H3C NS-ACG1000-AI-75+LIS1+A2 Sec Path ACG1000-AI-75 Application Control Gateway (8 Gigabit Ethernet bypass ports + 8 10 Gigabit fiber ports + 6 expansion slots, 300W 1+1 power supply), includes system functionality license (includes one-year APP & URL signature database upgrade license)

H3C NS-ACG1000-AI-75+LIS1+A2
H3C NS-ACG1000-AI-75+LIS1+A2 Sec Path ACG1000-AI-75 Application Control Gateway (8 Gigabit Ethernet bypass ports + 8 10 Gigabit fiber ports + 6 expansion slots, 300W 1+1 power supply), includes system functionality license (includes one-year APP & URL signature database upgrade license). IPv6Supports: IPv6 Users: Users can bind an IPv6 address. Tier 1 Specifications: Level 2 SPEC, Level 3 SPEC, Level 4 SPEC. Policy R
Key Specifications
Need configuration help?
Our CCIE certified engineers can help you verify compatibility.
Fast Dispatch
Global logistics network aiming for same-day handover.
Guaranteed Quality
Every unit undergoes rigorous 38-point inspection test.
Global Reach
Trusted by enterprise clients across 6 continents.
Expert Support
Certified network engineers ready to assist with configuration.
Resumen
Especificaciones
| Catalog Description | |
|---|---|
| Description | H3C Sec Path ACG1000-AI-75 Application Control Gateway (8 Gigabit Ethernet bypass ports + 8 10 Gigabit fiber ports + 6 expansion slots, 300W 1+1 power supply), includes system functionality license (includes one-year APP & URL signature database upgrade license) |
| Key Specifications | |
| Standard API Interfaces | Supports integration with standard telecom CRM systems to proactively retrieve information such as locations and APs; |
| Tier 1 Specifications | Level 2 SPEC, Level 3 SPEC, Level 4 SPEC |
| Network Functions | Deployment Mode: Bypass, Single-Interface Listening Switch Mirroring Traffic |
| DHCP | DHCP Service Type: DHCP Server, DHCP Relay Agent |
| IPv4 Routing | Routing Table: Displays device routing information |
| Policy Routing | 5-tuple Policy Routing + Application + Time |
| Product Specifications | |
| Tier 1 Specifications | Level 2 SPEC, Level 3 SPEC, Level 4 SPEC |
| Network Functions | Deployment Mode: Bypass, Single-Interface Listening Switch Mirroring Traffic |
| DHCP | DHCP Service Type: DHCP Server, DHCP Relay Agent |
| IPv4 Routing | Routing Table: Displays device routing information |
| Policy Routing | 5-tuple Policy Routing + Application + Time |
| ISP Routing | Built-in ISP information for China Telecom, China Unicom, China Mobile, and the Education Network; ISP information can be customized |
| RIP | Supports v1, v2 |
| OSPF | Supports default route publication and route republishing |
| NAT | General Features: Supports source NAT, destination NAT, and static NAT; supports one-click NAT backhaul (bidirectional NAT) |
| ALG | Dynamic ports support protocol ALG: H.323, SIP, FTP, TFTP, PPTP. FTP, TFTP, and SIP support non-standard port settings |
| Session Limits | Rule Management: Supports IP-based limits on the number of sessions and new sessions per second (if an address object is referenced, the limit applies to each IP address within that address object) |
| Address Monitoring | Interface Monitoring: Supports PING, TCP, and DNS address monitoring entries |
| DDNS | DDNS: Supports Peanut Shell DDNS client and domain name-to-IP binding |
| Network Optimization | Dynamic App Caching: Dynamic App Caching identifies app downloads from a specific server to a device; the device automatically downloads the app based on the device’s download address. |
| Virtual Router | VRF Interface Virtualization: Interfaces belong to the root by default. After creating a VRF, interfaces can be added to it; each interface can belong to only one VRF. |
| IP Address Overlap | Interfaces under different VRFs can be configured with the same IP address |
| Security Settings | General Features: Blacklist—Supports manual configuration; supports automatically adding source addresses to the blacklist when attack prevention rules or IPS blocking rules are triggered |
| Security | Scan Protection: Interface-based configuration that supports automatic blacklisting of port scans and IP address scans |
| Anomalous Packet Protection | Anomalous packet types include: Ping of Death; Land-Based; Tear Drop; TCP flags; Winnuke; Smurf; IP options; IP spoofing; Jolt2 |
