Enterprise Security Enterprise Security

Enterprise Security Enterprise Security
Key Features
The ZyWALL USG (Unified Security Gateway) Series is the “third generation” ZyWALL featuring
an all-new platform. It provides the performance 22 times faster than the previous-generation
ŁAll-new
platform: “3rd”
generation ZyWALL
Ł22x
faster than previousgeneration ZyWALL firewalls
ZyWALL firewalls, as well as a deep packet inspection security solution for small businesses to
enterprises alike. It embodies a Stateful Packet Inspection (SPI) firewall, Anti-Virus, Intrusion
Detection and Prevention (IDP), Content Filtering, Anti-Spam, and VPN (IPSec/SSL/L2TP) in one
box. This multilayered security safeguards your organization’s customer and company records,
intellectual property, and critical resources from external and internal threats.
ŁNew
generation UTM solution
ŁRobust
hybrid VPN
(IPSec and SSL)
ŁApplication
firewall
ŁWeb
security (Security Web
access): ZyXEL safe browsing
ŁNon-stop
Internet access with
multiple WAN and 3G backups
ŁICSA
firewall, IPSec certification
ŁComprehensive
ŁBest-of-breed
ŁFree
report system
security solution
Anti-spam service
ŁZyXEL
Security Distribution
Network (ZSDN)
Key Benefits
Secure connectivity
Given the prevalence and importance of information technology (IT) systems today and the nature and
scale of both the opportunities and risks associated with significant deployments of new networking
technologies, organizations are forced to evaluate solutions to build up a safer infrastructure to secure
online transactions, in which involve exchange of valuable information. The infrastructure should be
tailored to meet operation requirements for expanding remote sites as well as mobile teleworkers.
Proactive protection
Malicious virus, worm, exploits could cripple corporate networks and halt business transactions. In addition
to severe financial loss, you also risk leakage of confidential information.
As mass-mailing software companies mushroom on the Internet, your network is bombarded with massive
amounts of junk mails (spam). Without intelligent detection and proactive blocking, users have to go
through the tedious and time-consuming task of sieving through the overflowing mailbox, and such
scenario leads to serious productivity loss.
Policy compliance
With numerous file-sharing (P2P) and Instant Messaging (IM) applications, it is easier for company
employees to share files and chat online during work hours. Rapid file sharing not only compromises
network safety with the sharing of questionable files containing malicious viruses, but may also violate
copyright issues and create legal hassles.
Network resilience
ISP links broken, hardware and software failure on the gateway, dead VPN tunnels—these are severe
challenges IT staff face when designing the network infrastructure. In short, we need to take fault tolerance
on the network path into consideration when build up a highly available network infrastructure for nonstop operations.
Manageability
With Vantage CNM (Centralized Network Management), users can achieve the follow objects:
• Easy VPN management and diagnostic capability
• Complete security policies and UTM management
• Low TCO of massive deployment and device maintenance
• Active monitoring, alerting and comprehensive graphic reports
The solution provides an efficient centralized management system for enterprises of any size to reduce
operational costs regardless of the number of branch offices or remote locations.
Enterprise
Security
Cost-effectiveness
ZyWALL Unified Security
Gateway Series
• Device hardware maintenance fee: ZyXEL provides a one more year hardware warranty out of factory.
• FreeSoftware upgrade: now ZyXEL provides free software upgrade for you to enjoy complete protection
(100/200/300/1000/2000 Series)
With the adoption of ZyXEL’s USG device, the follow costs can be saved:
without additional expanse.
Enterprise Security
ZyWALL Unified Security
Gateway Series
(100/200/300/1000/2000 Series)
Key Applications
ZyWALL USG clean-traffic architecture
The ZyWALL USG’s clean-traffic architecture
Traffic In
protects against network risks such as viruses,
worms, Trojan Horses, spyware, phishing attacks
Network
I/O Engine
Defragment
Network
I/O Engine
Forwarding Engine
DNAT
Routing
SNAT
BWM
Fragment
and other emerging Internet threats. With the
clean-traffic architecture, enterprises users are
assured to have clean and secure network
Traffic Out
Stateful Firewall
environments.
