
bintec RS353j
09.12.2014
Subject to technical alterations
Page 8 / 11
bintec elmeg GmbH - Suedwestpark 94 - 90449 Nuremberg - Germany
Phone: +49 - 911 9673-0 - Telefax: +49 - 911 688 07 25
Security
Stateful Inspection Firewall Packet filtering depending on the direction with controling and interpretation of each single
connection status
Packet Filter Filtering of IP packets according to different criteria like IP protocols, source/destination IP address,
source/destination port, TOS/DSCP, layer 2 priority for each interface variable configurable
Logging / Monitoring / Reporting
Internal system logging Syslog storage in RAM, display via web-based configuration user interface (http/https), filter for
subsystem, level, message
External system logging Syslog, several syslog server with different syslog level configurable
E-Mail alert Automatic E-Mail alert by definable events
SNMP traps SNMP traps (v1, v2, v3) configurable
Activity Monitor Sending of information to a PC on which Brickware is installed
IPSec monitoring Display of IPSec tunnel and IPSec statistic; output via web-based configuration user interface
(http/https)
Interfaces monitoring Statistic information of all pysical and logical interfaces (ETH0, ETH1, SSIDx, ...), output via
web-based configuration user interface (http/https)
ISDN monitoring Display of active and past ISDN connections; output via web-based configuration user interface
(http/https)
IP accounting Detailed IP accounting, source, destination, port, interface and packet/bytes counter, transmission
also via syslog protocol to syslog server
ISDN accounting Detailed ongoing recording of ISDN connection parameter like calling number and charging
information, transmission also via syslog protocol to syslog server
RADIUS accounting RADIUS accounting for PPP, PPTP, PPPoE and ISDN dialup connections
Keep Alive Monitoring Control of hosts/connections via ICMP polling
Tracing Traces can be stored in PCAP format, so that import to different open source trace tools (e.g.
wireshark) is possible.
Tracing Detailed traces can be done for different protocols e.g. ISDN, PPPoE, ... generation local on the
device and remote via DIME Manager
Administration / Management
RADIUS Central check of access authorization at one or several RADIUS server, RADIUS (PPP, IPSec
inclusive X-Auth and login authentication)
RADIUS dialout On a RADIUS server configured PPP und IPSec connection can be loaded into the gateway (RADIUS
dialout).
TACACS+ Support of TACACS+ server for login authentication and for shell comando authorization
Time synchronization The device system time can be obtained via ISDN and from a SNTP server (up to 3 time server
configurable). The obtained time can also be transmitted per SNTP to SNTP clients.