IOLAN SCG
Out-of-Band IT Infrastructure Management
- 16, 32 or 48 RS232 RJ45 Console Management Ports
- 10/100/1000Base-T Copper Network Connection
- ZTP & PerleVIEW Central Management Platform simplifies configuration, administration, monitoring, and troubleshooting.
- Cloud Hosting -- Deploy and manage your network from the cloud
- Advanced routing engine with AAA security and SSH/SSL encryption to meet all data center compliance policies
The Perle IOLAN SCG Console Servers provide data center managers with the ultimate solution for redundant, secure remote console management of any device with an RS232 RJ45 console port. With integrated firewall, two-factor authentication, advanced failover to multiple networks, and Zero Touch Provisioning (ZTP), your IT professionals and network operations center (NOC) personnel will have everything they need to easily perform secure remote data center management and out-of-band management of IT assets from anywhere in the world. This cost-effective 1U rack solution also maintains protocol integrity across Ethernet and adds full IPv4/IPv6 routing capabilities with support for RIP, OSPF, and BGP protocols.
Console Management for IT assets
The IOLAN SCG Console Server supports RS232 RJ45 connectivity to console ports on equipment such as Cisco routers, switches, firewalls, servers (Solaris, Windows, Unix and Linux) PBXs, network storage equipment and security appliances through an IP network. The RS232 RJ45 ports are software configurable to use straight thru or rolled cables to connect your Cisco equipment. In addition, a DCD pin can be configured for 3rd party devices that need this extra signal. The means the Perle IOLAN SCG supports more serial devices than any other Console Server on the market. This makes it an ideal out of band management solution for IT equipment located in data centers or remote sites.
Advanced Network Security, Authentication, and Data Encryption
2 Factor Authentication (2FA) ensures access to equipment and data is limited to authorized users, while remote authentication (RADIUS, TACACS+, & LDAP) management, enables integration with enterprise-grade systems to control access to devices in the field.
The built-in firewall offers intuitive policies to protect inside networks from unauthorized access. The firewall also allows inside networks to be separated from each other. If there are network resources that need to be available to an outside user, such as a web or FTP server, these resources can be placed on a separate network behind the firewall in a demilitarized zone (DMZ).
Network data transmissions and access to remote console admin ports on IT equipment are protected through standard encryption tools such as Secure Shell (SSH) and Secure Sockets Layer (TLS/SSL). By using encryption technologies, an IOLAN SCG Console Server protects sensitive and confidential data before being sent across a corporate Intranet or public Internet. For compatibility with peer encryption devices, all the major encryption ciphers such as AES, 3DES, RC4, RC2, and CAST128 are fully supported.
With multiple concurrent VPN sessions, OpenVPN, and IPSec VPN, robust authentication and encryption of IP packets is provided at the network layer of the OSI model. This is ideal for multi-vendor interoperation within a network, providing flexibility and the ability to match the right solution for a particular application.
Multiple Out-of-Band (OOB) access methods
Every IOLAN SCG L Console Server comes with two secure remote access methods to critical network devices.
- The built-in high-speed LTE with HSPA+, UMTS, EDGE and GPRS/GSM fallback networks to protect your data center and branch office out-of-band management infrastructure against wired LAN failure. It can also be used to transmit serial data or establish a direct serial to serial peer connection, over cellular networks. This is ideal when devices are located where hardwired Ethernet connections are not available but cellular networks, with their affordable data packages, are accessible.
- Any dual combination of the two 10/100/1000Base-T Copper Ports and two 100/1000Base-X SFP Fiber Ports can be used to meet your unique network access requirements. This design provides users with a flexible, cost-effective solution to transmit data from mission-critical equipment over Copper or Fiber based Ethernet networks. When connecting to a fiber network, the pluggable SFP ports allow for flexible network configurations using SFP Optical Transceivers supplied by Perle, Cisco or other manufacturers of MSA compliant SFPs.
High Availability Access
To simplify management and respond swiftly to issues, network administrators require access to all console ports via a single portal view. Perle's cloud-based centralized management solution puts all your network and IT infrastructure into a single application and provides secure reliable access and visibility during normal operations and critical network failures. Scalable to suit any business requirement, Cloud Centralized Management reduces human error and guarantees repeatability.
