects the suitable QoS through Policy to control and efficiently distribute bandwidth ,[object Object],The RS-1200 adopts VPN to set up safe and private network service. And combine the remote Authentication system in order to integrate the remote network and PC of the enterprise. Also provide the enterprise and remote users a safe encryption way to have best efficiency and encryption when delivering data.  functions
[object Object],All the network packets that go through RS-1200 must pass the policy permission  w hen establish network connections Administrator can define many different policy objects to setup incoming or outgoing  policy and can be activate or deactivate by automatic scheduling example:  you can define the  schedule policy  object from 9:00am to 6:00 pm ,Monday to Friday (working-time) and setup outgoing policy to restrict  MSN service  from internal network. functions
[object Object],functions RS-1200 can support up to 4 real IP addresses for each with its own can  mapping 4 virtual IPs. So we can use this function for variety application. Virtual server  means the server is connect to LAN and have private IP address, but external users cannot connect to its private IP Address directly. so need this function to map Private IP to Real IP that can offer related service for internet users
[object Object],functions Application sample  (usually use for VoIP,NetMetting,Online Gaming application) Make a single server that provides several services such as FTP, Web, and Mail, to provide service   Make several servers that provide a single service One to one mapping  4 virtual server IP addresses One to many mapping 1 real IP address
[object Object],[object Object],RS-1200 can only allow the users who pass authentication to access to Internet in particular time  RS-1200 have Content filter function that can filtering for restrict access specified Web site,blocking Script, P2P application (like eMule, Bit Torrent ) , Internet Message application (like ICQ, MSN,Skype..)  The traffic log can be sent automatically by email or by Syslog function.   functions ,[object Object],RS-1200 have built-in Anti-attack security functions that protect your network to prevent network attack like Ping of Death, Port Scan, Dos, SYN,SPI.
AirLive  RS Family Security Gateway Comparison comparison 1  (10/100) ╳ ╳ DMZ port ○ ○ ○ Support xDSL/Cable/Leased Line 2  (10/100) 1  (10/100) 1  (10/100) Shield RJ-45 Ethernet UTP port WAN port 1  (10/100) 1 (10/100) 4  (10/100) Shield RJ-45 Ethernet UTP port LAN port ( Switch Hub ) 8 MB (Flash) 8 MB (Flash)   16MB  (Flash) Flash ROM 64 MB 64 MB 32  MB DRAM Intel IXP425,  266 MHz Intel IXP425,  400 MHz Waveplus MIPS  100 Mhz CPU Hardware RS-1200 RS-2000 RS-1000
AirLive  RS Family Security Gateway Comparison 20~25  50  5-10 Concurrent users comparison RS-1200 RS-2000 RS-1000 ○ ○ ╳ Messages to display  ○ ○ ╳ URL to redirect Authentication Status 20 ╳ ╳ Authentication Group ( Max entry ) 200 200( Policy ) 200 ( Policy ) Authentication User ( Max entry ) Authentication 25Mbps 50Mbps 10Mbps Qos Max. Bandwidth (MB) limited 100 100 100 QoS ( Max entry ) ○ ○ ○ Priority-bandwidth utilization ○ ○ ○ Guaranteed Bandwidth QoS Bandwidth Manager Function RS-1200 RS-2000 RS-1000 6,500 8,000 150 New Sessions / Second 45,000 45,000 16,500 Max Concurrent Sessions 9 Mbps 15 Mbps ╳ 3DES Encryption 11 Mbps 16 Mbps ╳ Authentication (No Encryption) VPN 70 Mbps 100 Mbps 13 Mbps WAN-LAN  Throughput Performance
AirLive  RS Family Security Gateway Comparison comparison RS-1200 RS-2000 RS-1000 50 ╳ ╳ DMZ To WAN ( Max entry ) 50 ╳ ╳ DMZ To LAN ( Max entry ) 100 ╳ ╳ WAN To DMZ ( Max entry ) 50 ╳ ╳ LAN To DMZ ( Max entry ) 100 50 50 Incoming ( Max entry ) 300 200 100 Outgoing ( Max entry ) ○ ○ ○ Max. Concurrent Sessions  Policy Control Policy Function RS-1200 RS-2000 RS-1000 ○ ╳ ╳ DNS ○ ╳ ╳ ICMP WAN Port connection status ○ ╳ ╳ OutBound  Load-balancing Inbound / Outbound Function
Q & A Q  &  A Q1 :  if client is get private ip address automatically From DHCP server; how can i configure to blocking like MSN service for this client ? A1 :  DHCP client can't be blocking for using some pre-defined service (like MSN,Skype), but MIS can  setup  the IP address  and get the  unique MAC address by this PC  as  address policy object   and choose &quot;  get the static ip address from DHCP “ in policy object function << so that means  this client will not be assign dynamic ip address every time >> this address policy object.          Q2 :  for SOHO use, if they want to simply connect the internet and also want have a basically security. is that  very complex to configure that ? A2 :  for this issue, only setup one outgoing  policy rule  :          from   inside_any   to   outside_any    service--> HTTP    action-->  Permit ALL .  and press ok button that will work immediately.        so except this rule, any service from outside to inside wil be deny and drop  Note. firewall Policy definition is very flexible and can set by IP, by service, by Qos , by Schedule and combine each  together so depend on the usage, but RS-xx Family security gateway can offer you complete security functions. Q3 :  when I  setup Qos upstream or downstream bandwidth, do it will affect the network throughput ? A3 :  Yes, because Qos is one of Policy Object that you can define like Setting a policy that can restrict the user’s downstream and upstream bandwidth, netowrk throughput including Qos bandwidth usage .   So RS-1200 have 70Mbps means NAT Maximum throughput when not use Qos.
Thank  You The RS-1200 is a product that combines  the most important and useful security features in one package. It allows you to take complete control over your network  Conclusion

