Project Description

Zyxel新一代USG
FLEX-H高效防火牆
採用多核心CPU及全新uOS系統
處理能力大幅提升
引入AI-Cloud及Sandboxing應對未知網絡威脅
詳細Dashboard
/ SecuReport
流量分析及網絡威脅統計
一年免費Gold Security Pack全面網絡防護功能
Anti-Malware / Virus
Content Filter + Web Filter
Sandboxing
Reputation Filter
IPD/IDP
Application Patrol
Email Security / Anti-Spam
SecuReporter
Collaborative Detection & Response
Secure WiFi (Future release)
Nebula Pro Pack

Zyxel全新高效能UTM防火牆
–
ZyWALL USG FLEX H-series正式推出!提高接近3倍的firewall / UTM / VPN throughput表現,更首次於ZyWALL系列加入PoE+ port及Multi-gigabit ports,更切合現今連接高速頻寬的需求及少規模的PoE的供電應用。USG FLEX H-series透過先進的Zyxel AI cloud提供多層式保護,更引入Sandboxing沙盒機制,加快應對未知的網絡攻擊威脅。型號由適合64個裝置
(USG
FLEX 100H/HP)的中小企入門型號
,以至支援高達4,000
個連線設備,SPI Firewall
Throughput高達
15,000Mbps
(USG
FLEX 700-H)的企業級型號。系列同時擁有大部份ZyWALL ATP的優秀功能,包括 Multi-WAN、VPN、Anti-Malware/Virus、Web
Filtering/Content Filtering、Sandboxing、Reputation Filter、IPS/IDP、Application Patrol、Email
Security/ Anti-Spam、SecuReporter、Collaborative Detection & Response、Secure WiFi (Future release)、Nebula Professional Pack等功能。ZyWALL
USG FLEX H-series更用上Zyxel最新的
uOS,帶來更快更強的系統設計,直觀的介面令設定及管理更快速。
全新ZyWALL高速高效設計
USG FLEX
H-series搭載了新一代多核心CPU和Fastpath技術,最大程度減少封包處理時間、降低延遲並加速流量。優化處理器的利用以提升性能,滿足用戶對高速網絡的需求,USG
FLEX H-series系列將是一個出色的選擇。
緊貼Multi-G應用,
加入PoE+
應用彈性
USG FLEX
H-series提供了2.5 GbE ports
(200H/200HP,
500H, 700H)
甚至10 GbE SFP+ ports
(700H),同時還具備自定義ports,根據需求對每個USG FLEX H
上的ports進行靈活配置(WAN
/ LAN / DMZ)。部份型號
(100HP / 200HP / 500H / 700H)
還提供了PoE+ LAN port,30W的PoE budget,可簡化安裝流程,並通過直接為小量PoE設備供電,降低安裝成本。

Zyxel
AI-powered Cloud Cybersecurity
為阻止惡意威脅並限制不當的用戶行為,USG
FLEX H-series利用Zyxel
AI
Cloud提供多層保護,包括sandboxing、anti-malware、DNS/IP/URL filtering、入侵防護系統(IPS)和application patrol,以保護用戶的網絡。

全新開發 高效uOS
USG FLEX
H-series引入了Zyxel最新的強大uOS,增加系統安全性,縮短反應時間,設定即時更新應用,並通過直觀介面設計,優化設定和安全策略的管理。uOS同時充分發揮CPU的性能,提高防火牆的交換流量、操作系統的反應,以及UTM和VPN的效能,提供更快的設備啟動時間和更新設定反應。

Nebula Cloud雲端管理功能
USG FLEX
H-series支援Zyxel Nebula
Cloud管理方案,將Cloud的優勢帶到您的網絡中。Nebula
控制中心提供了對所有 Nebula
有線和無線網絡設備的集中、易於使用的控制。

