|
RN300 |
RN310 |
RN500 |
RN700/701 |
IP-телефония |
|
|
|
|
Concurrent Calls (G.711) |
30 |
50 |
200 |
400 |
Per-call Security |
Yes |
Yes |
Yes |
Yes |
Per-call Bandwidth Allocation |
Yes |
Yes |
Yes |
Yes |
Per-call Rate Limiting |
Yes |
Yes |
Yes |
Yes |
NAT Traversal |
Yes |
Yes |
Yes |
Yes |
RTP Traffic Bridging |
Yes |
Yes |
Yes |
Yes |
RTP Load Balancing |
Yes |
Yes |
Yes |
Yes |
Signalling protocol independence |
Yes |
Yes |
Yes |
Yes |
Encrypted Traffic support |
Yes |
Yes |
Yes |
Yes |
Security separation of Voice and Data |
Yes |
Yes |
Yes |
Yes |
1+1 High Avalibility |
No |
Yes |
Yes |
Yes |
“Matrix” Scalability & Load Balancing |
No |
No |
Yes |
|
Denial of Service protection |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Передача данных |
|
|
|
|
Security Zones |
5 |
12 |
30 |
30 |
Bandwidth Management & QoS |
Yes |
Yes |
Yes |
Yes |
Server Load Balancing |
Yes |
Yes |
Yes |
Yes |
Health Monitoring |
Yes |
Yes |
Yes |
Yes |
User Authentication |
Yes |
Yes |
Yes |
Yes |
Accounting |
Yes |
Yes |
Yes |
Yes |
Interfaces: 10/100 Base-T |
3 |
8 |
12+1 |
0+1 |
10/100/1000 Base-T |
0 |
0 |
0 |
8/0 |
SFP GBIC |
0 |
1 |
0 |
2/10 |
|
|
|
|
|
Производительность |
|
|
|
|
Firewall Throughput |
100 Mbps |
100 Mbps |
500 Mbps |
1 Gbps |
Multicasting |
No |
No |
1 Gbps |
1 Gbps |
Concurrent Sessions |
24'000 |
50'000 |
256'000 |
256'000 |
New Sessions / Second |
2'000 |
4'000 |
18'000 |
18'000 |
Backplane Switching Capacity |
1 Gbps |
3.6 Gbps |
4.8 Gbps |
12 Gbps |
Total Policies / Rules |
256 |
512 |
1'024 |
1'024 |
|
|
|
|
|
Маршрутизация |
|
|
|
|
Layer 2 Mode / Transparent Mode |
Yes |
Yes |
Yes |
Yes |
Layer 3 Mode / Route Mode |
Yes |
Yes |
Yes |
Yes |
NAT (Network Address Translation) |
Yes |
Yes |
Yes |
Yes |
PAT (Port Address Translation) |
Yes |
Yes |
Yes |
Yes |
Policy Based NAT |
Yes |
Yes |
Yes |
Yes |
Virtual IP |
32 |
32 |
128 |
256 |
Mapped IP |
Unlimited |
Unlimited |
Unlimited |
Unlimited |
User supported |
Unlimited |
Unlimited |
Unlimited |
Unlimited |
IP Routing – Static Routes |
128 |
256 |
512 |
1'024 |
|
|
|
|
|
Адресация |
|
|
|
|
Static |
Yes |
Yes |
Yes |
Yes |
DHCP Server / Client / Relay, PPPoE Client |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Отказоустойчивость |
|
|
|
|
Device Redundancy (device failover) |
No |
No |
Yes |
Yes |
Link Redundancy (link failover) |
No |
No |
Yes |
Yes |
WAN failover |
No |
Yes |
Yes |
Yes |
Back-up Power Supply (available) |
No |
No |
Yes |
Yes |
Over-designed Fan Management System |
No |
No |
Yes |
Yes |
Device failure detection / notification |
No |
No |
Yes |
Yes |
Configuration synchronization |
No |
No |
Yes |
Yes |
MTBF > 200,000 hours |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Зоны Безопасности |
|
|
|
|
Max Physical Zones |
3 |
9 |
12 |
10 |
Max Virtual Zones |
5 |
12 |
30 |
30 |
Overlay without IP address reconfiguration |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Межсетевой экран |
|
|
|
|
Number of stateful firewalls |
20 |
132 |
870 |
870 |
Denial of Service and DdoS protection |
Yes |
Yes |
Yes |
Yes |
Mirroring |
Yes |
Yes |
Yes |
Yes |
Rate Limiting between zones |
Yes |
Yes |
Yes |
Yes |
Policy-driven security-on-demand |
Yes |
Yes |
Yes |
