- Product Name: H3C SMB-ER2100N
- Brand: H3C
- H3C model: SMB-ER2100N
- Color classification: dark gray
- Wireless: Wireless
- Wireless transmission speed: 300Mbps
- Cable transmission rate: 10 / 100Mbps
- Wireless transmission rate: 300Mbps
- Applicable object: Multi-service router
- Whether to support VPN: support
- Removable: Removable
- After-sales service: three bags of shops
- Condition: New
- Packaging volume: 266mm × 162mm × 44mm
The H3C ER2100n is a next-generation enterprise-class high-performance wireless router launched by Hangzhou H3C Technologies Co., Ltd., which is located in the SMB / Ethernet / Small micro-enterprises, branch offices and home office network environment.
300M high-speed wireless access, convenient and safe 'guest mode'
Support 802.11b / g / n wireless technology, the use of 2X2 MIMO architecture, providing up to 300Mbps wireless speed, faster speed, more user access capabilities.
Detachable dual antenna, up to 5dbi gain omnidirectional antenna, a wide signal coverage, penetrating ability, environmental adaptability.
Supports 2 virtual APs, which can control different policies for different virtual APs to meet flexible wireless access requirements.
Convenient and secure 'guest mode' that isolates wireless users and office networks operating under 'guest mode' virtual APs. For example, the company opens 'guest mode' virtual APs for partners and vendors to provide them with Limited network access and external network access capabilities, but also to protect the enterprise network information security.
Support a wealth of Internet behavior management
ER2100n supports website filtering (black and white list), supports both exact and fuzzy matching of keywords, and supports the privilege IP configuration of website filtering;
ER2100n supports a variety of instant messaging software and financial software application control, such as QQ / MSN / great wisdom / Analyst / Flush / GF Xeon / Everbright Securities / State Securities and other financial software application control functions.In addition, the user can The setting of privileged user groups ensures that the use of key users is not affected.
IPSec VPN, branch node access
ER2100n supports standard IPSec VPN. Users can achieve secure VPN connection between end-to-end through simple WEB configuration and support multiple encryption algorithms. It is an ideal branch node access device.
The ER2100n optimizes the configuration steps for IPSec VPNs. With a straightforward configuration wizard, you can easily configure IPSec VPN connections without professional knowledge of the network.
H3C combines the networking features of domestic users to configure NAT traversal of IPSec VPN connections and NAT-T through the domain name on the ER2100n. The IPSec VPN links can be established even if there is no fixed IP address on both sides.
L2TP VPN supports dial-up access
ER2100n support L2TP dial-up access for business travel employees to access the company's internal server
ARP virus double protection
The ER2100n fixes the ARP list of the gateway through the IP address binding function, which can effectively prevent the internal network communication interruption caused by ARP spoofing.
ER2100n can identify and discard illegal ARP packets in real time. It supports the mechanism of sending gratuitous ARP messages in milliseconds. It can effectively avoid ARP attacks caused by LAN PC poisoning and can correct the ARP errors of PC in time.
Intelligent QoS policy
BT, Thunder and other P2P software on the excessive use of network bandwidth will affect the normal operation of other users within the network, ER2100n through the IP-based network traffic rate limiting mechanisms and NAT entry limit mechanism can effectively control a single PC on / Downstream traffic and the number of established NAT entries, limiting the P2P software on the network bandwidth over the occupation.
The ER2100n supports QoS policy configuration based on the IP network segment / IP range in a shared and exclusive manner according to the specific time period to meet the user's flexible service configuration requirements.
Comprehensive system monitoring
The ER2100n provides comprehensive performance monitoring and provides real-time monitoring of system CPU and memory usage in a line graph format.
ER2100n provides real-time monitoring of traffic within the network, according to the port or IP traffic monitoring and statistics.
ER2100n provides various security logs, including real-time log, address binding log, traffic alarm log, and session log, for network administrators to monitor the network running status and security status in real time.
ER2100n uses a professional green low-carbon design, and products meet environmental protection and safety of the EU RoHS standards.
Dimensions (H × W × D) mm
266 mm x 162 mm x 44 mm
1 10 / 100M WAN port
4 10 / 100M LAN port
1 Console port
2 external removable 5dbi high gain omnidirectional antenna, 2X2 MIMO architecture
The processor (CPU)
Clocked at 533MHz
No fan, natural cooling
0ºC to 40ºC / -40ºC to 70ºC
5% to 95% (non-condensing)
Total power consumption
300Mbps wireless speed, 2X2 MIMO architecture
Multiple virtual APs
Convenient and secure guest mode
Wireless MAC filtering
Outbound communication policy (source IP / destination IP / protocol / port / time period)
Inbound traffic policy (source IP / destination IP / protocol / port / time period)
Supports 10 IPSec connections
Support AH, ESP agreement
The SAs can be set up manually or through IKE
ESP supports DES, 3DES and AES encryption algorithms
Supports MD5 and SHA-1 authentication algorithms
Support IKE main mode and brutal mode
Support for NAT-T traversal
Support the configuration of the domain name through the IPSec connection (DDNS)
Static ARP (IP <-> MAC address binding)
DHCP Authorization ARP (automatically bound DHCP assigned IP)
ARP anti-attack / gratuitous ARP
State packet inspection
To prevent WAN port Ping
Prevents TCP syn scanning
Prevent Stealth FIN scanning
Prevents TCP Xmas Tree scanning
Prevents TCP Null scanning
Prevents UDP scanning
Prevent Land attack
Smurf attack prevention function
Prevent WinNuke attack function
To prevent Ping of Death attacks
The SYN Flood attack function is disabled
The UDP Flood attack function is disabled
Prevent ICMP Flood attack
Prevents IP spoofing
Prevents fragmentation packet attacks
Prevents TearDrop attacks
Prevents the Fraggle attack
User online behavior management
URL filtering (black and white list)
MAC address filtering
QQ / MSN access control
Financial Software Control
Big wisdom / analyst / flush / GF Xeon / Everbright Securities / State Securities
Historical traffic statistics
Traffic statistics (based on IP / port traffic statistics)
Smart Elastic Bandwidth
Green Channel Management / Restricted Channel Management
Network traffic rate limit (based on IP, respectively, the upstream and downstream traffic speed limit)
Restrictions on NAT entries
Traffic statistics based on physical ports
IP-based traffic statistics, support for automatic sorting
Statistics of IP - based NAT Links
VPN transparent transmission (PPTP, L2TP, IPSec)
Supports local DNS server
Web-based user management interface (remote management / local management)
HTTPS Remote Management
Command line CLI
SNMP V1 / V2C / V3
Upgrade the system software via HTTP
Static Routing (50)
Ping / Traceroute
Fault information a key export