C1500 Router with IPSec and OpenVPN
- Fully Implemented IPSEc and OpenVPN
- Intelligent Firewall
- Perl Interpreter
- Intelligent Routing
- Connection Manager
- Wide Temperature Range
- Metal Housing, Industrial Qualiity
C1500 Router Functions and Characteristics
Due to its high manufacturing quality the C1500 is especially suitable for use in industrial environments. The extended temperature range and rugged metal housing enable operation in harsh environments.
The fully implemented IPSec and OpenVPN standard, guarantee the highest security during transmission of data. The authentication can be made either using deposited certificates or pre-shared keys. All modern encryption algorithms such as 3DES or AES with up to 256 bit key length are supported.
The router can be easily integrated into a company network (via the permanently established VPN tunnel) and can also be accessed via private IP addressing. In this case DynDNS is not necessary, but it can be established at any time. Terminal equipment is connected using two Ethernet ports.
To render your network secure from attacks a configurable high security firewall with intrusion detection is available. This can be supplemented by the possibility of depositing your own scripts and rules. The so-called Perl Scripting Interpreter offers the possibility for your own individual software installation on the VPN router.
The transmission of video data must be highlighted, a special buffer-management as well as an optional extended memory are used to transfer the data-stream quickly and smoothly.
For configuration, a web interface with a user-friendly interface is provided (see the handbook). Hence, the VPN router can be locally or remotely configured. Experts can also configure the VPN router using a CLI (command line interface), and it can even be accessed and configured via text messages.
All features at a glance
Hardware Specification Basic System
- 500Mhz processor (without fan)
- 256 MB RAM user memory
- 4 GB system memory (Compact Flash, Dual Boot)
- 2 10/100 BaseT Ethernet ports (Wake on LAN, Power over Ethernet)
- 1 Power LED
- 2 LEDs for displaying Status Information (freely configureable)
- 2 USB 2.0 Ports (e.g. Backup, UPS monitoring via USB to Serial Adapter)
- 1 RS232 console port (for monitoring and error searching)
- Real-time clock
General Router Features
- Network Time Protocol (NTP) Client/Relay/Server
- Dynamic Host Control Protocol (DHCP) Client/Relay/Server
- Dynamic DNS (DynDNS) and secure DNS support
- Real-time Statistics and Log Function, Log Rotation, Syslog Client/Server
- FTP (Client/Server/Relay, e.g. for Webcams to buffer pictures)
- IP CAM Server and Transcoder (optional, for video applications)
Routing Protocols
- IP Protocols such as e.g.IPv4, IPv6, TCP, UDP, ARP, RARP, ICMP
- Routing Information Protocol (RIPv1 and RIPv2) and RIPng
- Open Shortest Path First (OSPF)
- Border Gateway Protocol (BGP, BGPv4+)
- Intermediate system to intermediate system (IS-IS)
- Multicast support
- Spanning Tree Protocol (STP)
- Transparent Bridging
- Network Address Translation (NAT) Network Address Port Translation (NAPT)
- PPP over Ethernet (PPPoE)
- Generic Routing Encapsulation (GRE)
- Web Cache Communication Protocol (WCCP, optional)
- Multi Channel Connection (MCC)
Safety Features
- Stateful Inspection Firewall (extendable using Scripts)
- Bridging Firewall
- Demilitarized Zone (DMZ)
- IPSec (Client/Server)
- OpenVPN routed and bridged (Client/Server)
- Easy VPN Client/Server (XAuth)
- IPSec Passthrough
- Point-to-Point Tunneling Protocol (PPTP), passthrough
- Layer 2 Tunnelling Protocol (L2TP), passthrough
- SSL/TLS Tunnel (client/server)
- EAP Client/Server
- Radius Client/Server
- Authentication: PAP, CHAP und PSK
- Digital certificates Public-Key-Infrastructure (PKI)
- MD5, SHA1, SHA2 256/512 Hash Algorithms (others on request)
- Diffie Hellman Group 1, 2, 5 for key exchange
- Encryption algorithms, DES, 3DES, AES 128/192/256, Blowfish, Twofish 128/256, Serpent 128/256 (others on request)
- Simple Certificate Enrolment Protocol (SCEP)
- HTTP Proxy Inspection Engine
- 802.1x
- Secure HTTP (HTTPS), SSH, SCP and FTP Authentication Proxies
- Up to 30 VPN Tunnels
QoS Features
- Hierarchical, sequencial planning for DiffServ classes (Traffic Shaping)
- Dynamic bandwidth management with DiffServ classes
- DiffServ Policing:
- Class Based Queue (CBQ)
- Token Bucket Flow (TBF)
- First In First Out (P/BFIFO)
- Stochastic Fair Queuing (SFQ)
- Diff-Serv Marker (DS_MARK)
- Hierarchical Token Bucket (HTB)
- Priority-based queuing (PTIO)
- Class-Based Marking (CBM)
High Availability Features
- TDT Connection-Manager with complex backup possibilities
- Multi-homed and multi-level backup-target strategies
- Optimising of switching times
- Prevention of unnecessary switching
- Optimising of switch-back
- Prevention of switching instability (chattering)
- Dynamic connection parameters (Default Route, DNS, Gateway, etc.)
- Configurable connection monitoring (Ping, LCP-Echo, etc.)
- Emergency Reboot/Reset when e.g. 3G+/4G cannot be established
- Virtual Router Redundancy Protocol (Multigroup VRRP)
Management Features
- Access management using Access Control Lists (ACL)
- Firmware Updates via Web interface or command line
- Differential Firmware Update (reduced size for updates via WAN)
- Simple Network Management Protocol (SNMPv1/2/3)
- Management via Command Line Interface (CLI), SSH, SCP and HTTPS
- Event handler, extendable with scripts (perl, bash)
Technical Data
- Dimensions: 158x28x157mm (WxHxD, without aerials)
- Weight: ca. 870g
- Operating temperature: -5°C (optional -25°C) - +60°C
- Humidity: 85% (non condensing)
- External power supply: 7-18V DC
- Power consumption: 12V / 1,8A
- Robust metal housing, optionally with tophat rail clip
- CE conformity and vibration tested


