Established in 2000, AEWIN began building R&D and engineering forces. In the same year, our first custom single-board system was launched. AEWIN’s history is rich with innovation, technology and human resource development. We have grown into a superior ODM/OEM manufacturer of your choice. With 20 years of experience building high performance network forwarding platforms, AEWIN has extensive knowledge in building secure and reliable systems trusted by some of the top Network Security experts as the foundation of their network security solutions.
AEWIN can be your hardware partner with flexible design and customization options to meet your stringent requirements. We offer products featuring the full range of Intel processors, as well as being the first AMD EPYC and Ryzen based network solutions provider. We understand what it takes to meet our clients’ needs and we strive to be the best in the market.
AEWIN joined Qisda Group in 2019 to get the benefits of supply chain efficiency, the scale of manufacturing, and one-stop-solution from communication, networking to 5G and Edge AI solutions. AEWIN continues to focus on providing the best service and support for clients all over the world. We will keep unveiling innovative products and believe that our experienced design capability with the latest technologies will bring you to another success.
UPPORT & SERVICE A
Design
Integration
Manufacturing
Services
Network Appliance/Server with Tailored Features
Customizable Form Factors
Various NIC & Peripheral Modules
Desired System Enclosure, Mechanical & ID Design
Customized BIOS / OS / Software
Application Specific Performance Optimization
Strict Product Validation
Small-Volume, Large-Variety Production
100% Product Burn-in Verification
Excellent Revision Control
Rebranding Services
After Sales & RMA Services
Technical Support
Our Value Proposition:
A strong culture of Integrity and Determination
AEWIN’s solutions are fully developed in-house from sketch to finished product by our engineering team. We design and manufacture customized hardware solutions to meet various vertical industries.
Having in place with the desirable tangible and intangible qualities with the right elements throughout the functional teams, determine the future business growth. Our know-how and expertise (from prototype to commercially viable product) drive customers’ loyalty.
Policies are established, the Audit Committee oversees the internal monitoring & controls to ensure they are design and operating effectively. The committee team is doing the rotating spot checks on various areas throughout the year through different control areas, to identify potential risks with best practices.
In-House Operations: Dedicated Expert Team without Quality & Safety Compromise
AEWIN takes great effort in maintaining control over design and manufacturing for its customers to better ensure integrity and security. The quality control also covers the entire business process including fulfillment.
We are ISO 9001 & ISO 14001 certified; integrates with the quality management and the environmental management. All processes are fully documented with traceability to prove compliance. AEWIN develops a strong reputation for integrity and reliable performance.
OUR CORE COMPETENCE
Professional System Design
- Thermal Simulation
- Signal Simulation
- Modular Design
- Stackable Design
- Shock/Vibration
Reliable/Trust Design
- BIOS Recovery
- Trusted Secure Boot (Root of Trust)
- Platform Firmware Resilience
- TPM 2.0 / TXT
- Gen.3 LAN Bypass / One Touch Bypass
- BMC Management
Offload & Acceleration
- Packet Inspection
- Encryption
- DPDK/OVS
- Flow Table Processing
- RDMA
1G~100G/Switch Fabric
- 1G/2.5G/10G/25G/40G/50G/100G/200G
- RJ45/SFP/SFP+/QSFP+/QSFP28/QSFP56
- 4G/LTE/5G/WIFI
- Switch Fabric
- 1G/10G/40G Copper/Fiber Bypass Module
AEWIN Product Layout
LAN Bypass Technology
Internet connection has become the lifeline of businesses and ensuring access is mission critical. We need to plan our network to survive equipment failures or software issues, such as kernel panics. LAN Bypass is used to prevent a failed, in-line networking appliance from blocking the critical network traffic going through.
By using LAN Bypass equipped systems or Network Expansion Modules, we can pass the packets downstream to route around the failure. This is a cost-effective plan for non-essential network functions, such as those for network optimization, load balancing, or sniffers for network telemetry. One Touch Bypass is our latest upgrade to the Bypass function, that allow pressing a single button to switch Network Expansion Modules over to bypass-mode. The button can pre-arm bypass mode even when system is unpowered.
