Home

ZyXEL USG-100

image

Contents

1. for specific users or groups Access to selected instant messaging or peer to peer applications can be blocked com pletely or restricted to certain times or certain bandwidths Gateway antivirus The administrator can choose between ICSA cer tified ZyXEL AV or Kaspersky AV to protect the network from viruses trojans and spyware The ZyXEL antivirus solution features around five times more signatures than the 3 000 or so provided by Kaspersky The service at the gateway network level is an ideal complement to local antivirus protection and inspect the protocols FTP HTTP SMTP POPS and IMAP4 Intrusion detection amp prevention More than 2 000 signatures protect systems from attacks by worms trojans backdoors etc and recognise the most frequently used instant mes saging and peer to peer applications that are usually not permitted in a business network While antivirus functions seek to prevent infection IDP blocks active intruders or attacks which are alrea dy active Gateway anti spam ZyWALL USG 100 200 supports free of charge protection against spam mail via DNSBL DNS Block List also known as the Realtime Black hole List RBL These lists contain the senders of mass mails The firewall can now be configured to deal with mail from such senders For exam Overview of ZyXEL ZyWALL Functions USG Firewall NEW NEW Data transfer rate Firewall Mbps Data transfer rate IPSec VPN Mbps Object oriented
2. is designed for small and mid sized businesses with up to 50 users Two of the seven gigabit Ethernet ports are predefined as fixed WAN ports Four ports can be freely al located to one of the LAN DMZ WLAN security zones One port can be assigned either as a third WAN or LAN DMZ WLAN port This model also offers 3G and WLAN support Firewall with hybrid VPN Until now IPSec based VPN connections have been generally considered to offer the best so lution for secure remote access Today hybrid VPN with IPSec L2TP and SSL is the ideal tool for meeting the requirements of different busi ness models IPSec VPN is primarily used for connecting entire networks The L2TP included in the operating system is a good solution for re mote access by a large number of Windows PCs without the need to install software SSL VPN has recently also become established as an access technology in the SME sector With the new Zy WALL USG solutions these three VPN types can be used simultaneously USB Modem f r 3G ZyXEL ZYWALL USG 200 DATTA ECUR TY APP Liig f ran AUN E m hS CARD RISET El Front side ZyWALL USG 200 optional WAN or LAN DMZ Example of application with backup via 3G S _ Eo m WWW DMZ a l E Productivity and security The Application Patrol allows variable access policies to be implemented
3. 00 m min 08 m hour 00 min on O off Wed hour 00 M min hour 00 min on O off Thu 22 M hour 00 min hour 00 min on O off Fri 22 hour 00 M min hour 00 min onOor Msat 23 M hour 30 M min hour 00 min on O off Sun hour 00 M min 09 hour 00 min Ni Note Specify the same begin time and end time means the whole day schedule oo lt amp lt amp i i ce Define on off time segments 300 Mbps via WLAN MIMO technology makes it possible to achieve data rates this high Under ideal conditions the net data throughput rate can reach up to 150 Mbps The 802 11n uses signals which are bounced off walls ceilings windows etc to increase the data Encryption rate and improve transmission reliability The dif 10 100 1000 Mbps ferent wireless streams are received via multiple antennas and thanks to complex chipsets ensu re the highest performance connection possible This technique is the secret behind the excellent o s results achieved inside buildings with many diffe pareve rent obstacles a Back of the ZyXEL NBG 460N Wireless LAN Hybrid Access Point in practice ZyXEL s Hybrid AP concept makes it possible to combine up to eight ac cess points into one group and configure these via one single online GUI Networks with multiple
4. AUTH SERVER CERTIFICATES LOGS MAIM TENANCE LOGOUT Every Hybrid AP compatible access point can be used either as a normal access point as an access point in a controller capacity or as a managed access point as desired PMK CACHE PMK cache function enables seamless roaming Wireless LAN ZyXEL business access point with 802 11n ZyXEL is one of the first manufacturers to launch a business access point in accordance with 802 11n the NWA 3165 It uses MIMO technology multiple in multiple out which ensures high reliability and high perfor mance when operating wireless LANs The NWA 3165 is flexible and ide ally suited to applications in the healthcare sector or for production and logistics services Net throughput of up to 100 Mbps Until now rates this fast were only possible via Ethernet connections MIMO technology uses multiple antennas for transmission and can even increase throughput rates by making use of other wise undesired reflections This improves WLAN coverage and eliminates so called dead spots Wi Fi n b g certified The ZyXEL NWA 3165 is certified in accordance with the most recent draft of the standard IEEE 802 11n Draft 2 0 This guarantees maximum compatibility for professional WLANs Since 802 11n is backward compatible to 802 11b g NWA 3165 offers a high degree of investment protection 802 11a g or n Of course the question arises of which technology is best and when In addi