The IOLAN SCG also has built-in fault-tolerant capabilities to ensure secure and reliable access for managing important mission-critical equipment. Redundant Path technology assures availability to Console Management ports through Active Standby or Dual Network Access modes. Virtual Router Redundancy Protocol (VRRPv3) enables a group of devices to form a single virtual device to provide network redundancy. The dual AC power supply ensures that console management is available even if the primary AC power source fails. And, protection against electrostatic discharges and power surges is provided with robust 15Kv ESD protection circuitry on each console port.
The auto-negotiating 10/100/1000Base-T Copper Port will meet any changing network access requirements. If you upgrade your Ethernet speed, you won't need to upgrade your IOLAN SCG.
Easy Set-up and Configuration
The IOLAN SCG is incredibly easy to get up and running on the network. The unit can then be configured over the network using a variety of configurator options including PerleVIEW, WebManager, CLI, etc.
For large scale roll-outs, the Micro SD Card slot can be used to back-up and restore configuration files as well as load new firmware. Perle is committed to eliminating configuration hassles for all IOLAN's on your IP network.
Flexible and Reliable Serial to Ethernet Connections
An IOLAN SCG Console Server is ideal for connecting serial-based COM port, UDP or TCP socket-based applications to remote devices. Perle’s TruePort re-director provides fixed TTY or COM ports to serial-based applications enabling communication with remote devices connected to Perle IOLAN's either in encrypted or clear text modes.
TrueSerial® packet technology delivers the most authentic serial connections across Ethernet for serial protocol integrity.
You can also tunnel serial data between devices across an IP network.
Advanced IP Technology
With support for IPv6 the IOLAN SCG provides organizations with investment protection to meet this rapidly growing standard.
Demand for IPv6, which is compatible with IPv4 addressing schemes, is driven by the need for more IP address. With the implementation and rollout of advanced cellular networks, a robust method is needed to handle the huge influx of new IP addressable devices on the Internet. In fact, the US Department of Defense has mandated that all equipment purchased be IPv6 compatible. In addition, all major Operating Systems such as Windows, Linux, Unix and Solaris, as well as routers, have built-in support for IPv6.
It is therefore important for end users and integrators to select networking equipment that incorporates the IPv6 standard. The IOLAN line with support for IPv6 already built in, is the best choice in serial to Ethernet technology.
More reasons that make the IOLAN SCSG Console Servers the preferred choice:
- Primary/Backup host functionality enables automatic connections to alternate hosts should the primary TCP connection go down
- EasyPort Web– Access equipment serial console ports by using your java-enabled Internet browser
- Java-free browser access to remote serial console ports via Telnet and SSH
- Dynamic DNS – Easy console management access from anywhere on the Internet
Lifetime Warranty
All Perle IOLAN SCG models are backed by the best service and support in the industry including Perle’s unique lifetime warranty. Since 1976 Perle has been providing its customers with networking products that have the highest levels of performance, flexibility and quality. With the Perle IOLAN SCG deploying and upgrading new services and equipment, while minimizing capital expenditures, is easy.
Software Features - IOLAN SCG Secure Console Server
Management & Configuration
Zero Touch Provisioning (ZTP): automates the provisioning of both the configuration and firmware files through DHCP/Bootp Options
PerleView Central Management: a web-based server configuration tool that simplifies setup and deployment and gives network managers visibility and control over network configurations at remote sites.
Management & Monitoring: HTTP/HTTPS, CLI/Piping, Telnet, SNMPv1/v2/v3, RESTful API, TACACS+
Multiple firmware versions can be saved on the unit. This allows the customer to change between older and newer firmware versions without the need to download.
Multiple configuration files can be stored on the unit., This allows the customer to easily switch between older and newer configurations during testing or production deployments.
Automatic check for software updates available over FTP, HTTP, HTTPS, SCP, SFTP, and TFTP
LLDP-Link Layer Discovery Protocol, as per IEEE 802.1AB, is a neighbor discovery protocol that is used for network devices to advertise information about themselves to other devices on the network. This protocol runs over the data-link layer, which allows two systems running different network layer protocols to learn about each other via TLVs (Type-Length-Value).