Yes |
Security based on MAC address |
No |
Yes |
Yes |
Yes |
Network attack detection |
Yes |
Yes |
Yes |
Yes |
SYN attack |
Yes |
Yes |
Yes |
Yes |
Large ICMP, ICMP flood, UDP flood |
Yes |
Yes |
Yes |
Yes |
|
Yes |
Yes |
Yes |
Yes |
IP spoofing attack |
Yes |
Yes |
Yes |
Yes |
Port scan attack |
Yes |
Yes |
Yes |
Yes |
Fragmented packet protection |
Yes |
Yes |
Yes |
Yes |
Malformed packet protection |
Yes |
Yes |
Yes |
Yes |
Land attack and Tear drop attack |
Yes |
Yes |
Yes |
Yes |
Filter IP source route option |
Yes |
Yes |
Yes |
Yes |
IP address sweep attack |
Yes |
Yes |
Yes |
Yes |
Default packet deny |
Yes |
Yes |
Yes |
Yes |
Per-source session limiting |
Yes |
Yes |
Yes |
Yes |
SYN fragments |
Yes |
Yes |
Yes |
Yes |
SYN and Fin bit set |
Yes |
Yes |
Yes |
Yes |
No flags in TCP |
Yes |
Yes |
Yes |
Yes |
Fin with no ACK |
Yes |
Yes |
Yes |
Yes |
ICMP fragment |
Yes |
Yes |
Yes |
Yes |
IP option based filtering |
Yes |
Yes |
Yes |
Yes |
Unknown protocols |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
VPN |
|
|
|
|
Max. Site-to-Site VPN Tunnels |
32 |
32 |
128 |
256 |
Max. Remote Access VPN Tunnles |
32 |
32 |
128 |
256 |
3DES / AES throughput |
30 Mbps |
30 Mbps |
90 Mbps |
200 Mbps |
VPN policies |
64 |
64 |
512 |
1'024 |
DES / 3DES / AES /RC4 / RC5 encryption |
Yes |
Yes |
Yes |
Yes |
IPSEC User Authentication |
Yes |
Yes |
Yes |
Yes |
Certificates support |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Аутентификация |
|
|
|
|
Number of Users (internal database) |
256 |
256 |
1'024 |
2'048 |
Group or individual profiles |
Yes |
Yes |
Yes |
Yes |
Authentication based on external LDAP, |
Yes |
Yes |
Yes |
Yes |
RADIUS, MS Active Directory, | ||||
Local Data Base, IPSec | ||||
|
|
|
|
|
Балансировка нагрузки |
|
|
|
|
Round Robin, Weighted Round Robin |
No |
Yes |
Yes |
Yes |
Least Connections |
No |
Yes |
Yes |
Yes |
Persistency based on: Cookie, SSL, Client |
No |
Yes |
Yes |
Yes |
IP, HTTP, HTTPS, FTP (active and passive) | ||||
Number of Logical Servers |
No |
64 |
512 |
1'024 |
|
|
|
|
|
QoS и Управление |
|
|
|
|
полосами пропускания |
|
|
|
|
Guaranteed bandwidth |
Yes |
Yes |
Yes |
Yes |
Maximum bandwidth |
Yes |
Yes |
Yes |
Yes |
Priority bandwidth |
Yes |
Yes |
Yes |
Yes |
Minimum bandwidth |
Yes |
Yes |
Yes |
Yes |
Packet/Connection based |
Yes |
Yes |
Yes |
Yes |
Number of contracts |
32 |
32 |
512 |
1'024 |
Number of traffic filters per contract |
8 |
8 |
16 |
16 |
7-tuple classification |
Yes |
Yes |
Yes |
Yes |
Classification based on DiffServ, ToS |
Yes |
Yes |
Yes |
Yes |
DiffServ, ToS stamping |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Мониторинг состояния |
|
|
|
|
Monitoring of any IP-addressable device |
No |
Yes |
Yes |
Yes |
Link monitoring (Layer 2) |
No |
Yes |
Yes |
Yes |
ICMP ping verification (Layer 3) |
No |
Yes |
Yes |
Yes |
TCP connection verification (Layer 4) |
No |
Yes |
Yes |
Yes |
Content verification for HTTP, HTTPs, FTP |
No |
Yes |
Yes |
Yes |
SNMP alarm/traps |
Yes |
Yes |
Yes |
Yes |
|
|
|
|
|
Учет трафика |
|
|
|
|
7-tuple classification |
Yes |
Yes |
Yes |
Yes |
Real-time counting of packets or bytes |
Yes |
Yes |
Yes |
Yes |
Number of Accounting classes |
32 |
64 |
512 |
1'024 |