Loading
LOADING IMAGES
Vigor2955 blank.jpg blank.jpg blank.jpg blank.jpg blank.jpg blank.jpg blank.jpg blank.jpg blank.jpg

Vigor2955

  • 針對網路印表機與3.5G行動通訊系統提供USB 1.1連接埠
  • 雙WAN口提供以條件式規則為主的負載平衡與備援系統
  • 數位內容安全管理 (CSM) 強化了應用部署型閘道器之安全性
  • 穩固的防火牆可防止外部攻擊並提供原則應用以便存取網際網路
  • 硬體為主的平台提供高效能的VPN通道
  • 最多同時可達 200 條的VPN通道 (IPSec/PPTP/L2TP)
  • VPN trunk (VPN 負載平衡及備援)
  • 高達 50 條並行的SSL VPN通道搭配LDAP/RADIUS驗證方式
  • 彈性化的頻寬管理讓頻寬運用達到最佳化
  • 支援Smart Monitor,最多同時可管理 100 個PC 用戶 (未來可採取韌體升級方式處理)

     


    關於

    Vigor2955 SSL VPN安全防護路由器為具有高度流量處理能力、高容量VPN性能以及雙WAN介面的寬頻路由器,提供條件式規則為主的負載平衡、備援以及隨選頻寬(BoD),同時整合了IP層級QoSNAT連線數/頻寬管理,幫助用戶控制並分派網路上的頻寬運用。透過專用VPN協同處理器,AES/DES/3DES硬體加密與SHA-1/MD5硬體密鑰可達成無縫式的處理,如此一來就能維持路由器最大的成效。對於遠端工作人員與內部辦公室的連結,Vigor2955VPN通道同時可支援高達200 (採用IPSec/PPTP/L2TP協定)以及50SSL VPN連線數。

    路由器允許使用者存取網際網路並整合雙WAN口頻寬以便加速資料於網路上的傳輸速度。每條WAN埠皆可連接至不同ISP,即使ISP使用不同技術來提供電信服務 (例如DSL、纜線數據機等等),如果某家ISP連線出了問題,所有的流量將被自動導引並切換至正常運作的通訊埠並持續運作下去。

    個人電腦不需要安裝VPN用戶端程式,Secure Socket Layer (SSL)虛擬私人網路設備可讓遠端工作人員隨時隨地都能連上辦公室網路。ㄧ般標準網路瀏覽器如FireFoxIE等等都支援此項功能,對於小型辦公室的使用者與需要存取公司內網、檔案伺服器與檔案分享的遠端工作者來說,Vigor2955安全防護路由器系列能支援同時並行高達50條的SSL連線數。

    IP層級與內文為主的防護上,Vigor2955安全防護路由器同時提供安全性高的防火牆選項。DoS/DDoS防護與URL/網頁內容過濾器都能強化網路內外的安全性。企業層級的數位內容安全管理(CSM),讓使用者能夠有效的控制並管理即時通訊軟體(IM)、點對點等方面的網路應用。因此數位內容安全管理能夠防堵讓員工分心並影響生產力的不適宜內容,再者,數位內容安全管理可以使辦公室免受網路威脅。有了數位內容安全管理(CSM),您就能保護機密與重要文件不被修改或是竊取。

     

     

     

    硬體介面

    Vigor2955
    硬體介面 LAN 5-port 10/100/1000 base-T switch
    WAN 2-port 10/100 base-TX Ethernet
    溫度 Operating : 0°C ~ 45°C
    Storage : -25°C ~ 70°C
    濕度 10% ~ 90% ( non-condensing )
    最大消耗功率 22 Watt
    尺寸 L273 * W166 * H44.6 ( mm )
    電源 AC 100~240V, 50/60Hz

     

     

    1. WAN Protocol

    • Ethernet

    2. Dual WAN

    • Outbound policy based Load Balance

    3. VPN

    • Protocols : PPTP, IPSec, L2TP, L2TP over IPSec
    • Up to 200 Sessions Simultaneously
    • VPN Trunking
    • SSL VPN
    • LDAP
    • VPN Throughput
    • NAT-Traversal (NAT-T)
    • PKI Certificate : Digital signature (X.509)
    • IKE Authentication : Pre-shared key; IKE phase 1 aggressive/standard modes & phase 2 selectable lifetimes
    • Authentication : Hardware-based MD5, SHA-1
    • Encryption : MPPE and hardware-based AES/DES/3DES
    • RADIUS Client
    • DHCP over IPSec
    • Dead Peer Detection (DPD)
    • Smart VPN Software Utility
    • Easy of Adoption
    • Industrial-standard Interoperability

    4. Content Filter

    • URL Keyword Blocking
    • Web Content Filter
    • Time Schedule Control

    5. Firewall

    • Stateful Packet Inspection (SPI)
    • Content Security Management (CSM)
    • Multi-NAT
    • Port Redirection
    • Open Ports
    • DMZ Host
    • Policy-based IP Packet Filter
    • DoS/DDoS Prevention
    • IP Address Anti-spoofing
    • Object-based Firewall
    • Notification
    • Bind IP to MAC address
    • WDS Security

