English
Language : 

IFW330 Datasheet, PDF (1/2 Pages) Axiomtek Co., Ltd. – Industrial Firewall Appliance with 2 WAN and 1 LAN
IFW330
Industrial Firewall Appliance with
2 WAN and 1 LAN
NEW
Features
● Firewall/NAT/Router all in one
● Security protection: Firewall, IDP, Botnet
● Secure connection: VPN, SSL VPN, WAN connection checking
● IPv4/IPv6 dual mode
● Easy network setup with Network Address Translation (NAT)
● Quick installation, USB restore
● Centralized management
● Dual WAN redundant interface
● Wide temperature operation -40°C ~ 75°C
Front view
Introduction
Industrial automation industries adopt TCP/IP protocol to simplify development and
maintenance. However, this exposes equipment to cyber attacks, spam, and malware.
The IFW330 coming with Firewall and VPN features is an ideal industrial firewall
appliance. It is suitable for Ethernet security application in sensitive remote control
or monitoring networks, such as in oil, gas, water & wastewater, power or factory
automation system.
Equipped with Firewall features such as stateful packet inspection, Denial of Service
(DoS), and Intrusion Detection & Prevention (IDP), the Firewall appliance could be used to
protect machine and equipment connecting to un-trusted internet.
Built in with IPsec VPN that provides site to site secure tunnel, PPTP VPN that offers point
to point connection for employee at home, and SSL VPN that offers you an easy VPN
access to your headquarters simply through a web browser, the Firewall router device
provide system integrator and machine maker a secure way to configure and maintain
their device.
The Firewall appliance also has Industrial Protocol management including EtherCAT,
Ethernet/IP, Lonworks, Profinet, Modbus, DNP that pave a way to secure fieldbus
network.. Additionally, we offer wide temperature models for use in hazardous, -40~75°C
environments.
It has 1 WAN, 1 LAN and 1 configurable WAN/DMZ interface providing flexible
configuration for different application.
4 DI can be used to connect to sensor or equipment to monitor status change, which data
could be used totrigger alarm or sent to remote central database for further analysis,
4 DO could be pre-set to reflect that change.
Specifications
Interface
Network features
Routing
Firewall features
369
LAN: 1 RJ-45 port,
WAN: 2 RJ-45 ports
Quality of Service (QoS)
Support IPv4/IPv6
Dual WAN redundant interfaces through internet.
Static routing, RIP v1/v2
Stateful inspection
Filter: MAC, IP, port, protocol
Bridge mode firewall
Denial of Service (QoS) protection:
TCP (SYN), ICMP (ping), ARP (Bridge mode), Port scan
NAT: 1-1 NAT, Port forwarding
Application software management: VoIP, P2P, SMS, Web,
Web Mail, and Entertainment software.
Industrial Protocol management: EtherCAT, Ethernet/IP,
Lonworks, Profinet, Modbus, ICE, DNP
URL white list
Rear view
Firewall features
Intrusion Detection and
Prevention
VPN features
NAT throughput
VPN throughput
Load Balance
Management
Alarming
Virtual proxy server
System status: system performance, connecting status, data
flow analysis
Whitelist: user group, existing IP white list
Router/Firewall Redundancy
IDP (Intrusion Detection and Prevention)
BotNet prevention
Abnormal IP analysis
Switch management
Protocol: IPsec, PPTP, SSL VPN
Encryption: DES, 3DES, AES
Authentication: Pre-Shared Key(PSK), SHA, MD5
IPSec Dead Peer Detection
Show remote Network Neighborhood
SSL VPN: server setting, certificate setting
SSL concurrent VPN channels: max. 50
SSL VPN user number: max. 50
VPN channel number:
- IPsec channels: max. 500
- PPTP client: max. 200
- PPTP server: max. 200
VPN control
Stateful packet inspection
NAT Traversal
500 Mbps
3Des: 50 Mbps
Des: 78 Mbps
Aes: 85 Mbps
Inbound load balance
Outbound load balance
WAN connecting test (ICMP, DNS)
Support Network Time Protocol NTP
Web management: HTTP, HTTPs
System file backup and upgrade
Interface(WAN/LAN) flow statistics
System configuration: system configuration default
restoration, message notification, export/import,
Network Service:
Routing table, 802.1Q, DDNS, DNS server, SNMP,
DHCP client/server
Centralized Management System CMS client/server
Networking test:
Ping, Traceroute, DNS Query, Server Link
IP route, Interface Information, Wake Up, IPv6
Digital Input (DI) provide Alarming, accordingly Digital
Output (DO) provide Controlling
* All specifications and photos are subject to change without notice.