SpeedTouchTM 610 / 610i / 610s / 610v Business routers The safe way to do business Flexible solution Specially designed for SMEs and SOHOs, the SpeedTouch 610 offers plenty of possibilities. With easy installation, an embedded firewall, IP VPN and remote management tools, the SpeedTouch 610 is a highly cost-effective and secure option. Beyond the small business market, the SpeedTouch 610 series is the ideal solution for connecting regional and branch offices back to HQ. Home users and telecommuters will also appreciate its unique features, including a fail-proof setup wizard. Security Everyone knows about hackers and the dangers they can pose to business. SpeedTouch 610 routers have a built-in firewall that denies all unauthorized access. End-users, equipment retailers or ISPs can configure this powerful firewall for a broad range of security policies and requirements. Attacks are stopped in the router, and a log of attempted breaches of security is kept for audit purposes. The SpeedTouch 610 keeps you safe from security violations. Remote sites can be securely connected at low cost with PKI as standard. With a PPP-client, firewall, and IP VPN client all embedded in the router, the SpeedTouch 610 Series is the low-maintenance option. 600 SERIES Built for excellence Easy installation The SpeedTouch 610 routers are incredibly easy to install and use. Thanks to the integrated PPP-client, there is no software to be installed on your PC. The setup wizard guides you through the configuration to give you a secure teleworking solution. Plug the router into a DSL line and you're ready to surf via PC, laptop, or LAN. Secure remote management is also possible using standard tools such as SNMP, Syslog, Telnet, and SNTP. Reduced cost Operating a helpdesk is a costly business. With the SpeedTouch 610 routers, this cost is drastically reduced. As there is no need to install software, OS upgrades are trouble-free and the PC environment remains stable. Reliability Business-critical applications need to be available 24/7. This frequently means that servers (BASs) are duplicated with automatic switchover at time of failure. The SpeedTouch 610 series allows connection to two servers with two PVCs. The SpeedTouch 610 series has a full range of network interfaces: ADSL over POTS, ADSL over ISDN, SHDSL, symmetric and asymmetric VDSL. Security * NAT/PAT - RFC 1631 / 3022 network address translation (NAT) / port address translation (PAT) - Static NAPT entries - Zero-config incoming netmeeting / H.323 support via ILS - Tunnel set-up * ISAKMP, IKE / Oakley (RFC 2408 / 2409 / 2412) * LDAP (RFC 1777) and HTTP interface for certificate revocation list retrieval - ITU-T X.509v2 * Xauth authentication: PAP and CHAP snooping - Support for default server - Tunnel mode * IPsec authentication header (AH - RFC 2402) and * Embedded firewall - Packet filter firewall, capable of filtering all information available in the IP packet header: encapsulating security payload header (ESP - RFC 2406) * IPsec IP payload compression (IPCOMP - RFC2393(bis)): Stac(TM) LZS (RFC 1974 / 2395), deflate / zlib * Source and destination interface, IP address and port * TCP incoming / outgoing connections, TCP header (syn / ack / urg) * PINGs, ICMP type and code number, type of service, protocol * Arbitrary bytes in the packet header - Encryption * AES Rijndael, DES (RFC 2405, FIPS-46-2, FIPS-74, FIPS-81), 3DES, RC5 (RFC 2040), Blowfish, CAST, DES40, null encryption (RFC 2410), perfect forward secrecy (PFS), ESP CBC-mode cipher algorithms (RFC 2451) * Logging of intrusions to webpage and to syslog - Hashing * IP VPN features - IPsec (RFC 2401 / 2407) - Key distribution: * Public key