Vulnerability Assessment Scanning and Penetration Testing by VSS, LLC.
Home


Search:


Allied Telesis AR3050S Firewall - 2 x GE WAN ports and 8 x 10/100/1000 For Sale


Allied Telesis AR3050S Firewall - 2 x GE WAN ports and 8 x 10/100/1000
When you click on links to various merchants on this site and make a purchase, this can result in this site earning a commission. Affiliate programs and affiliations include, but are not limited to, the eBay Partner Network.

Buy Now

Allied Telesis AR3050S Firewall - 2 x GE WAN ports and 8 x 10/100/1000:
$320.00

UTM FirewallsAR3050S and AR4050S

Allied Telesis Unified Threat Management (UTM) Firewalls are the ideal integrated security platform for modern businesses. Powerful firewall and threat protection is combined with routing and switching, to provide an innovative high-performance solution.

The AR3050S and AR4050S are the ideal choice for high speed Enterprise gateway applications. The UTM Firewalls feature an integrated “best of breed” security platform to provide up-to-the-minute threat protection with advanced networking capabilities, and the AR4050S is ICSA corporate firewall certified.

High performance

High performance is guaranteed by harnessing the power of multi-core processors and application acceleration engines, as well as the ability to offload(1) security and threat protection feature processing for increased throughput.

AR3050S
Firewall throughput (Raw)750 Mbps
Firewall throughput (App Control)700 Mbps
Concurrent sessions100,000
New sessions per second3,600
IPS throughput220 Mbps
IP Reputation throughput350 Mbps
Malware protection throughput300 Mbps
VPN throughput400 Mbps

Note: All performance values are maximums, and vary depending on system configuration.

Advanced feature licenses

Flexible subscription licensing options make it easy to choose the right combination of security features to best meet your business needs. The Firewall license includes App Control, Web Control and URL Filtering. The Advanced Threat Protection (ATP) license includes IP Reputation, stream-based Malware Protection and proxy-based Antivirus(1). All other security features are included in the base feature set.

The Allied Telesis Autonomous Management Framework™ (AMF) and AWC licenses(1) enable automated management of wired and wireless network nodes, while the UTM Offload license1 supports increased WAN connection throughput.

(1) Only available on the AR4050S

Application-aware Firewall

The Allied Telesis UTM Firewalls have a Deep Packet Inspection (DPI) engine that provides real-time, Layer 7 classification of network traffic. Rather than being limited to filtering packets based on protocols and ports, the firewall can determine the application associated with the packet. This allows Enterprises to differentiate business-critical from non-critical applications, and enforce security and acceptable use policies in ways that make sense for the business.

Secure Remote Virtual Private Networks (VPN)

Allied Telesis UTM Firewalls support IPSec site-to-site VPN connectivity to connect one or more branch offices to a central office, providing employees company-wide with consistent access to the corporate network. Multipoint VPN enables a single VPN to connect the central office to multiple branch offices.

Remote workers can utilize an SSL VPN connection to encrypt their business data over the Internet, allowing them to utilize all their business resources when working from home, travelling, or otherwise away from the company premises.

Easy to manage

The firewalls run the advanced AlliedWare Plus™ fully featured operating system, with an industry-standard CLI. The Graphical User Interface (GUI) provides a dashboard for monitoring, showing traffic throughput, security status, and application use at a glance. Configuration of security zones, networks and hosts, and rules to limit and manage traffic, as well as management of advanced threat protection features, provide a consistent approach to policy management.

Device and network management

The Device GUI on the AR4050S enables graphical monitoring of key switch features to support easy management.

Integrated into the Device GUI, Vista Manager mini supports visibility and management of AMF wired and AWC wireless network devices, making it ideal as a one-stop solution for small to medium-sized networks.

AWC is an intelligent, easy to use Wireless LAN controller that automatically maintains optimal wireless coverage. Vista Manager mini includes AWC floor and heat maps showing wireless coverage, and also supports AWC Channel Blanket hybrid operation providing maximum performance and seamless roaming.

