Ru En
Designer and manufacturer of communication equipment
Russia (GMT +7)

Service gateway ESR-3100

Pre-production
  • Flexible service configuration
  • Interfacing with the equipment of leading manufacturers
  • Firewall and router functionality
ESR router family is a universal hardware platform capable of performing a wide range of tasks related to network security, data encryption, user termination, etc.

The product line includes models that can be used in networks of various sizes — from small enterprise networks to carrier networks and data centers.
Specifications
Documents and files
Warranty
  • Min. feature size - 14 nm
  • CPU cores - 24 (ThunderX2) (single-thread)
  • CPU frequency - 2000 MHz
  • CPU architecture - AArch64 (ARMv8.2)
  • RAM - 16, 32 or 48 GB, DDR4, 3 removable DIMM modules
  • ROM - SPI NOR Flash (16MB), eMMC (8 GB)
Interfaces
  • 1000BASE-X/10GBASE-R/25GBASE-R (LAN/WAN) - 12
  • Console (RJ-45) - 1
  • USB 3.0 - 1
  • SD port - 1
System features
  • VPN tunnels - 500
  • Static routes - 11k
  • Concurrent sessions - 512k
  • VLAN support - up to 4k active VLANs in accordance with 802.1Q
  • BGP routes - 5M
  • OSPF routes - 500k
  • RIP routes - 10k
  • MAC table -16k
  • FIB size - 3M
  • VRF Lite - 32
Plug-in interfaces
  • USB 3G/4G/LTE modem
  • E1 TopGate SFP
Remote Access VPN clients
  • PPTP/PPPoE/L2TP/OpenVPN/IPsec XAUTH
Remote Access VPN server
  • L2TP/PPTP/OpenVPN/IPsec XAUTH
Site-to-site VPN
  • IPsec: «policy-based» and «route-based» modes
  • DMVPN
  • DES, 3DES, AES, Blowfish, Camellia encryption algorithms
  • IKE MD5, SHA-1, SHA-2 message authentication
Tunneling
  • IPoGRE, EoGRE
  • IPIP
  • L2TPv3
  • LT (inter VRF-lite routing)
L2 functions
  • Packet switching (bridging)
  • LAG/LACP (802.3ad)
  • VLAN support (802.1Q)
  • Port Isolation
  • Private VLAN Edge (PVE)
  • Logical interfaces
  • LLDP, LLDP MED
  • MAC-based VLAN
L3 functions (IPv4/IPv6)
  • NAT, Static NAT, ALG
  • Static routes
  • RIPv2, OSPFv2/v3, IS-IS, BGP dynamic routing protocols
  • Route filtering (prefix list)
  • VRF Lite
  • Policy Based Routing (PBR)
  • BFD for BGP, OSPF, static routes
BRAS (IPoE)1
  • User termination
  • White/black URL lists
  • Quotas for traffic volume, session time, network applications
  • HTTP/HTTPS Proxy
  • HTTP/HTTPS Redirect
  • Session accounting via Netflow protocol
  • Interaction with ААА, PCRF servers
  • Bandwidth management by offices, SSIDs and user sessions
  • User authentication by MAC or IP address
Network security functions
  • IPS/IDS1
  • Web filtering by URL, by content (cookies, ActiveX, JavaScript)1
  • Zone-based Firewall
  • Firewall filtering based on L2/L3/L4 fields and applications
  • Support for access control lists based on L2/L3/L4 fields
  • Protection against DoS/DDoS attacks and notification on them
  • Logging of attack and rule triggering events
IP addressing management (IPv4/IPv6)
  • Static IP addresses
  • DHCP client
  • DHCP Relay Option 82
  • Embedded DHCP server, options 43, 60, 61, 150 support
  • DNS resolver
  • IP unnumbered
Qality of Service (QoS)
  • Up to 8 priority or weighted queues per port
  • L2 and L3 traffic prioritization (802.1p (cos), DSCP, IP Precedence (tos))
  • RED, GRED congestion avoidance algorithms
  • Precedence re-marking mechanisms
  • Applying policies (policy-map)
  • Bandwidth management (shaping)
  • Hierarchical QоS
  • Session marking
Network reliability assurance means
  • VRRP v2,v3
  • Route tracking based on VRRP state
  • WAN interfaces load balancing, data stream redirection, channel switching during QoS control
  • Firewall sessions redundancy
Management and monitoring
  • Support for standard and extended SNMP MIB, RMONv1
  • Embedded Zabbix agent/proxy
  • User authentication through a local database via RADIUS, TACACS+, LDAP
  • Protection against configuration errors, automatic configuration recovery. Possibility to reset configuration to factory settings
  • CLI
  • Syslog support
  • System resource utilization monitoring
  • Ping, traceroute (IPv4/IPv6), displaying information on packets in the console
  • Firmware update, configuration upload and download via TFTP, SCP, FTP, SFTP, HTTP(S)
  • NTP support
  • Netflow v5/v9/v10 (exporting of URL statistics for HTTP, host for HTTPS)
  • Local control via RS-232 (RJ-45)
  • Remote control via Telnet, SSH (IPv4/IPv6)
  • Displaying information on services/processes
  • Local/remote router configuration storage
SLA control functions
  • Eltex SLA
  • Channel parameters evaluation:
    • Delay (one-way/two-way)
    • Jitter (one-way/two-way)
    • Packet loss (one-way/two-way)
    • Packet Error Rate
    • Out-of-order delivery
  • Wellink SLA (wiSLA)1
MPLS
  • Support for LDP
  • Support for L2VPN VPWS
  • Support for L2VPN VPLS Martini Mode
  • Support for L3VPN MP-BGP
Physical specifications and ambient parameters
  • Power supply - 100–240 V, 50–60 Hz; 36–72 V DC (up to two hot-swappable power units)
  • Maximum power consumption - 160 W
  • Operating temperature - from -10 to +45 °С
  • Storage temperature - from -40 to +70 °С
  • Operating humidity - 80% max.
  • Storage humidity - from 10% to 95%
  • Dimensions (W x D x H, mm) - 430 х 44 x 330
  • Average service life - at least 15 years


¹ Activated by the license
Operational lifetime of the ELTEX equipment
In development
1
Pre-production
2
Mass production
3
Mass production is over
4
Sold out
5
Support is over
6
Regardless of the operational lifetime stage, Eltex provides a 12 months warranty on all its telecommunication equipment.
During the warranty period the manufacturer ensures technical support and free-of-charge repair at the Enterprise which is situated in Novosibirsk.
As part of the warranty service, technical support is provided on the first-in first-out principle.
The priority support packages of 8/5 and 27/7 types are subjects to additional charges.