WD5500 ROUTER

WD5500 ROUTER SERIES

WD5500 Router Series is designed to meet the evolving networking challenges driven by the widespread adoption of cloud services. Combining high-performance hardware with intelligent software capabilities, the series delivers reliable routing, secure connectivity, simplified management, and scalable performance for modern enterprise and branch networks.

WD4510-X1 front panel

WD5560

  • Interfaces: Modular (SPU/SPE-based), Up to 10xGE Combo + 8x10G SFP+ (module-dependent), 6xHMIM Slots, 1xDHMIM Slot, 1xMgmt, 1xConsole/AUX, 2xUSB 2.0.
WD4510E-X1 front panel

WD5520

  • Interfaces: 3xGE Combo, 2x10G SFP+, 2xHMIM Slots, 4xSIC Slots, 1xMgmt, 1xConsole/AUX, 1xUSB 2.0

Key Features

Advanced Technologies

WD5500 Router Series is powered by WDOS network operating system, providing an intelligent service scheduling management mechanism with support for loose coupling of service modules and dynamic loading of processes and patches for enhanced operational flexibility and service continuity. The platform is equipped with a high- performance multicore processor and a non-blocking switching architecture, significantly improving concurrent service processing capabilities. Its Open Application Framework supports open applications such as Network Access Control, VMware, WAN optimization, Lync, and third-party services, enabling flexible service integration and deployment. The dual MPU system architecture supports millisecond MPU switchover and process-level backup, ensuring high availability and service continuity. Integrated routing and switching fabric technology, combined with the separation of routing and switching planes, enables 10 Gbps data transmission while enhancing system efficiency. Additionally, the platform incorporates multiple protocol processing engines, including a data encryption engine, to accelerate protocol processing and strengthen secure data transmission.

Powerful Security Features Service security

Packet filtering, including stateful filtering, MAC address filtering, IP and port number filtering, and time-based filtering. Real-time traffic analysis.

Network security

WD5500 Router Series delivers comprehensive network security with support for a wide range of VPN technologies, including IPsec, L2TP, GRE, ADVPN, MPLS VPN, and combinations of multiple VPN technologies, enabling secure and flexible connectivity across enterprise and service provider networks. The platform also provides routing protocol security protection, supporting OSPF/RIP/IS-IS/BGP authentication, OSPFv3/RIPng/IS-ISv6/BGP IPS encryption, and rich routing policy control functions to enhance route integrity, strengthen network security, and provide flexible traffic control without compromising routing performance.

End device access security

WD5500 Router Series provides comprehensive end device access security through integrated terminal access binding authentication mechanisms, including EAD security check authentication, 802.1X authentication, endpoint MAC address authentication, Web-based Portal authentication, endpoint access static binding, and MAC address auto-learning and binding. These features help ensure secure and authenticated endpoint access to the network. The platform also delivers robust ARP attack protection, supporting source MAC address binding, ARP defense against IP packet attacks, address conflict detection and protection, ARP packet rate limiting, ARP detection, ARP packet source MAC consistency check, ARP source suppression, and ARP active acknowledgment to enhance network security and protect against ARP-based threats.

Device Management Security

WD5500 Router Series provides comprehensive device management security with Role-Based Access Control (RBAC) that allocates resources based on user roles and supports user-to-role mapping for secure access management. It supports control plane traffic control and filtering based on protocol type, queue, known protocols, and specific protocols, enhancing the security and stability of the network. For secure remote administration, the platform supports SNMPv3, SSH, and HTTPS remote management, ensuring encrypted and authenticated access. It also offers behaviour control and audit capabilities, including AAA server centralized authentication, command-line authority management, and real-time reporting of operation records, enabling secure, accountable, and efficient device administration.

Cloud Interconnection

The device can use VXLAN to provide Layer 2 network connectivity between data centers. The VXLAN solutions are easy to deploy and cost efficient. You just need to deploy one or more VXLAN-capable devices on the site edge and no modifications for the enterprise or the service provider networks are required. The VXLAN solution combined with the IPSec solution can enhance the data transmission security between data centers over the public network.