ADP (PA/TA)
Application Classifier
Threat
Database Update
IDP
lean
raffic
Anti Virus
Application Patrol
Content Filter
AS
New generation UTM solution
The ZyWALL USG Series deploys hardwareacceleration technology in one box. Powered
by high-performance SecuASIC technology
Network
and a hardware-based encryption
accelerator, the ZyWALL USG Series delivers
industry-leading performance and multi-
Inbound Threats
layer threat protection for small businesses
and enterprises. The ZyWALL USG Series
Intrusion Detection
and Prevention
provides integrated Unified Threat
Management security features such as Anti-
Content Filter
Virus (include Kaspersky Anti-Virus & ZyXEL
Anti-Virus), IDP, Anti-Spam, Content Filtering
Anti-Virus
and Firewall, VPN. All ZyWALL USG Series
products support the Gigabit Ethernet.
Anti-Spam
Firewall
VPN
Outbound Threats
High performance
22x faster than previous-generation
ZyWALL firewalls
UTM throughput in Mbps
400
350
300
The New Generation USG Firewall
250
22x faster than previous
generation ZyWALL firewalls
200
150
100
50
0
0
ZyWALL 5 UTM
ZyWALL USG 100
ZyWALL USG 1000
ZyWALL 35 UTM
ZyWALL USG 200
ZyWALL USG 2000
ZyWALL 70 UTM
ZyWALL USG 300
Robust hybrid VPN (IPSec and SSL)
The ZyWALL USG Series can provide secure
Server Farm
access between remote locations and
corporate resources through the Internet for
organizations of any size. Using IPSec VPN,
Client
Email
Server
companies can secure connections to branch
offices, partners and headquarters. Road
BI
System
File
Share
OA, ERP System
CRM System
Remote
Desktop
Network
Extend
Mobile User
SSL VPN
warriors and telecommuters can use SSL or
Web-based Application Server
Application (Inventory, Store...)
L2TP VPN to safely access the company
network without having to install VPN
Internet
software. The Series provides a flexible and
IPSec VPN
easy way to enable mobile employees,
vendors and partners to confidently access
Branch
Headquarters
your network resource for better efficiency.
Branch
Enterprise Security
ZyWALL Unified Security
Gateway Series
(100/200/300/1000/2000 Series)
Application firewall
More and more network applications bring
malicious software into your office. This kind
Non-Business Related
of unwanted software, especially IM/P2P
Business Related
applications, may cause bandwidth waste or
even system damage. Using the application
patrol and bandwidth management features,
you can have full control over traffic blocking
or rate limit settings.
Corporate
Network
Internet
Application Control Policy
Business Related Applications
Non-Business Related Applications
Allow Business Related
Bandwidth Limit IM
P2P Block
Web security (Secure Web access):
ZyXEL safe browsing
There are increasing network threats coming
4. Access or Deny
3. Response
ZyXEL Database
3rd-Party Database
(Bluecoat + Google)
from internal sources, since your employees
could surf unknown Web sites located
anywhere. Some Web sites contain malicious
Internet
software like Trojan horses, spywares or
worms that could take tolls to your company;
thus finding ways to keep internal users from
surfing dangerous Web sites is becoming an
Web Server
important issue. ZyXEL Safe Browsing feature
can pinpoint the Web sites with malicious
software and warn the users to stay away
from potential threats.
1. Internet Access
2. Query
ZyXEL Integrated Database
Non-stop Internet access with
multiple WAN and 3G backups
The ZyWALL USG not only supports
multiple WAN ports but also 3G through
USB or PCMCIA cards. This feature enables
“active-active” load sharing or “activepassive” failover configuration to deliver
Operating in
Active/Passive Mode
IPSec or GRE Tunnel for
Secure Connection
WAN2 (3G)
3G
Network
highly reliable network connectivity.
