ZyXEL ZyWALL1050 Internet Security Appliance

ZyXEL Updated: 2009-02-06 RSS
ZyXEL ZyWALL1050 Internet Security Appliance

Professional VPN Concentrator/UTM Appliance for SMB/Mid-Large Organization

* High performance VPN concentrator for improved security on VPN connections
* User-Aware policy engine for complete customization of access controls
* Proactive network protection mitigates security breaches
* Robust networking functionalities
* Bandwidth management ensures quality of service
* Content filtering to increase productivity
* Device High Availability and Multiple WAN load balancing

High performance VPN concentrator
The ZyWALL 1050 allows organizations to establish Virtual Private Network (VPN) connections among multiple locations (such as remote branch offices, business partner sites and remote telecommuters). Data is encrypted in a VPN to secure communication channels over the Internet to prevent eavesdropping on confidential information. Communication through VPN tunnels is protected from session hijack attacks and information theft. These security features are integrated in the ZyWALL 1050 to provide seamless data protection before transmission to a trusted network over the VPN. The Hub and Spoke VPN feature dramatically reduces management overhead and complexity in a complex, multi-site corporate network infrastructure.

User-aware policy engine enables access granularity
In addition to basic access control capabilities, the intelligent user-aware policy engine on the ZyWALL 1050 is designed to make packet-forwarding decisions based on multiple criteria (such as user ID, user group, time of access and network quota, etc.). In addition, you can apply access policies to other security features such as VPN, content filtering and application patrol. In conjunction with network partitioning, corporate security policies can be effectively enforced to prevent unauthorized access to network or network resources.

Proactive network protection mitigates security breaches
With the embedded signature-based IDP (Intrusion Detection and Prevention) engine, the ZyWALL 1050 performs L7 packet inspection for protocol anomaly or matched patterns. Thus, the ZyWALL 1050 provides comprehensive Intrusion Detection and Prevention capability to proactively detect and block potential worms, viruses, Trojans, VoIP threats, etc.. ZSRT (ZyXEL Security Response Team), ZyXEL's dedicated security experts, releases up-to-date IDP signatures/patterns in response to ever-evolving vulnerabilities/exploits. New updates are automatically downloaded and installed through ZSDN to your ZyWALL 1050.

Customizable security zones deliver flexible policy management
The ZyWALL 1050 supports L3 virtualization techniques (VLAN and virtual/alias interface). You can set VLAN or virtual interface to different physical ports as needed. In addition, you can group the VLANs and virtual interfaces in a zone to which consistent security policies are applied. With the virtualization and zone concepts, the ZyWALL 1050 offers flexible deployment and easy security policy management in large/complex networking environments.

Bandwidth management ensures quality of service
ZyWALL 1050 provides the bandwidth management feature for traffic prioritization to guarantee or restrict the bandwidth usage per connection. You can allocate bandwidth to traffic types or computer hosts in the corporate network. For example, give higher priority and bigger bandwidth to time-critical applications such as VoIP and video streaming for quality transmission service. In addition, ZyWALL 1050 allows you to keep track of bandwidth usage with comprehensive centralized logs.

VoIP security: protecting the converged network
Attracted to its many benefits, more and more businesses are deploying VoIP applications in their networks. With the transition to VoIP come security risks. As a VoIP-friendly firewall, the ZyWALL 1050 offers the SIP/H.323 ALG feature to dynamically open only the ports needed for the duration of the VoIP call. Once the call is complete, the ports automatically close, preventing malicious port sniffing and attacks commonly associated VoIP deployment. Besides allowing basic VoIP functionality, the ZyWALL 1050 takes a step further to allow VoIP over VPN and provide IDP against VoIP threats for maximum security.

Employee Internet Management increases productivity
The content filtering feature allows schools or mid-large organizations to create and enforce Internet access policies. You can set the ZyWALL 1050 to monitor or block access based on web site categories (such as pornography or racial intolerance) from a pre-defined list. For up-to-date web site ratings, you can activate the content filtering subscription that allows the ZyWALL 1050 to query the dynamic URL database. Thus access restrictions to web sites are properly enforced and corporate policy compliance could be assured.

High Availability features guarantee non-stop operation for mission-critical applications
The ZyWALL 1050 supports multiple WAN ports with WAN connection backup and load balancing. In addition to WAN redundancy, the ZyWALL 1050 also supports device HA (High Availability). With these features, the ZyWALL 1050 helps you easily set up a highly reliable and secure network for your business.