Software

SOFTWARE SPECIFICATIONS

Layer 2 Switching
  • Ethernet
  • Ethernet II
  • STP (802.1D), RSTP (802.1w), MSTP (802.1s)
  • PPP, PPPoE client, PPPoE server
  • HDLC
  • DDR, modem, and ISDN
  • VLAN (port-based VLAN, guest VLAN)
  • 802.3x, 802.1p, 802.1Q, 802.1X
IP Services
  • Unicast/multicast, TCP, UDP, IP option
  • IP unnumbered
  • NetStream, and sFlow
  • policy-based routing
  • ECMP
  • UCMP
IP Application
  • DHCP server,
  • DHCP relay
  • DHCP client
  • DHCP snooping
  • Ping
  • DNS client
  • DNS proxy
  • DDNS
  • ICMP
  • Tracert
  • IP Accounting,
  • UDP Helper
  • NTP
  • SNTP
IPv4 Routing
  • Static routing
  • Multicast routing: IGMP v1/v2/v3, PIM-DM, PIM-SM, MBGP, MSDP
  • Policy routing
  • Equal-cost multi-path routing (ECMP)
  • Dynamic routing: RIPv1/v2, OSPFv2, BGP, IS-IS
  • Route iteration
IPv6 Routing
  • IPv6 FIB
  • Static routing
  • Dynamic routing: RIPng, OSPFv3, IS-ISv6, BGP4+
  • IPv6 multicast: MLDv1/v2, PIM-DM, PIM-SM
  • NAT-PT, 6PE
  • IPv6 ND
  • IPv6 PMTU
  • IPv6 tunnelling: Manual tunnelling, automatic tunnelling, GRE tunnel, 6to4, ISATAP
  • DS-LITE
  • IPv6 ACL
QoS
  • PPPoE client & server, portal, 802.1X
  • IKE,
  • IPSec
  • ADVPN, SSL VPN, GDVPN
  • L2TP
  • NAT/NAPT,
  • PKI,
  • RSA
  • ARP attack prevention
  • AES, MD5, SHA1
  • 802.1X / Network Access Control (NAC)
  • EVI,
  • VXLAN
  • mGRE,
  • GRE,
  • SSH v1.5/2.0
  • Local authentication
  • RBAC
  • RADIUS
  • TACACS+
  • Basic Firewall Function, ASPF, ACL, filter, connection limit
  • URPF
Security
  • LR, port-based mirroring, Port Trust Mode, and port priority
  • Committed access rate (CAR)
  • FIFO, WFQ, CBQ
  • Generic Traffic Shaping (GTS)
  • Traffic classification
MPLS
  • L3VPN: Inter-AS MPLS VPN (Option 1/2/3),
  • MPLS nested VPN, hierarchy of PE (HoPE)
  • L2VPN: Martini, Kompella, CCC PWs and static PWs
  • MPLS TE
  • RSVP TE
  • LDP, Static LSP
  • MCE
  • multirole host
  • dual-homed CE
High Availability
  • VRRP, VRRPv3
  • Muti-link load-balancing and backup
  • NQA collaboration with routing, VRRP or interface backup
  • BFD collaboration with MPU active/standby switchover
  • VSS2
Management and Maintenance
  • NMS remote management, booting from USB drive
  • CLI, file system, and dual image
  • DHCP
  • FTP
  • SNMP v1/v2c/v3
  • MIB
  • SYSLOG
  • RMON
  • TCP public,
  • TCP private,
  • Console port login, Telnet (VTY) login, SSH login, and FTP login
  • ICMP
  • UDP public
  • UDP private
  • HTTP
Hardware