LAN
ZyWALL
PWR
USG 300
Vantage CNM
Centralized Network
Management
Host by SI or Customer
AUX
SYS CARD1
CARD2
1
RESET
2
3
10/100/1000
4
5
6
7
USB
1
2
AUX
CONSOLE
ZyWALL USG 300
Unified Security
Gateway
WAN1
Network
Provider
(IP VPN)
ZyWALL USG fail
over and fail back
between WAN1
(ADSL/Fiber) &
WAN2 (3G WAN)
Remote Office
BRAS
Corporate
Headquarters
ADSL Fiber
Last-Mile
Primary
Backup
High availability
High availability is essential in enterprise
Device HA: Master Fails and Backup Takes Over
networks. It ensures a system or component
can be continuously operational for a desirably
long length of time.
The ZyWALL USG series provide high
availability feature as:
LAN
A
1.1.1.1
192.168.1.1
ZyWALL
PWR
USG 300
Master
AUX
SYS CARD1
1
2
RESET
3
CARD2
10/100/1000
4
5
6
7
USB
1
• Multiple WAN ports and configure load
AUX
CONSOLE
2
balancing between these ports.
Internet
B
• An auxiliary (backup) Internet connection as
ZyWALL
PWR
USG 300
known as out of band Management .
• A backup ZyWALL in the event the master
ZyWALL fails (device HA).
To minimize the impact of single-point failures,
the ZyWALL USG Series supports device HA
(High Availability) to assure network availability.
Backup
AUX
SYS CARD1
CARD2
1
RESET
2
3
10/100/1000
4
5
6
7
USB
1
2
192.168.1.1
AUX
CONSOLE
1.1.1.1
Enterprise Security
ZyWALL Unified Security
Gateway Series
(100/200/300/1000/2000 Series)
Comprehensive reporting system
The ZyWALL USG Series has a built-in reporting
USG Built-in Reporting System
system that offers a comprehensive set of real-
ZyWALL USG series provides built-in reporting system to collect data and view various statistics
time and historical reports including firewall, virus
about traffic passing through your ZyWALL.
and intrusion attacks, bandwidth usage, Web site
usage and user activities. Furthermore, with
Vantage Report (VRPT), a Web-based reporting
system, administrators can easily collect traffic
data and analyze a distributed network for their
organizations to become more aware of
suspicious activities and to ensure better
business productivity.
Vantage Report Centralize Reporting System
Vantage Report is a cost-effective solution that allows administrators to easily monitor and
analyze report of ZyWALL Internet Security Appliances from any location. It delivers rich formats
of statistical report for IT staff with thorough understanding about bandwidth usage, security
event and web traffic analysis.
Monitor
Statistical Report
Best-of-breed security solution
The ZyWALL USG Series offers network
protection combining multiple best-of-breed
technologies into a single security solution;
these technologies are provided by well-known
industrial partners such as:
An
t i- V
iru s
• Anti-Virus: Kaspersky
• Content Filter: Bluecoat, Google
• IP Sec VPN Client: TheGreenBow
Content Filter
With the best-of-breed security solution, the
ZyWALL USG Series delivers industry-leading
performance and multi-layer threat protection
I P S ec V P N
t
Clien
for small businesses and enterprises.
Best-of-Breed Technologies
All New ZyWALL USG Series
Free Anti-Spam service
ZyXEL’s Anti-spam service eliminates spam,
phishing, virus and malware threats
through a unified security architecture
without dropping legitimate messages.
With ZyXEL’s free anti-spam service,
Mail
Good
enterprises can save time and resources
dealing with unwanted email to reduce
Anti-Spam Service
operational costs.
