DCME-520 Multi-core Security Gateway
DCME-520 is a new generation of high-performance security gateway using multi-core high-performance processor, combined with a dedicated ASIC chip. With superior performance and powerful data processing capabilities DCME-520 works via wire-speed throughput and industry-leading number of new connectivity compared with the traditional firewall and broadband router.
DCME-520 is recommended for 1200 users within the application environment. DCME-520 integrates broadband router, firewall, switch, VPN, traffic management and control, network security, wireless controller and easy configuration. It is ideal for small and medium enterprises, schools, government, chain, medium-sized Internet cafes, operators and other complex network environment.
| Items | Specification |
| CPU | Dual-core CPU |
| Memory | 4G |
| FLASH | 64G SSD |
| Interface | 6*10/100/1000M Base-T+ one expansion slot |
| Management port | 1 RS-232 (RJ-45) console |
| 2 USB2.0 port | |
| Led | Power/ system Run/ port status |
| Suggested maximum export bandwdith | 600M |
| Suggested Concurrent users | 1200 |
| New session per second | 15000 |
| Max. Concurrent connections | 250,000 |
| Temperature/humidity | Operating 0℃-40℃; 10%-85% Non-condensing
Storage -20℃-65℃; 5%-95% Non-condensing
|
| Power | AC 100~240V, 47~63Hz |
| Features | Description |
| Working mode | Routing |
| NAT | |
| Transparent Bridge | |
| Network | PPPoE client, PPPoE chap / pap / any three authentication methods, PPPoE client reconnection |
| DHCP Server, Client, relay | |
| DNS server, proxy | |
| DDNS | |
| Routing | Static routing, static routing with priority, RIP |
| PBR (based on source address, source port, destination address, protocol and other strategies), support next-hop IP or interface | |
| Equivalent multi-route load balancing, and bandwidth load automatically adjust the proportion of each route, to achieve load balancing based on the line. | |
| Multilink backup function, schedule link state detection, and automatic switching and back between links | |
| NAT | Source NAT Static / Dynamic |
| 1:1 NAT
1:N NAT
N:N NAT
Server Load Balancing
Multi-protocol NAT ALG
| |
| Deep packet inspection | Control and rate-limit on Popular P2P application including BT, eMule, eDonkey |
| Control and rate-limit on popular IM applications including Yahoo, gtalk etc. | |
| URL filtering, QQ audit | |
| QOS | IP-based bandwidth control |
| Application based bandwidth control | |
| Flow based bandwidth control | |
| Bandwidth guarantee, bandwidth reservation, flexible bandwidth allocation | |
| 2 levels of bandwidth control (IP and application bandwidth control, port based) | |
| Attack protection | ARP attack defense mechanisms (arp learning, free arp, arp protection) |
| IP-MAC binding, manual and automatic | |
| DoS, DDoS attack protection | |
| Flood protection: ICMP flood, UDP flood, SYN flood | |
| DNS queries flood protection: DNS queries & DNS recursive query flooding attack protection | |
| Malformed packet protection | |
| IP anomaly detection, TCP anomaly detection | |
| IP address scanning attack prevention, port scan protection | |
| Denial of Service Protection: Ping of Death, Teardrop, IP fragmentation, IP options, Smurf or Fraggle, Land, ICMP big packet | |
| Session control | based on interface, source IP, destination IP and applications (new sessions per second and the number of concurrent sessions) |
| Timing session control | |
| Access controller | 802.11, 802.11a, 802.11b, 802.11g, 802.11n, 802.11d, 802.11h, 802.11i, 802.11e, 802.11k |
| CAPWAP | |
| Basis manageable AP: 6; maximum manageable AP: 256; AP Upgrade Step: 10 AP | |
| System | Dual image |
| Firmware upgrade via WEB and TFTP | |
| Configuration backup and restore | |
| SNMPv1/v2 | |
| HTTPS\HTTP\TELNET\SSH | |
| NTP | |
| Web configuration wizard | |
| WEB authentication | |
| Object management based on IP addresses, protocols, schedule, and interface | |
| Log and monitor statistics | Monitoring and statistics on interface traffic |
| Monitoring and statistics on IP traffic | |
| Monitoring and statistics on session number based on IP address | |
| Monitoring and statistics on bandwidth and session number based on applications | |
| Monitoring and statistics on the number of attacks | |
| Monitoring and statistics on IP, application and attacks based on Security domain | |
| Event log / traffic log / configuration log / alarm log / security log | |
| USB log backup | |
| High reliability | Support link load balancing, link backup |
| Multiple link failure detection mechanism |









