Jump to content Australia-English
HP.com Home Products and Services Support and Drivers Solutions How to Buy
» Contact HP
 
ProCurve Networking by HP ProCurve Networking by HP  >  Products & Solutions

ProCurve Switch xl Access Controller Module

 

»

ProCurve Networking by HP

»

Why ProCurve ?

»

Products & Solutions

»

Security

»

Convergence

»

Mobility

»

Product services

»

Technical support

»

Software updates

»

Network training

»

Design Center

»

Reference library

»

Customers success

»

Contact ProCurve


ProCurve Design Center

ProCurve Design Center
ProCurve Switch xl Access Controller Module (J8162A)
ProCurve Switch xl Access Controller Module (J8162A)

» Features and Benefits
» Specifications
How to buy
commercial help me image
 »  Call me now

ProCurve Switch xl Access Controller ModuleNEW!

With the addition of the ProCurve Switch xl Access Controller Module, the Switch 5300xl series delivers a unique approach to integrating identity-based user access control, wireless data privacy, and secure roaming with the flexibility of a full-featured intelligent edge switch.

Centrally managed from the ProCurve Secure Access Server 740wl, the module's capabilities enable unifying wireless and wired mobility, allowing network managers to easily deploy edge-enforced access control on existing 5300xl switched networks or to design new, highly scalable, secure Switch 5300xl-based mobile LANs.


Features and Benefits

  • Choice and flexibility:
    • Leveraging the versatility of the 5300xl switch series, the ProCurve Switch xl Access Controller Module unifies wireless and wired mobility user access control in an intelligent edge Switch 5300xl platform to meet the mobile LAN demands of today--and it easily scales as your business needs change.
    • The Switch xl Access Controller Module enables network managers to easily deploy edge- enforced access control on any or all 5300xl ports or integrate user access control into new highly scalable and secure 5300xl switch-based networks.
    • The modular design of the 5300xl allows network designers to leverage port type, density, and PoE capability to deploy a secure and cost-effective mobile LAN as an integrated component of a 5300xl intelligent edge switch.
    • As your mobile LAN grows, the edge enforcement capabilities of the Switch 5300xl easily scale by simply installing an additional Switch xl Access Controller Module in any 5300xl intelligent edge switch.
  • Identity-driven policy management:
    • Rights-based network access control and management: enables network administrators to easily create and maintain robust access policies that permit or deny mobile access to network resources based on user identity, location, and time of day
    • Same mobile LAN for all users: no need to deploy separate networks because identity- based access control allows multiple types of users (employees, visitors, temporary workforce) on the same network to access specific network services without risk to network security or unauthorized access to sensitive data
    • Precise control over who has access to what and when: centrally managed access policies combined with edge-enforced packet inspection allow or deny user access to specific network services at the edge of the network, including applications such as Internet or intranet Web access, FTP, telnet, specialized application servers, or any network element that can be identified by port and IP address
  • Wireless data privacy:
    • Terminates client VPN sessions using non-proprietary, built-in VPN clients of Microsoft and Apple Macintosh operating systems and third-party VPN clients
    • Uses IPSec, PPTP, L2TP/IPSec, or SSH tunnels to encrypt wireless traffic with DES, 3DES, Blowfish, CAST, or AES to provide the utmost in wireless data privacy
    • User authentication and appropriate access to network resources can be controlled at the edge of the network since all secure tunnels terminate at each 5300xl edge switch
  • Client-based bandwidth rate limiting: prioritizes network bandwidth based on business need by setting limits on upstream and downstream bandwidth based on user, group, time, and location
  • Roaming across subnets: ensures that users maintain persistent connectivity to the network and applications
  • Standards-based authentication support for LDAP, Active Directory, and 802.1X: seamlessly integrates into existing authentication services or uses the built-in database
  • 802.1Q VLAN support:
    • Supports standards-based tagging based on user or point of network access
    • Allows placement of wireless traffic on separate VLANs
    • Provides application of filters based on VLAN ID
  • Misconfigured service management and proxy redirection: allow secure, transparent login for guests or users who have changed their client network configurations
  • Anti-MAC-address spoofing: prevents untrusted users from gaining access by spoofing a trusted user's MAC address
  • Complete session logging: provides detailed information for problem identification and resolution

» Return to top


Specifications

Physical characteristics
Dimensions: 8.97 x 8 x 1.75 in. (22.78 x 20.32 x 4.45 cm)
Weight: 1.9 lb. (0.86 kg )

Environment
Operating Temperature: 41°F to 104°F (5°C to 40°C)
Operating Relative Humidity: 15% to 80% , noncondensing
Non-operating/Storage Temperature: -40°F to 158°F (-40°C to 70°C)
Non-operating/Storage Relative Humidity: 20% to 90% , noncondensing
Altitude: up to 15,091 ft (4.6 km)

Safety
EN 60950/IEC 60950;UL 60950

Emissions
EN 55022/CISPR-22 Class A

Immunity
EN: 55024/CISPR 24
ESD: IEC 61000-4-2
Radiated: IEC 61000-4-3
Surge: IEC 61000-4-5
Conducted: IEC 61000-4-6
Power frequency magnetic field: IEC 61000-4-8
Voltage dips and interruptions: IEC 61000-4-11

Features
Network
– Network address translation
– Custom NAT range
– Port address translation
– Real IP mode
– HTTP/HTTP proxy support
– DHCP client
– DHCP server (in NAT mode)
– DHCP relay (in Real IP mode)

Security
– VPN client compatibility: Certicom, Mac OS X, Microsoft, NetScreen, PGP, SafeNet
– MPPE 40, 128-bit encryption
– IKE and ESP tunnel mode
– SHA-1, MD5, HMACH-SHA-1, HMAC-MD5
– Diffie-Hellman, Groups 1, 2, 5
– MS CHAP, MS CHAP v2
– Session redirects
– X.509 certificate support
– Session timer
– Linger timer
– Roaming denial

System management
– Secure Web-based GUI
– CLI
– Remote CLI access via SSH
– Secure, digitally signed software upgrades, TFTP, FTP, HTTP
– Centralized configuration backup and restore
– SNMP MIB II compliant

Logging and monitoring
– Session logging
– Syslog server interface
– Session duration
– Source/Destination address
– Bytes transmitted/received

» Return to top

» Return to Accessories

Printable version
Privacy statementUsing this site means you accept its terms
© 2008 Hewlett-Packard Development Company, L.P.