FL MGUARD
10 PHOENIX CONTACT 8334_en_02
VPN features – Protocol: IPsec (tunnel and transport mode)
– IPsec encryption in hardware with DES (56 bits), 3DES (168 bits), and AES (128, 192,
256 bits)
– Packet authentication: MD5, SHA-1
– Internet Key Exchange (IKE) with main and quick mode
– Authentication via:
– Pre-shared key (PSK)
– X.509v3 certificates with public key infrastructure (PKI) with certification authority
(CA), optional certificate revocation list (CRL), and the option of filtering by subject
or
– Partner certificate, e.g., self-signed certificates
– Detection of changing partner IP addresses via DynDNS
– NAT traversal (NAT-T)
– Dead Peer Detection (DPD): detection of IPsec connection aborts
– IPsec/L2TP server: connection of IPsec/L2TP clients
– IPsec firewall and 1:1 NAT
– Default route over VPN
– Data forwarding between VPNs (hub and spoke)
– Depending on the license: up to 250 VPN channels
– Hardware acceleration for encryption in the VPN
Additional features – Remote logging
– Router/firewall redundancy (can be installed later for each license, not for firmware
version 7.0))
– Administration using SNMP v1-v3 and FL MGUARD device manager (FL MGUARD
DM)
– PKI support for HTTPS/SSH remote access
– Can act as an NTP and DNS server via the LAN interface
Support
Additional information on the device as well as on release NOTE: notes and software up-
dates can be found on the Internet at:
phoenixcontact.net/products.