Installation guide

Security
Monitoring and blocking of login attempts and port scansIntrusion Prevention
Source IP address check on all interfaces: only IP addresses belonging to the defined IP networks are allowedIP spoofing
Filtering of IP or MAC addresses and preset protocols for configuration accessAccess control lists
Protection from fragmentation errors and SYN floodingDenial of Service protection
Detailed settings for handling reassembly, PING, stealth mode and AUTH portGeneral
Filtering of unwanted URLs based on DNS hitlists and wildcard filtersURL blocker
Password-protected configuration access can be set for each interfacePassword protection
Alerts via e-mail, SNMP-Traps and SYSLOGAlerts
EAP-TLS, EAP-TTLS, PEAP, MS-CHAP, MS-CHAPv2 as EAP authentication mechanisms, PAP, CHAP, MS-CHAP and MS-CHAPv2 as PPP authentication
mechanisms
Authentication mechanisms
Limitation of the allowed transfer protocols, source and target addresses on the WLAN interfaceWLAN protocol filters
Fixed redirection of any packet received over the WLAN interface to a dedicated target addressIP redirect
High availability / redundancy
VRRP (Virtual Router Redundancy Protocol) for backup in case of failure of a device or remote station. Enables passive standby groups or reciprocal
backup between multiple active devices including load balancing and user definable backup priorities
VRRP
For completely safe software upgrades thanks to two stored firmware versions, incl. test mode for firmware updatesFirmSafe
Line monitoring with LCP echo monitoring, dead-peer detection and up to 4 addresses for end-to-end monitoring with ICMP pollingLine monitoring
Routing functions
IP and NetBIOS/IP multi-protocol routerRouter
Separate processing of 16 contexts due to virtualization of the routers. Mapping to VLANs and complete independent management and configuration
of IP networks in the device, i.e. individual settings for DHCP, DNS, Firewalling, QoS, VLAN, Routing etc. Automatic learning of routing tags for
ARF contexts from the routing table
Advanced Routing and Forwarding
HTTP and HTTPS server for configuration by web interfaceHTTP
DNS client, DNS server, DNS relay, DNS proxy and dynamic DNS clientDNS
DHCP client, DHCP relay and DHCP server with autodetection. Cluster of several LANCOM DHCP servers per context (ARF network) enables caching
of all DNS assignments at each router. DHCP forwarding to multiple (redundant) DHCP servers
DHCP
NetBIOS/IP proxyNetBIOS
NTP client and SNTP server, automatic adjustment for daylight-saving timeNTP
Policy-based routing based on routing tags. Based on firewall rules, certain data types are marked for specific routing, e.g. to particular remote
sites or lines
Policy-based routing
Dynamic routing with RIPv2. Learning and propagating routes; separate settings for LAN and WAN. Extended RIPv2 including HopCount, Poisoned
Reverse, Triggered Update for LAN (acc. to RFC 2453) and WAN (acc. to RFC 2091) as well as filter options for propagation of routes. Definition
of RIP sources with wildcards
Dynamic routing
Layer 2 functions
Packets sent in response to LCOS service requests (e.g. for Telnet, SSH, SNTP, SMTP, HTTP(S), SNMP, etc.) via Ethernet can be routed directly to the
requesting station (default) or to a target determined by ARP lookup
ARP lookup
LAN protocols
ARP, proxy ARP, BOOTP, DHCP, DNS, HTTP, HTTPS, IP, ICMP, NTP/SNTP, NetBIOS, PPPoE (server), RADIUS, RIP-1, RIP-2, RTP, SIP, SNMP, TCP, TFTP,
UDP, VRRP, VLAN
IP
802.1d Spanning Tree and 802.1w Rapid Spanning Tree support for dynamic path selection with redundant layer 2 connectionsRapid Spanning Tree
WAN protocols
PPPoE, Multi-PPPoE, ML-PPP, PPTP (PAC or PNS) and IPoE (with or without DHCP), RIP-1, RIP-2, VLAN, IPEthernet
ADSL1, ADSL2 or ADSL2+ with external ADSL2+ modemxDSL (ext. modem)
Interfaces
1 Gigabit Ethernet Port, 10/100/1000 Mbit/s, High Power PoE (56V) with supplied PoE Injector onlyEthernet port
LANCOM OAP-382
Features as of: LCOS 8.80