UTM Firewall


  • Product Status: End of Life

Enterprise-Class Firewall Security

NetDefend UT M Firewalls provide complete advanced security features to manage, monitor, and maintain a healthy and secure network. Network management features include: Remote Management, Bandwidth Control Policies, URL Black/White Lists, Access Policies and SNMP. For network monitoring, these firewalls support e-mail alerts, system logs, consistency checks and real-time statistics.

Unified Threat Management

NetDefend UTM Firewalls integrate an intrusion detection and prevention system, gateway antivirus, and content filtering for superior Layer 7 content inspection protection. An acceleration engine increases throughput, while the realtime update service keeps the IPS information, antivirus signatures, and URL databases current. Combined, these enhancements help to protect the office network from application exploits, network worms, malicious code attacks, and provide everything a business needs to safely manage employee Internet access.

Powerful VPN Performance

NetDefend UT M Firewalls offer an integrated VPN Client and Server. This allows remote offices to securely connect to a head office or a trusted partner network. Mobile users working from home or remote locations can also safely connect to the office network to access company data and e-mail. NetDefend UT M Firewalls have hardware-based VPN engines to support and manage a large number of VPN configurations. They support IPSec, PPTP, and L2TP protocols in Client/Server mode and can handle pass-through traffic as well. Advanced VPN configuration options include: DES/3DES/ AE S/Twofish/Blowfish/CA ST-128 encryption, Manual or IKE/ISAKMP key management, Quick/ Main/Aggressive Negotiation modes, and VPN authentication support using either an external RADIUS server or a large user database.

Actual product appearance may differ from the image displayed on this page

• Ethernet: 6 Configurable Gigabit Ports
• USB : 2 USB Ports (reserved)
• Console : 1 DB-9 RS-232

System Performance* 
• Firewall Throughput** : 1.2 Gbps
• VPN Throughput*** :350 Mbps
• IPS Throughput**** :400 Mbps
• Antivirus Throughput**** :225 Mbps
• Concurrent Sessions: 600,000
• New Sessions (per second): 15,000
• Policies: 4,000

Firewall System 
• Transparent Mode
• Dynamic Routing Protocol : OSPF
• H.323 NAT Traversal
• Time-Scheduled Policies
• Application Layer Gateway
• Proactive End-Point Security : ZoneDefense

• DHCP Server/Client
• DHCP Relay
• Policy-Based Routing
• IEEE 802.1q VLAN: 1024
• IP Multicast: IGMPv3

Virtual Private Network (VPN) 
• Encryption Methods : DES/ 3DES/ AES/ Twofish/ Blowfish/ CAST-128
• Dedicated VPN Tunnels : 2500
• PPTP/L2TP Server
• Hub and Spoke
• IPSec NAT Traversal

Traffic Load Balancing 
• Outbound Load Balancing
• Server Load Balancing
• Outbound Load Balance Algorithms: Round-robin, Weight-based Round-robin, Destination-based, Spill-over
• Traffic Redirect at Fail-Over

Bandwidth Management 
• Policy-Based Traffic Shaping
• Guaranteed Bandwidth
• Maximum Bandwidth
• Priority Bandwidth
• Dynamic Bandwidth Balancing

High Availability (HA) 
• WAN Fail-Over
• Active-Passive Mode
• Device Failure Detection
• Link Failure Detection
• W/VPN Session SYN

Intrusion Detection & Prevention System (IDP/IPS) 
• Automatic Pattern Update
• DoS, DDoS Protection
• Attack Alarm via E-mail
• Advanced IDP/IPS Subscription
• IP Blacklist by Threshold or IDP/IPS

Content Filtering 
• HTTP Type: URL Blacklist/Whitelist
• Script Type: Java, Cookie, Active X, VB
• E-mail Type: E-Mail Blacklist/Whitelist
• External Database Content Filtering

• Real Time AV Scanning
• Unlimited File Size
• Scans VPN Tunnels
• Supports Compressed Files
• Signature Licensor: Kaspersky
• Automatic Pattern Update

Power Supply 
• 80 PLUS Internal Power Supply

• 17.3 x 15.7 x 1.7in (440 x 400 x 44 mm) 19” Standard Rack-Mount

Operating Temperature 
• 32° to 104° F (0° to 40° C)
Storage Temperature 
• -68° to 158° F (-20° to 70° C)

Operating Humidity 
• 5% to 95% non-condensing

• FCC Class A
• CE Class A
• C-Tick

• cUL, CB

• 400,000 Hours

* Actual performance may vary depending on network conditions and activated services.
** The maximum Firewall plaintext throughput is based on RFC2544 testing methodologies.
*** VPN throughput is measured using UDP traffic at 1420 byte packet size adhering to RFC 2544.
**** IPS and Anti-Virus performance test is based on HTTP protocol with a 1Mb file attachment run on the IXIA IxLoad. Testing is done with multiple flows through multiple port pairs.
***** Compatible with D-Link SFP module transceivers: DEM-330T, DEM-330R, DEM-331T, DEM-331R, DEM-310GT, DEM-311GT.

All references to speed are for comparison purposes only. Product specifications, size and shape are subject to change without notice, and actual product appearance may differ from that depicted herein.

This product was phased out on: 02/09/2012
This product's last date of support is on: 01/09/2017
Version Date Type File Size
Datasheet (English) - PDF 2.61mb Download
Version Description Date Type File Size
User Manual (English) User Manual (English) - PDF 8.78mb Download
Version Description Date Type File Size
2.0 QIG 03/03/2013 PDF 3.16mb Download
Version Description Date Type
Firmware v2.27.03.25 all Firmware v2.27.03.25 all 09/12/2011 - Download
Version Description Date
DEU_CLI_Guide_RevA CLI Reference Guide (English) 10/11/2010 Download
DEU_Log_Reference_RevA Log Reference Guide (English) 10/11/2010 Download
DEU_CE_A1_EN_FR_RevA Certificate of Declaration A1 (English/French) 05/01/2010 Download