The ELSA LANCOM Family

Security Functions

Secure your network!

Authentication via PAP and CHAP

Users are authenticated using PAP (Password Authentication Protocol) and CHAP (Challenge Handshake Authentication Protocol). Both authentication processes are embedded in the PPP protocol. Unlike PAP, CHAP authentication permits the encryption of user names and passwords prior to their exchange between the participants.

Call Number Identification

Call numbers are identified using the CLI (Calling Line Identification) ISDN service. The subscriber number of the caller is transferred during incoming calls. The LANCOM will automatically call the number back if it corresponds to one of the numbers in the Address Book. Employees can thus dial into the company network from home and have the connect charges borne by the headquarters. In addition, the number is used to verify the participant's access privileges.

Callback

Suppose you would like to access the network of the company headquarters from a branch office or from home. The callback function ensures that the connect charges are borne by headquarters.

The ISDN router checks your number during the call establishment and cancels the incoming call immediately, either without establishing a connection, or with a connection and password check. The router then immediately dials your number and establishes a connection. You can now access the network without incurring connect charges yourself. The great advantage of the callback function is the acceptance of the connect charges, as well as the security of a fixed subscriber number for the callback. As a result, it is no longer necessary for employees to maintain expense accounts for connect charges.

IP Masquerading

Connections to the Internet not only open astonishing opportunities, they also entail additional risks. The ELSA LANCOM routers offer extensive security and firewall functions to protect your LAN from intruders. One of the most modern solutions for the protection of your company network is IP masquerading.

IP masquerading - also known as Single User Account (SUA) or NAT/PAT - makes Internet access simple and safe. All workstations in the LAN are hidden behind a single IP address in the LANCOM when accessing the Internet. On one hand, this means increased security, as no workstation can be reached from the outside via its internal IP address. On the other hand, IP masquerading eliminates the need to purchase costly IP addresses. The local network (intranet) can use as many free IP addresses as necessary, since these are all invisible to the Internet.

Packet Filtering

Extensive protection can be achieved by configuring filters to ensure that only certain addresses, services or protocols are authorized in the LAN or WAN. Filters can be set for the IP and IPX routers as well as for the bridge.

Password Protection

Password protection can be used not only to verify connections, but also to protect the configuration of the LANCOM.

Back to LANCOM homepage