Firewall
  • Deep Packet Inspection (DPI) application aware firewall (built-in or Sandvine application lists) for granular control of apps and IM (chat, file transfer, video)
  • Application Layer Gateway (ALG) for FTP, SIP and H.323
  • Application layer proxies for SMTP and HTTP
  • Bandwidth limiting control for applications and IM/P2P
  • Firewall session limiting per user
  • Bridging between LAN and WAN interfaces
  • Data leakage prevention
  • offerirectional single-pass inspection engine
  • Maximum and guaranteed bandwidth control
  • Multi zone firewall with stateful inspection
  • Static NAT (port forwarding), double NAT and subnet-based NAT
  • Masquerading (outbound NAT)
  • Proxy-based web control by content categorisation (Digital Arts)
  • Custom web control categories, match criteria and keyword blocking per entity
  • Security for IPv6 traffic
  • ICSA corporate firewall certification (AR4050S mode / bridging mode / mixed mode
  • Static unicast and multicast routing for IPv4 and IPv6
  • DS-Lite, Lightweight 4over6, and MAP-E for connecting IPv4 networks over IPv6
  • Dynamic routing (RIP, OSPF and BGP) for IPv4 and IPv6
  • Flow-based Equal Cost Multi Path (ECMP) routing
  • Dynamic multicasting support by IGMP and PIM
  • Route maps and prefix redistribution (OSPF, BGP, RIP)
  • Virtual Routing and Forwarding (VRF-Lite)
  • Traffic control for bandwidth shaping and congestion avoidance
  • Policy-based routing
  • SD-WAN: performance measure and load balance WAN links
  • UTM Offload improves WAN throughput when using multiple security features together, or when higher performance is required
  • PPPoE client with PADT support
  • DHCP client, relay and server for IPv4 and IPv6
  • Dynamic DNS client
  • IPv4 and IPv6 dual stack
  • Device management over IPv6 networks with SNMPv6, Telnetv6 and SSHv6
  • Logging to IPv6 hosts with Syslog v6
  • Web redirection allows service providers to direct users to a specified web address
  • URL-offload enables cloud-based traffic (e.g. Office 365) to be sent directly to the Internet
  • LLDP and LLDP-MED for network Telesis Autonomous Management Framework (AMF) enables powerful centralized management and zero-touch device installation and recovery
  • AMF secure mode increases network security with management traffic encryption, authorization, and monitoring
  • Try AMF for free with the built-in AMF starter license (AR4050S only)
  • Web-based GUI for device configuration and easy monitoring, including a network map of wired and wireless devices
  • Industry-standard CLI with context-sensitive help
  • Role-based administration with multiple CLI security levels
  • Built-in text editor and powerful CLI scripting engine
  • Comprehensive SNMPv2c/v3 support for standards-based device management
  • Event-based triggers allow user-defined scripts to be executed upon selected system events
  • Comprehensive logging to local memory and syslog
  • Console management port on the front panel for ease of access
  • USB interface and SD/SDHC memory card socket allow software release files, configurations and other files to be stored for backup and distribution to other devices
Resiliency
  • High availability bypass ports
  • Policy-based storm protection
  • Spanning Tree (STP, RSTP, MSTP) with root guard
  • Virtual Router Redundancy Protocol (VRRPv2/v3)
  • VRRP triggers bypass port failover for v4 & v6 traffic
