Du er her

ZyWALL USG 50

Spar
18.00%
2,162.50 Kr
(Ink. moms)
Designet til brug i små virksomheder

USG serien er den 3-generation af ZyXEL's ZyWALL serie.
USG 50 er en kræftfuld firewall, til at sikre virksomheden.
Firewall'en er designet til små virksomheder. (1~10PC'er)
Den har indbygget SPI Firewall, Content Filter, Anti-Virus, IDP, og VPN (IPSec/SSL).
Op til 10 samtidig IPSec VPN tunnler, samt 5 SSL VPN.

Brug for hjælp med opsætning, ring til vores support på 20307545.

Beskrivelse Features Specifications
 
Beskrivelse

ZyWALL USG 50 is a Unified Security Gateway, integrated with complete, enterprise-level and advanced security solutions designed for Small Businesses (SBs) with up to 10 PCs.
Its flexible configuration helps network administrators set up the network and enforce security policies more efficiently.
With certified by ICSA SPI Firewall and IPSec VPN, the ZyWALL USG 50’s security features also include IPSec VPN, SSL VPN, firewall, content filtering, and anti-spam.
It also provides bandwidth management, Multiple-WAN Failover and Load Balancing, the latest wireless technology, and many other powerful features.
In addition, the USB interface allows you to upgrade future technology and feature.
Moreover, IPSec VPN and SSL VPN design for telecommuters and home workers can access data more easily and safely at home.
ZyWALL USG 50’s excellent throughput is the key to implement features of enterprise’s level in a compact box to provide a full-time, non-stop and secure service.
Intuitive Web User Interface makes it easy for operation and configuration.
The ZyWALL USG 50 provides wide-ranging sophisticated management with HTTP/SSL, CLI/SSH, Centralized Logs, SNMP, Attack Alert, Statistics Reports, and centralized network management solution with Vantage CNM.

Features

Firewall

  • ICSA-certified firewall
  • Routing and transparent (bridge) mode
  • Zone-based access control list
  • Stateful packet inspection
  • User-aware policy enforcement
  • SIP/H.323 NAT traversal
  • ALG supports custom ports

Virtual Private Network(VPN)

  • ICSA-certified IPSec VPN
  • Algorithm: AES/3DES/DES
  • Authentication: SHA-1/MD5
  • Key management: Manual key/IKE
  • Perfect forward secrecy (DH groups) support 1, 2, 5
  • IPSec NAT traversal
  • Dead peer detection/relay detection
  • PKI (X.509) certificate support
  • Centralize VPN support
  • Simple wizard support
  • Auto reconnect VPN
  • VPN HA (redundant remote VPN gateways)

SSL VPN

  • Clientless secure remote access
  • Support reverse proxy mode and full tunnel mode
  • Unified policy enforcement
  • Supports two-factor authentication
  • Customizable user portal

Intrusion Detection and Prevention (IDP) (USG50)

  • Routing and transparent (bridge) mode
  • Zone-based IDP inspection
  • Customizable protection profile
  • Protect over 2000 attack
  • Automatic signature updates
  • Custom signatures
  • Protocol anomaly detection and protection
  • Traffic anomaly detection and protection
  • Flooding detection and protection
  • DoS/DDoS protection

Anti-Virus (USG50)

  • Support Kaspersky and ZyXEL Anti-Virus
  • Stream-based Anti-Virus engine
  • Zone base AV protection
  • HTTP/FTP/SMTP/POP3/IMAP4 protocol support
  • Automatic signature updates
  • No file size limitation
  • Blacklist/whitelist support

Application Patrol (USG50)

  • Application, IM/P2P, stream base media, VoIP granular access control
  • Detail access control of IM (chat, file transfer, video)
  • Application and IM/P2P bandwidth control
  • User authentication support
  • IM/P2P signature auto update
  • Support more than 15 catalogs IM and P2P
  • Real-Time statistical reports
  • Maximum/guaranteed bandwidth

Anti-Spam

  • Zone to zone protection
  • Transparently intercept mail via SMTP/POP3 protocols
  • Blacklist/whitelist support
  • Support DNSBL checking
  • Spam tag support
  • Statistics report

Content Filtering

  • Social networking control
  • Web security—Security threat category (powered by BlueCoat)
  • URL blocking, keyword blocking
  • Profile base setting
  • Exempt list (blacklist and whitelist)
  • Blocks java applet, cookies and active X
  • Dynamic URL filtering database (powered by BlueCoat)
  • Unlimited user licenses support
  • Customize warning messages and redirect URL

Networking

  • Routing mode/bridge mode/mixed mode
  • Layer 2 port grouping
  • Ethernet/PPPoE
  • NAT/PAT
  • Tagged VLAN (802.1Q)
  • Virtual interface (alias interface)
  • Policy-based routing (user-aware)
  • Policy-based NAT (SNAT)
  • Dynamic routing (RIP v1/v2, OSPF)
  • DHCP client/server/relay
  • Dynamic DNS support
  • WAN Trunk more than 2 port (USG 50)
  • Per host session limit
  • Guaranteed bandwidth
  • Maximum bandwidth
  • Priority-bandwidth utilization