| ARP Protection | Supports ARP learning and active protection against ARP flood attacks; supports interface-based ARP learning control |
| Flood Protection | Supports SYNFlood, UDPFlood, ICMPFlood, DNSFlood |
| Behavioral Model | Supports DNS tunnel detection to identify malicious traffic in generic tunnels |
| Brute-Force Attack Prevention | Supports brute-force attack prevention for plaintext protocols such as HTTP, FTP, Telnet, IMAP, SMTP, POP3, and others |
| Weak Password Protection | Supports protection against weak passwords for protocols such as Telnet, FTP, IMAP, POP3, SMTP, and others |
| Custom IPS Rules | Supported protocol fields include: IP, UDP, TCP, ICMP, HTTP, FTP, POP3, SMTP, and more; supports regular expression matching |
| Virus Protection | Antivirus Settings: Supports a default virus signature database of 200,000 entries; high-end models support expansion to 8 million entries. |
| Web Protection | Protection Policies: Supports rule-based protection; precise access control; hotlinking prevention; CSRF attack protection; CC attack protection; application hiding; web page tampering prevention |
| Rule Database | Supports 11 types, including: HTTP protocol inspection, general attacks, SQL injection attacks, XSS attacks, directory traversal, malicious scanning and crawling, Trojan attacks, session hijacking, sensitive information leaks, server protection, and CMS vulnerability protection |
| Decryption Policies | HTTPS Website Decryption HTTPS Website Decryption Supports policy-based HTTPS website decryption Supports custom HTTPS website decryption Supports predefined HTTPS website decryption |
| SSL Email Decryption | SSL Email Decryption Supports decryption of SSL-encrypted web-based email clients Supports decryption of SSL-encrypted desktop email clients |
| Access Control | IPv4 Policies: Heptuple policy matching criteria: user, application, source address, source interface, destination address, destination interface, service, time, and endpoint type. Supports policy actions such as application control, URL filtering, and endpoint notification push. Policy-based persistent connections (time-to-live). |
| IPv6 Policies | Configuration Management: Supports 7-tuple policies where both users and applications are arbitrary |
| Web Keyword Control | Supports keyword control for search engines, HTTP uploads, and HTTP page content |
| Virtual Accounts | Supports whitelist and blacklist controls for QQ virtual accounts |
| URL Control | Supports filtering based on predefined and custom URL categories |
| Application Auditing | HTTP Auditing: Supports auditing of web page access, online communities, web searches, outbound HTTP file transfers, and HTTP file downloads |
| Email Auditing | Supports auditing of email sending, receiving, and webmail usage |
| Instant Messaging | Supports auditing of chat content from QQ client, We Chat client, web-based QQ, web-based We Chat, and Feixin mobile app, among others |
| Basic Protocols | Supports auditing of account information, commands, and other content for basic network protocols such as FTP, TFTP, and TELNET |
| Statistical Reports | Report Management Report Management Supports creating recurring report tasks on a daily, weekly, or monthly basis, as well as one-time reports. Report tasks can be enabled or disabled. Supports reports using various templates and allows administrators to customize report templates. Supports distributing reports via email and FTP. Reports are available in both PDF and HTML formats. Subscription options include: device metrics; behavioral management data metrics; network quality metrics; and network security metrics |
| External Servers | Supports configuration of email sending servers and email accounts. Supports configuration of FTP sending servers. External servers support connectivity verification. |
| Global Configuration | Supports setting the number of top users for report statistics; supports setting the starting date for report statistics |
| VPN | IPsec VPN IKE Phase 1 negotiation mode; supports IKEv1; supports main mode and wild mode |
| Encryption/Hash Algorithms | International standard algorithms (DES/3DES/AES/MD5/SHA-1), with support for Chinese national cryptographic algorithms |
| IPsec encapsulation | Supports ESP and AH encapsulation |
| IPsec cold backup | Supports IPsec cold backup; when the primary VPN disconnects, the backup VPN is triggered and begins establishing a connection |
