Download Print this page

Specifications - ZyXEL Communications ENTERPRISE SECURITY Brochure

Hide thumbs Also See for ENTERPRISE SECURITY:

Advertisement

Specifications

Model
ZyWALL USG 100
ZyWALL USG 200
Product Photo
• Unified Security
• Unified Security
Gateway for SME
Gateway for SME
(10~50 PC Users)
(10~50 PC Users)
• High-performance
• High-performance
multi-layer threat
multi-layer threat
protection
protection
• Hybrid VPN (IPSec, SSL
• Hybrid VPN (IPSec, SSL
Features
and L2TP) secures
and L2TP) secures
connection
connection
headquarters
headquarters
• Support Kaspersky
• Support Kaspersky
and ZyXEL anti-virus
and ZyXEL anti-virus
• Flexible OPT (option)
port (only for USG 200)
Hardware Specifications
10/100/1000 Interfaces
5 x LAN/DMZ, 2 x WAN
4 x LAN/DMZ, 2 x WAN,
(Copper)
(All GbE)
1 x OPT (All GbE)
DualPersonality GbE
-
(SFP/RJ45)
USB Ports
2
SEM Slot
-
(Security Extension Module)
Card Slot
1
System Performance
Firewall Throughput
100 Mbps
150 Mbps
VPN Throughput (AES)
50 Mbps
75 Mbps
*1
AV Throughput
40 Mbps
50 Mbps
*2
IDP Throughput
50 Mbps
65 Mbps
UTM Throughput
35 Mbps
45 Mbps
*2
(AV+IDP+Firewall)
Unlimited User Licenses
Yes
Yes
Max Sessions
20,000
40,000
Max. Concurrent
50
100
IPSec VPN Tunnels
Max. Concurrent
5
SSL VPN Users
Customizable Zone
Yes
Yes
Power Requirement
100 ~ 240 V,
100 ~ 240 V,
Input Voltage
50 ~ 60 Hz, 1.2 A
50~ 60 Hz, 1.2 A
Power Rating
20 W Max
20 W Max
Environmental Specifications
Operating Temperature
0°C ~ 50°C
0°C ~ 50°C
Storage Temperature
-30°C ~ 60°C
-30°C ~ 60°C
5% ~ 90%
5% ~ 90%
Operating Humidity
(non-condensing)
(non-condensing)
Physical Specifications
Dimensions
242 x 175 x 35.5
242 x 175 x 35.5
(W) x (D) x (H) mm
Weight, kg
1.2
Note: *1: With SEM-DUAL/SEM-VPN module
*2: With SEM-DUAL/SEM-UTM module
Enterprise Security
Enterprise Security
ZyWALL Unified Security
ZyWALL Unified Security
Gateway Series
Gateway Series
(100/200/300/1000/2000 Series)
(100/200/300/1000/2000 Series)
Unified Security Gateway Series
ZyWALL USG 300
ZyWALL USG 1000
ZyWALL USG 2000
• Unified Security
• Unified Security
• Unified Security
Gateway for SME
Gateway for SME
Gateway for SME
(50~75 PC Users)
(75~200 PC Users)
(200~500 PC Users)
• Providing Hybrid VPN
• Providing Hybrid VPN
• Gigabit Firewall with
(IPSec/SSL VPN) and
(IPSec/SSL VPN) and
Fiber interface (SFP)
robust UTM security
robust UTM security
• Scalable VPN/UTM
services
services
performance
• High-performance
• High-performance
• Support Kaspersky
multi-layer threat
multi-layer threat
and ZyXEL anti-virus
protection
protection
• Redundant power
• User-aware policy
• Non-stop operations
module
engine enables access
of mission-critical
granularity
applications
• Excellent
• Excellent
manageability with
manageability with
object, text-based and
object, text-based and
centralized
centralized
7
5
-
-
-
2
2
2
-
-
-
1
1
1
200 Mbps
350 Mbps
100 Mbps
150 Mbps
70 Mbps
120 Mbps
75 Mbps
100 Mbps
70 Mbps
100 Mbps
Yes
Yes
60,000
512,000
200
1,000
10
25
250
Yes
Yes
100 ~ 240 VAC
100 ~ 240 VAC,
50/60 Hz, 0.55 ~ 0.3 A
50/60 Hz, 1 A Max
50 ~ 60 Hz, 3 ~ 6 A
35 W Max
80 W Max
0°C ~ 50°C
0°C ~ 40°C
-30°C ~ 60°C
-30°C ~ 60°C
20% ~ 90%
5% ~ 90%
(non-condensing)
(non-condensing)
430 x 201 x 42
431 x 292 x 43.5
1.2
2.8
4.7
Features
Firewall
• ICSA-certified Firewall
• Routing and transparent (bridge) mode
• Zone-based access control list
• Stateful packet inspection
• NAT, PAT
• Policy base NAT
• VLAN tagging
• User-aware policy enforcement
• SIP/H.323 NAT traversal
• ALG supports custom ports
Virtual Private Network (VPN)
• ICSA-certified IPSec VPN
• PPTP, L2TP, IPSec
• Algorithm: AES/3DES/DES
• Authentication: SHA-1/MD5