Mais conteúdo relacionado

Mais procurados

Bgp multihoming
Bgp multihomingBgp multihoming
Bgp multihoming
ee38sp
 
Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...
Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...
Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...
Tũi Wichets
 
How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...
How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...
How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...
Tũi Wichets
 

Mais procurados (18)

Cisco ASR 1001-X Router
Cisco ASR 1001-X RouterCisco ASR 1001-X Router
Cisco ASR 1001-X Router
 
Configuring sonic wall__port_forwarding
Configuring sonic wall__port_forwardingConfiguring sonic wall__port_forwarding
Configuring sonic wall__port_forwarding
 
Bgp multihoming
Bgp multihomingBgp multihoming
Bgp multihoming
 
Basic command to configure mikrotik
Basic command to configure mikrotikBasic command to configure mikrotik
Basic command to configure mikrotik
 
Design of a campus network
Design of a campus networkDesign of a campus network
Design of a campus network
 
Configuring a Cisco Router as a PPPoE Client for DSL Connectivity
 Configuring a Cisco Router as a PPPoE Client for DSL Connectivity Configuring a Cisco Router as a PPPoE Client for DSL Connectivity
Configuring a Cisco Router as a PPPoE Client for DSL Connectivity
 
Vpnppt1884
Vpnppt1884Vpnppt1884
Vpnppt1884
 
Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...
Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...
Setup NanoStation M2 (NSM2) in AP WDS mode (Access Point with WDS) for Wi-Fi ...
 
17.) layer 3 (advanced tcp ip routing)
17.) layer 3 (advanced tcp ip routing)17.) layer 3 (advanced tcp ip routing)
17.) layer 3 (advanced tcp ip routing)
 
HOTSPOT on MikroTik Router
HOTSPOT on MikroTik RouterHOTSPOT on MikroTik Router
HOTSPOT on MikroTik Router
 
Basic Cisco ASA 5506-x Configuration (Firepower)
Basic Cisco ASA 5506-x Configuration (Firepower)Basic Cisco ASA 5506-x Configuration (Firepower)
Basic Cisco ASA 5506-x Configuration (Firepower)
 
Webinar NETGEAR - Nuovi AP Professionali Prosafe WAC720 e WAC730
Webinar NETGEAR - Nuovi AP Professionali Prosafe WAC720 e WAC730Webinar NETGEAR - Nuovi AP Professionali Prosafe WAC720 e WAC730
Webinar NETGEAR - Nuovi AP Professionali Prosafe WAC720 e WAC730
 
How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...
How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...
How–To setup Wi-Fi Client Router Mode as [CPE] connect to [WISP AP] & Using E...
 
Webinar NETGEAR - Prosafe VPN Firewall - Configurazione di NAT e Gestione del...
Webinar NETGEAR - Prosafe VPN Firewall - Configurazione di NAT e Gestione del...Webinar NETGEAR - Prosafe VPN Firewall - Configurazione di NAT e Gestione del...
Webinar NETGEAR - Prosafe VPN Firewall - Configurazione di NAT e Gestione del...
 
