ADTRAN 2100 Network Card User Manual


 
Product Features
Standards-based IPSec
VPN tunneling with
DES/3DES/AES encryption
Internet Key Exchange (IKE)
for user authentication
Stateful inspection firewall
for network security
Unlimited users and up to
ten private tunnels
Built-in IP router supporting
BGP, OSPF, and RIP
Quality of Service (QoS)
for delay sensitive traffic
like VoIP
Network Address
Translation for IP
address concealing
Web-based and CLI remote
management
10/100Base-T Ethernet
interfaces for flexible
connectivity
Logging and alerts
Industry-leading five-year
North American warranty
The ADTRAN NetVanta
®
2100 is a small office
VPN/Firewall gateway providing all the
necessary components required to secure
an integrated VPN solution. Used primarily
for remote access, the NetVanta 2100 is perfect
for the small remote office needing to have
a secure connection back to corporate
resources. Based on the ADTRAN Operating
System (AOS), the NetVanta 2100 provides key
security and data protection features such
as IPSec VPN tunneling, stateful inspection
firewall, IP routing, Network Address
Translation (NAT), and even a DHCP server.
Security
On a public infrastructure like the Internet,
security is of the utmost importance. The
NetVanta 2100 employs a stateful inspection
firewall that protects an organization’s
network from common Denial of Service
(DoS) attacks including TCP synflooding,
IP spoofing, ICMP redirect, ping-of-death,
and IP reassembly problems.
VPN Tunneling
The NetVanta 2100 is an IPSec-compliant
device that provides secure communications
over potentially unsecure networks. As a
security gateway, the NetVanta 2100 supports
up to ten simultaneous VPN tunnels and
unlimited users on the LAN, while supporting
encryption algorithms like DES, 3DES, and
AES. In addition,this device supports IKE
(Internet Key Exchange) and X.509 digital
certificates for user authentication.
Management
NetVanta’s web-based GUI or CLI can be
used for secure local or remote configuration
for the NetVanta 2100. For a centralized,
enterprise-wide management scheme,
ADTRAN offers n-Command
, an intuitive,
scalable software suite for managing larger
NetVanta deployments and features robust
productivity tools to effectively manage a
distributed network. To administer user
accounts, the NetVanta 2100 utilizes XAUTH
using RADIUS and RSA SecurID to manage
administration account lists. This device also
offers built-in alert and logging mechanisms
to warn administrators about activities that
are going on in the network.
Quality of Service (QoS)
QoS is also supported for delay sensitive
traffic like VoIP or video. To prioritize mission
critical traffic and control network conges-
tion, the NetVanta 2100 uses Low Latency
Queuing, Weighted Fair Queuing (WFQ),
Class-based WFQ, and DiffServ marking to
establish priority of IP packets routed over
the network.
VoIP Ready
In combination with the QoS features, a
specialized SIP Application Layer Gateway
(ALG) allows SIP traffic to traverse NAT-
enabled firewalls. For an enterprise network,
this interoperability allows IP PBXs, phones,
and other SIP-based devices to set up, tear
down, and pass voice and call control
messages seamlessly through the integral
NAT-enabled firewall.
Interoperability
The NetVanta 2100 offers the highest level
of integration with ADTRAN’s complete
line of IPSec VPN equipped NetVanta prod-
ucts: NetVanta Ethernet Switches, NetVanta
Access Routers, and NetVanta VPN/Firewall
appliances. All of the ADTRAN internet-
working products support the AOS, ensuring
common configuration practices and protec-
tion schemes between the various models.
Together the NetVanta Series offers the most
robust set of feature to address a wide range
of enterprise VPN needs.
NetVanta 2100
Small Office VPN Gateway and Firewall