LAN BYPASS
Bypass Comparison
Bypass enable without Hardware Jumper
Remote Bypass Control
Multiple watchdogs dedicated for different bypass pairs
Bypass control in 3 distinct states: power-on, just-on and system off
Packet loss prevention if bypass is enabled during system just-on state
Bypass implementation Independent of Intel architecture platform of the host system
Drop mode
Link Loss Carry Forward (LLCF)
SPAN mode
Normal mode (In-line mode)
Where packets are processed normally and sent downstream
Drop mode
Where all packets are dropped to sever all connections
Bypass mode
Where packets are pass directly from LAN1 to LAN2, bypassing the system
Link-Loss mode
Where it detects disconnected downstream connection for network diagnostics with LLCF
IPMI
Classification Sub-Class
Asset Information
System Sensors
System Health & Information
SAS/RAID Controller
Remote Control
Power and Fan Control
Device Information
BIOS Menu Information FRU
Historical record
SAS/RAID Information
SOL & KVM
Power Control
Image Redirection
KVM Mouse Setting
PSU Monitoring
PSU Configuration
Fan Control
NTP(Date & Time)
External User Service
Networking Settings
PAM Order
BMC Settings & Information
Logs & Reports
Platform Event Filter
SMTP Settings
SSL Settings Service
Firewall
User Management
IPMI Event Log
System Log
Blackbox
Audit Log Log Settings
Service Reset
Boot Self-Inspection (POST Code)
Fault Diagnosis
Capture BSOD
Screenshot
Video Recording
Backup Configuration
F/W Image Location F/W Info.
BMC F/W Update
Maintenance
BIOS/ME F/W Update
Preserve Configuration / Restore Factory Defaults
Restore Configuration
System Administrator
M C TP ov e r PC Ie
N C S I ov e r M C TP
Pl at f or m M oni t or i ng and C ont
PL D M f or F i r mwar e Updat e M C TP ov e r I2 C
e r I2 C S uppor t MCTP Over PCIe Support
N VM e B as i c M anag e me nt C ommand S uppor t
N VM e M I ov e r M C TP/I2 C S uppor t I2 C s wi
N VM e - M I VPD opt i on i n B as i c M anage me nt Commands M ode
NVMe Firmware Image Update over MCTP/PCIe
LED Buzzer
Processor Monitoring
Intel ASD
Miscellaneous
Host Rescue
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:Optional
Mellanox:No Intel:No
Mellanox:No Intel:No
Mellanox:No
Workload Optimization
Finding the right hardware for specific workloads can be a daunting task. Furthermore, optimizing the hardware and software stack adds another level of complexity. To help you quickly start developing and deploying essential applications for your business, AEWIN is offering workload optimization services. With perconfigured harware and software stack, AEWIN helps to provide pre-validated services for specific workloads.
AEWIN’s Portfolio of
Intel Select Solution for uCPE
SCB-1830-uCPE is a verified Intel Select Solution for uCPE solution for accelerating customers’ time to value by taking the guesswork out of assembling an optimized uCPE system and software stack by offering software and hardware configuration verified for typical uCPE workloads. Featuring Intel Xeon D processors with with network fabrics, the SCB-1830 is designed for performance, energy efficiency, and longevity that is ideal for intelligent edge and network service applications. Network Expansion Modules of various port and speed configurations can be added to augment the onboard 4x 10GbE SFP+ and 10x 1G RJ45 ports. Together with on-board QAT providing cryptography acceleration, this configuration passes the stringent performance requirements for Intel Select Solutions Plus verification that customers demand.
Intel Select Solutions for NFVI
SCB-1921-NFVI is a verified Intel Select Solutions for NFVI v2 system, featuring dual 2nd Generation Intel® Xeon® Scalable Processors and designed to meet the modern demand of agile and flexible virtualized networking equipment. With 8x forward-facing PCIe Gen3 x8 expansion bays, the SCB-1921 can support up to 8 Network Expansion Modules from 1GbE and all the way up to 100GbE with PCIe x16 dual bay convertors. QAT functionality is available and met the stringent performance validation requirements. Additional kits are available for installation of standard PCIe application accelerator cards for added flexibility to tailor this system for your specific requirements. The SCB-1921-NFVI have been enhanced from our standard configuration with BIOS and firmware tuning specific to the needs of virtualized environments. Further customization may be available for your specific workloads and requirements.