Diagnostic Tools
  • Active Fiber Monitoring detects tampering on optical links
  • Automatic link flap detection and port shutdown
  • Optical Digital Diagnostic Monitoring (DDM)
  • Ping polling for IPv4 and IPv6
  • Port mirroring
  • TraceRoute for IPv4 and authentication and accounting
  • TACACS+ Authentication, Accounting and Authorization (AAA)
  • Local or server-based RADIUS user database
  • RADIUS group selection per VLAN or port
  • Strong password security and encryption
  • MAC and 802.1x Port authentication on switch ports
Unified Threat Management (UTM)
  • Proxy-based anti-virus scanning (AR4050S only)
  • No file size limitations
  • Auto-update of UTM signature files
  • Bot activity detection (using Kaspersky malware protection)
  • Intrusion Detection and Prevention System (IDS/IPS) (no license required)
  • DoS and DDoS attack detection and protection
  • IP reputation (Emerging Threats)
  • Stream-based Malware protection (Kaspersky) from over 20,000 attacks
  • Dynamic URL filtering (Kaspersky)
  • URL blacklists and whitelists (block or allow HTTP and HTTPS access to specific Websites)
  • Protocol anomaly detection and protection
  • Zone-based UTM
VPN Tunneling
  • Diffie-Hellman key exchange (D-H groups 5, 14, 16)
  • Secure encryption algorithms: AES and 3DES
  • Secure authentication: SHA-1 and SHA-256
  • IKEv1 and IKEv2 key management
  • IPsec Dead Peer Detection (DPD)
  • IPsec NAT traversal
  • IPsec VPN for site-to-site connectivity
  • Multipoint VPN for connecting a single VPN to multiple end points
  • Dynamic routing through VPN tunnels (RIP, OSPF, BGP)
  • Redundant VPN gateway
  • SSL/TLS VPN for secure remote access using OpenVPN
  • IPv6 tunneling
Wireless Controller AWC
  • Allied Telesis AWC is an intelligent WLAN controller that automatically maintains optimal wireless coverage
  • Up to five access points (APs) can be managed for free, with an additional 20 available via a separate software license (AR4050S only)
  • Auto-setup simplifies wireless network deployment
  • Rogue AP detection for increased WLAN security
  • WEP/WPA personal or WPA enterprise, pre-shared key (WEP/WPA personal), RADIUS server (WPA enterprise)
  • Wireless networks can have separate SSIDs, VLANs, security settings, etc.
  • APs can belong to multiple networks each with different wireless settings, and can broadcast multiple SSIDs (Virtual AP)
  • APs can be defined individually or in bulk using a common profile.
  • AP radio settings can be configured automatically (default) or manually
  • AP functions such as updating firmware, executing AWC calculations and applying calculation results can be run automatically based on a user-defined schedule
  • AWC supports Allied Telesis TQ and MWS Series wireless access points
AR3050S
Processor and memorySecurity processor800MHz dual-core
Memory (RAM)1GB
Memory (Flash)4GB
Security featuresFirewallStateful deep packet inspection application aware multi-zone firewallApplication proxiesFTP, TFTP, SIPThreat protectionDoS attacks, fragmented & malformed packets, blended threats & moreSecurity subscriptionsNext-Gen Firewall, Advanced Threat ProtectionTunneling & encryptionSite-to-site VPN tunnels (IPsec)50
Client-to-site VPN tunnels (OpenVPN)100
