LANCOM 7111 VPN – LANCOM 8011 VPN Chapter 1: Introduction16ENRAS server (via VPN) 100 tunnel 200 tunnel,optional 500 or 1000RAS server (via ISDN)IP routerIPX router (via ISDN), e.g. for coupling of Novell networks or diallinginto Novell networksNetBIOS proxy for coupling of Microsoft peer-to-peer networks viaISDNDHCP and DNS server (for LAN and WAN)N:N mapping for routing networks using the same IP address rangesvia VPNLANCAPI server for the operating with office applications as fax oranswering machine via ISDN interfaceISDN leased linesWAN connectionFast EthernetISDN S 0 for establishing Danymic VPN connections to remote sites withdynamic IP addressesLAN connection4 individual Fast Ethernet LAN ports, switchable separately, e.g. asLAN switch or separate DMZ ports, auto crossover.Security functionsIP masquerading (NAT, PAT) to hide all workstations of the LAN behindone common public IP address.Stateful Inspection Firewall with Intrusion Detection and DoS-Protec-tionFirewall filters for a selective locking of IP addresses, protocols andportsMAC address filter control e.g. the access of LAN workstations to IProuting functionsConfiguration protection to block “brute force attacks“LANCOM 7111VPNLANCOM 8011VPN