 |
”@
|
|
 |
”@ |
| | | |
|
|
|
|
”@ |
|
|
|
|
|
 |
|
|
|




|
 |
Product Description
|
 |
| ”@ |
 |
 |
|
|
Multi-Homing
Security Gateway (MH-2000) |
|
|
|
As
Internet become essential for your business, the only
way to prevent your Internet connection from failure is
to have more than one connection.
PLANET's Multi-Homing Security Gateway, MH-2000, reduce
the risk of potential shutdown if one of the Internet
connections should fail. In addition, they allow you to
perform load-balancing by distributing the traffic
through two WAN connections.
In addition to a multi-homing device, PLANET's
Multi-Homing Security Gateways provide a complete
security solution in a box. The policy-based firewall,
Intrusion detection and prevention, content filtering
function and VPN connectivity with 3DES and AES
encryption make it a perfect product for your network
security. No more complex connection and settings for
integrating different security products on the network
is required.
Bandwidth management function is also supported to
offers network administrators an easy yet powerful means
to allocate network resources based on business
priorities, and to shape and control bandwidth usage.
”@
|
Product Application
|
| Small
and medium enterprises, branch offices |
The MH-2000 is
highly integrated devices which
includes most connectivity and
security features a small or medium
enterprise needs. Not required to
change exist network infrastructure
but provides a cost-effective WAN
backup using inexpensive, high-speed
broadband. Increasing traffic
loading is easy to solve by
balancing over two WAN connections.
Network bandwidths can be easily
increased by adding another ISP
connection.
”@
”@
|
|
Key Features |
 |
WAN Backup: The MH-2000
can monitor the each WAN link
status and automatically
activate backup links when a
failure is detected. The
detection is based on the
configurable target Internet
addresses.
|
 |
Outbound Load Balancing:
The network sessions are
assigned based on the user
configurable load balancing
mode, including "Auto",
"Round-Robin", "By Traffic", "By
Session" and "By Packet". User
can also configure which IP or
TCP/UDP type of traffic use
which WAN port to connect.
|
 |
Policy-based Firewall:
The built-in policy-based
firewall prevent many known
hacker attack including SYN
attack, ICMP flood, UDP flood,
Ping of Death, etc. The access
control function allowed only
specified WAN or LAN users to
use only allowed network
services on specified time.
|
 |
VPN Connectivity: The
security gateway support PPTP
and IPSec VPN. With DES, 3DES
and AES encryption and SHA-1 /
MD5 authentication, the network
traffic over public Internet is
secured.
|
 |
Content Filtering:The
security gateway can block
network connection based on
URLs, Scripts (The Pop-up, Java
Applet, cookies and Active X),
p2p (eDonkey, Bit Torrent and
WinMX), Instant Messaging (MSN,
Yahoo Messenger, ICQ, QQ and
Skype) and Download blocking.
|
 |
Bandwidth Management:
Network packets can be
classified based on IP address,
IP subnet and TCP/UDP port
number and give guarantee and
burst bandwidth with three
levels of priority.
|
 |
User Authentication:
Web-based authentication allows
users to be authenticated by web
browser. User database can be
configured on the devices.
|
 |
Dynamic Domain Name System
(DDNS): The Dynamic DNS
service allows you to alias a
dynamic IP address to a static
hostname.
|
 |
Multiple NAT: Multiple
NAT allows local port to set
multiple subnetworks and connect
with the Internet through
different WAN IP Addresses.
|
 |
Server Load Balancing: Up
to 4 group virtual servers are
supported for server load
balancing
|
 |
Dynamic Host Control Protocol
(DHCP) client and server: In
the WAN site, the DHCP client
can get an IP address from the
Internet Server Provider (ISP)
automatically. In the LAN site,
the DHCP server can allocate up
to 253 client IP addresses and
distribute them including IP
address, subnet mask as well as
DNS IP address to local
computers. It provides an easy
way to manage the local IP
network.
|
 |
Web based GUI: supports
web based GUI for configuration
and management. It also supports
multiple language including
English, Traditional Chinese and
Simplified Chinese. |
|
|
”@
|
|
|
”@ ”@
”@
”@ |
 |
 |
 |
 |
 |
| ”@ |
|
Product |
|
Model |
MH-2000 |
|
Hardware |
|
Ethernet |
LAN: 1 x 10/100Mbps RJ-45
WAN: 2 x 10/100Mbps RJ-45
DMZ: 1 x 10/100Mbps RJ-45 |
|
LED |
POWER, STATUS, LNK/ACT for each LAN, WAN and DMZ port |
|
Power |
5VDC, 2.4A |
|
Operating Environment |
Temperature: 0~50 degree C
Relative Humidity: 10%~90% |
|
Dimension WxDxH (mm) |
220 x 149 x 37 |
|
Regulatory |
FCC, CE Mark |
|
Software |
|
Management |
Web |
|
Network Connection |
Transparent mode (WAN to DMZ), NAT, Multi-NAT, Static Route,
RIPv2 |
|
Outbound Load Balancing |
Policy-based routing
Load-balancing by Round-Robin, traffic, session and packet |
|
Firewall |
Policy-based firewall rule with schedule
NAT/ NAPT
SPI firewall
Prevention of SYN attack, ICMP Flood, UDP flood, Ping of
Death, Tear
Drop, IP Spoofing, IP route, Port Scan and Land attack |
|
VPN Tunnels |
100/200 |
|
VPN Functions |
PPTP, IPSec
DES, 3DES and AES encrypting
SHA-1 / MD5 authentication algorithm
Remote access VPN (Client-to-Site) and Site to Site VPN |
|
Content Filtering |
URL blocking
Scripts blocking (The Pop-up, Jave Applet, cookies and
Active X)
IM blocking (MSN, Yahoo Messenger, ICQ, QQ and Skype)
P2P blocking (eDonkey, Bit Torrent and WinMX)
Download blocking |
|
Log and Alarm |
Log and alarm for event and traffic
Log can be saved from web, sent by e-mail or sent to syslog
server |
|
Statistics |
Traffic statistic for interface (WAN 1/2) and policies
Graphic display
”@ |
|
Bandwidth Management |
Policy-based bandwidth management
Guarantee and maximum bandwidth with 3 priority levels
Classify traffics based on IP, IP subnet, TCP/UDP port |
|
User Authentication |
Built-in user database with up to 200 entries |
|
Others |
Dynamic DNS
NTP support
DHCP server
Mapping IP (DMZ)
Server load balancing |
”@ |
”@ |
 |
 |
 |
 |
 |
”@ |
”@
|
|
|
”@ |
|
|
”@ |
|
|
|