Brandvägg med ZoneDefense för det mindre kontoret/arbetsgruppen


  • Product Status ($name): End of Life
This easy-to-deploy Desktop VPN Firewall solution is designed for small-to-medium sized businesses and is readily integrated into established networks.

The NetDefend family of Firewall/VPN Security Appliances is D-Link’s answer for hardware-based network security. The new D-Link DFL-800 Network Security Desktop VPN Firewall network security appliance is an easy-to-deploy VPN and firewall solution designed for small-to-medium sized businesses that demand superior performance and security.

Advanced Hardware Features

The DFL-800 is a powerful security solution that provides integrated Network Address Translation (NAT), SPI Firewall, advanced content filtering features, IDS protection, bandwidth management, as well as Virtual Private Network (VPN) support. The DFL-800 hardware includes seven trusted LAN ports, dual-WAN ports for load balancing, and a user-configurable DMZ port to support local servers such as e-mail, Web, and FTP. All of these features conveniently fit into a desktop chassis that can be easily integrated into your network.

Enterprise-class Security

To provide enterprise-class network security, the DFL-800 has several flexible firewall features to manage, monitor, and maintain a healthy and secure network. Network management features include: Remote Management, Bandwidth Control Policies, URL/Keyword Blocking, Access Policies, and SNMP. For network monitoring, the DFL-800 supports e-mail alerts, system log, consistency checks, and real-time statistics. These features along with a firmware backup function provide and maintain maximum network performance and security.

VPN Performance

For optimal VPN configuration, the DFL-800 has both an integrated VPN Client and Server to support almost any required VPN policy. This high-end appliance has a hardware VPN engine to support and manage up to 300 VPN connections. The DFL-800 can support IPSec, PPTP, and L2TP protocols in Client/Server mode and can handle pass-through traffic as well. Advanced VPN configuration options include: DES/3DES/AES/Twofish/Blowfish/CAST-128 encryption, Manual or IKE/ISAKMP key management, Quick/Main/Aggressive Negotiation modes, and VPN authentication support using either an external RADIUS server or the internal 500-user database.

Configurable User Interface

The DFL-800 can be configured via the D-Link Web-based interface and monitored using the Command Line Interface (CLI). These configuration options can be managed through Admin, Read/Write, or Read-Only administrator rights. With these access management levels, any authorized user can easily configure or access the administrative functions of the DFL-800.

With businesses becoming increasingly network-dependent, the need to invest in a reliable security solution is crucial. The D-Link DFL-800 NetDefend Network Security Desktop VPN Firewall offers high return on investment through robust security features, flexible configuration, and maximum network protection.
Firewall Mode of Operation    
•    Layer 3 Mode: Route Mode, NAT Mode
•    Layer 2 Mode: Transparent Mode
•    Network Address Translation (NAT)
•    Port Address Translation (PAT)
•    Static Address Translation (SAT)
•    Policy-Based NAT
•    Port Forwarding
•    Time Scheduled Policies

VPN Security    

•    VPN Tunnels: 300 (IPSec, PPTP, L2TP with IPsec)
•    IPSec LAN-to-LAN / Roaming User
•    PPTP/L2TP Server/Client
•    IPsec Hub and Spoke
•    IPSec NAT-Traversal
•    DHCP over IPSec
•    Encryption Transform: DES, 3DES, AES, Twofish, Blowfish, CAST-128
•    XAUTH (Extended Authentication) for IPSec Authentication

Firewall Security    
•    Stateful Packet Inspection (SPI)
•    Policy-Based User Authentication
•    DoS/DDoS Attack Protection
•    HTTP Traffic Filter: Keyword, URL, Exempt List
•    Script Filter: Java Applet, Java Scripts, VB Scripts, Cookies, ActiveX

Network Service    
•    Static IP address
•    PPPoE for xDSL
•    PPTP Client for xDSL
•    DHCP Client for WAN Interface
•    BigPond Cable, Telia Compliance
•    Internal DHCP Server
•    DHCP Relay
•    WAN Failover/Load Sharing
•    IP Alias
•    Static Routes
•    OSPF Dynamic Routing
•    Policy-Based Routing
•    DNS Resolving of Remote Gateway
•    Dynamic DNS Poster
•    Custom Application Layer Gateway
•    Support IEEE 802.1q VLAN Tag (16)
•    Firewall Policies per VLAN Tag
•    DHCP Server per VLAN Tag

Bandwidth Management    
•    Guaranteed Bandwidth
•    Maximum Bandwidth
•    Priority-Bandwidth Utilization
•    Policy-Based Traffic Shaping
•    Time-Scheduled Traffic Shaping
•    Bandwidth Management in VPN Tunnel


•    SYSLog Support
•    Firmware Configuration Backup
•    E-mail Alerts
•    Management – HTTP/HTTPS, SSH
•    Simple Network Time Protocol (SNTP)
•    Simple Network Management Protocol (SNMP)
•    Configuration Consistency Checks