Spam
ZyXEL Security Distribution Network
(ZSDN) ensures rapid response to
new threats
ZSDN Provides Up-to-Date Protection
• The myZyXEL.com Web site delivers a
ZyXEL Security
Response Team
Security Information Center
(Email Bulletins)
convenient, centralized way to register all
ZyWALL units and Security Services.
mySecurity
zone
• The ZyXEL Security Update Servers operates
mySecurityZone
24x7 to automatically deliver updated signature
databases to ZyWALL units around the world.
• The mySecurityZone portal provides
comprehensive, searchable information
3
World Update S
Server
regarding viruses and system vulnerabilities,
and it provides a wealth of information
resources that keep customers up-to-date on
the latest vulnerabilities and countermeasures.
1
4
(HTTPS or HTTP)
5
1 Registration & Activation
1. Login
2. MAC
3. RegType (Trial)
4. License Key
SKU
2 1.2. Expiration
Date
2
3
Check Policy
and Advisory
4
Request
Download
5
Download
Signature
my
.com
myZyXEL.com
Registration Center
Enterprise Security
ZyWALL Unified Security
Gateway Series
(100/200/300/1000/2000 Series)
Specifications
Model
Unified Security Gateway Series
ZyWALL USG 100
ZyWALL USG 200
ZyWALL USG 300
ZyWALL USG 1000
ZyWALL USG 2000
• Unified Security
Gateway for SME
(10~50 PC Users)
• High-performance
multi-layer threat
protection
• Hybrid VPN (IPSec, SSL
and L2TP) secures
connection
headquarters
• Support Kaspersky
and ZyXEL Anti-virus
• Unified Security
Gateway for SME
(10~50 PC Users)
• High-performance
multi-layer threat
protection
• Hybrid VPN (IPSec, SSL
and L2TP) secures
connection
headquarters
• Support Kaspersky
and ZyXEL Anti-virus
• Flexible OPT (option)
port (only for USG 200)
• Unified Security
Gateway for SME
(50~75 PC Users)
• Providing Hybrid VPN
(IPSec/SSL VPN) and
robust UTM security
services
• High-performance
multi-layer threat
protection
• User-aware policy
engine enables access
granularity
• Excellent
manageability with
object, text-based and
centralized
• Unified Security
Gateway for SME
(75~200 PC Users)
• Providing Hybrid VPN
(IPSec/SSL VPN) and
robust UTM security
services
• High-performance
multi-layer threat
protection
• Non-stop operations
of mission-critical
applications
• Excellent
manageability with
object, text-based and
centralized
• Unified Security
Gateway for SME
(200~500 PC Users)
• Gigabit Firewall with
Fiber interface (SFP)
• Scalable VPN/UTM
performance
• Support Kaspersky
and ZyXEL Anti-virus
• Redundant power
module
5 x LAN/DMZ, 2 x WAN
(All GbE)
4 x LAN/DMZ, 2 x WAN,
1 x OPT (All GbE)
7
5
6
Product Photo
Features
Hardware Specifications
10/100/1000 Interfaces
(Copper)
DualPersonality GbE
(SFP/RJ45)
USB Ports
SEM Slot
(Security Extension Module)
Card Slot
System Performance
Firewall Throughput*1
VPN Throughput (AES)*2
UTM Throughput (AV+IDP)*3
Unlimited User Licenses
Max Sessions*6
Max. Concurrent
IPSec VPN Tunnels
Max. Concurrent
SSL VPN Users
Customizable Zone
Power Requirement
Input Voltage
Power Rating
Environmental Specifications
Operating Temperature
Storage Temperature
Operating Humidity
Physical Specifications
Dimensions,
(W) x (D) x (H) mm
Weight, kg
-
-
-
-
2
2
2
2
2
2
-
-
-
-
1
1
1
1
1
1
100 Mbps
50 Mbps
35 Mbps
Yes
20,000
150 Mbps
75 Mbps
