Datasheet
Note: *1: Available In future firmware release
ZyWALL USG Series Feature Matrix ZyWALL Feature Matrix
Maintain Control: Unified Security Gateway helps you win the battle
Challenges that may Drain Your IT Resource
Note: *1: With SEM-DUAL/SEM-VPN module
*2: With SEM-DUAL/SEM-UTM module
*3: Available In future firmware release
ZyWALL USG 2000
ZyWALL P1 ZyWALL 2 Plus ZyWALL 5 UTM ZyWALL 35 UTM ZyWALL 1050 ZyWALL SSL 10ZyWALL 2WG
ZyWALL USG 1000 ZyWALL USG 200 ZyWALL USG 100
Infrastructure Security Home Office/SOHO Infrastructure Security SSL
ZyWALL USG 300
1. Secure Connectivity
Given the prevalence and importance of
information technology (IT) systems
today and the nature and scale of both
the opportunities and risks associated
with significant deployments of new
networking technologies, organizations
are forced to evaluate solutions to build
up a safer infrastructure to secure online
transactions, in which involve exchange
of valuable information. The
infrastructure should be tailored to
meet operation requirements for
expanding remote sites as well as
mobile teleworkers.
2. Proactive Protection
Malicious virus, worm, exploits could
cripple corporate networks and halt
business transactions. In addition to severe
financial loss, you also risk leakage of
confidential information.
As mass-mailing software companies
mushroom on the Internet, your network is
bombarded with massive amounts of junk
mails (spam). Without intelligent detection
and proactive blocking, users have to go
through the tedious and time-consuming
task of sieving through the overflowing
mailbox, and such scenario leads to serious
productivity loss.
3. Policy Compliance
With numerous file-sharing (P2P)
and Instant Messaging (IM)
applications, it is easier for company
employees to share files and chat
online during work hours. Rapid file
sharing not only compromises
network safety with the sharing of
questionable files containing
malicious viruses, but may also
violate copyright issues and create
legal hassles.
4. Network Resilience
ISP links broken, hardware and
software failure on the gateway,
dead VPN tunnels - these are
severe challenges IT staff face
when designing the network
infrastructure. In short, we need
to take fault tolerance on the
network path into consideration
when build up a highly available
network infrastructure for non-
stop operations.
The ZyWALL USG series is a high performance, deep packet inspection security solution for small business to enterprise. It embodies a Stateful Packet
Inspection (SPI) firewall, Anti-Virus, Intrusion Detection and Prevention (IDP), Content Filtering, Anti-Spam, and VPN (IPSec/SSL/L2TP) in one box. This multi-
layered security safeguards your organization’s customer and company records, intellectual property, and critical resources from external and internal threats.
1. Leading, High Performance UTM solution
ZyWALL USG series deploys hardware-acceleration technology in one box. Powered by high-performance SecuASIC technology and a hardware-based
encryption accelerator, the ZyWALL USG series delivers leading high performance and multi-layer threat protection for small business to enterprises. All
ZyWALL USG series support Gigabit Ethernet interfaces.
2. Robust Hybrid VPN (IPSec and SSL)
The ZyWALL USG series can provide secure access from remote locations to corporate resources through the Internet for organizations of any size. Using IPSec
VPN companies can secure connections to branch offices, partners, and headquarters. Road warriors and telecommuters can use SSL or L2TP VPN to securely
access the company network without having to install VPN software.
3. Managing IM/P2P Abuse
For increasing network efficiency and business productivity, the IM/P2P application needs to be well managed. The ZyWALL USG series support Application
Patrol which controls who can use IM and P2P applications like MSN™ and BitTorrent™, and even who can use specific features within an application.
4. Non-Stop Internet Access with Multiple WAN and 3G as backup
The ZyWALL USG not only supports multiple WAN ports but also supports USB 3G or PCMCIA 3G card. This enables it to provide “active-active” load sharing or
“active-passive” failover configuration to deliver highly reliable network connectivity. To minimize the impact of single-point failures, the ZyWALL USG series
support device HA (High Availability) to assure network availability.
5. ICSA Firewall, IPSec, Antivirus Certification
With ICSA certified SPI Firewall, Anti-Virus and IPSec VPN, the ZyWALL USG series enables organizations to take complete control of their network
infrastructure and provide the most up-to-date protection against the network threats.
6. Comprehensive Report System
ZyWALL USG series build-in report system which offers a comprehensive set of real-time and historical reports, including firewall, virus and intrusion attacks,
bandwidth usage, web site usage, and user activity. Furthermore, with the web-based reporting system, Vantage Report (VRPT), administrators can easily
collect traffic data and analyze a distributed network, so organizations are aware of suspicious activity and to ensure increase business productivity.