RESTful API uses HTTP requests to access and use IOLAN statistics and configuration data. Any of the CLI commands can be executed through a RESTFul API script that can be controlled externally from a server.
Connectivity Watchdog can instruct the IOLAN to take different actions (i.e. reboot) if the network connectivity to a pre-define IP address is lost. This is helpful for situations when the IOLAN is deployed on remote locations hard to service if the network connectivity is lost.
Automatic DNS Update: Utilize DHCP Opt 81 to set IOLAN domain name for easy name management and with Dynamic DNS support, users on the Internet can access the device server by name without having to know its IP address. See Automatic DNS update support for details
Dynamic DNS with DYNDNS.org
Network Assist: This Windows-based desktop application helps busy IT managers configure and monitor the status of deployed Perle devices.
Remote Access
Dial, direct serial: PPP, PAP/CHAP, SLIP
HTTP tunneling enables firewall-safe access to remote serial devices across the internet
Automatic DNS update: Utilize DHCP Opt 81 to set IOLAN domain name for easy name management and with Dynamic DNS support, users on the Internet can access the device server by name without having to know its IP address.
IPSEC VPN client/servers: Microsoft IPSEC VPN Client, Cisco routers with IPSEC VPN feature set, Perle IOLAN SDS, SDG, STS, STG, SCS, SCG, and SCR models
OpenVPN: Clients & Servers
Logging, Reporting & Alerts
Email alert notification
Syslog, Event Type, Report Type, Alerts & Monitoring, Triggers Status Screen Report, Data Usage, Diagnostic, Login Banner
Accessing Console Management Ports (Serial & Ethernet)
Serial Protocols: PPP, PAP/CHAP, SLIP
Connect directly using Telnet / SSH by port and IP address
Use an internet browser to access with HTTP or secure HTTPS
Java-free browser access to remote serial console ports via Telnet and SSH
Multisession capability enables multiple users to access ports simultaneously
Console Management Functions
Local port buffer viewing - 256K bytes per port
External port buffering via NFS, encrypted NFS and Syslog
Event notification
Terminal Server Functions
Telnet
SSH v1 and v2
Auto session login
LPD, RCP printer
MOTD - Message of the day
Serial to Ethernet functions
Raw serial data over TCP/IP
Raw serial data over UDP
Virtual modem simulates a modem connection - assign IP address by AT phone number
Virtual modem data can be sent over the Ethernet link with or without SSL encryption
TruePort com/tty redirector provides fixed TTY or COM ports to serial based applications enabling communication with remote devices connected to Perle IOLAN's either in encrypted or clear text modes.
TrueSerial packet technology provides the most authentic serial connections across Ethernet ensuring serial protocol integrity
RFC 2217 standard for transport of serial data and RS232 control signals
Customizable or fixed serial baud rates
Redundancy
Load Balancing
VPN Failover
Virtual Router Redundancy Protocol (VRRPv3) enables a group of devices to form a single virtual device to provide network redundancy
Primary/Backup host functionality enables automatic connections to alternate hosts
Routing / Switching Protocols
The IOLAN can be configured for any of the major routing protocols for an easy integration within the data center Ethernet backbone: RIP/RIPNg, OSPFv3, BGP-4, NAT, IPv4/IPv6, Static Routing, IPv6 Encapsulations (GRE, 6in4), Port Routing, STP, MSTP
IPv6 to IPv4 translation is fully supported for environments where the Ethernet data backbone is run on IPv6 and the port management is run on IPv4
Using NAT for enhanced security, the IOLAN can map a single IP address, across all or several of it's Ethernet ports.
IP Applications
DDNS, DNS Proxy / Spoofing, relay, client, Opt. 82,
NTP & SNTP (versions 1, 2, 3, 4)
DHCP / DHCPv6 server / DHCP Snooping & BOOTP
VLAN & VPN
VLAN, OpenVPN, VPN Failover (16 concurrent VPN tunnels)
Firewall Features
Ability to set up firewalls to restrict incoming and outgoing packets
Built in Zone-Based Policy Firewall for local security and traffic filtering.
Access Control Lists (list & ranges & time)
Filter based on MAC Address, IP, Port, Protocol, User
IEEE 802.1x Authentication and Port Security can be enabled for any Ethernet port for increased security port access.