45 Mbps
Yes
40,000
200 Mbps
100 Mbps
70 Mbps
Yes
60,000
350 Mbps
150 Mbps
100 Mbps
Yes
512,000
2,000 Mbps
400 Mbps*4
400 Mbps*5
Yes
1,000,000
50
100
200
1,000
2,000
5
10
25
250
750
Yes
Yes
Yes
Yes
Yes
100 - 240 V,
50 - 60 Hz, 1.2 A
20 W Max
100 - 240 V,
50 - 60 Hz, 1.2 A
20 W Max
100 - 240 V AC
50/60 Hz, 0.55 - 0.3 A
35 W Max
100 - 240 V AC,
50/60 Hz, 1 A Max
80 W Max
100 - 240 V,
50 - 60 Hz, 3 - 6 A
200 W
0°C to 50°C
-30°C to 60°C
5% to 90%
(non-condensing)
0°C to 50°C
-30°C to 60°C
5% to 90%
(non-condensing)
0°C to 50°C
-30°C to 60°C
20% to 90%
(non-condensing)
0°C to 40°C
-30°C to 60°C
5% to 90%
(non-condensing)
0°C to 40°C
-30°C to 60°C
5% to 90%
(non-condensing)
242 x 175 x 35.5
242 x 175 x 35.5
430 x 201 x 42
431 x 292 x 43.5
430 x 487 x 89
1.2
1.2
2.8
4.7
10.5
Note:
*1: Testing Methodologies: Maximum performance based on RFC 2544 (UDP packets, 1,518 bytes). Actual performance may vary depending on network conditions and activated services.
*2: VPN (AES) throughput measured using UDP traffic with 1,424 bytes packet size, based on RFC 2544.
*3: UTM (AV+IDP) throughput measured using industry standard Ixia IxLoad test tool against HTTP protocol with 1,460 bytes packet size. Testing done with multiple flows.
*4: With SEM-DUAL/SEM-VPN module
*5: With SEM-DUAL module
*6: Max sessions measured using industry standard Ixia IxLoad test tool.
Features
Firewall
Anti-Virus
Networking
• ICSA-certified firewall
• Support Kaspersky and ZyXEL Anti-Virus
• Routing mode/bridge mode/mixed mode
• Routing and transparent (bridge) mode
• Stream-based Anti-Virus engine
• Layer 2 port grouping
• Zone-based access control list
• Zone base AV protection
• Ethernet/PPPoE
• Stateful packet inspection
• HTTP/FTP/SMTP/POP3/IMAP4 protocol support
• Tagged VLAN (802.1Q)
• NAT, PAT
• Automatic signature updates
• Virtual interface (alias interface)
• Policy base NAT
• No file size limitation
• Policy-based routing (user-aware)
• VLAN tagging
• Blacklist/whitelist support
• Policy-based NAT (SNAT)
• User-aware policy enforcement
• Dynamic routing (RIP v1/v2, OSPF)
• SIP/H.323 NAT traversal
Application Patrol
• DHCP client/server/relay
• ALG supports custom ports
• Application, IM/P2P, stream base media, VoIP
• Dynamic DNS support
granular access control
Virtual Private Network (VPN)
• ICSA-certified IPSec VPN
• Detail access control of IM (chat, file transfer,
video)
• WAN Trunk more than 2 port
• Per host session limit
• Guaranteed bandwidth
• PPTP, L2TP, IPSec
• Application and IM/P2P bandwidth control
• Maximum bandwidth
• Algorithm: AES/3DES/DES
• User authentication support
• Priority-bandwidth utilization
• Authentication: SHA-1/MD5
• IM/P2P signature auto update
• Key management: Manual key/IKE
• Support more than 15 catalogs IM and P2P
Authentication
• Perfect forward secrecy (DH groups) support
• Real-Time statistical reports
• Local user database
• Maximum/guaranteed bandwidth
• Microsoft Windows active directory integrate
1, 2, 5
• External LDAP/RADIUS user database
• IPSec NAT traversal
• Dead peer detection/relay detection
Anti-Spam
• Xauth over RADIUS for IPSec VPN
• PKI (X.509) certificate support
• Zone to zone protection
• Forced user authentication (transparent