5. O Nr 2 2008 USG next Security Generation The next security generation is now complete The successful launch at the end of last year of two high end firewalls is now followed by the Zy WALL USG 100 and 200 both designed for bet ween 5 and 50 users A key feature of the entire USG series is the hybrid VPN with IPSec SSL and L2TP which provides maximum remote connecti vity flexibility ZyXEL ZyWALL USG 100 200 Article USG 100 91 009 045001B USG 200 91 009 057001B Est street price USG 100 562 00 excl VAT USG 200 844 00 excl VAT Security is not any longer just a matter of hermetically closing USG next security generation your network for every type of ac ZyXEL is extending the line of Unified Security Gateway pro cess to be sure the no harm will ducts the next generation firewall to fit every size and be done to your valuable data or type of company From the small company to the largest business as a whole enterprise Today it s equally important to open your network to exploit ex iting new opportunities for mobile access distance work and inte gration to partners network All this is about openness and enhancing the value of existing it systems and data And all is about using the right security solution that will both secure the network against any type of attacks and theft and at the same time open it for authorized users ZyXELs expanding series of Unified Security Gat
6. USG Firewall 7 i j Eres r i 7 Ea ZyXEL ZyWALL USG 300 USG Firewall CERTIFIED CERTIFIED www ICSALabs com www ICSALabs com firewall It is envisaged that the established VPN firewall for small networks not requiring UTM ser vices will be replaced in the second quarter of 2009 ZyWALL 5 UTM 35 35 UTM After a brief transition period these models will be replaced by ZyWALL USG 100 and 200 Bundles with services Both new models are also available as attractive bundles with one year AV IDP CF All products in the new ZyWALL USG series have a five year warranty ZyXEL provides regular firm ware updates at no extra charge ZyXEL ZyWALL 5 Firewall ry f ZyXEL ZyWALL USG 1000 USG Firewall 4000 50 25 10 4xLAN DMZ 1x WAN 91 009 014001B 434 00 excl VAT Wireless LAN Gigabit WLAN Router 802 11n The NBG 460N is equipped with state of the art 300 Mbps wireless LAN technology in accordance with IEEE802 11n V2 0 With its 4 port gigabit switch this router offers a quick platform for communication with PCs f game consoles and storage devices It also offers a special time switch Windows g CFD CERTIFIED function which allows the WLAN transmitter to be turned off whenever it kii is not required Gigabit speed The NBG 460N offers full gigabit speed via the in ZyXEL NBG 460N tegrated 4 port switch which allows it to accom modate high WLAN data throug
7. access points will benefit from a configuration process which has been standardised simplified and well structured Simple configuration and control Configuration is child s play Via the online GUI at least one of the APs is assigned the role of con troller As soon as other APs within the same net work are assigned the function of Managed AP these restart obtain an IP address via DHCP and report to the Controller The Controller then lists all available access points in Managed AP mode Communication via exchange Access to the Managed APs now takes place ex clusively via the Controller The network of indivi dual components hybrid APs manifests itself to the administrator as a single independent sy stem Communication is directed through encryp ted tunnels based on a protocol specially created for this application CAPWAP Cell and channel planning Profiles are created for both band and channel division as well as for the ESSID and security Wireless LAN settings in line with cell planning Multiple profile levels make it possible to organise wireless cells in a structured way All profile configuration changes are automatically transferred to the assigned ac cess points An automatic channel assignment function is available within the Hybrid AP which serves the purpose of isolating the cells with the least inter ference possible The NWA 3160 is the first device to support the Hybrid AP concept other
8. configuration Anti spam free of charge ple by setting up a first soam filter at the gateway Anti spam will be supported on ZyWALL USG 300 1000 and ZyWALL 1050 by a firmware up grade as from the third quarter of 2008 High availability At the WAN end multiple ISP links can be set up so as to ensure redundant Internet access in the event that one ISP fails A connection via HSD PA UMTS provides additional backup A second identical ZyWALL USG allows high hardware availability in active passive mode The configu ration is synchronised at regular intervals If the active firewall fails the backup takes over the gateway function Two fold access security SSL and IPSec VPN links can be additionally pro tected by requesting a PIN code which generates a one time token password ZyWALL OTP The re iS an ever increasing demand when setting up partner or customer access to a VPN for two fac tor authentication Similar to e banking systems with scratch lists two factors are needed for iden tification First the password is entered then the newly generated token number Status and reporting For a better overview the current status can be displayed graphically on the status page of the ZYWALL USG 100 200 Detailed reports can be drawn up using the optional VRPT software Future ZyWALL 5 ZyWALL 5 without UTM will remain in the ZyXEL portfolio as a flexible stateful packet inspection ZyXEL ZyWALL USG 200