| IPsec Fast VPN | IPsec Fast VPN supports IPsec Fast VPN configuration and supports both server-side and client-side deployment |
| SSL VPN | Global Configuration: Supports configuration of global SSL VPN features |
| Resources | Supports configuring network resources published via SSL VPN |
| User | Supports local management of SSL VPN accounts, as well as integration with AD and RADIUS |
| User Management | User Synchronization: SNMP Synchronization—Supports reading user-related information from network devices via the SNMP protocol and importing the retrieved information into the local system |
| AD User Synchronization | Supports synchronizing users from the AD server to the local system via the LDAP protocol; supports one-time manual synchronization and multiple automatic synchronizations |
| ARP Scan | Supports synchronizing users detected via ARP scan to the local system |
| compatiblefunctions | Pseudo-Portal Suppression: Supports pseudo-portal suppression (HTTP-APP) (command line) |
| HTTPS pop-up portal | Authentication portal pops up for HTTPS access |
| IPv6Supports | IPv6 Users: Users can bind an IPv6 address |
| Portal bypass | Portal Escape: Authenticated User Escape, All Users Escape |
| IMC Integration | Communication with IMC; Integration with IMC |
| Policies | Authentication Policies Match criteria: source interface, source address, destination interface, destination address, time Supports We Chat, SMS, local authentication, authentication-free, portal authentication, AD single sign-on, QR code authentication, and hybrid authentication |
| System Management | System Administrator | Account Management | Login authentication methods support local authentication, RADIUS server authentication, and LDAP server authentication. Supports U-key two-factor authentication for system administrators |
| Authentication Servers | RADIUS | Supports multi-user third-party storage for remote request authentication |
| LDAP | Supports authentication for remote requests from third-party multi-user storage; supports LDAP user and user group synchronization authentication |
| Server Groups | RADIUS/LDAP server groups, supporting primary/standby and cluster configurations |
| SMS Authentication | Supports seamless authentication; supports identity verification via SMS verification codes to enable Wi-Fi authentication for internet access |
| AD Single Sign-On | Supports single sign-on authentication via an AD server |
| System Maintenance Settings | Diagnostic Tools: Ping, traceroute, TCP SYN probe |
| Software bypass | IPS Module Software Bypass: When instantaneous CPU utilization exceeds 70%, the system enters the detection process at a 10:1 ratio; this ratio is adjustable via the command line |
| Dual-Node Hot Standby HA | Primary-Standby and Active-Active modes; supports synchronization of configurations, flows, signature databases, interface statuses, and IPsec VPN statuses |
| SNMP | SNMP Configuration, SNMP Agent: Versions v1, v2, v3 |
| trap | Trap Versions: v1, v2 Notification, v2 Inform |
| Domain Name-Related | DNSserver Supports 4 x DNSServers |
| DNS Transparent Proxy | Supports DNS weighting and priority-based transparent proxying based on outgoing interfaces |
| Zero-configuration USB drive | Zero-configuration USB drive: Supports USB drive version upgrades, USB drive configuration import, and zero-configuration deployment via USB drive |
| System Alerts | System Alerts: Supports system resource alerts, IPsec alerts, and email and pop-up alerts; pop-up alerts display the most recent 10 alert records by default |
| Wireless Non-Compliance | Database Tables: Supports local generation of database tables for user terminal login/logout, internet access logs, general content, AP data, location data, virtual identities, search keywords, BBS information, email information, and more; |
| Integration with Platform Vendors | Supports integration with the national standard (GA/WA3011.1-2015) data format; supports direct integration with mainstream public security backend platforms such as Renzi Xing, Pibo, Aisi, Hongxu, Rui’an, Wangbo, Zhongxin, Hengbang, Zhaowu, Yunchen, Kuanguang Zhitong, and Xiewang |