• Centralize VPN support
• Transparently intercept mail via SMTP/POP3
• Simple wizard support
• Auto reconnect VPN
protocols
authentication)
• IP/MAC address binding
• Blacklist/whitelist support
• Support DNSBL checking
System Management
SSL VPN
• Spam tag support
• Role-Based administration
• Clientless secure remote access
• Statistics report
• Multiple administrator login
• Support reverse proxy mode and full tunnel
• Multi-Lingual web GUI (HTTPS/HTTP)
High Availability
• Out-of-band management (AUX)
• Unified policy enforcement
• Active-Passive mode
• Object-based configuration
• Supports two-factor authentication
• Device failure detection and notification
• Command line interface (console/web
• Customizable user portal
• Support ICMP and TCP ping check
mode
console/SSH/TELNET)
• Link monitoring
• SNMP v2c (MIB-II)
• Auto-Sync configurations
• System configuration rollback
• VPN HA (redundant remote VPN gateways)
• Firmware upgrade via FTP/FTP-TLS/web GUI
• Zone-based IDP inspection
Content Filtering
Logging/Monitoring
• Customizable protection profile
• Web security—ZyXEL safe browsing
• Comprehensive local logging
• Protect over 2000 attack
• URL blocking, keyword blocking
• Syslog (send to up to 4 servers)
• Automatic signature updates
• Profile base setting
• E-mail alert (send to up to 2 servers)
• Custom signatures
• Exempt list (blacklist and whitelist)
• Real-Time traffic monitoring
• Protocol anomaly detection and protection
• Blocks java applet, cookies and active X
• Built-in daily report
• Traffic anomaly detection and protection
• Dynamic URL filtering database (powered by
• Advanced reporting (Vantage Report)
Intrusion Detection and Prevention
(IDP)
• Routing and transparent (bridge) mode
• Flooding detection and protection
• DoS/DDoS protection
BlueCoat)
• Unlimited user licenses support
• Customize warning messages and redirect URL
• Centralized Network Management Vantage
(CNM) manageable
Enterprise Security
ZyWALL Unified Security
Gateway Series
(100/200/300/1000/2000 Series)
Accessories
Security Extension Module (USG 2000 only)
Model
SEM-DUAL
SEM-VPN
Product Photo
For customers require full security features both VPN
For customers in need of intensive VPN applications to
and UTM threat protections. The SEM-DUAL unleashes
build up mighty VPN concentrator in central site while
full horse power of the ZyWALL USG 2000 platform with
requires highest level of redundancy. Specialized in VPN
mighty VPN and UTM performance.
applications, the SEM-VPN accelerates VPN performance.
• SecuASIC CIP-3001 for UTM Acceleration (Anti- Virus
• Advanced VPN Crypto to Boost up VPN Performance
and IDP)
Features
• VPN Performance: up to 400 Mbps (IPSec, large packet)
• Advanced VPN Crypto to Boost up VPN Performance
• Simultaneous IPSec VPN Tunnels: Up to 2,000 IPSec VPN
• UTM Performance: up to 400 Mbps (HTTP, large packet)
Tunnels
• VPN Performance: up to 400 Mbps (IPSec, large packet)
• Simultaneous SSL VPN Users: Up to 750* SSL VPN Users
• Simultaneous IPSec VPN Tunnels: Up to 2,000 IPSec
*: SSL VPN user license sold separately; 5 included.
VPN Tunnels
• Simultaneous SSL VPN Users: Up to 750* SSL VPN Users
*: SSL VPN user license sold separately; 5 included.
