Spec Sheet

End-to-end layered security
WS 2000 supports a comprehensive suite of security mechanisms—
including access-control, IPSec VPN (site-to-site), 802.1X based
authentication, and strong encryption. In addition, the WS
2000 also integrates a Stateful Packet Inspection Firewall for
protection against various types of Denial-of-Service attacks and
filtering network traffic within the Local Area Network (LAN)
and between the LAN and the Wide Area Network (WAN).
The result is a layered security model that delivers robust end-
to-end security. The WS 2000 supports the best-in-class
wireless security standards of today (including 802.11i), and is
easily upgradeable to tomorrow’s standards.
Centralized management
The WS 2000 simplifies day-to-day operations with unified
management of hardware, software configuration, and network
policies. Centralized management also enables the automatic
distribution of configurations to all Access Ports—eliminating
the need and the associated costs to configure and manage each
access point. The WS 2000 also simplifies wireless network
deployment across multiple locations (for example, multiple
retail stores, restaurants or branch offices), delivering network
design consistency and simplicity, as well as the ability to
centrally manage from a regional Network Operations Center
(NOC) or a data center.
Scalable and easy to upgrade
The WS 2000 Wireless Switch System is designed to grow and
adapt to changing network and organizational needs. Adding
capacity and new functionality is easier and less expensive than
an access point-based wireless LAN. Each WS 2000 supports up
to six Access Ports and four wireless LANs, each with its own
security and network policies. The plug-and-play Access Ports
are ready to install right out of the box. Just attach directly to
the WS 2000 or to your layer 2 LAN with Power-over-Ethernet
and the network is immediately operational—LAN network
integration is transparent. And upgrading to support newer
standards in the future is fast and easy.
Lower total cost of ownership—outstanding
investment protection
The WS 2000 removes the overhead and complexity of first-
generation access point-based wireless LANs, delivering a
wireless network that is less expensive to implement and
manage. The extensive functionality, expandability, and
centralized management eliminate the time and management
costs associated with access point-based solutions, providing a
lower total cost of ownership. And the flexibility to support the
standards of today and tomorrow, as well as the legacy wireless
networks of yesterday, protects this valuable investment.
3
10
4 Power-over-Ethernet
LAN Ports
Console Port Storage for mobile
applications
2 Fast Ethernet Ports
The WS 2000 offers integrated
functionality including PoE and
a CF Card Slot for additional
application support.
Flexible mounting options:
The WS 2000 can be mounted
on the desk, wall or rack.
The standard 1RU form factor
enables easy mounting in
any standard network rack
for co-location with other
network equipment.
WAN (Uplink) Port
Features Benefits
Switch-based architecture Delivers unparalleled functionality, performance, simplicity of implementation and management
via centralized intelligence; lowers overall cost of ownership; provides investment protection.
802.11a+bg and dual mode support Works with Symbol’s next-generation thin Access Ports (AP 100/802.11b and AP 300/Dual mode
802.11a+bg), delivering more functionality at much lower costs; centralized management for all
Access Ports includes automatic distribution of the latest firmware, eliminating the need to configure,
load and manage first-generation access points.
Scalability Supports up to six Access Ports (802.11b or dual mode 802.11a+bg); offers the broadest and most
flexible radio technology support in the industry; ability to accommodate new coverage, radio types,
channels and spectrum; ensures maximum flexibility in wireless network design; enables fast, easy and
cost-effective expansion to meet growing company needs; delivers outstanding investment protection
by eliminating costly rip-and-replace upgrades often required to implement new standards.
Power-over-Ethernet (PoE) Simplifies and reduces total cost of installation; integrated 802.3af compliant Power-over-Ethernet
(PoE) on 4 of the 6 LAN ports enables Access Ports (or any device supporting PoE such as a VoIP phone)
to be directly connected to the WS 2000 without installing costly power lines and outlets.
Wired networking services Eliminates need for additional equipment (i.e. Hubs or Switches) through integrated wired networking
services including Switching and Routing (RIP v1, v2); supports up to 4 subnets (independent broadcast
domains) with configurable access rules between subnets and between subnets and WAN.
Integrated gateway Provides a self contained, one box network solution for SMBs and branch offices with NAT (1-1, 1-Many,
Port Forwarding), DHCP (on all 4 subnets), Stateful Inspection Firewall, Support for WAN Protocol (PPPoE);
eliminates need for separate DHCP server and NAT router/appliance – saving additional costs; offers
better network protection at the edge by preventing various types of Denial of Service (DoS) attacks
through the Stateful Inspection Firewall.
Mobility-centric Wireless LAN Provides core mobility features for reduced operational expenses; features such as Virtual APs, Power
features Save Polling Protocol, Load Balancing and Preemptive Roaming, Voice Prioritization, Automatic
Channel Selection, and Transmit Power Control deliver tremendous cost benefits and productivity
enhancements, including increased performance of mobile devices attached to the network
(throughput, bandwidth management, minimized interference, increased battery life), better network
security and easier deployment.
Enterprise class security Provides the flexibility to select from a complete security suite of authentication and encryption
mechanisms for a highly secure wireless network environment; switch architecture provides an easy
upgrade path to integrate future security standards providing additional investment protection;
authentication and Encryption on a per WLAN basis includes 802.1X/EAP, Kerberos, WPA-TKIP, WPA2
(802.11i) and KeyGuard™-MCM; AES-CCMP is available as an encryption option on a per WLAN basis;
as part of 802.11i implementation, WS 2000 supports various mechanisms to enable fast roaming and
handoff including: PMK (“Pairwise Master Key”) Caching, Pre-Authentication, “Opportunistic PMK Caching”.
IPSec VPN (for site-to-site security) Low cost, secure, site-to-site communication through a secure tunnel between a WS 2000 installed in a
branch office and a VPN Gateway at the Corporate office (or another WS 2000); precludes the need for
installing costly, standalone VPN appliances; supports up to 25 simultaneous tunnels and provides industry
standard encryption and authentication mechanisms including 3DES and Public Key Infrastructure (PKI).
Ease of configuration and Reduces deployment and maintenance costs; provides multiple management interfaces for configuration;
management mechanisms for fast, easy configuration replication across distributed locations; remote access to update
and monitoring capabilities for system administrators and broad SNMP capabilities.
Enhanced RF statistics More robust statistics improve the visibility, management and monitoring of the wireless system—
including per Mobile Unit, Wireless LAN and individual Switch; statistics are available through the
management console and SNMP, including Packets per second, Data Packets and bytes per second,
Mgmt packets and bytes per second (both receive and transmit),% Retries and Retries per second,
System packets per second and total Wired LAN packet per second.
Storage of mobile application Allows for easier device software management at the local site; software update packages can be stored
(software management of on a CF memory card which can be inserted into the WS 2000. mobile devices equipped with AirBeam
mobile clients) Smart clients can then easily and automatically download the updates—from applications to Operating
Systems—when the WS 2000 is booted.