Layer 2 MAC address filtering
Port Forwarding
BGP Communities
Security Features
AAA Security via remote authentication (Radius, TACACS+, & LDAP)
Trusted host filtering (IP filtering), allowing only those hosts that have been configured in the host table access to the router.
Ability to disable services (for example, Telnet, TruePort, Syslog, SNMP, Modbus, HTTP) for additional security
Ability to disable Ping responses
SSH client/server connections (SSH 1 and SSH 2). Supported ciphers are Blowfish, 3DES, AES-CBC, AES-CTR, AES-GMC, CAST, Arcfour and ChaCha20-Poly1305. Ability to individually disable network services that won’t be used by the SSH client/server connections.
SSL/TLS client/server data encryption (TLS v1.2)
SSL Peer authentication
SSL encryption: AES-GCM, key exchange ECDH-ECDSA, HMAC SHA256, SHA384
Encryption: AES (256/192/128), 3DES, DES, Blowfish, CAST128, ARCFOUR(RC4), ARCTWO(RC2)
Hashing Algorithms: MD5, SHA-1, RIPEMD160, SHA1-96, and MD5-96
Key exchange: RSA, EDH-RSA, EDH-DSS, ADH
VPN: OpenVPN & IPSec VPN (NAT Traversal, ESP authentication protocol)
Certificate Support (X.509)
Certificate authority (CA) list
Local database
RIP authentication (via password or MD5)
2 Factor (2F) Authentication over e-mail enhances administration access security
Management Access Control
Demilitarized Zone (DMZ)
Secure HTTP/HTTPS/FTP/Telnet Authentication Proxy
SNMP v3 Authentication and Encryption support
IP Address filtering
Disable unused daemons
Active Directory via LDAP
Protocols
IPv6, IPv4, TCP/IP, Reverse SSH, SSH, SSL, IPSec/IPv4, IPSec/IPv6, IPSec, RIPV2/MD5, ARP, RARP, UDP, UDP Multicast, ICMP, BOOTP, DHCP, TFTP, SFTP, SNTP, Telnet, raw, reverse Telnet, LPD, RCP, DNS, Dynamic DNS, WINS, HTTP, HTTPS, SMTP, SNMPV3, PPP, PAP/CHAP, SLIP, CSLIP, RFC2217, MSCHAP
Hardware Specifications - IOLAN SCG Secure Console Server
CPU
Processor
1750 MIPS, 500 MHz core 32 bit ARM processor, with integrated hardware encryption processor
Memory
RAM
1000 MB
Flash
4000 MB
Interface Ports
Integrated Device Management Ports
- IOLAN SCG16: 16 x RS232 RJ45
- IOLAN SCG32: 32 x RS232 RJ45
- IOLAN SCG48: 48 x RS232 RJ45
Sun / Solaris
Sun / Oracle ‘Solaris' Safe - no break signal
sent during power cycle causing costly server re-boots or downtime
Serial Port Speeds
300bps to 230Kbps with customizable baud rate support
Data Bits
Configurable for 5,6,7 or 8-bit protocol support
Use TruePort to transparently pass 9-bit serial data
Parity
Odd, Even, Mark, Space, None
Flow Control
Hardware, Software, Both, None
Serial Port Protection
15Kv Electrostatic Discharge Protection (ESD)
Local Console Ports
1 x RS232 RJ45
1 x Micro USB with DB9 adapter
Network
- 1 x 10/100/1000Base-T RJ45 Copper
- Software selectable Ethernet speed 10/100/1000, Auto
- Software selectable Half/Full/Auto duplex
Ethernet Isolation
1.5Kv Magnetic Isolation
Power
Power Supply
- AC power supply
- USA Models: IEC320-C13 to NEMA 5-15P line cord
- UK Models: IEC320-C13 to BS1363 line cord
- EU Models: IEC320-C13 to CEE 7/7 Schuko
- South Africa Models: IEC320-C13 to BS546 line cord
- Australia Models: IEC320-C13 to AS3112 line cord
Nominal Input Voltage
110/230v AC
Input Voltage Range
100-240v AC
AC Input Frequency
47-63Hz
Current Consumption @ 100v (Amps)
- IOLAN SCG16: 0.14
- IOLAN SCG32: 0.21
- IOLAN SCG48: 0.28
Current Consumption @ 240v (Amps)
- IOLAN SCG16: 0.06
- IOLAN SCG32: 0.08
- IOLAN SCG48: 0.11
Typical Power Consumption (Watts)
14 Watts
Power Line Protection
Fast transients: 1 KV (EN61000-4-4 Criteria B)
Surge: 2KV (EN61000-4-5 common mode), 1KV (EN61000-4-5 differential and common modes)
LED Indicators
- System Ready
- Network Link Activity
Environmental Specifications
Heat Output (BTU/HR)
- IOLAN SCG16: 47.77
- IOLAN SCG32: 69.27
- IOLAN SCG48: 91.45
MTBF (Hours)
94,455 Hours
Calculation model based on MIL-HDBK-217-FN2 @ 30°C
Operating Temperature
0°C to 55°C, 32°F to 131°F
Storage Temperature
-40°C to 85°C, -40°F to 185°F
Humidity
5 to 95% (non condensing) for both storage and operation.