System Performance
*7
VPN Throughput (AES)
UTM Throughput (AV+IDP)
*8
Max. IPSec VPN Tunnels
Max SSL VPN Users
400 Mbps
400 Mbps
400 Mbps
100 Mbps
2,000
2,000
750
750
Environmental Specifications
Operating Temperature
0°C to 40°C
0°C to 40°C
Storage Temperature
-30°C to 60°C
-30°C to 60°C
Operating Humidity
5% to 90% (non-condensing)
5% to 90% (non-condensing)
199.2 x 212 x 36.3
199.2 x 212 x 36.3
410
410
Physical Specifications
Dimensions,
(W) x (D) x (H) mm
Weight, g
Note:
*7: VPN (AES) HTTP protocol with 1,460 bytes packet size. Testing done with multiple flows.
*8: UTM (AV+IDP) throughput measured using industry standard Ixia IxLoad test tool against
Transceiver
Model Name
Optical
Receiver Wavelength Connector
Sensitivity
Transmission Distance vs. Fiber Cable Sepcification
62.5 um
Multi-Mode Fiber
50 um
Multi-Mode Fiber
Operational Ranges
9/10 um
Single-Mode Fiber
Supply
Voltage
Max
Current
SFP-SX
-17 dBm
850 nm
LC
220 m
550 m
-
3.15 ~ 3.45 V
300 mA
SFP-LX-10
-20 dBm
1310 nm
LC
550 m
550 m
10 km
3.15 ~ 3.45 V
300 mA
SFP-LHX-1310-40
-23 dBm
1310 nm
LC
-
-
40 km
3.15 ~ 3.45 V
300 mA
SFP-ZX-80
-24 dBm
1550 nm
LC
-
-
80 km
3.15 ~ 3.45 V
300 mA
Security Licenses
If You Want
Gateway Anti-Virus
ZyWALL Gateway Anti-Virus service is an easy-to-manage,
signature-based security feature which sops virus/spyware
from entering your network.
For protection against viruses and spyware, ZyWALL USG
100/200/2000 could be chose the ZyXEL Anti-Virus or one
powered by Kaspersky Labs.
For
ZyWALL USG 100
ZyWALL USG 200
ZyWALL USG 300
ZyWALL USG 1000
ZyWALL USG 2000
Please Order
iCard ZyXEL Anti-Virus, 1 year
iCard ZyXEL Anti-Virus, 2 years
iCard Kaspersky Anti-Virus, 1 year
iCard Kaspersky Anti-Virus, 2 years
iCard ZyXEL Anti-Virus, 1 year
iCard ZyXEL Anti-Virus, 2 years
iCard Kaspersky Anti-Virus, 1 year
iCard Kaspersky Anti-Virus, 2 years
iCard ZyXEL Anti-Virus, 1 year
iCard ZyXEL Anti-Virus, 2 years
iCard Kaspersky Anti-Virus, 1 year
iCard Kaspersky Anti-Virus, 2 years
iCard ZyXEL Anti-Virus, 1 year
iCard ZyXEL Anti-Virus, 2 years
iCard Kaspersky Anti-Virus, 1 year
iCard Kaspersky Anti-Virus, 2 years
iCard ZyXEL Anti-Virus, 1 year
iCard ZyXEL Anti-Virus, 2 years
iCard Kaspersky Anti-Virus, 1 year
iCard Kaspersky Anti-Virus, 2 years
Gateway IDP
ZyWALL USG 100
iCard IDP, 1 year
iCard IDP, 2 years
ZyWALL Gateway Intrusion Detection/Prevention service is
an easy-to-manage, signature-based security feature which
mitigates threats from ever-evolving attacks/exploits.
