CF401W - Provides the lowest cost true content filtering wireless firewall in Canada

The SoHo CF401W Firewall is both a router and a FAST WIRELESS firewall (54Mbps, 802.11g) that offers both  low price and high performance. It's ideal for those who need security and mobility for sharing their high bandwidth internet connection with several users. That's because it combines:

  • a wireless access point for up to 253 users. It uses WPA2, WPA or WEP (Wired Equivalent Privacy) technology security with 128 bit encryption for data transmitted via wireless. It also allows control of the wireless station's MAC address to ensure that only authorized users access the network. It supports the fast wireless standard 802.11g (54Mbps) and is compatible with the 802.11b (11Mbps) standard. 2.4GHz frequency. Unlike WEP, which is easily hacked, WPA and WPA2 are effectively unbreakable. Don’t use a cheap wireless firewall with only WEP if you don’t want to share your data with the world!
  • a professional firewall that protects against attacks and external invasions.
  • a router
  • a 4 port 10/100 mbps switch

The CF401W allows users to create separate user control profiles for each member. Manage what time of day the user can access the Internet. Limit how much time each user can spend on the Internet. Control which Internet applications a user is allowed to use. Block objectionable content based on a users maturity level.  The Content Filter concept is simple. You create different user accounts for each member and each account has its own set of access rules.  You can set rules to enforce when the user is allowed to access the Internet. You can set daily allowances to manage how much time each user is allowed to spend on the Internet, on any given day of the week. Once a user’s daily allowance is used up, their Internet access will be disconnected and they will be logged off the Content Filter system for the day.  You can also block a user’s access to certain online applications such as Web, email, chat rooms, peer-to-peer applications and online games.  The CF401W provides content filtering for any number of users behind the firewall - up to 253.  That's a lot cheaper than software-based subscriptions, and a lot harder to bypass.

We recommend combining the CF401W with proper, up-to-date virus protection on each computer on your LAN. You can use any antivirus product, including Grisoft AVG antivirus, which is free for non-commercial use, and is very inexpensive for commercial use.  We also recommend the use an anti-spyware program, such as Spybot Search-and-Destroy (which is free for non-commercial use), or Grisoft evido, which is very inexpensive for commercial use.  You can buy either product through our affiliate link on the left side of this page.  Note that for large central sites protected by HotBrick's HSS4000 or HSS6000 enterprise firewalls, we recommend purchasing the corresponding HotBrick subscription.

HotBrick´s SoHo CF401W was developed to answer the needs of small offices and home users who connect to the internet via a high bandwidth internet connection and need a FAST AND SAFE WIRELESS SOLUTION for internet sharing.  We recommend it for up to 30 users, in homes, offices, warehouses or manufacturing facilities.  If you need more than four wired devices, simply add an external managed switch or an unmanaged switch or hub.

HotBrick´s SoHo CF401W allows the definition of different access policies, with user division into 5 groups with distinct internet access and policies. It also allows controlling and blocking undesirable web sites. It works as a DHCP server for 253 users, assigning IP numbers to the computers on your network, freeing another computer from that task.

With the SoHo CF401W you will have firewall protection against attempted attacks and invasion through its NAT (Network Address Translation) and Anti-DoS (Denial of Service) features and attack alerts via e-mail

The SoHo CF401W comes with a detachable omnidirectional stub-whip antenna. As the antenna is attached with a standard RP-SMA antenna, you can substitute a higher gain or directional antenna to meet the needs of your own office or home. We use this firewall without a problem in a two-storey –plus basement brick office. We’ve seen it used with the standard antenna in a rectangular industrial unit of 5,000 sq. feet, mounted at about 11 feet. With a higher gain omni antenna, you can easily extend or double this coverage. In a long, narrow office, you can use a plate antenna with 14 dbi gain to cover up to 300 feet in distance, while staying legal within DoC and FCC limits.

For the protection of your business/home network, HotBrick´s SoHo CF401W provides a high performance firewall with SPI (Stateful Packet Inspection) which detects and blocks DoS (Denial of Service) and other malicious attacks. The NAT (Network Address Translation) feature performs the translation of network addresses and ports, ensuring the privacy of your internal network IPs and requiring only one public IP for your network. The SoHo 401W allows you to block and control access to undesirable sites, preventing users from improperly using the internet at work. The DMZ (demilitarized zone) feature provides convenience for applications that demand bidirectional data transmission on the internet, and also allows a server/PC on the LAN to act as an independent node that communicates with the internet in both directions, like web servers. Without the DMZ, bidirectional communication with the internet is not allowed by the firewall. The 401W supports up to 6 DMZs in a Multi-DMZ configuration.  The Virtual Server feature, with port forwarding, allows LAN service sharing, such as e-mail and FTP. With this feature, external users can access specific services on your LAN. With the SoHo 401W you can create up to 5 distinct user groups, with distinct internet access and policies. For example, you can create a group with full access, one that can access only the internet and email, and another that can access only email. If you have a dynamic IP address, which changes at each connection or various intervals, using the DDNS feature stops you from having to change the IP address manually on your equipment. This way remote access, VPNs and other services that depend on IP addresses are not interrupted. The SoHo CF401W allows the passage of VPN connections (PPTP, L2TP, IPSec) through the firewall. It does not interfere with established VPN tunnels between internal and external users/servers. The CF401W supports internet communication applications such as games, VoIP and conferences, that are usually hard to use behind a firewall. The support of special applications allows the use of some non-standard applications, where each port used to respond is different from the port that issued the request.

FIREWALL
40 Mbps throughput
NAT
DoS
Access control by group (5 groups)
Stateful Packet Inspection
ICMP filter
Ping to death
5,000 concurrent connections

SWITCH 10/100
1 x WAN Port 10/100 Mbps
4x LAN Ports 10/100 Mbps
Software DMZ on any network IP

Ports

1 WAN Ports
4 LAN Ports

Wireless

802.11g
802.11b
detachable antenna (RP-SMA connector)
WPA2 / WPA / WEP

WAN Networking

VPN pass-thru
PPPoE
PPTP
DHCP client
DDNS (multiple providers)
Static IP

FEATURES

Shared internet access up to 253 users
High performance NAT router
Multiple IP address support
Software DMZ on any physical port
Multiple DMZ, DDNS, Remote Management
Routing, Virtual Servers, SNMP and ARP Proxy.
Packet Filter & block URL
Easy Setup/ Management though Web Interface


Dimensions
140 x 99 x 27mm -or- 1 1/16” X 5 ˝” X 3 7/8”
1.1kg -or- 2.3lb including power supply

Download manuals for this product here!

New Firmware for the Soho CF401W!
(Includes WPA2 and WPA)

Update your Firewall

February 18, 2005 - Release notes are here!


Discontinued in Canada February 2008 



We will not be undersold on any product - call us @  (800) 773-1389

HotBrick Hardware Firewall
30 day money back
Lower Cost of Ownership
Free technical support by email
Unlimited Firewall Updates
One year warranty