Intrusion Detection System    

•    NIDS Pattern Auto Update
•    Attack Alarm via E-mail Notification

Physical & Environmental
Diagnostic LEDs    

•    Power
•    System
•    WAN (Link/Activity per Port) (2)
•    LAN (Link/Activity per Port) (7)
•    DMZ (Link/Activity per Port) (1)

Device Ports    
•    WAN: 2 10/100BASE-TX ports
•    LAN: 7 10/100BASE-TX ports
•    DMZ: 10/100BASE-TX port
•    Console Port: Serial COM port

Power Input    
•    5VDC, 4.0A switching external power supply

Power Consumption    
•    20 Watts Maximum

•    11.0in x 8.43in x 1.73in

•    2.8 lbs (Device Only)

•    Operating: 32°F to 140°F (0° to 60°C)
•    Storage: -4°F to 158°F (-20° to 70°C)

•    5% to 95% (Non-Condensing)

Emission (EMI)    
•    FCC Class A
•    CE
•    C-Tick

•    UL
•    LVD (EN60950)


•    Limited Lifetime*

* Limited Lifetime Warranty available only in the USA and Canada if purchased on or after October 1, 2010.

Product specifications, size and shape are subject to change without notice, and actual product appearance may differ from that depicted herein.

This product was phased out on: 05/03/2012
This product's last date of support is on: 04/03/2017
Version Date Type File Size
Datasheet (English) - PDF 2.11mb Download
Version Description Date Type File Size
User Manual (English) User Manual (English) 2010-11-11 PDF 8.78mb Download
Version Description Date
DEU_CLI_Ref_Guide_RevA CLI Reference Guide (English) v2.27.03 2010-11-10 Download
DEU_Log_Ref_Guide_RevA Log Reference Guide (English) V2.27.03 2010-11-10 Download
DEU_CE_A2_A3_EN_FR_RevA Certificate of Declaration A2 & A3 (English and French) 2009-12-04 Download
SE_Block_Facebook_EN_RevA How to block (English) 2007-09-07 Download
SE_Config_Traffic_Management_for_QOS_EN_RevA How to configure traffic management for Quality of Service assurance (English) 2007-08-02 Download
SE_User_Authentication_for_Web_Access_EN_RevA Require user authentication for web access (English) 2005-11-24 Download
SE_Config_Bandwidth_Management_EN_RevA How to configure Bandwidth Management (English) 2005-10-20 Download
SE_Config_Transparent_Mode_EN_RevA How to configure transparent mode (English) 2005-10-20 Download
SE_Config_WAN_Failover_For_Two_ISPs_EN_RevA How to configure WAN failover for two ISPs using policy based routing (English) 2005-10-20 Download
SE_VLAN_and_Route_Failover_EN_RevA VLAN and route failover (English) 2005-10-20 Download
SE_VPN_LAN_to_Multi_LAN_EN_RevA Configure lan-to-lan tunnels between a main office and two remote offices (sometimes called Hub and Spoke) (English) 2005-10-20 Download
SE_VPN_Using_PPTP_LAN_to_LAN_Tunnel_EN_RevA Virtual private network using a PPTP (or L2TP) lan-to-lan tunnel (English) 2005-10-20 Download
SE_VPN_using_IPSec_LAN_to_LAN_Tunnel_EN_RevA Virtual private network using an IPsec lan-to-lan tunnel (English) 2005-10-20 Download
SE_ZoneDefense_for_DLink_Switch_Model_DES3226S_EN_RevA ZoneDefense for D-Link switch model DES-3226S (English) 2005-10-20 Download
SE_VPN_Client_with_Certification_EN_RevA How to Connect to D-Link Firewalls Using VPN Client with Certification (X.509) ? (English) 2005-10-01 Download
SE_Config_IPSec_VPN_failover_EN_RevA How to configure IPSec VPN failover (English) - Download
SE_Config_PPTP_Server_for_Remote_Users_EN_RevA How do I configure the PPTP Server, of my DFL-210/800/1600, for remote users (English) - Download
SE_Diagram_EN_RevA Diagram (English) - Download
SE_Forward_traffic_to_Server_on_Network_EN_RevA How to forward traffic to a server on the network (English) - Download
SE_IPSEC_Tunnel_for_Roaming_Users_EN_RevA How to create an IPSEC tunnel for roaming users (English) - Download
SE_Portmapping_a_Public_IP_EN_RevA Portmapping a public IP (English) - Download
SE_Publish_Public_IP_via_Proxy_arp_EN_RevA How to publish public IP via proxy arp (English) - Download
SE_Using_Public_IP_addresses_on_DMZ_Zone_RevA Guide för att använda publika IP adresser på DMZ zonen - Download
SE_WAN_with_DHCP_EN_RevA WAN with DHCP (English) - Download
SE_WAN_with_PPPOE_EN_RevA WAN with PPPOE (English) - Download
SE_WAN_with_Static_IP_EN_RevA WAN with static IP (English) - Download