9. eways the next genera tion firewall is the answer to a company s demands for full secu rity and valuable openness Magnus Ahlberg Nordic Business Manager Channel Copyright 2008 ZyXEL Communications Corp Columbusvej 5 2860 S borg Publisher ZyXEL Communications 2008 Editor Carsten Hetling Issue date 1 August 2008 Going wireless The new generation wireless home gateways is here 802 11n Draft 2 0 delivers up to 8x the speed and 5x the range with virtually no dead spots in the radio coverage Seamless roaming To be really useful for voice and video applications a wire less network must have seamless roaming ZyXEL has the solution ZyXEL Security vee 7 m ape a Ea USG family New addition to the ZyWALL At the end of May two fanless models will be added to the ZyWALL USG family the ZyWALL USG 100 and 200 for between 5 and 50 users The ZyWALL USG family differs from the ZyWALL ITM series in that it comes with a hybrid VPN two WAN ports object oriented configuration and a number of other key features ZyWALL USG 100 The firewall provides comprehensive protection for small networks with up to 25 users Of the seven gigabit Ethernet ports two are predefined as fixed WAN ports Five ports can be freely allocated to one of the LAN DMZ WLAN security zones A PC card slot and two USB ports support the addition of 8G and WLAN functionality ZyWALL USG 200 The ZyWALL USG 200
10. hput rates This Article 91 003 208001B device also includes an integrated NAT router with Est street orice 83 00 excl VAT firewall functions and supports four dynamic DNS services to enable remote access An all rounder which is a class above the rest NEW WLAN time switch A special function makes it possible to turn the wireless LAN transmitter off during predefined pe riods of time These periods of time can be defi ned in 30 minute increments via an online GUI This feature offers the advantages of increased security and reduced radiation whenever WLAN is not needed External antennas Should additional wireless coverage ever be nee ded three more external antennas can be con nected to the NBG 460N However only suitable antennas such as the ANT 1106 Art 2499 should be used Both the type of antenna and the distance between the antennas is perfectly ad justed for use with 802 1 1n Scheduling Wireless LAN Scheduling Enable Wireless LAN Scheduling WLANstatus Day Except for the following times 24 Hour Format on off CI Everyday 00 M hour 00 M min 00 M hour 90 min Gigabit WLAN Firewall Router 802 11n e Wireless LAN time switch online GUI e Virtual DMZ zone e 4 dynamic DNS services e 2 IPSec VPN tunnels e WPA WPA2 security e Wi Fi Protected Setup WPS e Vista certified i O on off Mon hour 00 min 00 hour 00 min on O off Tue hour
11. models including an outdoor version will follow in the months to come Tips for seamless roaming The term roaming refers to the automatic handover of WLAN sessions bet ween various access points This function is a prerequisite particularly for VoIP telephony via WLAN If a VoIP call is being made roaming sees to it that the call is not interrupted when moving from one cell to another ZyXEL NWA 3xxx access points are suitable for demanding WLAN networks for VoIP applica tions such as those used for business infrastruc tures for example Seamless handover of a ses sion to a neighboring access point is the most challenging requirement Extremely precise cell planning is essential and the wireless coverage of individual APS must overlap somewhat on the edges The VoIP WLAN client then makes a decision during operation whether the strength of the approaching AP signal is strong enough to trigger roaming Here it must be kept in mind that the client has a significant impact on roa ming quality Updating the client driver or even better adjusting the configuration might be suffi cient in some cases The latter option is generally only offered for high quality products NWA 3xxx APs from ZyXEL also offer a PMK cache func tion which speeds up authentication during a cell change and enables nearly seamless roaming ZyXEL STATUS MANAGEMENT MODE MGMT MODE CONTROLLER PROFILE EDIT POOLE AP VLA SYSTEM REMOTE MIGHT
12. tion to 802 11n ZyXEL also offers 11a and g products Finding the right one depends on its intended use If the installa tion of a dense network of access points makes cell planning more complex 11a or g is recom mended 802 11n makes cell planning more dif ficult since two channels are bundled 802 11n on the other hand is ideal for high transmission rates While the NWA 3165 is equipped with built in omnidirectional antennas external anten nas can be used for the NWA 3100 3160 and 3500 models Technology Radio module Max throughput MultiSSID 802 10 VLAN tag Qos Article Est street price Ya ZyXEL NWA 3100 WLAN Access Point 802 11a b g 802 11a b g 802 1 1a b g 802 11n b g in 54 Mbps 54 Mbps 54 Mbps 300 Mbps Ext antenna connection SSS aE S 91 005 2140018 ZyXEL NWA 3165 Article 91 O05 214001B Est street price 212 00 excl VAT Overview of ZyXEL Business Access Points Go A T ZyXEL NWA 3165 5 WLAN Access Point A ZyXEL NWA 3500 WLAN Access Point ZyXEL NWA 3160 WLAN Access Point L 26 eS VY NEW

Download Pdf Manuals

image

Related Search

Related Contents

XMOV Manuel d`utilisation  Fresco-S Multi-viewer Quick Setting-up Manual  Instructor In-Depth Resource  LC-Power LC-1380Bmi  Toshiba Q Series Pro 128GB SATA III SSD  Epson Stylus Pro WT7900  VTech Mi6821 User's Manual  

Copyright © All rights reserved.
Failed to retrieve file