Firewall ICSA-certified firewall Routing & transparent (bridge) mode Zone-based access control list Stateful packet inspection NAT, PAT Policy base NAT VLAN tagging User-aware policy enforcement SIP/H.323 NAT traversal ALG supports custom ports Virtual Private Network (VPN) ICSA-certified IPSec VPN IPSec Algorithm: AES/3DES/DES Authentication: SHA-1/MD5 Key management: Manual key/IKE Perfect forward secrecy: (DH group) supprt 1, 2, 5 IPSec NAT traversal Dead peer detection/relay detection PKI (X.509) certificate support Centralize VPN Support Simple wizard support Auto reconnect VPN VPN HA (redundant remote VPN gateways) SSL VPN Clientless secure remote access Support reverse proxy mode* & full tunnel mode * (Reverse Proxy Mode available in future ZLD v 3.0 Firmware release) Unified policy enforcement Supports two-factor authentication Customizable user portal Anti-Spam Zone to zone protection Transparently intercept mail via SMTP/POP3 protocols Blacklist/whitelist support Support DNSBL checking Spam tag support Statistics report Content Filtering Social networking control Web security
- Zy XEL safe browsering URL blocking, keyword blocking Profile base setting Exempt list (blacklist & whitelist) Blocks java applet, cookies & active X Dynamic URL filtering database (powered by Blue Coat) Unlimited user licenses support Customize warning messages & redirect URL Networking Routing mode/bridge mode/mixed mode Layer 2 port grouping Ethernet/PPPo E Tagged VLAN (802.1Q) Virtual interface (alias interface) Policy-based routing (user-aware) Policy-based NAT (SNAT) Dynamic routing (RIP v 1/v 2, OSPF) DHCP client/server/relay Dynamic DNS support WAN Trunk more than 2 port Per host session limit Guaranteed bandwidth Maximum bandwidth Priority-bandwidth utilization Authentication Local user database Microsoft Windows active directory integrate External LDAP/RADIUS user database Xauth over RADIUS for IPSec IPV Forced user authentication (transparent authentication) IP/MAC address binding System Management Role-based administration Multiple administrator login Multi-Lingual Web GUI (HTTPS/HTTP) Out-of-band management (AUX) Object-based configuration Command line interface (console/web console/SSH/TELNET) SNMP v 2c (MIB-II) System configuration rollback Firmware upgrade via FTP/FTP-TLS/ Web GUI Logging/ Monitoring Comprehensive local logging Syslog (send to up to 4 servers) E-mail alert (send to up to 2 servers) Real-Time traffic monitoring Built-in daily report Advanced reporting (Vantage Report) Centralized Network Management (Vantage CNM) manageable Features Unified Security Gateway for SB (1~5 PC Users) All Gigabit Ethernet interface hardware design High-performance multi-layer threat protection Hybrid VPN (IPSec & SSL) secures connection 3G USB (Universal Serial Bus) dongle as the backup WAN System Capacity & Performance SPI Firewall Throughput*1: 100 Mbps VPN Throughput (3DES)*2: 30 Mbps*4 Unlimited User Licenses Max. Sessions*6: 6, 000 New Session Rate: 900 Max. Concurrent IPSec VPN Tunnels: 2 Max. Concurrent SSL VPN Users: 1 Included SSL VPN Users: 1 Customizable Zone Hardware Specifications 10/100/1000 Interfaces (Copper): 4 x LAN/DMZ, 1 x WAN USB (Universal Serial Bus) ports: 1 Power Requirements Input Voltage: 100
- 240 V AC, 50
- 60 Hz, 1.2 A Power Rating: 15 W Max Physical Specifications Dimensions: 215.75 (W) x 140 (D) x 33 (H) mm Weight: 0.38kg Environmental Specifications Operating temperature: 0 degrees C to 40 degrees C Storage temperature: 0 degrees C to 40 degrees C Operating humidity: 20% to 95% (non-condensing)