| Authentication Data | Supports standard RADIUS servers; supports retrieving user authentication information via the non-standard UDP port 9999; supports actively reading user information from selected AC MIB libraries; supports integration with authentication servers from City Hotspot, Shenlan, Tailian, Guanghuaguanqun, H3C IMC, SAM, Anmei, and others; |
| Cross-Layer 3 Auditing | Supports user traceback auditing for fat APs from manufacturers such as Fiber Home, Putian, Changhong, and Hisense; |
| Standard API Interfaces | Supports integration with standard telecom CRM systems to proactively retrieve information such as locations and APs; |
| Data Transmission | Supports transmission via FTP, FTPS, HTTP, UDP, and other protocols; supports file formats such as.ZIP,.syslog,.XML,.bcp, and.ok |
| Ordering Information | |
| Expansion Module | |
| 9803A1GM | NSQM1ACGQG2E&D - H3C Sec Path ACG1000-E&D 2-Port40GEthernetoptical interface Module(QSFP+) |
| 9803A1GN | NSQM1ACGGT8E&D - H3C Sec Path ACG1000-E&D 8-Port Gigabit Ethernetelectrical interface Module(RJ45) |
| 9803A1GP | NSQM1ACGGP8E&D - H3C Sec Path ACG1000-E&D 8-Port Gigabit Ethernetoptical interface Module(SFP) |
| 9803A1GQ | NSQM1ACGTG4E&D - H3C Sec Path ACG1000-E&D 4-Port10GEthernetoptical interface Module(SFP+) |
| SFP+ 10G Port | |
| 0231A0A8 | SFP-XG-LX-SM1310 - SFP+ 10GModule(1310nm,10km,LC) |
| 0231A1RQ | SFP-XG-LX-SM1310-D - SFP+ 10GModule(1310nm,10km,LC) |
| 0231A0A6 | SFP-XG-SX-MM850-A - SFP+ 10GModule(850nm,300m,LC) |
| 0231A1RP | SFP-XG-SX-MM850-D - SFP+ 10GModule(850nm,300m,LC) |
| 0231A2L4 | SFP-XG-SX-MM850-E - SFP+ 10GModule(850nm,300m,LC) |
| 9803A1GR | NSQM1ACGGTPFC4GP4E&D - H3C Sec Path ACG1000-E&D 4-Port Gigabit Ethernetelectrical interface Module(RJ45,2 Pair Bypass)+4-Port Gigabit Ethernetoptical interface(SFP) |
| SFP/SFP+10GOptical Port | |
| 0231A1PA | SFP-XG-LH80-SM1550 - SFP+ 10GModule(1550nm,80km,LC) |
| Cable | |
| 04042967 | CAB-CON-1.8m - Configuration Serial Cable—1.8 m—(DB9 Female to 8-pin Ethernet Port) |
| 0404A1EE | CAB-Console-1.8m-W31R - Configuration Port Cable-1.8m-(RJ45P)-(UL2725(3C28AWG))-(USB AP) |
| Security License Certificate | |
| 3130A5WA | LIS-ACG1000-SSL-25 - H3C Sec Path ACG1000 SSLVPN 25 x user license certificate |
| 3130A70H | LIS-ACG1000-AI-75-1Y - H3C Sec Path ACG1000-AI-75 APP & URL Feature Database Upgrade License, 1 year |
| 3130A6JW | LIS-ACG1000-CDC-1 - H3C Sec Path ACG1000—Authorization Letter for Custom Product Development Fees (1 person-day) |
| 3130A485 | LIS-ACG1000-IPS/AV-E-1Y - H3C Sec Path ACG1000 Series Enhanced IPS/AV Signature Database Upgrade Service License—1 Year |
| Specialized Services | |
| 8814A125 | SV-PS-EDS-OS - Overseas Experts Day |
| Product Identity | |
| Brand | H3C |
| Series | H3C ACG1000-AISeries Products |
Reseñas
Aún no hay reseñas
Sé el primero en calificar este producto.
Garantía
Política de Garantía Estándar
All hardware sold by ITMall includes our 3-Year Free Maintenance and 1-Year RMA Replacement Service. Please refer to our Warranty Policy for details.
- 1-Year Advance Replacement (RMA)
- 3-Year Free Repair Service
- Full coverage for functionality defects
Proceso de RMA sin complicaciones
We streamlined the return process to minimize your network downtime. Our engineering team provides pre-return diagnostics to ensure hardware is truly defective.
- 30-Day satisfaction guarantee return window
- Automated RMA portal access for instant tracking
- Restocking fee waived for functionality issues
Soporte técnico certificado
Our products are backed by CCIE-certified engineers who provide expert guidance on compatibility, configuration, and troubleshooting at no extra cost.
- Free pre-sales topology consultation
- Remote troubleshooting & firmware advice
- Simulation lab testing before dispatch
Logística Global y Embalaje
We ship to 85+ countries using premium anti-static packaging to ensure safety. Orders placed before 14:00 (GMT+8) are typically dispatched the same day.
- Double-walled boxes with customer molded foam
- Blind shipping support for channel partners
- Real-time tracking via FedEx / DHL / UPS
Recursos
Preguntas frecuentes
What is the RIP specification for NS-ACG1000-AI-75+LIS1+A2?
What is the static routing specification for NS-ACG1000-AI-75+LIS1+A2?
What is the Model specification for NS-ACG1000-AI-75+LIS1+A2?
What is the Product Code specification for NS-ACG1000-AI-75+LIS1+A2?
Is this product Brand New?
What is the warranty period?
Do you offer volume discounts?
How fast can you ship?
¿Todavía tienes preguntas?