infrastructure (RFC 2459, ITU-T Q.817) with X.509 digital certificates * On-line PKI enrollment: CEP (certificate enrollment protocol) interoperable with Entrust, VeriSign, Netscape and Baltimore CAs * Off-line PKI enrollment: PKCS#10 "Certification Request Syntax Standard" and PKCS#7 "Cryptographic Message Syntax Standard", compatible with Entrust, VeriSign, Netscape, RSA Security (RSAS) and Xcert * Shared secrets * HMAC, MD5 (RFC 2403), SHA1 (RFC 2404), SHA2 available as option (under SW key) Easy installation and management features * Fail-proof setup wizard on CD ROM, customizable per operator * Fully configurable via user-friendly web-based GUI (HTTP) * Command line interface over serial port (EIA / TIA-232) and over Telnet * CLI fully available both in menu-mode and in text-mode * SNMPv1 (RFC 1157): MIB II (RFC 1213), traps MIB (RFC 1215), bridge MIB (RFC 1493), ADSL MIB (RFC 2662) / SHDSL MIB, Ethernet MIB (RFC 2665), interface MIB (RFC 2863), IPsec MIB * Logging of events (alarms, warnings, operator sessions,...) on webpage and to standard syslog-server * Time synchronisation SNTPv1 (RFC 868), SNTPv2 (RFC 1119), SNTPv3 (RFC 1305) and SNTPv4 (RFC 2030) * Windows XP "uPNP": presentation and discovery * Remote and host software download capability (web / HTTP, FTP) * Configuration and software back-up and restore * Storage of two software images, for fail-safe remote software upgrade and easy software roll-back * Reset to ISP-specific defaults and to generic factory defaults * DHCP server and client (RFC 2131 / 2132), BOOTP client (RFC 951 / 1542), DHCP-to-PPP spoofing, multiple DHCP pools * DNS server and relay Data Features * Basic features - Up to 30 simultaneous PVCs, allowing multiple simultaneous destinations - ATM QoS per PVC: CBR, VBR-nrt, UBR, with upstream traffic shaping per VP / VC - Service monitoring through ITU-T I.610 F4/F5 loopback, alarms (AIS / RDI) and continuity checks - RFC 1483 / 2684 multiprotocol encapsulation over AAL5 / ATM: both LLC / SNAP and VC-based multiplexing supported - Platform independent - Embedded PPP clients: * RFC 2364 PPP over ATM encapsulation * RFC 2516 PPP over Ethernet encapsulation * Terminates multiple PPP sessions per RFC 1661 * Dial-up networking user GUI allowing PPP session setup with service provider * Session concept, PAP (RFC 1334), CHAP (RFC 1994 / 2484) and MS-CHAP (RFC 2443) authentication * Auto configuration IPCP (RFC 1331 / 1877) * Dial-in, dial-on-demand and always-on PPP modes * Bridging features - Multiport (up to 10 PVCs) self-learning transparent bridge per IEEE 802.1D for LAN interconnect - Remote bridge ports are isolated from each other * DHCP-to-PPP spoofing * IPCP subnet mask option: Internet access for multiple PCs on a single PPP session without NAT / PAT (using multiple IP addresses) - Wirespeed bridging performance (over 160,000 pps) * IP routing * `Dial-up networking' features (PPP Relay) - RFC 2364 point-to-point protocol over ATM via PPPoA-to-PPTP relaying - Multiple PPTP tunnels per end user allowing simultaneous VPN connections between multiple hosts and destinations - Multi-port (up to 20 PVCs) router - Static routing - Automatic routes (PPP, LAN) - Source and destination routing - Dynamic routing RIPv1 (RFC 1058) and RIPv2 (RFC 1723 / 2453), configurable per interface - allows BAS redundancy * Encapsulations - IP over ATM (IPoA): - Classless inter-domain routing (CIDR - RFC 1518 / 1519): subnetting, supernetting (RFC 1338), variable length * RFC 1483 / 2684 routed encapsulation subnet masks (VLSM - RFC 1009); support for 31-bit * Support for IP unnumbered and for multiple IP addresses prefixes (RFC 3021) * "True" RFC 1577 / 2225 classical IP over ATM