ally. To help you save costs, your gateway disconnects the connection after a predefined
time (short hold) if no more information is exchanged.
Simple data access
If suitably configured, your device enables you to conveniently access data at another site,
e.g. your head office. While running Windows, for example, you can connect a network
drive to a computer at your head office. You then simply click the icon for this link in Win-
dows Explorer and can surf in the directories and data of the remote computer just as if you
were using your own hard disk. Your gateway takes care of setting up and clearing the con-
nection.
Security/firewall/DynDNS
Your gateway is provided with integrated firewall mechanisms and therefore provides ex-
tensive, low-cost features to meet all the requirements for access security. It protects your
network against unauthorised external access. This is achieved with functions such as
NAT, encryption, filters, monitoring and a Stateful Inspection Firewall.
The Stateful Inspection Firewall (SIF) offers effective protection against attacks from the In-
ternet through dynamic packet filtering. Firewall handling is made easier through numerous
pre-configured services. To be able to find partners in spite of dynamic IP addresses, the
devices support the DynDNS function. The implemented function enables you to use the
DynDNS service of leading DynDNS providers, and some providers have been preset. The
security features of the device also include optional content filtering (there is an extra
charge for this, 30-day test version included). Here, all the outgoing Internet enquiries are
classified, allowing unwanted content to be reliably filtered out.
Other security features
With the scheduling function of the devices, times can be defined in which users are gran-
ted individual rights, such as for Internet access. The VLAN function of the devices allows
the allocation of users to virtual subnets and offers additional security.
DMZ
All devices offer the possibility of configuring a "Demilitarised Zone" (DMZ). This is a separ-
ate network located between the internal LAN and the Internet. The DMZ is the place for all
services that have to make direct contact with the Internet. If a web or mail server in the
DMZ is attacked, this has no effect on the security of your internal network.
IP Telephony
The application level gateway allows IP telephones in the LAN to establish a connection
with SIP providers without neglecting the security of the WAN connection. To do this, the
SIP proxy monitors the signalling process between the IP telephone and SIP provider and
makes the necessary NAT and firewall releases dynamically for the duration of the commu-
Funkwerk Enterprise Communications GmbH
1 Introduction
bintec R1xxx/R3xxx/R4xxx
3