Interfaces
- 4x10/100/1000BASE-T (LAN/WAN)
- 2x10/100/1000BASE-X SFP (LAN/WAN)
- 1xConsole (RJ-45)
- 2xUSB 2.0
Performance
- Firewall/NAT/routing (1518B frames) - 1.24 Gbps, 102.4k pps
- Firewall/NAT/routing (70B frames) - 74 Mbps, 125.1k pps
- Firewall/NAT/routing (IMIX) - 620 Mbps, 112.8 kpps
- L2 switching (1518B frames) - 1.24 Gbps, 102.4k pps
-
IPsec VPN (1456B frames) - 260 Mbps, 22.4k pps
- IPsec (IMIX) - 136.4 Mbps, 25.6k pps
-
IPS/IDS 10k rules - 36 Mbps, 8.66 kpps
System features
- VPN tunnels - 10
-
Static routes - 1k
-
Concurrent sessions - 4k
-
VLAN support - up to 4k VLANs in accordance with 802.1Q
-
BGP routes - 1M
- BGP neighbours - 1k
-
OSPF routes - 30k
-
RIP routes - 1k
- ISIS routers - 30k
-
MAC address table - 2k entries per bridge
-
FIB size - 800k
-
VRF Lite - 32
Plug-in interfaces
- USB 3G/4G/LTE modem
- E1 TopGate SFP
- DialUp modem (only ESR-21)
Remote Access VPN clients
- PPTP/PPPoE/L2TP/OpenVPN/IPsec XAUTH
Remote Access VPN server
- L2TP/PPTP/OpenVPN/IPsec XAUTH
Site-to-site VPN
- IPsec: «policy-based» and «route-based» modes
- DMVPN
- DES, 3DES, AES, Blowfish, Camellia
- IKE MD5, SHA-1, SHA-2 message authentication
Tunneling
- IPoGRE, EoGRE
- IPIP
- L2TPv3
- LT (inter VRF-lite routing)
L2 functions
- Packet switching (bridging)
- LAG/LACP (802.3ad)
- VLAN (802.1Q)
- Logical interfaces
- LLDP, LLDP MED
- MAC-based VLAN
L3 functions (IPv4/IPv6)
- NAT, Static NAT, ALG
- Static routes
- RIPv2, OSPFv2/v3, IS-IS, BGP dynamic protocols
- Route filtering (prefix list)
- VRF
- Policy Based Routing (PBR)
- BFD for BGP, OSPF, static routes
BRAS (IPoE)1
- Subscriber termination
- White/black URL lists
- Quotas for traffic volume, session time, network applications
- HTTP/HTTPS Proxy
- HTTP/HTTPS Redirect
- Session accounting via Netflow protocol
- Interaction with ААА, PCRF serveres
- Bandwidth management by offices, SSID and user sessions
- User authentication by MAC or IP address
Network security functions
- Intrusion Detection/Prevention system (IPS/IDS)1
- Interaction with Eltex Distribution Manager for obtaining licensable content — rule sets distributed by Kaspersky SafeStream II2
- Web filtering by URL, by content (cookies, ActiveX, JavaScript)
- Zone-based Firewall
- Firewall based on L2/L3/L4 fields and applications
- Support for access control lists (ACL) based on L2/L3/L4 fields
- Protection against DoS/DDoS attacks and notification on them
- Logging of attack and rule triggering events
Quality of Service (QoS)
- Up to 8 priority queues per port
- L2 and L3 traffic prioritization (802.1p (CoS), DSCP, IP Precedence (ToS))
- RED, GRED congestion avoidance algorithms
- Priority re-marking mechanisms
- Policy-map
- Bandwidth management (shaping)
- Hierarchical QоS
- Session labeling
IP addressing management (IPv4/IPv6)
- Static IP addresses
- DHCP client
- DHCP Relay Option 82
- Embedded DHCP, 43, 60, 61, 150 options support
- DNS resolver
- IP unnumbered
Network reliability assurance means
- VRRP v2,v3
- Tracking based on VRRP or SLA test
- VRRP parameters management
- PBR parameter management
- Interface administration status management
- Static route enabling and disabling
- AS-PATH and preference attribute management in route-map
- WAN interfaces load balancing, data stream redirection, channel switching during QoS control
- Firewall sessions backup
Management and monitoring
- Support for standard and extended SNMP MIB, RMONv1
- Embedded Zabbix agent
- Authentication methods: local, RADIUS, TACACS+, LDAP
- Protection against configuration errors
- Automatic configuration recovery), ability to restore the default factory configuration
- CLI
- Syslog
- System resource usage monitoring
- Ping, traceroute (IPv4/IPv6), packet information in the console output
- Firmware upgrade, configuration upload and download via TFTP, SCP, FTP, SFTP, HTTP(S)
- Support for NTP
- Netflow v5/v9/v10 (exporting of URL statistics for HTTP, host for HTTPS)
- Local control via RS-232 console port (RJ-45)
- Remote control via Telnet, SSH (IPv4/IPv6)
- Displaying information on services/processes
- Local/remote router configuration storage
SLA control functions
- Eltex SLA
Channel parameters evaluation:
- Delay (one-way/two-way)
- Jitter (one-way/two-way)
- Packet loss (one-way/two-way)
- Packet Error Rate
- Out-of-order delivery
Physical specifications and ambient parameters
- Maximum power consumption - 18 W
-
Power supply:
- 230 V AC (via 12 V, 2 A power adapter)
-
Operating temperature - from 0 to +40 °С
-
Storage temperature - from -40 to +70 °С
-
Operating humidity - no more than 80%
-
Storage humidity - from 10% to 95%
-
Dimensions (mm) - 230х32х133
-
Weight - 0.325 kg
- Service life - at least 15 years
Functionality for firmware version 1.8.1
1Activated by the license
Show all
Hide
Operational lifetime of the ELTEX equipment
Mass production is over
4
Regardless of the operational lifetime stage, Eltex provides a 12 months warranty on all its telecommunication equipment.
During the warranty period the manufacturer ensures technical support and free-of-charge repair at the Enterprise which is situated in Novosibirsk.
As part of the warranty service, technical support is provided on the first-in first-out principle.
The priority support packages of 8/5 and 27/7 types are subjects to additional charges.