- Flexible service configuration
- Interfacing with the equipment of leading manufacturers
- Firewall and router functionality
ESR router family is a universal hardware platform capable of performing a wide range of tasks related to network security, data encryption, user termination, etc.
The product line includes models that can be used in networks of various sizes — from small enterprise networks to carrier networks and data centers.
SERVICE GATEWAY ESR-3100
₹0.00Price
Out of Stock
- Packet processor - Marvell-Cavium CN9670
- Min. feature size - 14 nm
- CPU cores - 24 (ThunderX2) (single-thread)
- CPU frequency - 2000 MHz
- CPU architecture - AArch64 (ARMv8.2)
- RAM - 16, 32 or 48 GB, DDR4, 3 removable DIMM modules
- ROM - SPI NOR Flash (16MB), eMMC (8 GB)
Interfaces
- 1000BASE-X/10GBASE-R/25GBASE-R (LAN/WAN) - 12
- Console (RJ-45) - 1
- USB 3.0 - 1
- SD port - 1
System features
- VPN tunnels - 500
- Static routes - 11k
- Concurrent sessions - 512k
- VLAN support - up to 4k active VLANs in accordance with 802.1Q
- BGP routes - 5M
- OSPF routes - 500k
- RIP routes - 10k
- MAC table -16k
- FIB size - 3M
- VRF Lite - 32
Plug-in interfaces
- USB 3G/4G/LTE modem
- E1 TopGate SFP
Remote Access VPN clients
- PPTP/PPPoE/L2TP/OpenVPN/IPsec XAUTH
Remote Access VPN server
- L2TP/PPTP/OpenVPN/IPsec XAUTH
Site-to-site VPN
- IPsec: «policy-based» and «route-based» modes
- DMVPN
- DES, 3DES, AES, Blowfish, Camellia encryption algorithms
- IKE MD5, SHA-1, SHA-2 message authentication
Tunneling
- IPoGRE, EoGRE
- IPIP
- L2TPv3
- LT (inter VRF-lite routing)
L2 functions
- Packet switching (bridging)
- LAG/LACP (802.3ad)
- VLAN support (802.1Q)
- Port Isolation
- Private VLAN Edge (PVE)
- Logical interfaces
- LLDP, LLDP MED
- MAC-based VLAN
L3 functions (IPv4/IPv6)
- NAT, Static NAT, ALG
- Static routes
- RIPv2, OSPFv2/v3, IS-IS, BGP dynamic routing protocols
- Route filtering (prefix list)
- VRF Lite
- Policy Based Routing (PBR)
- BFD for BGP, OSPF, static routes
BRAS (IPoE)1
- User termination
- White/black URL lists
- Quotas for traffic volume, session time, network applications
- HTTP/HTTPS Proxy
- HTTP/HTTPS Redirect
- Session accounting via Netflow protocol
- Interaction with ААА, PCRF servers
- Bandwidth management by offices, SSIDs and user sessions
- User authentication by MAC or IP address
Network security functions
- IPS/IDS1
- Web filtering by URL, by content (cookies, ActiveX, JavaScript)1
- Zone-based Firewall
- Firewall filtering based on L2/L3/L4 fields and applications
- Support for access control lists based on L2/L3/L4 fields
- Protection against DoS/DDoS attacks and notification on them
- Logging of attack and rule triggering events
IP addressing management (IPv4/IPv6)
- Static IP addresses
- DHCP client
- DHCP Relay Option 82
- Embedded DHCP server, options 43, 60, 61, 150 support
- DNS resolver
- IP unnumbered
Qality of Service (QoS)
- Up to 8 priority or weighted queues per port
- L2 and L3 traffic prioritization (802.1p (cos), DSCP, IP Precedence (tos))
- RED, GRED congestion avoidance algorithms
- Precedence re-marking mechanisms
- Applying policies (policy-map)
- Bandwidth management (shaping)
- Hierarchical QоS
- Session marking
Network reliability assurance means
- VRRP v2,v3
- Route tracking based on VRRP state
- WAN interfaces load balancing, data stream redirection, channel switching during QoS control
- Firewall sessions redundancy
Management and monitoring
- Support for standard and extended SNMP MIB, RMONv1
- Embedded Zabbix agent/proxy
- User authentication through a local database via RADIUS, TACACS+, LDAP
- Protection against configuration errors, automatic configuration recovery. Possibility to reset configuration to factory settings
- CLI
- Syslog support
- System resource utilization monitoring
- Ping, traceroute (IPv4/IPv6), displaying information on packets in the console
- Firmware update, configuration upload and download via TFTP, SCP, FTP, SFTP, HTTP(S)
- NTP support
- Netflow v5/v9/v10 (exporting of URL statistics for HTTP, host for HTTPS)
- Local control via RS-232 (RJ-45)
- Remote control via Telnet, SSH (IPv4/IPv6)
- Displaying information on services/processes
- Local/remote router configuration storage
SLA control functions
- Eltex SLA
- Channel parameters evaluation:
- Delay (one-way/two-way)
- Jitter (one-way/two-way)
- Packet loss (one-way/two-way)
- Packet Error Rate
- Out-of-order delivery
- Wellink SLA (wiSLA)1
MPLS
- Support for LDP
- Support for L2VPN VPWS
- Support for L2VPN VPLS Martini Mode
- Support for L3VPN MP-BGP
Physical specifications and ambient parameters
- Power supply - 100–240 V, 50–60 Hz; 36–72 V DC (up to two hot-swappable power units)
- Maximum power consumption - 160 W
- Operating temperature - from -10 to +45 °С
- Storage temperature - from -40 to +70 °С
- Operating humidity - 80% max.
- Storage humidity - from 10% to 95%
- Dimensions (W x D x H, mm) - 430 х 44 x 330
- Average service life - at least 15 years