Nokia 105i
The Nokia 105i VPN Gateway is a high-performance, fully integrated gateway that provides the security to confidently connect mobile users to fixed resources. Nokia 105i's patent-pending Meta-Hop technology allows for remote access and execution of mission-critical applications.
Nokia 105i VPN meets the wireless security needs of mid-sized companies that require up to 10,000 tunnels, 300 Mbps AES-256 throughput, and flexible expansion options including Gigabit-ethernet connectivy. Nokia 105i has diskless support and high MTBF components for excellent reliability.
Features
- Flexible expansion options, including Gigabit-ethernet connectivity
- Diskless support
- High MTBF components for excellent reliability
- Dynamic Load Balancing, Automatic Session Failover and Zero-Downtime Upgrades
- Appliances log and track multiple connection paths between users and the network
- Self-healing - if there is an Internet problem, 105i technology finds a better path
- Self-learning - 105i technology learns and retains network connection paths as new ones are added or old connection points are dropped
Key benefits
- Increase productivity and leverage current investments
- Maintain connectivity and adapt network to manage network changes, assuring that costs are maintained for a low Total Cost of Ownership
- Grow and modify network without having to re-visit VPN configuration
- Maximum uptime; traffic on the gateway is automatically optimized
Nokia 105i
Performance and capacity
- AES-256 SHA-1 (1 node) = 600 Mbps
- AES-256 SHA-1 (2 node) = 1.0 Gbps
- Stateful Firewall (1 node) = 1.2 Gbps
- IKE Main Mode Tunnels = 10,000
- 4 integrated 10/100BaseT interfaces
- Up to 4 additional 10/100BaseT interfaces
- Up to 4 additional MMF or 10/100/1000BaseT interfaces
- Nokia Encryption Accelerator (optional)
VPN
- IPSEC (RFC2401 – 12)
- Encapsulation Protocols
- ESP Tunnel and Transport Mode (RFC2406)
- AH Tunnel and Transport Mode (RFC2402)
- Data Encryption
- AES 128, 192, and 256-bit (RFC3602)
- DES 56-bit and 3DES 168-bit (RFC2405)
- Message Authentication
- HMAC-SHA-1 (RFC2404)
- HMAC-MD5 (RFC2403)
- Key Management (RFC2409)
- IKE Main Mode
- IKE Quick Mode
- Perfect Forward Secrecy (RFC2409, RFC2412)
- Diffie-Hellman Groups 1, 2, 5 (RFC2412, DIFF76)
- Backup IKE Peer
- Dead peer detection (RFC 3706)
- Remote Access
- IPSEC (RFC3457)
- L2TP (RFC2888, 2661)
- PPTP (RFC2637)
- L2TP within IPSEC (RFC3193)
- NAT Traversal (RFCs 3947 & 3948)
- Split Tunneling
- Network Topologies
- Hub & Spoke
- Full Mesh
- Custom
Routing
- BGPv4 (RFC1711) - BGPv4 with MD5 (RFC2385)
- OSPFv2 (RFC2328, STD0054)
- RIPv1/v2 (RFC2453, STD0056) - RIPv2 with MD5
- Static Routes
- Routing over IPSEC
Addressing
- Network and Port Address Translation (RFC3022, RFC1918)
- DHCP (RFC2131 – 2, RFC3396, RFC3442)
- Client
- Server
- Relay with BOOTP forwarding
- Point-to-Point Protocol (RFC1661 – 2, STD0051)
- PPP over Ethernet (RFC2561)
- Static Address
Clients
- Nokia Mobile VPN Client 3.0
- Native Microsoft Windows L2TP/IPSEC client support (for Windows 2000, Windows XP and Windows Mobile 2003 Second Edition)
Firewall
- Stateful Inspection
- Demilitarized Zone (DMZ)
- Protocol Support (partial list)
- HTTP, HTTPS
- SMTP, IMAP, POP3
- Telnet, SSH
- NetBIOS over TCP
- ICMP, SNMP, DNS, NTP
Application Gateways
- FTP
- TFTP
- RTP (RealAudio/ RealVideo)
- IRC Chat
- Stateful TCP, UDP and ICMP Flows
Policy-based type of service
- Differentiated Services (DiffServ)
- DiffServ with IPSEC
Meta-Hop and high availability
- Intelligent VPN
- Self-Learning
- Self-Healing
- VRRP
- IP Clustering
- Dynamic Load Balancing
- Active Session Failover
- Zero Downtime Upgrades
- Linear Scalability
- Prioritized External Interface Backup
- Ethernet (including DSL/Cable)
- Dial (including V.92/ISDN)
- Backup Hub
- High Reliability Hardware Design
- Flash-based System
PKI and authentication services
- Nokia AOS Certificate Authority
- X.509v3 digital certificates
- CRLv2 certificate revocation
- LDAPv3 certificate storage
- PKCS#7, PKCS#10 certificate enrollment
- SCEP client
