ZyXEL ZyWALL 1050 Overview:
- High performance VPN Concentrator
- User-aware Policy Engine
- Proactive Network Protection
- Robust Networking Functions
- Bandwidth Management
- VoIP Security
- Content Filtering
- Device HA and Multiple WAN LoadBalancing
Benefits:
High-Performance VPN Concentrator Integrating
Both IPSec VPN and SSL VPN
The ZyWALL 1050 is an Internet Security Appliance engineered
to provide a variety of security services on top of
a robust, hardware-accelerated platform.
By integrating both IPSec VPN and SSL VPN technologies,
the ZyWALL 1050 allows organizations to establish Virtual
Private Network (VPN) connections amongst multiple locations
such as remote branch offices, business partner sites
and even remote teleworkers connected to hotel hotspots.
Since communication channels are securely encrypted,
information leakage or data theft can be mitigated when
transmitting confidential information over insecure
networks such as Internet. In addition, the Hub and
Spoke VPN feature can dramatically reduce policy management
overhead in a complex, multi-site corporate network
infrastructure.
Proactive Network Protection against Blended Threats
By integrating cutting-edge technologies on a robust
platform, the ZyWALL 1050 is competent to provide multi-layered
protection for security-aware businesses.
Powered by Kaspersky Labs, the gateway anti-virus
security service on ZyWALL 1050 has the world’s shortest
response time against emerging viruses and spywares;
as a result, it helps stopping blended threats on the
network edge while keeping viruses/spywares out of corporate
networks. With the built-in SecuASIC co-processor, the
ZyWALL 1050 can still deliver robust and reliable performance
even under heavy networking loads.
With the embedded signature-based IDP (Intrusion
Detection and Prevention) engine, the ZyWALL 1050 performs
L7 packet inspection for protocol/traffic anomaly or
matched patterns to proactively provide comprehensive
Intrusion Detection and Prevention capability against
potential worms, viruses, Trojans horses and VoIP threats,
etc.
In response to the ever-evolving threats, the ZyWALL
1050 can download the latest signature/pattern files
from the rock-solid ZSDN infrastructure and install
them automatically to keep itself up-to-date.
Application Patrol to Manage the Use of IM/P2P
Applications
The ZyWALL 1050 is specially crafted to manage the use
of IM/P2P applications in modern networking environments
without hassle. Armed with AppPatrol, a central dashboard
for managing various types of IM/P2P applications, security
staff can easily create fine-grained access policies
based on the everchanging security needs: identifying
and restricting different access levels of prevailing
IM/P2P protocols, restricting time of access for different
groups of users, enforcing bandwidth quota against certain
types of P2P application and prioritizing VoIP traffics
to ensure the best call quality over slow WAN ISP links.
Altogether, the ZyWALL 1050 is an ideal solution to
solve the dilemma in terms of productivity and security.
User-Aware Policy Engine Enables Access Granularity
In addition to the basic access control capabilities,
the intelligent user-aware policy engine on the ZyWALL
1050 is designed to make packet-forwarding decisions
based on multiple criteria (such as user ID, user group,
time of access and network quota, etc.). Furthermore,
the security staff can apply access policies against
a variety of security features such as VPN, Content
Filter and Application Patrol. In conjunction with VLAN
and custom security zones, corporate security policies
can be effectively enforced to prevent unauthorized
access to the network resources.
Bandwidth Management Ensures Quality of Service
The ZyWALL 1050 provides bandwidth management features
for traffic prioritization to guarantee or restrict
bandwidth usage per interface/protocol. Security staff
can allocate bandwidth for a variety of applications
or computer hosts on the corporate network, regardless
of the direction of connection. For example, it’s possible
to assign higher priority and larger bandwidth to time-critical
applications such as VoIP and video conferencing for
quality transmission services. In addition, the ZyWALL
1050 allows you to keep track of bandwidth usage with
comprehensive statistical reports.
VoIP Security: Protecting the Converged Networks
Attracted by the benefits, more and more businesses
are deploying VoIP applications on their networks. Along
with the transition to VoIP also comes with security
risks and voice quality issues.
As a VoIP-friendly firewall, the ZyWALL 1050 reduces
the security risks associated with the adoption of VoIP
by offering SIP/H.323 ALG features to dynamically open
only the required ports during VoIP calls; once a call
is complete, the opened ports are automatically closed
to prevent port sniffing. The IDP feature can detect
and prevent attacks usually associated with VoIP deployments.
Ultimately, by establishing VoIP traffics over VPNs
with traffic prioritization, security staff can minimize
security breaches while optimizing call quality over
the existing ISP links.
High Availability Features Guarantee Non-Stop
Operations for Mission-Critical Applications
With the High Availability features, the ZyWALL 1050
helps the security staff to easily set up a highly reliable
and secure network infrastructure for your business.
To minimize the impact of single-point failures, the
ZyWALL 1050 supports device HA (High Availability) to
assure network availability should any device failure
happen.
On the WAN side, the ZyWALL 1050 can connect multiple
ISP links to ensure Internet availability in case a
single ISP link becomes unreliable. The multiple- WAN
load-balancing feature can also optimize the bandwidth
usage over each ISP link.