Hardware Specifications

Features WD5520 WD5560
IP forwarding performance (IMIX) 17 Gbps WDSPU-400-X1: 20 Gbps
WDSPU-600-X1+SPE-S1: 5 Gbps
WDSPU-600-X1+SPE-S3: 80 Gbps
WDSPU-600-X1+2*SPE-S1: 10 Gbps
WDSPU-600-X1+2*SPE-S3: 160 Gbps
Forwarding performance with ACL+NAT+QoS (IMIX) 9 Gbps WDSPU-400-X1: 18 Gbps
WDSPU-600-X1+SPE-S1: 5 Gbps
WDSPU-600-X1+SPE-S3: 50 Gbps
WDSPU-600-X1+2*SPE-S1: 10 Gbps
WDSPU-600-X1+2*SPE-S3: 100 Gbps
IPsec forwarding performance (1400 byte) 4.5 Gbps WDSPU-400-X1: 14 Gbps
WDSPU-600-X1+SPE-S1: 4 Gbps
WDSPU-600-X1+SPE-S3: 38 Gbps
WDSPU-600-X1+2*SPE-S1: 8 Gbps
WDSPU-600-X1+2*SPE-S3: 76 Gbps
WD-WAN typical encryption performance (IMIX) 1.6 Gbps WDSPU-400-X1: 2 Gbps
WDSPU-600-X1+SPE-S3: 6 Gbps
CPU 1.2GHz 1.5GHz
DRAM WDSPU: 2G/2G WDSPU-400-X1: 4G/4G, SPE-S1: 2G/2G
SPE-S3: 8G/8G
Backplane bandwidth 135Gbps 670Gbps
USB 2.0 port 1/2, support for USB 3G/4G modem 1/1, support for USB 3G/4G modem
Fixed GE port 3 x GE combo ports
2 x SFP+ ports
WDSPU-400-X1: 10 x GE combo ports+4 x SFP+ ports
SPE-S1: 4 x GE combo ports+4 x SFP ports
SPE-S3: 8 x SFP+ ports
Console/AUX port 1 1
Management Ethernet port 1 1
SIC slot 4 N/A
HMIM slot 2 6
DHMIM slot N/A 1
Max power consumption 450 W 450 W
Power module redundancy Two built-in power modules Support for built-in AC/DC power modules and N+1 power module redundancy
Power voltage AC: 100 V AC to 240 VAC @ 50 Hz/60 Hz
DC: -48 to -60V
AC: 100 V AC to 240 VAC @ 50 Hz/60 Hz
DC: -48 to -60V
Rack height 2 RU 4 RU
Dimensions (H x W x D) 88.1 x 440 x 480 mm
(3.47 x 17.32 x 18.90 in)
175.1 x 440 x 480 mm
(6.89 x 17.32 x 18.90 in)
Operating temperature -5C to 55C -5C to 55C
Operating altitude < 5000m < 5000m
Operating humidity 5 to 95%, non-condensing 5 to 95%, non-condensing
EMC standards compliance EN 61000-3-2
EN 61000-3-3
EN 61000-4-2
EN 61000-4-3
EN 61000-4-4
EN 61000-4-5
EN 61000-4-6
EN 61000-4-11
ETSI EN 300 386
EN 55032 Class A – Multimedia Emissions
EN 61000-3-2 – Harmonic Current Emissions
FCC Part 15 Class A – Electromagnetic
Emissions EMC Standard EU RoHS2.0 Directive
Safety standards compliance IEC, EN, UL 62368-1, IS-13252 IEC, EN, UL 62368-1, IS-13252
Environment standards compliance IEC 60068-2-1
IEC 60068-2-2
IEC 60068-2-78
IEC 60068-2-30
IEC 60068-2-14
IEC 60068-2-1
IEC 60068-2-2
IEC 60068-2-78
IEC 60068-2-30
IEC 60068-2-14
Shock and vibration standards compliance IEC 60068-2-64
IEC 60068-2-31
IEC 60068-2-64
IEC 60068-2-31