Encrypted VPNIPsec, SHA-1, SHA-256, SHA-512, IKEv2, SSL/TLS VPNEncryption3DES, AES-128, AES-192, AES-256Key exchangeDiffie-Hellman groups 5, 14, 16Dynamic routed VPNRIP, OSPF, BGP, RIPng, OSPFv3, BGP4+Point to pointStatic PPP, L2TPv2 virtual tunnels, L2TPv3 Ethernet pseudo-wiresEncapsulationGRE for IPv4 and IPv6Management & authenticationLogging & notificationsSyslog & Syslog v6, SNMPv2 & v3User interfacesWeb-based GUI, scriptable industry-standard CLISecure managementSSHv1/v2, strong passwordsManagement toolsAllied Telesis Autonomous Management FrameworkTM (AMF)
Autonomous Wave Control for wireless LAN APs (AWC)
Vista Manager EXUser authenticationRADIUS, TACACS+, internal user database, web authentication, MAC authentication, 802.1x port authenticationCommand authorizationTACACS+ AAA (Authentication, Accounting and Authorization)NetworkingRouting (IPv4)Static, Dynamic (BGP4, OSPF, RIPv1/v2), source-based routing, policy-based routing, VRF-Lite, SD-WANRouting (IPv6)Static, Dynamic (BGP4+, OSPFv3, RIPng), policy-based routing, SD-WANMulticastingIGMPv1/v2/v3, PIM-SM, PIM-DM, PIM-SSM, PIMv6ResiliencySTP, RSTP, MSTPHigh availabilityVRRP, VRRPv3, hardware controlled bypass portsTraffic control8 priority queues, DiffServ, HTB scheduling, RED curvesIP address managementStatic v4/v6, DHCP v4/v6 (server, relay, client), PPPoENATtatic, IPsec traversal, Dynamic NAPT, Double NAT, subnet-based NATLink aggregation802.3ad static and dynamic (LACP)VLANs802.1Q taggingDiscoveryLLDP, LLDP-MEDReliability featuresModular AlliedWare Plus operating system
Full environmental monitoring of PSU, fan, temperature and internal voltages
SNMP traps alert network managers in case of any failure
Variable fan speed controlHardware characteristicsInput power90 to 260V AC (auto-ranging), 47 to 63HzMax power consumption23W
LAN ports8 x 10/100/1000T RJ-45WAN ports2 x 1000X SFP / 2 x 10/100/1000T RJ-45 comboHigh Availability bypass ports2 x 10/100/1000T RJ-45Other ports1 x USB, 1 x RJ-45 console, 1 x SDHC slotProduct dimensions (H x W x D)42.5 mm (1.67 in) x 210 mm (8.26 in) x 220 mm (8.66 in)Packaged dimensions (H x W x D)36.5 cm (14.37 in) x 26 cm (10.24 in) x 11.5 cm (4.53 in)Product weight1.7 kg unpackaged, 2.6 kg packagedTypical / Max noise28.4 dBA / 35.1 dBAEnvironmental specificationsOperating temperature range0°C to 50°C (32°F to 122°F). Derated by 1°C per 305 meters (1,000 ft)Storage temperature range-20°C to 60°C (-4°F to 140°F)Operating relative humidity range5% to 80% non-condensingStorage relative humidity range5% to 95% non-condensingOperating altitude2,000 meters maximum (6,600 ft)Regulations and compliancesEMCEN55022 class A, FCC class A, VCCI class AImmunityEN55024, EN61000-3-levels 2 (Harmonics), and 3 (Flicker)Safety StandardsUL60950-1, CAN/CSA-C22.2 No. 60950-1-03, EN60950-1, EN60825-1, AS/NZS 60950.1Safety CertificationsUL, cUL, TuVReduction of Hazardous Substances (RoHS)EU RoHS6 compliant, China RoHS compliantIPv6 ReadyPhase 2 (Gold) Logo
Buy Now

Other Related Items:



Related Items:

Allied Telesis AT-SP10LR Compatible 10GBASE-LR SFP+ 1310nm 10km DOM -AT0938 picture

Allied Telesis AT-SP10LR Compatible 10GBASE-LR SFP+ 1310nm 10km DOM -AT0938

$45.00



NOS Allied Telesis CentreCOM X10 AT-MX10 Microtransceiver IEEE 802.3 10 READ picture

NOS Allied Telesis CentreCOM X10 AT-MX10 Microtransceiver IEEE 802.3 10 READ

$33.99



USED CentreCOM AT-210T Transceiver Allied Telesis UNTESTED picture

USED CentreCOM AT-210T Transceiver Allied Telesis UNTESTED

$22.99




VSS, LLC.

P.O. Box 827051

Pembroke Pines, FL 33082-7051

Vulnerability Scanning Solutions, LLC.