Logo SilverFast Logo Logo
Article number: 40465
Listed in category: IT-Security / Encryption and Decryption > ZyWALL USG 1000 from brakensiek.de

Not-New according to our terms of service (AGB)

Unified Security gateway for small and medium-sized enterprises / Medium-sized organisations
- Top performance VPN concentrator (IPsec, SSL, L2TP)
- 1000 VPN tunnels with 150 MBit
- Firewall with 300 MBit
- User-related access directives
- Proactive network protection
- Reliable network functionalities
- Device high availability and multiple WAN Load Balancing
- Range management
- VoIP security
- Content Filtering

High performance VPN concentrator with IPSec VPN and SSL VPN
The ZyWALL USG in 1000 is a Unified Security gateway this was developed to offer a huge number of securities building up on a robust hardware-quickened platform.
By the integration of the IPSec VPN and SSL VPN technologies allows the ZyWALL USG in 1000 the construction of virtual private networks (VPN) between lain locations as for example branch places, locations of business partners and even tele-workers who announce themselves, perhaps, about a possibly not secured Hotel-Hotspot.
The communication canals are certainly encoded to reduce a possible overrun / data theft during the transference of confidential information on unsafe networks like the Internet.
The VPN feature "heave and Spoke" is able to minimise the expenditure for the Policy management in a complicated enterprise network infrastructure enclosing more locations.

Proactive network protection against a huge number of menaces
By the integration of the most modern technologies on a robust platform, is able the ZyWALL USG in 1000 to offer multi Layer protection for security-critical enterprise fields.
The gateway anti-virus security of the ZyWALL USG in 1000 was developed by Kaspersky of rennet, the used technology offers the shortest response time for appearing viruses and Spyware. Therefore different menaces in the Netzwerk-Edge can be stopped and viruses as well as Spyware from enterprise networks be kept away. With an integrated SecuASIC co-processor is able the ZyWALL USG in 1000 to offer steadfast and reliable performance also with high network extent of utilisation.
With the signature-based IDP engine (Intrusion Detection and Prevention) the package examination explains the ZyWALL USG in 1000 on Layer 7 for protocol / Traffic anomalies or correspondent patterns. Therefore offers the ZyWALL USG 1000 comprehensive IDP abilities around potential worms to recognise viruses, Trojans and VoIP menaces, etc. proactively.
As a reaction to the constantly changing menaces top-topical signatures / pattern are automatically downloaded from the ZSDN infrastructure and are installed on your ZyWALL USG in 1000.

Application Patrol for the management of utilisation from in / p2p-applications
The ZyWALL USG in 1000 was developed especially for the management free of stress from in / p2p-anwendungen on modern networks. Equipped with AppPatrol, a central operating field for different in / p2p-anwendungen, she allows the production of detailed Zugriffspolicies based at the constantly changing security standards: Identification and restriction of different access levels more prevailing in / p2p-protokolle, restriction of the access duration for different user groups, establishment of range limits for certain P2P uses and Priorisierung of the VoIP-Traffic for the best conversation quality about slow WAN ISP connections. An ideal solution is seen on the whole the ZyWALL USG in 1000 to handle the dilemma in the matter of productiveness and security.

Zugriffstgranularität by Policy engine specific for user
In addition to the basic abilities of the Zugriffssteureung, the intelligent Policy engine specific for user of the ZyWALL USG was developed in 1000 to make decisions to the package forwarding according to different criteria (Benutzer-ID, user group, access time and Netzwerk-Quota, etc.). In addition the security staff can furnish Zugriffspolicies for a row of security functions like VPN, Content filter and Application Patrol.
Together with VLAN's and even furnished security zones Sicherheitspolicies can be used in enterprise actually for the protection before unauthorized access to the network resources.

Secure official quality by range management
The ZyWALL USG in 1000 offers range management functions to the Traffic-Priorisierung, so that the range can be protected according to interface / protocol or be limited. The security staff can assign in spite of the connecting direction the range to different uses or Computer-Hosts on the enterprise network. It is possible, for example to assign a higher priority and bigger range to uses commenting on contemporary issues like VoIP or video conferences to guarantee qualitatively high-quality transference services. In addition, the supervision of the range use allows the ZyWALL USG in 1000 with the help of comprehensive static evaluations.

VoIP security: Protection of converged networks
On account of many advantages more and more enterprises use the VoIP technology on her networks. Nevertheless, the crossing to VoIP also walks along with security risks and problems in the matter of quality.
The ZyWALL USG in 1000 is a Firewall Friendly to VoIP which reduces the risks in connection with the application of VoIP with the help of the SIP / H.323 ALG feature which opens only the required ports during the VoIP phone calls dynamically; after ending of the conversation the open ports are automatically closed to to bend forward port spying. The IDP function is able to repulse attacks in connection with VoIP. Last security gaps can be reduced with the VoIP-Traffic about VPN with Traffic-Priorisierung and the conversation quality about ISP connections be improved.

