■
Ultra-high performance and
protection
■
Comprehensive support to IPv6
■
Supported various VPN
solutions (IPSec/SSL/2TP)
- Zero-configuration remote
access with EASY VPN
- Support L2TP VPN on mobile
device (iPhone and Android
phone)
■
ICSA Firewall, IPSec certification
■
Real-time, dynamic malware
protection
■
High Availability (HA)
Security on a New Level
-The Future Is Ahead. Stay Ahead with ZyXEL USGs.
Utilizing networks to access internal and external mission-critical applications are common,
and important as well, for small and medium-sized businesses. As faster networks bring more
convenience and efficiency, businesses are facing challenges from sophisticated attacks and
even cybercrime that would cause interrupted communications, degraded performance and
loss of valuable information; however traditional firewalls are not capable of protecting
business from such network attacks.
The ZyWALL USG 300/1000/2000 Series are security platforms that offers ultra-high
performance, deep packet inspection and all-in-one multi-threat protection not only to block
the latest attack combinations including intrusion attempts, viruses, worms, phishing,
spyware, spam and many other malware types effectively, but also to secure remote access
among branch offices, partners and customers. The ZyWALL USG’s real-time threat detection
and continuous update services provide the fastest response speed in the networking
industry to deter the evolving security threats before the business is affected. The ZyWALL
USG 300/1000/2000 Series is ideal for small- and medium-size businesses to safeguard their
network environments.
Benefits
Ultra-high performance and protection to secure business networks
The ZyWALL USG 300/1000/2000 Series delivers wire-speed performance and integrated threat
management for wired networks. The USG Series provides firewall throughputs of from 350 Mbps to
2 Gbps that enables businesses to protect critical applications and networks without affecting
availability or performance. In addition, the USG’s unique built-in clean-traffic architecture can
prevent risks such as viruses, worms, Trojan Horses, spyware, phishing attacks and other emerging
Internet threats. In short, the architecture can assure clean and secure network environments for
business users.
ZyWALL USG
ZyWALL USG
300/1000/2000
300/1000/2000
Unified Security Gateway
Unified Security Gateway
Comprehensive IPv6 support to ensure investment protection
The ZyWALL USG Series is IPv6-ready today and is certified with “IPv6 Ready” gold
logo. With IPv6 feature enabled, the USG Series ensures businesses with a smooth
migration path from the IPv4-based networks to the full IPv6 infrastructure. It assigns
IPv6 addresses to clients and passes the IPv6 traffics through the IPv4 environment.
The USG Series supports dual-stack and IPv4 tunneling (6rd and 6to4 transition tunnel)
implementations for Internet connectivity to access IPv6 applications. The comprehensive IPv6
features built into the USG Series ensure not only future-ready connectivity but also investment
protection for businesses.
ZyWALL USG
ZyWALL USG
300/1000/2000
300/1000/2000
Unified Security Gateway
Unified Security Gateway
Various VPN solutions to simplify secure access
Establishing VPN tunnels is a good solution to provide a safe way to access necessary network resources remotely with any device anytime, anywhere.
However due to the complicated configuration, it could be quite difficult for non-technical employees such as sales people to use. The ZyWALL USG Series is
equipped with the “EASY VPN” solution to push configuration files to the VPN clients automatically; this eliminates the configuration efforts while securing the
access at the same time. In addition, the USG Series supports L2TP VPN technology on iPhones, Android phones and many other mobile devices as L2TP VPN
enables employees in remote places to connect to the headquarters with easy and free access.
Real-time, dynamic malware protection to safeguard business networks
Web security powered by BlueCoat and Commtouch
With more valuable information being placed on the data cloud, impacts from the ever-growing cybercrime should be treated seriously. As modern malware
become very sophisticated and difficult to repel, the ZyWALL USG’s content filter from Blue Coat and Commtouch, the leading solution provider, reduces costs
and extends protection by integrating a comprehensive, continuously updated database featuring millions of URLs, IP addresses and domains. With the
content filter, the USG Series not only enables real-time protection to deter emerging Web threats including malware, phishing and Zombies/bots, but also
monitors or blocks certain sites to maintain employee productivity.
Email security powered by Commtouch
The ZyWALL USG Series delivers industry-leading protection, powered by Commtouch, against spam, phishing and virus-laden emails. The extremely high
performance of Commtouch technology comes from the unique recurrent pattern detection (RPD) mechanism that possesses its superior capability through
analyzing millions of new patterns each day (24x7x365) to block all the associated messages real-time. In addition, the ZyWALL USG applies sender-based IP
reputation to remove over 80% of unwanted mails and to take advantage of the zero-hour virus outbreak protection feature, which is capable of blocking or
delaying suspicious messages hours before commercial anti-virus signatures are available.
High Availability (HA) ensures non-stop business operations
Loss of mission-critical connection can cause serious, and sometimes disastrous, consequences to businesses. The ZyWALL USG 300/1000/2000 Series provides
HA features to guarantee a secure, reliable connection between the protected network and the Internet.
• Multiple WAN ports and configurable load balancing between ports.
• An auxiliary (backup) Internet connection known as out-of-band management.
• A backup ZyWALL in case the master ZyWALL fails (Device HA).
Key Applications
Unique clean-traffic architecture
The ZyWALL USG’s clean-traffic architecture
protects against network risks like viruses,
worms, Trojan Horses, spyware, phishing attacks
and other emerging Internet threats. With the
clean-traffic architecture, enterprises users are
assured to have clean and secure network
environments.
Traffic In
Network
I/O Engine
Defragment BWMSNAT
Threat
Database
Update
Forwarding Engine
DNAT Routing
Stateful Firewall
Anomaly Detection and Prevention
Intrusion Detection and Prevention
(PA/TA)
Application Classifier
Anti-Virus
I/O Engine
Traffic Out
Clean
Traffic
Network
Fragment
Application Patrol
Content Filter
Anti-Spam
2