Authentication

  • Local user database
  • Microsoft Windows active directory integrate
  • External LDAP/RADIUS user database
  • Xauth over RADIUS for IPSec VPN
  • Forced user authentication (transparent authentication)
  • IP/MAC address binding

System Management

  • Role-Based administration
  • Multiple administrator login
  • Multi-Lingual web GUI (HTTPS/HTTP)
  • Object-based configuration
  • Command line interface (console/web console/SSH/TELNET)
  • SNMP v2c (MIB-II)
  • System configuration rollback
  • Firmware upgrade via FTP/FTP-TLS/web GUI

Logging/Monitoring

  • Comprehensive local logging
  • Syslog (send to up to 4 servers)
  • E-mail alert (send to up to 2 servers)
  • Real-Time traffic monitoring
  • Built-in daily report
  • Advanced reporting (Vantage Report)
  • Centralized network management (Vantage CNM) manageable
Specifikationer

Performance and Capacity

• SPI firewall throughput: 100Mbps

• VPN AES/3DES throughput: 50Mbps

• Concurrent sessions: 10,000

• New session rate: 1,000 (sessions/sec)

• Simultaneous IPSec VPN tunnels: up to 5

• Simultaneous SSL VPN tunnels: 2/5 (included/max)

 

Security and Authentication

• Anti-Virus: Stream-based AV engine

• Kaspersky Anti-Virus

• Supports HTTP/SMTP/POP3/FTP

• Automatic Signature Update

• No file size limitation

• Blacklist/Whitelist

• DoS/DDoS prevention

• ALG supports SIP/H.323, FTP, IPSec, L2TP, MSN, PPTP and RTP

• Access granularity: ip/port/location/user/group/time/network quota

• Customizable security zone

• Force user authentication (transparent authentication): user-aware access policy management

• User database: RADIUS, LDAP, Microsoft Active Directory and local user database

• Application Patrol: Portless application management

• IM/P2P application management: blocking, scheduling, rate-limiting bandwidth

• Intrusion Detection and Prevention (inline mode or bridge mode)

• Zone-based, customizable protection profile

• Traffic anomaly for scan detection and flood detection

• Protocol anomaly: HTTP/ICMP/TCP/UDP

• Malformed packet protection

• Signature-based L3-L7 deep packet inspection

• Automatic update for latest signatures

• Custom signature supported

 VoIP over VPN

• URL blocking, keyword blocking, exempt list

• Blocks Java Applet, cookies, Active X

• URL filtering by querying dynamic database


 Management

• Intuitive Web-based GUI: https/http

• Dashboard for system status monitoring

• Role-based administration: supports multiple privileges and simultaneous logins

• Object-based architecture

• Text-based configuration file

• Full-function CLI: Accessible from console/Web Console/SSH/telnet

• Product registration and service activation from within myZyXEL.com

 Centralized & comprehensive local logging

• Log exportable: syslog (up to 4 external syslog servers)

• SNMP v2c with MIB-II

• E-mail alert

• Real-time monitoring: Traffic snapshot and SA monitor

• Firmware upgrade: FTP, FTP-TLS, WebGUI

• System configuration rollback

• Supports Vantage Report for advanced reporting

• Supports Vantage CNM for centralized management

VPN

• Route-based IPSec VPN

• Hardware-Accelerated encryptions: AES, 3DES, DES

• Authentication: MD5, SHA-1

• Key management: Manual key/IKE

• PKI: PKCS #7, #10 & #12

• Certificate enrollment: CMP, SCEP

• Perfect forward secrecy: DH Group 1, 2 and 5

• NAT traversal

• NAT over IPSec

• DPD (Dead Peer Detection) and replay detection

• Split DNS tunnel

• X-auth authentication: RADIUS, LDAP, Microsoft Active Directory and local user database

• Integrated SSL VPN

• Clientless Secure Remote Access

• SecuExtender: Supports virtually all applications

• Supports RADIUS/LDAP/Microsoft AD/Local User Database

• Supports ZyWALL OTP (One Time Password)

 

Networking

• Routing mode and bridge mode can co-exist

• Port grouping (L2)

• Supports 802.1q tagged VLAN

• Encapsulation: Ethernet/PPPoE/PPTP

• Supports virtual interface (alias interface)

• Policy-based routing

• NAT: SNAT, DNAT

• Supports dynamic routing protocols: RIP v1/v2 and OSPF

• IP Multicasting

• DHCP client/server/relay

• Built-in DNS server

• Dynamic DNS

• NTP client

• HTTP redirect

• Policy-based traffic shaping

• Maximum bandwidth

• Bandwidth priority

 

Redundancy

• Device failure detection

• Auto-sync Configurations

• Supports Multiple ISP links

• Multiple WAN Load balancing

• VPN High Availability supports redundant remote VPN gateways