High-availability features guarantee uninterrupted company for uses necessary for company
The easy equipment of a highly available and sure network allows the high-availability features of the ZyWALL USG in 1000 for your enterprise. To hold the effects of malfunctionings of single points so slightly as possible, the device high availability supports the ZyWALL USG in 1000 to guarantee the network availability in case of a failure of a network device furthermore.
On the WAN page can provide the ZyWALL USG in 1000 several ISP connections to guarantee the availability of the Internet in case of a connecting interruption of an Internet service provider. The multiple WAN Load-Balancing optimises the range use about every ISP connection.

Technical data
Performance and achievement
- SPI Firewall-Durchsatz: 350 MBit / p.
- IPSec VPN (FEED) Durchsatz: 150 MBit / p.
- Maximum concurrent NAT-Sessions: 200,000
- Maximum VPN tunnels IPSec: 1,000
- Maximum VPN tunnels SSL: 50
- Rate of new Sessions: 13,000 (Sessions/Sek).

Gateway antivirus
- Stream-based gateway-virus protection of Kaspersky of rennet
- If cunning covers the most active viruses in the game
- If HTTP / FTP / SMTP / POP3 / IMAP4 scans
- Automatic signature update
- No file dimensions limitation
- Blacklist / Whitelist

-: If valid anti-virus subscription requires

Application Patrol
- IN / P2P detailed access price increase
- Integration with Scheduling / rate limit / specifically for user
- IN / P2P Up To date Support-
- Real time evaluations

-: If valid IDP subscription requires

Intrusion Detection and Prevention

- In-line mode (Routing / bridge)
- Zonal-based IDP examination
- Configureable protective profile
- Signaturbaiserte Deep Packet examination
- Automatic signature update
- User-defined signatures
- Traffic anomaly: Scanning Detection and Flood Protection
- Protocol anomaly: HTTP / ICMP / TCP / UDP

-: If valid IDP subscription requires

- URL-Blocking, key word-Blocking
- Exclusion list (Blacklist and Whitelist)
- If Java blocks Applet, Cookies and Active X
- Content filter category service (Dynamic URL Filtering data bank of BlueCoat)

-: If valid Content filter subscription requires


- Encoding (FEED / 3/)
-Authentisierung (SHA-1 / MD5)
- Key management (manual Key / IKE)
-Perfect Forward Secrecy (DH Group 1/2/5)
-NAT about IPSec
-Dead Peer Detection / Replay Detection
- PKI (X.509)
- certificate registration (CMP / SCEP)
- Xauth-Authentisierung
-VPN-Konzentrator (heave and Spoke VPN)
- If L2TP about IPSec supports

- Sure Remote access without clients (lapels Proxy fashion)
-SecuExtender (Full tunnel fashion)
- Summarised Policy penetration
- If Zwei-Faktoren-Authentisierung supports
-Konfigurierbares user main entrance

- Routing mode / bridge mode / Mixed mode
- Layer 2 ports Grouping
- Ethernet / PPPoE / PPTP
- Tagged VLAN (802.1Q)
- Virtual interface (alias interface)
- Policy-based Routing (specifically for user)
- Policy-based NAT (SNAT / DNAT)
- RIP v1 / v2
- Multicasting IP (IGMP v1 / v2)
- Client DHCP / server / Relay
- Integrated DNA server
- Dynamic DNA

Range management
- Range priority
- Policy-based Traffic-Shaping
- Maximum / guaranteed range
- Bandwidth Borrowing

- Zonal-based access price increase list
- Configureable security zone
- Stateful Packing Inspection
- DoS/DDoS protection
- Policy penetration specific for user
- ALG supports user-defined ports

- Internal user data bank
- Microsoft Windows Active Directory
- External LDAP / RADIUS user data bank
- ZyWALL OTP (One time passport Word)
- Enforced Benutzerauthentisierung (clear Authentisierung)

high availability
- Device HA (Active passives mode)
- Device defective call sign
- Connecting supervision
- Auto-Sync configuration
- Multiple WAN Load Balancing
- HA VPN (Redundant Remote VPN gateways)

System management
- Functional-based administration
- Concurrent administration-Logins
- Polyglot web GUI (HTTPS / HTTP)
- Object-based configuration
- Command line interface (console / WebConsole / SSH / TELNET)
- Comprehensive local reports
- Syslog (4 servers)
- E-mail warning (2 servers)
- SNMP v2c (MIB-II)
- Real time Traffic supervision
- Put back on system configuration
- Text-based configuration file
- Proficient ware actualisation via FTP / FTP-TLS / WebGUI
- Enlarged reports (van days report 3.1 patches 1-)
- Centralised network management (van days CNM 3,0-)