AEWIN Trusted Secure Boot (TSB)
Hardware platforms are getting more complex, and as a side effect firmware has been given even more functionalities and control even more things than before. Thus, it is absolutely essential to maintain the integrity of the on-board firmware image to ensure the security of the data passing through the system. AEWIN's Trusted Secure Boot modules are designed to increase firmware resilience to guard against tampering and data corruption.
The on-board logics on the Trusted Secure Boot modules identify and authenticate firmware digital signatures inside the system. The actions after detection of an incident are programmable. The default action is to sound the buzzer alarm and hold the boot sequence, then requiring user interaction to correct the firmware and continue the boot process. The module can be programmed to provide automated firmware recovery if desired. Another critical part of firmware restoration is ensuring there is a pristine golden image as reference. Extra attention was put into ensuring the integrity of the golden image on-board and have increased layers of security. These modules support Root of Trust (RoT), with some systems can support the Chain of Trust (CoT) verification.
AEWIN OT004 is a self-contained module and isolated from rest of the system to reduce possible attack surfaces. OT004 module has been split into 3 different SKUs: OT004A, OT004B, and OT004C. OT004A is specifically designed for systems with on-board BMC for CoT, such as the SCB-1937. With on-board BMC, start with BMC firmware verification, which can then verify the BIOS image. Through a series of verifications until booting of the OS, where it can verify the operation of AEWIN Trusted Secure Boot module to complete the complete chain of trust. OT004B and OT004C is designed for Intel and AMD system respectively to provide root of trust function for authentication the BIOS firmware.
There are 2 SKUs of OT006, the OT006A and OT006B. OT006A firmware is based on Intel’s Platform Firmware Resilience (PFR) technology, where OT006B is based on AEWIN’s own Trusted Secure Boot code base. The first wave of the systems supporting the modules are the BIS-5221 and SCB-1932. The biggest difference between the 2 technologies is the Intel PFR offers constant real-time verification, where AEWIN module offers Root of Trust of BMC and BIOS at boot time. However, both are designed to secure the firmware on-board and detect if errant hardware or unauthorized firmware modifications have been added.
Next-generation firewall (NGFW) provides capabilities beyond a stateful firewall which helps to prevent & combat threats from Core, Edge to Cloud environments. NGFW’s services include deep packet inspection (DPI), intrusion prevention system (IPS), TLS/SSL inspection, QoS, Web filtering, Antivirus inspection and prevention, encrypted traffic inspection, identity management integration, etc.
Unified threat management (UTM) provides multiple security functions in a single security appliance on the network. It offers total security in a box for SMIs and SMEs; its features include NGFW, IPS, Secure web/email gateway, WAN connectivity, routing, remote access in addition to the standard firewalls’ function/feature(s).
SD-WAN ADC
Software-defined Wide-Area Network (SD-WAN) enhances existing network architecture adding another layer of security with VPN as well as additional network optimizations. SD-WAN solutions expand connectivity options, from various wired networks to wireless networks, allowing mission critical redundancies to maintain access to and from your network. SD-WAN can work in conjunction with traditional MLPS and extends it with alternative services for optimized WAN performance.
Application delivery controller (ADC) is often placed between the data center and the firewall, or between the router and a server/web farm. ADC & ADN services such as: server load balancing (SLB), application acceleration, SSL offload, DDoS protection, DNS firewall, web application firewall, central authentication, SDN and multi-tenancy networks.
Networking Mastery
5G OpenRAN utilizing commoditized x86 Edge servers continues to be a hot topic, and these open standards will bring down the hurdle for enterprises and business who wish to build their own private 5G networks for 5G enabled devices that requires constant internet connection. Edge servers can be integrated into the 5G ecosystem to allow for increased flexibility and scalability for processing data at the edge to reduces latency and brings better performance to real-time applications. The software stack uses virtualization to add a layer of abstraction and allows multiple functions on the same physical hardware, such as 3GPP Split RAN and integration of the MEC applications.