ZyWALL USG Series Advantages
8
0 Mb
p
s
30 M
bp
s
5
Mbp
s
˗
1
,500
1
1 x
LAN,
1 x
WAN
˗
x
˗
˗
x
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
2
4 Mb
p
s
2
4 M
bp
s
˗
3
,000
5
4
x
LAN
,
1
x
WAN
˗
˗
x
˗
˗
x
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
24 Mb
ps
24 M
bps
˗
3
,00
0
5
˗
4 x LAN/DMZ
,
1 x
WAN
˗
˗
˗
x
˗
˗
x
˗
˗
˗
˗
˗
˗
(
3G)
˗
˗
˗
˗
˗
˗
˗
˗
˗
50 Mb
ps
2
5 M
bps
1
2 Mbp
s
˗
4
,000
1
0
4
x LAN/DMZ
,
1 x
WAN
˗
˗
x
˗
˗
x
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
60 Mb
p
s
30 M
bp
s
1
4 Mbps
˗
10,000
35
4
x LAN/DMZ,
2 x
WAN
˗
˗
x
˗
˗
x
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
3
00 Mb
p
s
1
50 M
bp
s
1
00 Mbps
˗
1
28,00
0
1,000
5
0
(
125
*
1
)
(
5
)
10/100/1000
GbE
˗
˗
x
˗
˗
˗
˗
x
˗
˗
˗
˗
˗
*
1
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
2
4 Mb
p
s
25
4
x
LAN
,
1
x
WAN
˗
x
˗
x
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
System
Firewall Throughput
VPN Throughput (AES)
UTM Throughput
(AV+IDP+Firewall)
Unlimited User Licenses
Sessions
Max. Concurrent
IPSec VPN tunnels
Max. Concurrent
SSL VPN users
Wireless
Physical Port
Customizable Zone
WAN Type
Ethernet
3G (Optional)
Networking
Routing/NAT/SUA Mode
Bridge Mode
Mix Mode (Routing+Bridge)
VLAN Tagging (802.1q)
Security
Firewall
IPsec VPN
SSL VPN
Content Filtering
Anti-SPAM
Anti-Virus
IDS/IDP
IM/P2P
Bandwidth Management
User-aware Management
High Availability
Device HA
VPN HA
Multiple WANs for Load
Balancing
Auto Fail-over, Fail-back
Dial Backup
Authentication Method
Local database
Radius
LDAP
Microsoft AD
ZyWALL OTP
Management
WebGUI (HTTP and HTTPS)
Command Line
Vantage CNM
Vantage Report
GraphicGraphic
2
,000 Mb
ps
500 M
bp
s
*1
400 Mbps
*2
˗
1
,000,00
0
2,000
75
0
(
6
)
10/100/1000 G
b
E
(
2) Dua
l
-Persona
l
it
y
G
b
E
(
SFP/RJ45
)
˗
˗
˗
˗
˗
˗
*
3
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
A
/P
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
350 Mb
p
s
1
50 M
bp
s
1
00 Mbps
˗
5
00,00
0
1
,000
50
(
25
0
*3
)
(
5
)
10/100/1000 G
b
E
˗
˗
˗
˗
˗
˗
*
3
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
A
/
P
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
2
00 Mb
ps
1
00 M
bps
4
8 Mbp
s
˗
60,000
200
10
(
25
*3
)
(
7
)
10/100/1000 G
b
E
˗
˗
˗
˗
˗
˗
*
3
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
A
/P
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
150 Mb
ps
7
5 M
bp
s
2
4 Mbps
˗
4
0,00
0
100
1
0
4
x LAN/DMZ,
2 x WAN
,
1 x OP
T
(
A
ll
G
b
E
)
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
A
/P
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
1
00 Mb
ps
5
0 M
bp
s
24 Mbps
˗
20,000
50
5
5 x LAN/DMZ,
2
x
WAN
(
A
ll
G
b
E
)
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
A/
P
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
˗
System
Firewall Throughput
VPN Throughput (AES)
UTM Throughput
(AV+IDP+Firewall)
Unlimited User Licenses
Sessions
Max. Concurrent
IPSec
VPN Tunnels
Max. Concurrent SSL
VPN Users
Physical Port
Customizable Zone
Networking
Routing/NAT/SUA Mode
Bridge Mode
Mix Mode (Routing+Bridge)
VLAN Tagging (802.1q)
Wireless Card Support
3G Support
Security
Firewall
IPsec VPN
SSL VPN
Content Filtering
Anti-SPAM
Anti-Virus
IDS/IDP
IM/P2P Management
Bandwidth Management
User-aware Management
High Availability
Device HA
VPN HA
Multiple WANs for
Load Balancing
Auto Fail-over, Fail-back
Dial Backup
Redundant Power Module
Authentication Method
Local Database
Radius
LDAP
Microsoft AD
ZyWALL OTP
Management
WebGUI
(HTTP and HTTPS)
Command Line
Vantage CNM
Vantage Report