encapsulation: supports the ATMARP and InATMARP protocol, based on RFC 1293 - IP over Ethernet (IPoE): * RFC 1483 / 2684 MAC encapsulated routing encapsulation (RFC 1483 / 2684 bridged) * Support for IP unnumbered and for multiple IP addresses - Support for RFC 826 address resolution protocol; proxy ARP (RFC 826) using configurable ARP table - Wirespeed routing performance Hardware specifications * WAN interfaces * Serial interface - DSL line RJ-11 - RS232 - EIA / TIA-232 - Pin 3 / 4 for ADSL, 2-wire SHDSL and VDSL (pin 2 / 5 via adaptor) * Physical specifications - Pin 3 / 4 and 2 / 5 for 4-wire SHDSL - Height: 3.5 cm (1.38 in.) - Width: 21.0 cm (8.27 in.) * LAN interfaces - switch variants - Depth: 18.5 cm (7.29 in.) - 4-port 10 / 100BaseT auto-detect Ethernet switch IEEE 802.3 (RJ-45), half- / full-duplex with auto-MDI / MDI-X - Available on SpeedTouch 610, 610i, 610s and 610v * Operating environment - Temperature: 0 to 40 C (32 to 105 F) - Humidity: 20% to 80% * LAN interfaces - ATMF variants - 10 / 100BaseT auto-detect Ethernet (RJ-45), half- / full-duplex * Power requirements - 25.6 Mb/s ATM forum interface (RJ-45) - AC voltage: 100 to 120 V AC, 220 to 240 V AC - Available on SpeedTouch 610, 610i and 610s - Frequency: 50 / 60 Hz - Power consumption: 9 W maximum Modem specifications Notes Physical layer Product Bandwidth Standards ADSL-over-POTS SpeedTouch 610 Up to 8.192 Mb/s downstream and 832 kb/s upstream ADSL-over-ISDN SpeedTouch 610i * ANSI issue 2 - ANSI T1.413i2 * Multi-mode hand-shake ITU-T G.994.1 (G.hs) * Full rate - G.dmt ITU* Complete embedded operations TG.992.1 Annex A * ADSL lite - G.lite ITU-T G.992.2 channel (EOC) implementation * Dying gasp (allows to distinguish cable cut and CPE power outage) * ETSI - ETSI ETR 006 * Full rate - G.dmt ITUT G.992.1 Annex A * Germany - UR2 SHDSL SpeedTouch 610s Up to 2.304 Mb /s (2-wire mode) or 4.608 Mb/s (4-wire mode) downstream and upstream * Wetting current (annex A and B), * SHDSL standard ITUincluding metallic termination TG.991.2 (G.shdsl): (annex A) symmetric PSDs and asymmetric * Complete embedded operations PSDs in line with annex A channel (EOC) implementation: (ANSI) and annex B (ETSI) performance monitoring * Hand-shake procedure (bit errors, signal-to-noise ratio, ITU-T G.994.1 (G.hs), loop-attenuation, ..), status reporting, including automatic annex remote loopback, remote inventory selection and rate adaptive mode * Dying gasp (allows to distinguish cable cut and CPE power outage) VDSL SpeedTouch 610v * Standard DMT VDSL: ETSI TS Up to 23 Mb/s 101 270-1 & -2; ANSI downstream and T1E1.4/2001-009R5 and 4 Mb/s upstream 013R2; ITU-T G.vdsl.f (asymmetrical bandplan) or up to 13 Mb/s downstream and upstream (symmetrical bandplan) Approved for connection to all major network operators. (Please contact your service provider for details.) * Supports band plans 997, 998 and Fx with same hardware. * Excellent throughput performance, with aggregate (up + down) rates of 58 Mb/s over 350 m, 29 Mb/s over 1000 m and 14.5 Mb/s over 1500 m SpeedTouchTM 610 / 610i / 610s / 610v Business routers Internet Small business Firewall & VPN Package contents Firewall & VPN Corporate Telecommuter Home-worker For more information: www.speedtouchdsl.com * SpeedTouch 610 or 610i or 610s or 610v * Safety guidelines All rights reserved (c)2002, THOMSON multimedia Broadband Belgium. Printed in EU. 3CL 00371 00028 TQZCA * Power unit and cables (DSL & Ethernet) * Quick installation guide * User's guide * CD with setup wizard and application notes * In-line filters (for ADSL only) All trademarks are owned by their respective owners. Product specifications subject to change without prior notice.