• Key management: Manual key/IKE
• Perfect forward secrecy (DH groups) support
1, 2, 5
6
• IPSec NAT traversal
2
• Dead peer detection/relay detection
• PKI (X.509) certificate support
2
• Centralize VPN support
1
• Simple wizard support
1
• Auto reconnect VPN
2,000 Mbps
400 Mbps
SSL VPN
400 Mbps
• Clientless secure remote access
400 Mbps
• Support reverse proxy mode and full tunnel
400 Mbps
mode
Yes
• Unified policy enforcement
1,000,000
• Supports two-factor authentication
2,000
• Customizable user portal
750
Intrusion Detection and Prevention
Yes
(IDP)
100 ~ 240 V,
• Routing and transparent (bridge) mode
• Zone-based IDP inspection
200 W
• Customizable protection profile
0°C ~ 40°C
• Protect over 2000 attack
-30°C ~ 60°C
• Automatic signature updates
5% ~ 90%
• Custom signatures
(non-condensing)
• Protocol anomaly detection and protection
• Traffic anomaly detection and protection
430 x 487 x 89
• Flooding detection and protection
10.5
• DoS/DDoS protection
Anti-Virus
Networking
• Support Kaspersky and ZyXEL Anti-Virus
• Routing mode/bridge mode/mixed mode
• Stream-based Anti-Virus engine
• Layer 2 port grouping
• Zone base AV protection
• Ethernet/PPPoE
• HTTP/FTP/SMTP/POP3/IMAP4 protocol support
• Tagged VLAN (802.1Q)
• Automatic signature updates
• Virtual interface (alias interface)
• No file size limitation
• Policy-based routing (user-aware)
• Blacklist/whitelist support
• Policy-based NAT (SNAT)
• Dynamic routing (RIP v1/v2, OSPF)
Application Patrol
• DHCP client/server/relay
• Dynamic DNS support
• Application, IM/P2P, stream base media, VoIP
granular access control
• WAN Trunk more than 2 port
• Per host session limit
• Detail access control of IM (chat, file transfer,
• Guaranteed bandwidth
video)
• Maximum bandwidth
• Application and IM/P2P bandwidth control
• Priority-bandwidth utilization
• User authentication support
• IM/P2P signature auto update
Authentication
• Support more than 15 catalogs IM and P2P
• Real-Time statistical reports
• Local user database
• Maximum/guaranteed bandwidth
• Microsoft Windows active directory integrate
• External LDAP/RADIUS user database
Anti-Spam
• Xauth over RADIUS for IPSec VPN
• Forced user authentication (transparent
• Zone to zone protection
authentication)
• Transparently intercept mail via SMTP/POP3
• IP/MAC address binding
protocols
• Blacklist/whitelist support
System Management
• Support DNSBL checking
• Spam tag support
• Role-Based administration
• Statistics report
• Multiple administrator login
• Multi-Lingual web GUI (HTTPS/HTTP)
High Availability
• Out-of-band management (AUX)
• Object-based configuration
• Active-Passive mode
• Command line interface (console/web
• Device failure detection and notification
console/SSH/TELNET)
• Support ICMP and TCP ping check
• SNMP v2c (MIB-II)
• Link monitoring
• System configuration rollback
• Auto-Sync configurations
• VPN HA (redundant remote VPN gateways)
• Firmware upgrade via FTP/FTP-TLS/web GUI
Logging/Monitoring
Content Filtering
• Comprehensive local logging
• Web security—ZyXEL safe browsing
• URL blocking, keyword blocking
• Syslog (send to up to 4 servers)
• E-mail Alert (send to up to 2 servers)
• Profile base setting
• Real-Time traffic monitoring
• Exempt list (blacklist and whitelist)
• Built-in daily report
• Blocks java applet, cookies and active X
• Advanced reporting (Vantage Report)
• Dynamic URL filtering database (powered by
BlueCoat)
• Centralized network management Vantage
(CNM) manageable
• Unlimited user licenses support
• Customize warning messages and redirect URL

Advertisement

loading

This manual is also suitable for:

Zywall usg