NetDefend SOHO UTM Firewall


  • Product Status: End of Life
High-Speed Firewall

Provides firewall throughput of up to 70Mbps and VPN speeds up to 25Mbps

Unified Threat Management

Combines antivirus, Content Filtering and Intrusion Prevention for a strong and reliable defense

Green Technology

Green Ethernet reduces power usage, while recyclable packaging prevents waste

A robust defense against modern threats

Today’s continuously shifting security environment presents a challenge for home users with limited IT capabilities. Fortunately, the D-Link DFL-160 NetDefend™ soho Unified Threat Management (UTM) Firewall provides a comprehensive defense against virus attacks, unauthorized intrusions, and harmful content.

Protect against intrusions

The DFL-160 allows you to manage, monitor, and maintain a healthy network with ease. The DFL-160 protects your private information and prevents damage caused by hazardous applications, malicious hackers, and various other threats. Optional content filters can also prevent access to offensive websites based on your personal preferences.

Prevent viruses from ever reaching your PC

Your PC’s antivirus software helps you to detect viruses and other malware, but can only detect these threats once they have reached your pc. This is where the DFL-160 can make all the difference. The DFL-160 is placed between your pc and the internet, where it monitors network traffic and actively blocks dangerous content such as viruses and worms. In doing so, the firewall keeps your network secure and reliable by ensuring that only safely verified files will reach your desktop.

Safely access your home network remotely

VPN support allows you to access your home network safely from remote locations. Whether at work, in a hotel, or on the road, connect to your home network with your pre-configured VPN account to conveniently and securely access your data. Cable and DSL users with dynamic ip addresses can take advantage of DDNS services which simplify access to systems with dynamic ip addresses.

  • CPU: Intel IXP435 @ 400MHz
  • Flash: 128 MB
  • DRAM: 128 MB
  • VPN Accelerator


  • 4 x Ethernet LAN (10/100/1000)
  • 1 x Ethernet WA N (10/100)
  • 1 x Ethernet DMZ (10/100/1000)
  • 1 x DB-9 RS-232 Console Port
  • 1 x USB 2.0

Performance and Capacity

  • Firewall Performance: 70 Mbps
  • 3DES/AES Performance: 25 Mbps
  • IDP/Antivirus Performance: 15 Mbps
  • Current Session: 6,000
  • Policies: 300
  • Supported Users: Unrestricted

Firewall Mode of Operation

  • Layer 3 mode: Route Mode, NAT Mode
  • Layer 2 mode: Transparent Mode
  • Network Address Translation (NAT )
  • Port Address Translation (PAT )
  • Port Forwarding
  • Time-Scheduled Policies Configuration

Virtual Private Network (VPN)

  • IPSec Protocol: ESP
  • IPSec Mode: Tunnel Mode, Transport Mode
  • Encryption Method: DES/3DES/AES/Twofish/Blowfish/CAST-128/NULL
  • Site to Site VPN, Remote Access VPN for IPSec
  • Up to 30 Dedicated VPN Tunnels
  • IKE

Mode: Main Mode

  • Authentication Algorithm: MD5, SHA-1
  • Support PPTP/L2TP/IPSec VPN Server
  • PPTP Server Supports MPPE Encryption
  • XAUTH Authentication Support
  • Key Management: Pre-share Key
  • IPSec NAT Traversal (NAT -T)
  • Prevents Replay Attack

IP Assignment & Routing

  • Static IP Address
  • PPPoE for xDSL, PPTP Client for xDSL,
  • DHCP Client for WA N interface
  • Internal DHCP Server


  • IP Multicast: IGMP v3 Routing and
  • Forwarding (Compatible with v1 and v2)
  • DDNS Client: D-Link DDNS,
  • Supports ALG (Application Layer Gateway) HTTP, FTP, POP3, SMTP, TFTP

System Management

  • Web UI Interface
  • SNTP and UDP Time Synchronization
  • Supports D-Link NTP Server

User and Device Administration

  • Multi-level User Permission Control (Administrator and Read-Only)
  • Software Upgrade, Configuration Backup/Restore from Web UI

User Authentication

  • Built-in User Database: 250 Users

Logging and Monitoring

  • Internal Log Capacity: 500 Records
  • Log Viewer
  • VPN Tunnel Monitor
  • E-mail Notification for IDP Log
  • Supports External Syslog Server
  • Supports 2 Log Receivers
  • Separate Internal Logging for IDP, AV, WCF

Bandwidth Management *

  • Guaranteed Bandwidth
  • Maximum Bandwidth
  • Priority-Bandwidth Utilization

Intrusion Detection and Prevention System (IDP)

  • NIDS Pattern Auto Update
  • DoS, DDoS Attack Protection
  • Detects Nimda and CodeRed Attacks
  • Attack Alarm Via E-mail Notification

Antivirus Packet Inspection

  • Supported Protocol: HTTP, FTP, SMTP, POP3
  • Antivirus over VPN
  • Protocol/Port Configurable
  • Scanning of all MIME Types
  • Decompression Explosion Protection
  • Supported Compression File Formats: ZIP, GZIP
  • Scan Exclusion Control

Dynamic Web Content Filtering

  • HTTP Web URL Filter
  • Over 30 Web Content Categories

E-mail Security **

  • Supported Protocol: SMTP
  • Sender/Recipient E-mail Address
  • Blacklist/Exempt List Filtering
  • MIME Header Check for File Extensions Filtering
  • E-mail Rate Protection
  • E-mail Size Protection


  • Real-Time DNSBL/Open Relay
  • Database Server
  • Weight-based DNS Blacklist
  • Customized Spam Tag Information in
  • E-mail Subject
  • Forward Blocked E-mails


  • Power, Status, WA N, DMZ
  • 4 x LAN (Link/Action/Speed)

Operating Temperature: 0º to 50ºC
Operating Humidity: 5% to 95% (Non-condensing)
Power Consumption: < 20W

Dimensions: 220mm (L) x 150mm (W) x 32.5mm (H)
Weight: 480g


  • What is the default IP address for DFL-160? Read Answer
This product was phased out on: 26/11/2012
This product's last date of support is on: 25/11/2017
No Downloads