Specifications
128
NLUO PMC CONTRACTOR
SIGNATURE AND SEAL SIGNATURE AND SEAL SIGNATURE AND SEAL
3.Firewall & IPS
Built-in ICSA Certified Wireless Firewall in the Switch
Firewall should support minimum 100000 concurrent sessions.
System should provide L2 / L3 stateful firewall,Role based firewall, DOS attackes and Strom control
The firewall must be able to take action including to allow the traffic, deny the traffic, reject the traffic, route the traffic,
destination or source NAT the traffic, modify the QoS level of the traffic, and blacklist (remove from the network) the client for
policy matches.
Should include IPS licensing for 5 years from the date of installation.
4.System Architecture
Centralised MAC address filtering.
Should support onboard and external DHCP server
Controller should support Onboard AAA server.
The proposed architecture should be based on controller based Architecture with thick AP deployment. While Encryption /
decryption of 802.11 packets should be performed at the AP.
Support roaming between access points deployed on same subnet and different subnets.
5.QoS features
Per user bandwidth Rate Limiting
Self healing (on detection of RF interference or loss of RF coverage)
Should support per user, per device, and per application/TCP-port prioritization
Dynamic load balancing to automatically distribute clients to the least loaded 802.11 channel and AP; load balancing must not
require any client specific configurations or software
Adaptive RF management that provides the capability to pause channel scanning / adjust RF scanning intervals based on
application and load presence.
Capability to provide preferred access for “fast” clients over “slow” clients (11n vs. 11g) in order to improve overall network
performance.
Support advanced multicast features with multicast rate optimization, multi channel use and IGMP snooping










