LANCOM 7111 VPN – LANCOM 8011 VPN
Chapter 1: Introduction
12
EN
technologies such as DSL (Digital Subscriber Line) or G.703 (2-Mbit leased
lines). But also a conventional ISDN line can be used.
The technologies of the individual participants do not have to be compatible
to one another, as would be the case for conventional direct connections. A
single Internet access can be used to establish multiple simultaneous logical
connections to a variety of remote stations.
The resulting savings and high flexibility makes the Internet (or any other IP
network) an outstanding backbone for a corporate network.
1.2
Firewall
The integrated Stateful Inspection Firewall ensures an effective protection
against undesired intrusion in your network by permitting only incoming data
traffic as reaction to outgoing data traffic. The router’s IP masquerading func-
tion hides all workstations of the LAN behind a single public IP address. The
actual identities (IP addresses) of the individual workstations remain con-
cealed. Firewall filters of the router permit specific IP addresses, protocols and
ports to be blocked. With MAC address filters it is also possible to specifically
monitor the access of workstations in the LAN to the IP routing function of the
device.
Further important features of the Firewall are
Intrusion Detection
Break-in attempts into the local network or on the central Firewall are rec-
ognized, repelled and logged by the Intrusion Detection system (IDS) of
the LANCOM Wireless DSL. Thereby it can be selected between logging
within the device, email notification, SNMP trap or SYSLOG alarms.
Firewall
Internet
LAN
LANCOM