Case
SECC Zinc plated sheet metal (1 mm)
Ingress Protection Rating
IP30
Mounting
1U - 19' rack, front and rear mounting hardware included
Weight and Dimensions
Product Weight
- IOLAN SCG16: 3.06 kg / 6.75 lbs
- IOLAN SCG32: 3.23 kg / 7.12 lbs
- IOLAN SCG48: 3.39 kg / 7.47 lbs
Dimensions
1U Rack form factor - 26.4 x 43.4 x 4.4 (cm), 10.38 x 17.1 x 1.75 (in)
Packaging
Shipping Weight
- IOLAN SCG16: 4.00 kg / 8.82 lbs
- IOLAN SCG32: 4.17 kg / 9.20 lbs
- IOLAN SCG48: 4.33 kg / 9.55 lbs
Shipping Dimensions
59 x 36 x 9cm, 23.22 x 14.17 x 3.54 (in)
Regulatory Approvals
Emissions
- FCC 47 Part 15 Subpart B Class A
- ICES-003 (Canada)
- EN55011 (CISPR11)
- EN55032 (CISPR32)
- EN61000-3-2 Limits for Harmonic Current Emissions
- EN61000-3-3 Limits of Voltage Fluctuations and Flicker
Immunity
- EN55024
- EN 61000-4-2 (ESD): Contact:
- EN 61000-4-3 (RS):
- EN 61000-4-4 (EFT):
- EN 61000-4-5 (Surge):
- EN 61000-4-6 (CS):
- EN 61000-4-8 (PFMF)
- EN 61000-4-11
Safety
- UL/EN/IEC 62368-1 (previously 60950-1)
- CAN/CSA C22.2 No. 62368-1
Other
- Reach, RoHS and WEEE Compliant
- ECCN - 5A992
- HTSUS Number: 8517.62.0020
- Perle Limited Lifetime warranty
IOLAN RJ45 Serial Connector Pinout - DCE mode (Straight-through)
Pinout
1
2
3
4
5
6
7
8
Direction
in
in
in
N/A
N/A
out
out
out
EIA-232
CTS
DSR
RxD
GND
Not Used
TxD
DTR
RTS
IOLAN RJ45 Serial Connector Pinout - DTE mode (Rolled)
Pinout
1
2
3
4
5
6
7
8
Direction
out
out
out
N/A
in
in
in
in
EIA-232
RTS
DTR
TxD
GND
DCD
RxD
DSR
CTS
Application Diagrams
Data Center Console Management
TCP
A raw TCP socket connection which can be initiated from the serial-Ethernet device or from the remote host/server. This can either be on a point to point or shared basis where a serial device can be shared amongst multiple devices. TCP sessions can be initiated either from the TCP server application or from the Perle IOLAN serial-Ethernet adapter.
UDP
For use with UDP based applications, Perle IOLANs can convert serial equipment data for transport across UDP packets either on a point to point basis or shared across multiple devices.
Console Server
For access to remote console ports on routers, switches,etc, Perle IOLAN’s enable administrators secure access to these RS232 ports via inband Reverse Telnet / SSH or out of band with dial-up modems. Perle IOLAN models with integrated modems are available.