-: future publications

- ICSA-certificated Firewall
- ICSA-certificated IPSec VPN

-: Certification back

Hardware specifications
- Memory: 1 GB RAM / 256 mb Flash
- Interface: GbE x 5 (RJ-45, with LED)
- Auto-Negotiation and car MDI/MDI-X
- Console: RS-232 (DB9F)
- AUX: RS-232 (DB9M)
- Anzeige-LEDs: PWR, SYS, AUX, HDD
- Net counter: Yes
- Reset tracer: Yes
- Extension card plumb line: Yes (1)
- USB: Yes (2)
- Optional HDD: Yes (IDE, 2.5")

-: These hardware accessories are supported with future proficient ware releases

Physical specifications
- Rack assembly: Yes (19", Rack-Montage-Kit including)
- Dimensions: 430.7 (B) x 292.0 (T) x 43.5 (H) mm
- Weight: 4,700 g

Electric demands
- Input tension: 100-240V / AC, 50/60 hertz, 1 A Max
- Achievement: 80 W of Max

Surroundings specifications
- Operating temperature: 0 °C ~ 40 °C
- Temperature in the Aufstellort:-30 °C ~ 60 °C
- Humidity: 5% ~ 90% (not condensing)

Compatibility with the following standards
- HSF (friar von schädlichen Substanzen): RoHS und WEEE
- EMV: FCC Part 15 Class A, CE-EMC Class A, C-Tick Class A, VCCI Class A
- Sicherheit: CSA International (ANS/UL60950-1, CSA60950-1, EN60950-1, IEC60950-1)

* Zusicherungen und Markennamen:
We are not authorized reseller of this brand we use the names only for description

Your contact person: Tim Brakensiek
product request: ZyWALL USG 1000

Ampel gebrauchtprodukt     last update:   15.09.2021

Visit the new marketplace for prepress, press und postpress: www.worldprintmarket.com
Optimize your cash-flow by selling your no longer required machines.

X-Rite IntelliTrax System - automatic spectral color measurement system for sheet, and roll-feed printing units and package-printing units according to PSO for Heidelberg, MAN Roland, KBA, Ryobi, Komori, Wifag, Mitsubishi. In at least 15 seconds you will measure the print control strip and receive a graphic printout of what to change in which zone to meet your deposited standard e.g. PSO.
matchflow adjust

With Matchflow-adjust you can share a pdf-document over the internet for detailed checking and annotation. In this document all project-members (depending on their access-rights) can acquire comments and modifications. By using the "Generated Print Report Button", you generate an new PDF which contains annotation number, username, date, annotation text and type. All comments are saved in a database. So the whole coordination-process is reconstructable at any time. You will save proof and dispatcher costs an maybe need only one final proof. We recommend to insert a flat PDF which can be written from any common workflow system. AGFA Apogee, Heidelberg Prinect, Creo Prinergy, Di Plot, if this function is enabled.

Order your FR1SX Firewire-Adapter offer here.
A CD-ROM with actual SilverFast AI Studio + HDR Demo-Version is included in delivery. Please specify your scanner type. We are sure that only an perfect maintained Linotype Hell/Heidelberg Chromagraph S3300/S3400, Nexscan F4100/F4200, Primescan 7100, 8200, 8400 and Tango/Tango XL sowie Topaz HighEnd scanners provide quality and are able to reach Delta E 1 scales after reprofiling. Therefore we provide spare parts and preventive service. Service contracts are possible. After service we peform an new DIN VDE 701 report.

Dowload and print this article as PDF data sheet: Data Sheet ZyWALL USG 1000
Terms and conditions:
Please only contact us via our registration form and only if you are a business person yourself. Every offer is subject to prior sale and includes your acceptance to our terms & conditions Terms and conditions (AGB) All logos and trademarks on this site are the property of their respective owners.

You will always receive an invoice including tax, which can be paid via wire transfer, in advance or cash. If you register on paypal, you may also pay by charging your paypal account with your credit card. If you are an EU member and you have a validated tax number which can be validated here: VIES VAT number validation / MwSt.-Informationsaustauschsystem MIAS) Validierung der MWSt.-Nummer then you pay tax-free. If you are from outside the EU, you can only pay tax-free, if the export is done with the transport company, called 'Schenker'. If you are not using 'Schenker', we cannot guarantee that we will get the export confirmation in time. In that case, you have to pay tax and you get it.

The website was generated by matchflow and the PDF version was released by matchflow-adust: communicate, control, confirm. Matchflow-adjust provides browser-based PDF correction and PDF annotation with web2print features.
Login | Subscribe to Newsletter | Imprint | Terms and Conditions(AGB) | Contact | Links | Remote Control Win Mac| Stocklist | Purchase List |