24/7
T E C H N I C A L
S U P P O R T*
ProSafe™ Smart Wireless Switch Data Sheet
WFS709TP
Reliable, Secure, Scalable Wireless Controller for Small and
Mid-sized Businesses
The NETGEAR ProSafe Smart Wireless Switch is a full-featured wireless controller that centrally
manages 16 access points, delivering integrated wireless mobility, security and converged
services for both wired and wireless users.
Supporting up to 256 users per ProSafe Smart Wireless Switch, the WFS709TP has built in PoE
support on all eight 10/100 interfaces. With a Gigabit Ethernet port typically used to connect
the Wireless Switch to the network backbone, WFS709TP supports advanced security features
such as 802.1x, EAP-PEAP, EAP-TLS, EAP-TTLS, 802.11i, MAC address, SSID and location-based
authentication.
With identity-based security features such as support for RADIUS, LDAP and AAA server
support, NETGEAR ProSafe Smart Wireless Switch truly unifies wired and wireless access
without compromising on security.
Deployment
IntelliFi RF Management
Access Points
Deployed as an overlay on the existing network infrastructure, WFS709TP centrally manages,
deploys, monitors and controls your wireless infrastructure. Supporting multiple deployment
architectures including standalone switch deployments to hierarchical setups in master/local
configurations, the NETGEAR ProSafe Smart Wireless Switch can be configured in “master”
mode where all the configuration and security parameters are managed for the entire
wireless network. In addition, WFS709TP can be configured in “local” mode, acting as policy
enforcement points for the “master” controller as part of a hierarchical setup.
The overall Smart Wireless Switch Solution supports up to 32 access points with the Smart
Wireless Switches configured in redundant master/local mode and up to 48 access points
with the Smart Wireless Switches configured in non-redundant master/local configuration.
A standalone Smart Wireless Switch supports up to 16 access points.
Targeted towards the growing business NETGEAR ProSafe Smart Wireless Switch provides
continuous wireless coverage with features such as IntelliFi radio management. IntelliFi radio
management provides automatic self-configuration of all radio parameters including transmit
power level, channel, load balancing and interference avoidance.
For low-latency applications such as VoIP, NETGEAR ProSafe Wireless Switch delivers VoIP over
wireless by providing support for call admission control, voice-aware fast-roaming and strict
over-the-air QoS to deliver mobile voice capabilities.
Wireless users on the network can now experience seamless roaming as moving between
multiple access points is made simple with the ProSafe Smart Wireless Switch centralized
architecture. All user states, including security and mobility information, are maintained in
the centralized Smart Wireless Switch. Access points (AP’s) act as logical extensions to the
WFS709TP, accepting wireless traffic and sending it to the Wireless Switch over IP tunnels.
Access points supported include NETGEAR ProSafe 802.11a/g Dual Band Light Wireless Access
Point (WAGL102) and NETGEAR ProSafe 802.11g Light Wireless Access Point (WGL102).
WFS709TP can also manage existing NETGEAR WG102 and WAG102 Wireless Access Point
deployment by a one-time image download available on http://support.netgear.com that allows
the existing wireless access point to be managed by the Wireless Controller.
1-888-NETGEAR (638-4327)
Email: info@NETGEAR.com
ProSafe™ Smart Wireless Switch WFS709TP
Internet
ProSafe™ Smart Wireless
Switch (WFS709TP)
ProSafe™ 24 Port 10/100
Smart Switch with 4
Gigabit Ports and 24
PoE Ports (FS728TP)
ProSafe™ VPN Firewall
200 with 8-Port 10/100
and 1 Gigabit LAN and
Dual WAN Port Switch
(FVX538)
LAN
ProSafe™ Dual Band Wireless
Access Point (WAG102)
Skype WiFi
Phone (SPH101)
Notebook PC with
Dual 108 Mbps
Wireless Adapter
PC Card (WAG511)
ProSafe™ 802.11g Wireless
Access Point (WG102)
Desktop PC
with 10/100
NIC (FA311)
Desktop PC
with 10/100
NIC (FA311)
Desktop PC
with 10/100
NIC (FA311)
RF Planning Tool
Guest Access and Redundancy
With integrated RF planning tools, administrators can input floor plan images, number of floors,
building dimensions, desired coverage and an overlap factor for fault tolerance. The planning
tools compute the predicted RF characteristics of the building, plot the optimal location of the
access points and display predicted coverage.
Guest access, provided by a built-in captive portal, allows guest users connecting over the
wireless network restricted guest level access to the network, prohibiting them any access to the
sensitive data on the corporate network.
For mission-critical applications requiring network resiliency, WFS709TP supports fault-tolerant
hardware with industry standard N+1 wireless controller redundancy and access point
interleaving for access point redundancy. These features make it possible to provide a wireless
network with no single point of failure, guaranteeing the highest possible availability.
Technical Specifications
Physical Specifications
•
Dimensions (h x w x d):
–
4.45 x 44.2 x 33 cm
(1.75 x 17.4 x 13 in)
Weight: 4.5 kg (10 lb)
–
Hardware
•
External power consumption: 200W
–
Max., AC Input Voltage: 90-132V AC,
180-246V AC, AC
Input frequency: 47- 63Hz
–
Memory: Flash/RAM - 256M,
–
CompactFlash - 256M RAM
CPU
–
LAN port 10/100: Eight
–
10/100Base-T PoE ports and one
10/100/1000Base-T uplink port
Auto-MDIX-MDI-X
–
Serial port: For serial console
–
access only
MTBF 5 years/43,800 hours
–
LEDs to indicate power, port
–
configuration and activity
Operating temperature: 0˚- 40˚ C
–
Operating humidity: 10% - 70%
–
Storage temperature: 0˚- 50˚ C
–
Storage humidity: 5% - 95% RH
–
Wireless Switch Performance
•
and Capacity
–
–
–
–
–
–
–
–
Wireless LAN Security and
•
Control Features
–
–
–
–
–
–
Controlled access points: 16,
supports 16 users each on average
- NETGEAR ProSafe WGL102
- NETGEAR ProSafe WAGL102
Users: 256
MAC Addresses: 4096
VLAN IP Interfaces: 128
Fast Ethernet ports: 8
Gigabit Ethernet ports: One
10/100/1000Base-T
Total throughput: 1 Gbps
Encrypted throughput
(3DES & AES-CCM): 200 Mbps
802.11i security (WFA certified
WPA2 and WPA)
802.1x user and machine
authentication
EAP-PEAP, EAP-TLS, and EAP-TTLS
support
802.11i PMK caching for fastroaming applications
EAP offload for AAA server scalability
and survivability
Stateful 802.1x authentication for
standalone APs
MAC address, SSID and location-
–
based authentication
Multi-SSID support for operation of
–
multiple WLANs
SSID-based RADIUS server selection
–
Secure AP control and management
–
over IPSEC or GRE
Simultaneous centralized and
–
distributed WLAN support
Identity-Based Security Features
•
Wired and wireless user authentication
–
Captive portal; 802.1x and MAC
–
address authentication
Username, IP Address, MAC address
–
and encryption key binding for strong
network identity creation
Per-packet identity verification to
–
prevent impersonation
RADIUS and LDAP based AAA
–
server support
Internal user DB for AAA server
–
failover protection
Per-user session accounting for usage
–
auditing
Configurable acceptable use policies
–
for guest access