2
3
ZyWALL USG 20/
20W/50/100/200/
300/1000/2000
Unified Security Gateway
ZyWALL USG 20/
20W/50/100/200/
300/1000/2000
Unified Security Gateway
ZyWALL USG clean-traffic architecture
The ZyWALL USG’s clean-traffic architecture
protects against network risks such as viruses,
worms, Trojan Horses, spyware, phishing attacks
and other emerging Internet threats. With the
clean-traffic architecture, enterprises users are
assured to have clean and secure network
environments.
Endpoint security
With the new Endpoint Security (EPS) feature,
administrators can easily identify
policy-violating users such as those who don’t
have AV software installed. With additional AV
software installed, the ZyWALL can help mitigate
virus threats and therefore prevent the loss of
money and employee productivity. The EPS
supports Norton™, Kaspersky™, TrendMicro™
AV client software and many others. Moreover,
the new EPS feature also supports personal
firewall software such as Kaspersky Internet
Security 2009/2010, Windows Firewall and
TrendMicro PC-Cillin/Internet Security 2010.
New generation UTM solution
The ZyWALL USG Series deploys
hardware-acceleration technology in one box.
Powered by high-performance SecuASIC
technology and a hardware-based encryption
accelerator, the ZyWALL USG Series delivers
industry-leading performance and multi-layer
threat protection for small businesses and
enterprises. The ZyWALL USG Series provides
integrated Unified Threat Management security
features such as Anti-Virus (include Kaspersky
Anti-Virus & ZyXEL Anti-Virus), IDP, Anti-Spam,
Content Filtering and Firewall, VPN. All ZyWALL
USG Series products support the Gigabit
Ethernet.
Content Filter stops malware and
Web threats
The ZyWALL USG Content Filter enables
businesses to protect their users and networks
from malware and abuse such as spyware,
phishing attacks and inappropriate P2P or IM
usage. It keeps office computers from getting
infected by dangerous malware and
comprehensively protects business network
environments.
Key Applications
Content Filter
Anti-Virus
Anti-Spam
Firewall
ZyXEL Firewall
ZyXEL Firewall
Inbound Threats
Outbound Threats
ZyXEL IDP detects/stops Worms,
Trojans, DoS (L4 & L7), Recon, Scans
ZyXEL IDP detects/stops Worms, Trojans
Kaspersky Anti-Virus & ZyXEL Anti-Virus
stops Viruses, file-based Trojans,
Spyware, Adware, Keyloggers
Bluecoat to block to Spyware/Phishing/
Unapproved Site Access
Kaspersky Anti-Virus & ZyXEL Anti-Virus
stops Viruses, file-based Trojans,
Spyware, Adware, Keyloggers
Stops Spam Mail
VPN
ZyXEL SSL/IPSec VPN
ZyXEL SSL/IPSec VPN
Network
Intrusion Detection
and Prevention
Traffic Out
Clean
Traffic
Update
DNAT
Routing
Forwarding Engine
Network
I/O Engine
Fragment
Network
I/O Engine
Traffic In
Threat
Database
g
Defragment
BWM
SNAT
Stateful Firewall
Anomaly Detection and Prevention
(PA/TA)
Application Classifier
Intrusion Detection and Prevention
Anti-Virus
Application Patrol
Content Filter
Anti-Spam
LAN User 1
SSL-VPN User
SSL-VPN-Tunnel
* The USG’s new EPS feature helps to ensure that all clients
meet the corporate security policies; e.g. it checks if AV
software is installed.
Checking
1. Anti-Virus
2. Personal Firewall
3. OS patch level
The result is
NO
Access
Checking
1. Anti-Virus
2. Personal Firewall
3. OS patch level
The result is Access
Checking
1. Anti-Virus
2. Personal Firewall
3. OS patch level
The result is Access
LAN User 2
LAN
LAN
Internet
DMZ (Server Farm)
Web-based
Application
BI
System
Server
Remote
Desktop
OA, ERP System
CRM System
Application Server
(Inventory, Store...)
P2P
IM
Virus
Spyware
Phishing