Specifications
Performance and Capacity
•SPI Firewall Throughput: 200 Mbps
•IPSec VPN (AES) Throughput: 100 Mbps
•Maximum Concurrent NAT Sessions: 60,000
•Maximum IPSec VPN Tunnels: 200
•Maximum SSL VPN Tunnels: 10
•New Session Rate: 2,000 (sessions/sec)
Gateway Anti-Virus
•
•Covers Top Active Viruses in the Wild List
•Scans HTTP/FTP/SMTP/POP3/IMAP4
•Automatic Signature Update
•No File Size Limitation
•Blacklist/Whitelist
Application Patrol
•IM/P2P Granular Access Control
•Integrated with
•IM/P2P
•
*: Requiring valid IDP subscription
Intrusion Detection and Prevention
•
•
•Customizable Protection Profile
•
•Automatic Signature Update
•Custom Signatures
•Traffic Anomaly: Scanning Detection and Flood Protection
•Protocol Anomaly: HTTP/ICMP/TCP/UDP
Content Filter
•URL Blocking, Keyword Blocking
•Exempt List (Blacklist and Whitelist)
•Blocks Java Applet, Cookies and Active X
•Dynamic URL Filtering Database (BlueCoat)
VPN
IPSec VPN
•Encryptions (AES/3DES/DES)
•Authentication
•Key Management (Manual Key/IKE)
•Perfect Forward Secrecy (DH Group 1/2/5)
•NAT over IPSec
•Dead Peer Detection/Replay Detection
•PKI (X.509)
•Certificate Enrollment (CMP/SCEP)
•Xauth Authentication
•L2TP over IPSec Support
SSL VPN
•Clientless Secure Remote Access (Reverse Proxy Mode)
•SecuExtender (Full Tunnel Mode)
•Unified Policy Enforcement
•Supports Two Factor Authentication
•Customizable User Portal
Networking
•Routing Mode/Bridge Mode/Mixed Mode
•Layer 2 Port Grouping
•Ethernet/PPPoE/PPTP
•Tagged VLAN (802.1Q)
•Virtual Interface (Alias Interface)
•
•
•RIP v1/v2
•OSPF
•IP Multicasting (IGMP v1/v2)
•DHCP Client/Server/Relay
•
•Dynamic DNS
Bandwidth Management
•Bandwidth Priority
•
•Maximum/Guaranteed Bandwidth
•Bandwidth Borrowing
SPI Firewall
•
•Customizable Security Zone
•Stateful Packet Inspection
•DoS/DDoS Protection
•
•ALG Supports Custom Ports
Authentication
•Internal User Database
•Microsoft Windows Active Directory
•External LDAP/RADIUS User Database
•ZyWALL OTP (One Time Password)
•Force User Authentication (Transparent Authentication)
High Availability
•Device HA
•Device Failure Detection
•Link Monitoring
•
•Multiple WAN Load Balancing
•VPN HA (Redundant Remote VPN Gateways)
System Management
•
•Simultaneous Administrative Logins
•
•
•Command Line Interface (Console/WebConsole/
SSH/TELNET)
•Comprehensive Local Logging
•Syslog (4 Servers)
•
•SNMP v2c
•
•System Configuration Rollback
•
•Firmware upgrade via
•Advanced Reporting (Vantage Report 3.1*)
•Centralized Network Management (Vantage CNM 3.0*)
*: Future release
Certifications
•ICSA Firewall Certified*
•ICSA IPSec VPN Certified*
*: Certificate pending
Hardware Specifications
•Memory: 256 MB RAM/256 MB Flash
•Interface: GbE x 7
•
•Console:
•AUX:
•LED Indicator: PWR, SYS, AUX, CARD1, CARD2
•Power Switch: Yes
•Reset Pinhole: Yes
•Extension Card Slot: Yes* (2)
•USB: Yes* (2)
*: These hardware accessories will be supported in future
firmware release
Physical Specifications
•Rack Mountable: Yes
•Dimensions: 430.0 (W) x 201.2 (D) x 42.0 (H) mm
•Weight: 2,800 g
Power Requirement
•Input Voltage:
•Power Rating: 35 W Max
Environmental Specifications
•Operating Temperature: 0ºC ~ 50ºC
•Storage Temperature:
•Humidity: 20% ~ 95%
Standard Compliance
•HSF (Hazardous Substance Free): RoHS and WEEE
•EMC: FCC Part 15 Class A,
•Safety: CSA International