MTU (maximum transmission unit) & MRU (maximum receive unit)
MTU (maximum transmission unit) & MRU (maximum receive unit)MTU (maximum transmission unit) & MRU (maximum receive unit)
MTU (maximum transmission unit) & MRU (maximum receive unit)
 
Vpn(4)
Vpn(4)Vpn(4)
Vpn(4)
 
Обеспечение безопасности сети оператора связи с помощью BGP FlowSpec
Обеспечение безопасности сети оператора связи с помощью BGP FlowSpecОбеспечение безопасности сети оператора связи с помощью BGP FlowSpec
Обеспечение безопасности сети оператора связи с помощью BGP FlowSpec
 
Basic ASA Configuration, NAT in ASA Firewall
Basic ASA Configuration,NAT in ASA FirewallBasic ASA Configuration,NAT in ASA Firewall
Basic ASA Configuration, NAT in ASA Firewall
 

Semelhante a Air Live Rs 1200

Manuale Router Sitecom Wl577
Manuale Router Sitecom Wl577Manuale Router Sitecom Wl577
Manuale Router Sitecom Wl577
guest854c41d
 
Data Center Design Guide 4 2
Data Center Design Guide 4 2Data Center Design Guide 4 2
Data Center Design Guide 4 2
Fiyaz Syed
 
Ap&ac system development 2014
Ap&ac system development 2014Ap&ac system development 2014
Ap&ac system development 2014
TOM LIU
 
Tutorial mikrotik step by step anung muhandanu
Tutorial mikrotik step by step  anung muhandanu Tutorial mikrotik step by step  anung muhandanu
Tutorial mikrotik step by step anung muhandanu
theviper0308
 
Broadband Internet
Broadband InternetBroadband Internet
Broadband Internet
Brian Wade
 
HotSpot de Planet WSG-500
HotSpot de Planet WSG-500HotSpot de Planet WSG-500
HotSpot de Planet WSG-500
Cartronic Group
 

Semelhante a Air Live Rs 1200 (20)

D-LINK DSL-502 G
D-LINK DSL-502 GD-LINK DSL-502 G
D-LINK DSL-502 G
 
Jvvnl 071108
Jvvnl 071108Jvvnl 071108
Jvvnl 071108
 
Manuale Router Sitecom Wl577
Manuale Router Sitecom Wl577Manuale Router Sitecom Wl577
Manuale Router Sitecom Wl577
 
Sales presentation EAP1200H
Sales presentation EAP1200HSales presentation EAP1200H
Sales presentation EAP1200H
 
Aerohive AP330 802.11n Wireless Access Point
Aerohive AP330 802.11n Wireless Access PointAerohive AP330 802.11n Wireless Access Point
Aerohive AP330 802.11n Wireless Access Point
 
Juniper ssg5-ssg20-datasheet
Juniper ssg5-ssg20-datasheetJuniper ssg5-ssg20-datasheet
Juniper ssg5-ssg20-datasheet
 
Data Center Design Guide 4 2
Data Center Design Guide 4 2Data Center Design Guide 4 2
Data Center Design Guide 4 2
 
PPPoE With Mikrotik and Radius
PPPoE With Mikrotik and RadiusPPPoE With Mikrotik and Radius
PPPoE With Mikrotik and Radius
 
從INTEL技術談網路卡
從INTEL技術談網路卡從INTEL技術談網路卡
從INTEL技術談網路卡
 
SANGFOR NGAF FIREWALL SG TECHNICAL PVT LTD 03002019693
SANGFOR NGAF FIREWALL  SG TECHNICAL PVT LTD 03002019693 SANGFOR NGAF FIREWALL  SG TECHNICAL PVT LTD 03002019693
SANGFOR NGAF FIREWALL SG TECHNICAL PVT LTD 03002019693
 
Ap&ac system development 2014
Ap&ac system development 2014Ap&ac system development 2014
Ap&ac system development 2014
 
Bb0060
Bb0060Bb0060
Bb0060
 
Bb0060
Bb0060Bb0060
Bb0060
 
Ip tunneling and vpns
Ip tunneling and vpnsIp tunneling and vpns
Ip tunneling and vpns
 
Tutorial mikrotik step by step anung muhandanu
Tutorial mikrotik step by step  anung muhandanu Tutorial mikrotik step by step  anung muhandanu
Tutorial mikrotik step by step anung muhandanu
 
Broadband Internet
Broadband InternetBroadband Internet
Broadband Internet
 
Gda ipsoc blr_hic_final
Gda ipsoc blr_hic_finalGda ipsoc blr_hic_final
Gda ipsoc blr_hic_final
 
Eap350 engenius
Eap350 engeniusEap350 engenius
Eap350 engenius
 
Ip tunnelling and_vpn
Ip tunnelling and_vpnIp tunnelling and_vpn
Ip tunnelling and_vpn
 
HotSpot de Planet WSG-500
HotSpot de Planet WSG-500HotSpot de Planet WSG-500
HotSpot de Planet WSG-500
 

Último

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Victor Rentea
 

Último (20)

Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Cyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdfCyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdf
 