MEC
Multi-access Edge Computing (MEC) is designed for collecting and processing data at the 5G edge cloud to reduce latency and bring better performance to applications with intensive real-time data transmitting especially the video & voice content. With the flexibility and agility of MEC, customers & service providers can introduce new innovations and monetizing applications.
Edge AI
Modern businesses have a growing reliance on smart applications that requires the power of accelerators, such as a GPU, to instantly processes analytics or inference workloads. The local availability of GPU computing power provided by an edge server allow the lowest latency to provide real-time inferencing to power your smart AIoT applications. This is Edge AI . This creates a large demand for edge servers to host these new enterprise focused applications.
AEWIN Network Expansion Module
NIC Modules are designed uniquely for various applications, derived from conventional and emerging industries, Our comprehensive Network Expansion Modules ranging from entry level to high-end requirements. AEWIN offers various solutions with multiple options of dimension, bandwidth (1, 10, 25, 40, and 100GbE), and SoC/chipsets.
1GbE RJ45
10G
Fiber & Copper Mixed
1G&10G Mixed
25G
40G
100G
PoE+
NCG401 4x 1G with PoE+, 1x Intel I350-AM4 1G
R619 2x 1G, 1x Intel I350-AM2, with bypass
R406 4x 1G, 1x Intel I350-AM4, with bypass
R385 8x 1G, 2x Intel I350-AM4, with bypass
R602 8x 1G, 2x Intel I350-AM4, Pericom switch, with bypass
NCG802 8x 1G, 2x Intel i350-AM4, Broadcom switch, with bypass
Note: Product specifications are subject to change without prior notice. * RDIMM-3DS is not included ** The expandsion bay can switch to standard PCIe slot through conversion kit
Mainstream Network Appliance
1U Rack-Mount
Intel 12th/13th Gen Core Processor (Alder Lake-S/Raptor Lake-S)
LGA1700 Intel R680E
TPM2.0 (R594 SPI) AEWIN TSB Module (OT004B) DDR5 UDIMM up to 4800/5600 MHz
Intel Xeon W and 10th/11th Gen Core Processor (Comet Lake-S/Rocket Lake-S)
LGA1200
Intel W480E / AMI UEFI BIOS
TPM2.0 (R594 SPI) /
DDR4 UDIMM up to 2666 MHz 128 GB 4x 288-pin
2x Intel i210-AT /
Note: Product specifications are subject to change without prior notice. * The expandsion bay can switch to standard PCIe slot through conversion kit
x4 (x8 Physical)
Mainstream Network Appliance
Note: Product specifications are subject to change without prior notice. * The expandsion bay can switch to standard PCIe slot through conversion kit
Mainstream Network Appliance
Note: Product specifications are subject to change without prior notice.
The expandsion bay can switch to standard PCIe slot through conversion kit
Note: Product specifications are subject to change without prior notice.
The expandsion bay can switch to standard PCIe slot through conversion kit
SCB-7906
Product specifications are subject to change without prior notice.
The expandsion bay can switch to standard PCIe slot through conversion kit
Entry Network Appliance
Desktop, Fanless Intel Celereon/Pentium/ Atom Processor (Alder Lake-N)
Integrated
TPM2.0 (R594 SPI)
DDR4 up to 3200 MHz 32 GB 2x 260-pin SO-DIMM / 4x Intel I210-AT (optional 1x I226-LM Support), and 1x I210-IS 1 Pair
5 x RJ45 (Optional 1x 2.5GbE) 1 x SFP
1x M.2 (B-Key or M-Key or E-Key) / 1x 2.5"
1x mSATA
Optional eMMC 5.1 (up to 128GB)
Power/HDD/Status/Status
2x USB 3.0 2 HDMI connector (on board) AC 90 ~ 264V DC 12V Adaptor
0 ~ 40°C
232mm(W) x 153mm(D) x 44mm(H) 2kg
232mm(W) x 153mm(D) x 44mm(H) 2kg Optional eMMC (up to 64GB)
Entry Network Appliance
M.2 Slot
mPCIe Slot HDD/SSD Bay SIM Slot
eMMC (up to 64GB) eMMC (up to 64GB) Ope ra ti ona l
mpe ra ture *Additional SKU with different expansion configurations available