ZyWALL USG 200
iCard IDP, 1 year
iCard IDP, 2 years
ZyWALL USG 300
iCard IDP, 1 year
iCard IDP, 2 years
ZyWALL USG 1000
iCard IDP, 1 year
iCard IDP, 2 years
ZyWALL USG 2000
iCard IDP, 1 year
iCard IDP, 2 years
Gateway Content Filtering
ZyWALL USG 100
iCard Content Filtering, 1 year
iCard Content Filtering, 2 years
ZyWALL Gateway Content Filtering is an integrated security
option to regulate leisure browsing or porn traffic during
work hours to decrease non-productive bandwidth
consumption and prevent viruses and spyware from
forcing your computer to connect with unwanted websites.
ZyWALL USG 200
iCard Content Filtering, 1 year
iCard Content Filtering, 2 years
ZyWALL USG 300
iCard Content Filtering, 1 year
iCard Content Filtering, 2 years
ZyWALL USG 1000
iCard Content Filtering, 1 year
iCard Content Filtering, 2 years
ZyWALL USG 2000
iCard Content Filtering, 1 year
iCard Content Filtering, 2 years
More SSL VPN Tunnels
ZyWALL USG 100
iCard 2 to 5 SSL Tunnels
ZyWALL USG 200
iCard 2 to 10 SSL Tunnels
Remote access has never been so easy. Utilizing only a standard
web browser, users can easily and secure access e-mail, files,
applications, web servers and any resources on the corporate
network from any location. With industry strength security and
encryption algorithms, the ZyWALL’
L’s SSL VPN feature ensures
your privacy of data.
ZyWALL USG 300
ZyWALL USG 1000
ZyWALL USG 2000
Client PC’s
’
iCard 5 to 25 SSL Tunnels
iCard 5 to 50 SSL Tunnels
iCard 5 to 250 SSL Tunnels
iCard 25 to 50 SSL Tunnels
iCard 25 to 250 SSL Tunnels
iCard 50 to 250 SSL Tunnels
iCard 5 to 50 SSL Tunnels
iCard 5 to 250 SSL Tunnels
iCard 5 to 750 SSL Tunnels
iCard 50 to 250 SSL Tunnels
iCard 50 to 750 SSL Tunnels
iCard 250 to 750 SSL Tunnels
Software client 5 licenses
Software client 10 licenses
Software client 50 licenses
Vantage CNM
CNM, 10 nodes
A robust Centralized Network Management System.
1. Centralized UTM Management for License and Policy
2. Enforcements and One-Click VPN configuration
3. Group Device Configuration for mass deployments:
firmware upgrades, policy installations and
backup/restore, real-time monitoring, alerting and
comprehensive graphic reporting.
CNM, 25 nodes
All ZyWALL
Models
A comprehensive Reporting System.
1. Quickly and conveniently collect and/or analyze log
orientated by devices across distributed networks
2. Highly accessible and easy-to-use architecture provides
IT staff a simple method to monitor/analyze network
traffic associated with ZyWALL devices.
All services are also available on E-iCard
CNM, 50 nodes
CNM, 100 nodes
CNM, 300 nodes
CNM, 1000 nodes
Vantage Report
Vantage Report, 1 device
All ZyWALL
Models
iCard 2 to 25 SSL Tunnels
iCard 10 to 25 SSL Tunnels
Software client 1 license
IPSec VPN Client
Ideal for remote teleworkers to access company resources
in a secure manner. Software client from SafeNet to be
installed on client PC’s.
’
iCard 2 to 10 SSL Tunnels
Vantage Report, 5 devices
Vantage Report, 25 devices
Vantage Report, 100 devices
For more produc t information, visit us on the web at www.ZyXEL.com
Copyright © 2010 ZyXEL Communications Corp. All rights reserved. ZyXEL, ZyXEL logo are registered trademarks of
ZyXEL Communications Corp. All other brands, product names, or trademarks mentioned are the property of their
respective owners. All specifications are subject to change without notice.
65-100-000076B
07/10
Was this manual useful for you? yes no
Thank you for your participation!

* Your assessment is very important for improving the work of artificial intelligence, which forms the content of this project

Download PDF

advertisement