    6. USB

    • 3.5G USB Modem
    • Printer Sharing

    7. System Management

    • Web-based User Interface (HTTP/HTTPS)
    • DrayTek's Quick Start Wizard
    • User Administration
    • CLI ( Command Line Interface, Telnet/SSH)
    • DHCP Client/Relay/Server
    • Dynamic DNS
    • Administration Access Control
    • Configuration Backup/Restore
    • Port-based VLAN
    • Built-in Diagnostic Function
    • NTP Client/Call Scheduling
    • Firmware Upgrade via TFTP/HTTP/FTP
    • Remote Maintenance
    • Wake On LAN
    • Logging via Syslog
    • SNMP Management

    8. Bandwidth Management

    • Traffic Shaping
    • Bandwidth Reservation
    • Packet Size Control
    • DiffServ Codepoint Classifying
    • 4 Priority Levels (Inbound/Outbound)
    • Individual IP Bandwidth/Session Limitation
    • Bandwidth Borrowing
    • User-defined Class-based Rules

    9. Routing Functions

    • Router
    • Advanced Routing and Forwarding
    • DNS
    • DHCP
    • NTP
    • Policy-based Routing
    • Dynamic Routing
    • Static Routing

    10. Internet CSM (Content Security Management) Featuring

    • URL keyword filtering - whitelist or blacklist specific sites or keyword in URLs
    • Block web sites by category (subject to subscription)
    • Prevent accessing of web sites by using their direct IP address (thus URLs only)
    • Blocking automatic download of Java applets and Active X controls
    • Blocking of web site cookies
    • Block http downloads of file types (binary, compressed, multimedia)
    • Time schedules & exclusions for enabling/disabling these restrictions
    • Block P2P (Peer-to-Peer) file sharing programs (e.g. Kazaa, WinMX etc.)
    • Block Instant messaging programs (e.g. IRC, MSN/Yahoo Messenger)

    11. Support

    • Smart Monitor (Free & Optional Utility ): Network service analyze, User Management, System Management, System Management, Top10 ranking system, Up to 100 PC Users
    • Warranty : 2-year limited warranty, technical support through e-mail and Internet FAQ/Application Notes
    • Firmware Upgrade : Free Firmware upgrade form Internet
    The Vigor2955 servers as a VPN gateway and a central firewall for multi-site offices and tele-workers. With its high data throughput of 90Mbps. Dual WAN, VPN trunking and 5 Gigabit LAN ports, the device facilitates productivity of versatile business operations. To secure communications between sites is the establishment of VPN tunnels up to 200 simultaneous tunnels.



    Figure 1. Front Panel


    High user-friendliness and efficiency
     
    Its well-structured Web User Interface offers user-friendly configuration. The WUI also provides IP layer QoS (Quality of Service), NAT session/bandwidth management to help users control and allocate the bandwidth on networks.
    More extendability
     
    With a dedicated VPN co-processor, the hardware encryption of AES/DES/3DES and hardware key hash of SHA-1/MD5 are seamlessly handled, thus maintaining maximum router performance. For remote tele-workers and inter-office links, the Vigor2955 supports up to 200 simultaneous VPN tunnels (such as IPSec/PPTP/L2TP protocols) and 50 sessions of SSL VPN by using LDAP/RADIUS/SSTP authentication.


    Figure 2. VPN Trunking : VPN Load Balancing & Fail-Over



    Figure 2. SSL VPN authentication Application

    Without the necessity of installing VPN client on individual PC, the Secure Socket Layer (SSL) virtual private network (VPN) facility lets remote workers connect to the office network at any time. SSL is supported by standard web browsers such as FireFox and IE. For users of small offices and tele-workers who need to access enterprises' internal applications, file server and file sharing, Vigor2955 security router series allow up to 50 concurrent SSL sessions.


    Figure 3. Extendability Application


    Maximum degree of operational reliability
    It allows users to access Internet and combine the bandwidth of the dual WAN to speed up the transmission through the network. Each WAN port can connect to different ISPs, even if the ISPs use different technology to provide telecommunication service (such as DSL, cable modem, etc.). If any connection problem occurred on one of the ISP connections, all the traffic can be guided and switched to the normal communication port for proper operation.
     


     
    Figure 4. Dual WAN Application


     
    Security without compromise
    The Vigor2955 also provides high-security firewall options with both IP-layer and content based protection. The DoS/DDoS prevention and URL/Web content filter strengthen the security outside and inside the network. The enterprise-level CSM (Content Security Management) enables users to control and manage IM (Instant Messenger) and P2P (Peer to Peer) applications more efficiently. The CSM hence prevents inappropriate content from distracting employees and impeding productivity. Furthermore, the CSM can keep office networks threat-free and available. With CSM, you can protect confidential and essential data from modification or theft.



     
    Figure 5. Security without compromise