Air Live Rs 1200

  • 1. AirLive RS-1200 Product introduction
  • 2. Multi-function Dual WAN Security Gateway RS-1200 Security Gateway can offer complete advance Firewall ,2-Way Bandwidth manager , VPN servers, Messenger Control , Access Authentication , and much more functions in an all-in-one box. Introduction
  • 3. Specification: Processor : Intel IXP425 , 266 MHz Memory: 8MB Flash ROM, 64MB SDRAM   RS-1200 Hardware overview WAN1 WAN2 LAN DMZ Connect two different ISP network service , like ADXL, Cable modem, Leased line, Connect to LAN network Like switch, hub, or LAN pc. Connect to DMZ network Hardware overview
  • 4.
  • 5.
  • 6.
  • 7.
  • 8.
  • 9.
  • 10.
  • 11.
  • 12.
  • 13.
  • 14. AirLive RS Family Security Gateway Comparison comparison 1 (10/100) ╳ ╳ DMZ port ○ ○ ○ Support xDSL/Cable/Leased Line 2 (10/100) 1 (10/100) 1 (10/100) Shield RJ-45 Ethernet UTP port WAN port 1 (10/100) 1 (10/100) 4 (10/100) Shield RJ-45 Ethernet UTP port LAN port ( Switch Hub ) 8 MB (Flash) 8 MB (Flash)   16MB (Flash) Flash ROM 64 MB 64 MB 32 MB DRAM Intel IXP425, 266 MHz Intel IXP425, 400 MHz Waveplus MIPS 100 Mhz CPU Hardware RS-1200 RS-2000 RS-1000
  • 15. AirLive RS Family Security Gateway Comparison 20~25 50 5-10 Concurrent users comparison RS-1200 RS-2000 RS-1000 ○ ○ ╳ Messages to display ○ ○ ╳ URL to redirect Authentication Status 20 ╳ ╳ Authentication Group ( Max entry ) 200 200( Policy ) 200 ( Policy ) Authentication User ( Max entry ) Authentication 25Mbps 50Mbps 10Mbps Qos Max. Bandwidth (MB) limited 100 100 100 QoS ( Max entry ) ○ ○ ○ Priority-bandwidth utilization ○ ○ ○ Guaranteed Bandwidth QoS Bandwidth Manager Function RS-1200 RS-2000 RS-1000 6,500 8,000 150 New Sessions / Second 45,000 45,000 16,500 Max Concurrent Sessions 9 Mbps 15 Mbps ╳ 3DES Encryption 11 Mbps 16 Mbps ╳ Authentication (No Encryption) VPN 70 Mbps 100 Mbps 13 Mbps WAN-LAN Throughput Performance
  • 16. AirLive RS Family Security Gateway Comparison comparison RS-1200 RS-2000 RS-1000 50 ╳ ╳ DMZ To WAN ( Max entry ) 50 ╳ ╳ DMZ To LAN ( Max entry ) 100 ╳ ╳ WAN To DMZ ( Max entry ) 50 ╳ ╳ LAN To DMZ ( Max entry ) 100 50 50 Incoming ( Max entry ) 300 200 100 Outgoing ( Max entry ) ○ ○ ○ Max. Concurrent Sessions Policy Control Policy Function RS-1200 RS-2000 RS-1000 ○ ╳ ╳ DNS ○ ╳ ╳ ICMP WAN Port connection status ○ ╳ ╳ OutBound Load-balancing Inbound / Outbound Function
  • 17. Q & A Q & A Q1 : if client is get private ip address automatically From DHCP server; how can i configure to blocking like MSN service for this client ? A1 : DHCP client can't be blocking for using some pre-defined service (like MSN,Skype), but MIS can  setup  the IP address and get the unique MAC address by this PC as address policy object   and choose &quot; get the static ip address from DHCP “ in policy object function << so that means  this client will not be assign dynamic ip address every time >> this address policy object.         Q2 : for SOHO use, if they want to simply connect the internet and also want have a basically security. is that  very complex to configure that ? A2 :  for this issue, only setup one outgoing  policy rule :         from  inside_any  to  outside_any    service--> HTTP    action--> Permit ALL .  and press ok button that will work immediately.        so except this rule, any service from outside to inside wil be deny and drop Note. firewall Policy definition is very flexible and can set by IP, by service, by Qos , by Schedule and combine each  together so depend on the usage, but RS-xx Family security gateway can offer you complete security functions. Q3 : when I setup Qos upstream or downstream bandwidth, do it will affect the network throughput ? A3 : Yes, because Qos is one of Policy Object that you can define like Setting a policy that can restrict the user’s downstream and upstream bandwidth, netowrk throughput including Qos bandwidth usage . So RS-1200 have 70Mbps means NAT Maximum throughput when not use Qos.
  • 18. Thank You The RS-1200 is a product that combines the most important and useful security features in one package. It allows you to take complete control over your network Conclusion