- Nokia Security Service Manager Enrollment Gateway
- Password Authentication with CRACK
- 3rd Party Authentication Services
- RADIUS
- SecurID
- LDAPv3
- Microsoft Active Dir
- Entrust Authority
- Verisign PKI
- Baltimore UniCERT
- RSA Keon
- Microsoft CA
- Sun ONE Certificate Server
Management
- Nokia VPN Manager
Key Features
- SSLv3-secured Java GUI
- Staging and Over-the-Air Provisioning
- Rapid Deployment with Templates
- Topology Mgmt with Partitions
- Group Mgmt with Realms
- Upgrades and Backup with Scheduled Operations
- Generate Nokia Mobile VPN Policy Files
- Performance Monitor
- Platform Req'ts: Microsoft Windows 2000, XP, 2003 Server or Red Hat Enterprise Linux 3.0
- SSHv2-secured AOS CLI
- SNMPv1/v2/v3 (USM) (RFC3411 – 15, STD0062)
- MIB-II (RFC1213)
- IP MIB (RFC2011)
- TCP MIB (RFC2012)
- UDP MIB (RFC2013)
- Interfaces Group MIB (RFC2863)
- IP Forwarding Table MIB (RFC2096)
- Host Resources MIB (RFC2667)
- Nokia VPN IPSEC MIB
- Nokia VPN L2TP/PPTP MIB
- Nokia VPN Configuration MIB
- Syslog Logging
- NTPv3 Client
- Out-of-Band Mgmt via Modem
Base System Configuration
- 1GB System RAM, expandable to 2GB
- 4 integrared 10/100/1000 Ethernet interfaces
- Integrated PCMCIA slot
Optional PMC Cards
- 4-port 10/100 BASE-TX, copper
- 2-port 10/100/1000 BASE-T, copper
- 2-port 1000 BASE-SX, MMF
Dimensions
- Height – 1.75 in (4.4 cm) – 1U
- Width – 17 in (43.2 cm) without mounting brackets – 1U; or 19 in (48.2 cm) with mounting brackets
- Depth – 17 in (43.2 cm)
- Depth – 17.5 in (44.5 cm) at handles, standard bracket position
- Weight – 18 lbs (8.2 kg) with mounting brackets
- Front access for upgrades and maintenance
Power Requirement
- AC Input 100-120V / 200-240V
- Frequency 50 / 60 Hz
- AC Input Current 3A
Nokia 105i
Nokia 105i can be easily managed using Nokia VPN Manager. With the graphical interface, IT managers can manage gateway policies and configurations using an easy-to-use, centralized management solution to deploy, deliver, and update VPN policies and configurations. Nokia 105i also features a full command-line interface, SNMPv3 monitoring and remote logging services.
- Deploy, deliver and update VPN policies and configurations for gateways and Nokia Mobile VPN clients on the enterprise network
- Schedule upgrades with limited manual intervention, without bringing the gateway down
- Applies user security policies and complex IPSec policies and network topologies across network gateways and/or mobile terminals
- Supports multiple common authentication methods, including RADIUS, LDAP, Microsoft Active Directory and PKI with X.509v3 from internal or external certificate authority
Nokia 105i
IPSec client for business optimized mobile phones
Nokia Mobile VPN Client is designed for mobile phones running the Symbian operating system and is almost transparent to the user. Once the application is launched, a connection is established and the mobile user is prompted for proof of identity using a token such as a SecurID password or a digital certificate. Once authentication to the corporate VPN occurs successfully, a VPN tunnel is established between the mobile phone and the corporate network and all data traveling to and from the device is encrypted, no matter what the mobile application. Because of the stringent security inherent in IPSec, the data is protected from being captured and retransmitted later and is received exactly how it was sent. Check the list of supported phone models from the Nokia Mobile VPN page.
Support
Nokia IP VPN reliability, performance and security are backed by Nokia's world-class First Call-Final Resolution global support and service. Nokia is dedicated to excellence with Technical Assistance Centers around the world, and on-site service capabilities in 1,000+ metropolitan areas covering more than 150 countries.
- Global network of 7x24x365 Technical Assistance Centers
- Nokia First Call - Final Resolution support
- Worldwide product part spares and on-site services
- Software Subscription service delivers updates, minor feature releases and device compatibility
Visit business support and service for more information.