預警式的防禦過濾系統
USG FLEX
H-series的Reputation Filter可以阻止70%的常見網絡攻擊,而不會影響用戶的網絡性能。Reputation
Filter包括IP
Reputation、DNS
Filter
和URL threat filter,以上功能通過分析
IP、domain和
URL
確定它們是否安全,並自動阻止連線到受威脅的位置,提供細緻的保護。
深入分析每個連線設備
USG FLEX
H-series提供了一個集中的Dashboard,顯示您網絡上所有連接的設備的活動和信息。您可以根據操作系統版本或設備類別等屬性調整訪問策略,實現網絡分割,減少攻擊面,並防止威脅擴散。通過
SecuReporter
輕鬆追踪問題並預防未來的威脅事件,它提供了全面的威脅分析和事件之間的相關性。
SecuReporter
可提供定制報告、用戶感知、客戶身份識別等功能。SecuReporter
配合 ZyWALL
系列提供全面的保護和分析,包括sandboxing、URL
threat分析和
IP Reputation分析等高級分析和報告工具。這些功能有助於提高網絡安全性,並使您能夠更好地應對威脅。
支援多種原生操作系統(OS)VPN客戶端
USG FLEX
H-series支援IKEv2 VPN
協議,以安全、可靠和高效率見稱,比
L2TP
更安全且更強大的協議。由於其快速速度、穩定性和在不同類型的
VPN
客戶端、操作系統和 VPN Gateway之間的高兼容性而被廣泛採用。ZyWALL的Easy
wizard
只需在幾步內即可與免費的原生操作系統(OS)IKEv2
VPN客戶端(例如Windows、macOS、iOS和Android)連線,極之方便。
多層式保護功能
USG FLEX H-series設計具有多層保護,可阻止外部惡意威脅以及內部不適當的用戶行為。限制內部網絡中的高風險應用程序或網絡訪問。搭載TLS
1.3的行業領先DNS過濾器消除了所有加密流量中的盲點,無需部署SSL檢查。
Gold防護服務授權
(USG FLEX H提供首年Gold Security
License)
License Service |
|
|
Gold |
Sandboxing |
|
|
Yes |
Reputation Filter |
Yes |
||
Web Filtering |
|
|
Yes |
Anti-Malware |
Yes |
||
IPS |
|
Yes |
|
Application Patrol |
Yes |
||
Device Insight |
|
|
Yes |
SecuReporter |
Yes |
||
Secure WiFi |
Available in Q2 2024 |
Yes |
|
Nebula Professional Pack |
|
|
Yes |
ZyWALL USG FLEX H-series
Features:
Firewall
-
Routing
and transparent (bridge) modes
-
Stateful
packet inspection
-
FTP NAT
traversal
Security Policy
-
Unified policy management interface
-
Support Content Filtering, Application Patrol, firewall (ACL/SSL)
-
Firewall:
SSL inspection
Intrusion Prevention System (IPS)
-
Streamed-based engine
-
Signature-based scanning
-
Support
both intrusion detection and prevention
Application Patrol
-
Smart single-pass scanning engine
-
Identifies and control thousands of applications and their behaviors
-
Support up to 25 application categories
Anti-Malware
-
High
performance query-based scan engine (Express Mode)
-
Works with
over 30 billion of known malicious file identifiers and still growing
-
Wild range
file type examination
Sandboxing
-
Cloud-based multi-engine inspection
-
Support HTTP/SMTP/POP3/FTP scan
-
Wild range
file type examination
IP
Reputation Filter
-
IP-based reputation filter
-
Supports 9 Cyber Threat Categories
-
Inbound &
Outbound traffic filtering
DNS
Threat Filter
-
Block clients to access malicious domain
-
Block and
Allow List support
URL
Threat Filter
-
Botnet C&C websites blocking
-
Malicious URL blocking
-
Block and
Allow List support
Web
Filtering
-
HTTPs domain filtering
-
DNS domain
filtering
-
Allow List
websites enforcement
SSL
Inspection
-
Deep
packet inspection for TLS
-
Support
inspect TLS1.3
-
Support
untrusted certificate blocking
Device Insight
-
Deep
packet inspection for TLS
-
Support
inspect TLS1.3
-
Support
untrusted certificate blocking
SSL
Inspection
-
Deep
packet inspection for TLS
-
Support
inspect TLS1.3
-
Support
untrusted certificate blocking
IPSec VPN & SSL VPN
Model |
USG FLEX-700H |
USG FLEX-500H |
USG FLEX-200HP |
USG FLEX-200H |
USG FLEX-100HP |
USG FLEX-100H |
Hardware Specifications |
||||||
10/100/1000 Interfaces |
2x 2.5GbE + 8x 1GbE |
2x 2.5GbE + 8x 1GbE |
2x 2.5GbE + 5x 1GbE |
2x 2.5GbE + 6x 1GbE |
7x GbE |
8x GbE |
PoE
Port |
2x 10GbE |
2x 2.5GbE |
1x GbE |
- |
1x GbE |
- |
PoE
Budget |
30W |
30W |
30W |
- |
30W |
- |
USB
3.0 Ports (Supports 4G Dongle) |
1 |
|||||
Console Port (RJ-45) |
Yes |
|||||
Fanless |
- |
Yes |
||||
System Capacity & Performance |
||||||
SPI
Firewall Throughput, Mbps |
15,000 |
10,000 |
5,000 |
3,000 |
||
VPN
Throughput, Mbps |
3,000 |
2,000 |
1,200 |
750 |
||
UTM
Throughput (AV and IDP) |
4,000 |
2,500 |
1,200 |
750 |
||
Max
TCP Concurrent Session |
2,000,000 |
1,000,000 |
600,000 |
300,000 |
||
Max
Concurrent IPSec VPN Tunnels |
1,000 |
300 |
100 |
50 |
||
Concurrent SSL VPN Tunnels |
500 |
150 |
100 |
50 |
||
VLAN
Interface |
128 |
64 |
32 |
16 |
||
Max.
concurrent devices |
4000 |
300 |
200 |
64 |
ZyXEL Website:
http://www.zyxel.com