COM/TTY
Serial ports can be connected to network servers or workstations running Perle's TruePort software operating as a virtual COM port. Sessions can be initiated either from the Perle IOLAN or from TruePort.
Tunneling
Serial Tunneling enables you to establish a link across Ethernet to a serial port on another IOLAN. Both IOLAN serial ports must be configured for Serial Tunneling (typically one serial port is configured as a Tunnel Server and the other serial port as a Tunnel Client).
Virtual Modem
Enables the serial-Ethernet adapter to simulate a modem connection. When connected to the IOLAN and initiates a modem connection, the IOLAN starts up a TCP connection to another IOLAN serial-Ethernet adapter configured with a Virtual Modem serial port or to a host running a TCP application.
Click on a part number for ordering information
Product Image
Product Description
Power Cord & Part No.
IOLAN SCG16 Console Server: 16 x RS232 RJ45 interfaces with software configurable Cisco pinouts, 1 x auto-sensing 10/100/1000 RJ45 Ethernet Port, Micro USB and RS232 RJ45 Console Admin Ports, advanced data encryption, user authentication and event management security features included, IPv6, COM port redirector, 15kv ESD, AC Power
IOLAN SCG32 Console Server: 32 x RS232 RJ45 interfaces with software configurable Cisco pinouts, 1 x auto-sensing 10/100/1000 RJ45 Ethernet Port, Micro USB and RS232 RJ45 Console Admin Ports, advanced data encryption, user authentication and event management security features included, IPv6, COM port redirector, 15kv ESD, AC Power
IOLAN SCG48 Console Server: 48 x RS232 RJ45 interfaces with software configurable Cisco pinouts, 1 x auto-sensing 10/100/1000 RJ45 Ethernet Port, Micro USB and RS232 RJ45 Console Admin Ports, advanced data encryption, user authentication and event management security features included, IPv6, COM port redirector, 15kv ESD, AC Power
Related Accessories
Accessory Image
Accessory Description
Part No.
DBA0013C - RJ-45F to DB-25M straight-thru (DCE) adapter #1100290-10 for modems on IOLAN. View Pinout
DBA0020C - RJ-45F to DB-9F crossover (DTE) adapter #1100300-10 for Perle serial console ports with Sun/Cisco pinout. View Pinout
C Model Kit Includes: (1) RJ-45 to DB-25 DTE Male adapter, (1) RJ-45 to DB-25 DCE Male adapter, (1) RJ-45 to DB-25 DTE Female adapter, (1) RJ-45 to DB-9Male DTE adapter, (1) RJ-45 to DB-9 Female DTE adapter and (1) RJ45M-RJ45F Sun/Cisco crossover adapter.
DBA0023C - RJ-45F to DB-9M straight-thru (DCE) adapter #1100350-11 for modems on IOLAN with Sun/Cisco pinout. View Pinout
DBA0010C 8pck - 8 pack of # 04007010 RJ45F to DB-25F (DTE) crossover adapter for IOLAN. View Pinout
DBA0011C 8pck - 8 pack of #04007020 RJ45F to DB25M (DTE) crossover adapter for IOLAN. View Pinout
DBA0020C 8pck - 8 pack of #04007040 RJ45F to DB9F (DTE) crossover adapter for IOLAN. View Pinout
DBA0021C 8pck - 8 pack of #04007050 RJ45F to DB9M (DTE) crossover adapter for IOLAN. View Pinout
DBA0013C 8pck - 8 pack of #04007030 RJ45F to DB25M Straight-thru adapter for modems on IOLAN. View Pinout
DBA0040 8pck - 8 pack of #04007220 IOLAN SCG/SCR RJ45F to DB9M adapter with DCD. View Pinout
DBA0041 8pck - 8 pack of #04007230 IOLAN SCG/SCR RJ45F to DB25M adapter with DCD. View Pinout
16-18 Port Terminal/Device/Console Servers - Express Replacement
16-18 Port Terminal/Device/Console Servers - Express Replacement French
32-34 Port Terminal/Device/Console Servers - Express Replacement
32-34 Port Terminal/Device/Console Servers - Express Replacement French
48-50 Port Terminal/Device/Console Servers - Express Replacement
48-50 Port Terminal/Device/Console Servers - Express Replacement French