Call Us: 1-877-888-2678
Rebate Center
Help Desk
My Account
Exclusive Offers!
Follow Us:

Zyxel ZyWALL USG-1000 - security appliance - ZWUSG1000

The ZyWALL USG 1000 provides bandwidth management features for traffic prioritization to guarantee or restrict the bandwidth usage per interface / protocol.   Learn more about the product
Add Item
eCOST Part#: 7512064
Mfr Part#: ZWUSG1000
Usually Ships:
Platform: Universal
Customer Rating:
No Reviews


"List price" is the suggested retail price provided to us by our vendors. We make no representation that a substantial number of these products have been sold or offered for sale at the list price. Actual retail prices in your area may be substantially different. Since we sell products on a national basis, it is not possible to know if our merchandise is sold at list price in any particular location or at any particular time. "You Save" reflects the difference between our price and the vendor provided list price shown on our sites. Since the list price may be different than the actual retail prices in your area, you may not actually realize a savings of this amount.

Manufacturers sometimes ask that retailers not display a price if it drops below a certain amount. The "Click here to see Lowest Price" message indicates that the price of the item is so low that the manufacturer requested that it not be advertised (that is, displayed). In a brick-and-mortar store, you would probably have to ask a salesperson what the price of the product is. At eCOST, by clicking on "Click here to see Lowest Price" you are essentially asking to see the price, at which point we show it to you.

 Free Shipping
 Free Shipping on Orders Over $50 and under 30 pounds (Orders Up to 30lbs qualify. Excludes shipments to AK & HI.)

Product Benefits:

Application Patrol to Manage the Use of IM/P2P Applications
The ZyWALL USG 1000 is specially crafted to manage the use of IM/P2P applications in modern networking environment without hassles. Armed with AppPatrol, a central dashboard for managing various types of IM/P2P applications, security staff can easily create fine-grained access policy based on ever-changing security needs: identifying and restricting different access levels of prevailing IM/P2P protocols, restricting time of access for different groups of users, enforcing bandwidth quota against certain types of P2P application and prioritizing VoIP traffics to ensure best call quality over slow WAN ISP links. Altogether, the ZyWALL USG 1000 is an ideal solution to solve the dilemma in terms of productivity and security.

User-Aware Policy Engine Enables Access Granularity
In addition to basic access control capabilities, the intelligent user-aware policy engine on the ZyWALL USG 1000 is designed to make packet-forwarding decisions based on multiple criteria (such as user ID, user group, time of access and network quota, etc.). Furthermore, security staff can apply access policies against a variety of security features such as VPN, Content Filter and Application Patrol.
In conjunction with VLAN and custom security zones, corporate security policies can be effectively enforced to prevent unauthorized access to network resources.

Bandwidth Management Ensures Quality of Service
The ZyWALL USG 1000 provides bandwidth management features for traffic prioritization to guarantee or restrict the bandwidth usage per interface / protocol. Security staff can allocate bandwidth for a variety of applications or computer hosts on the corporate network, regardless of the direction of the connection. For example, it's possible to assign higher priority and larger bandwidth to time-critical applications such as VoIP and video conferencing for quality transmission services. In addition, ZyWALL USG 1000 allows you to keep track of bandwidth usage with comprehensive statistical reports.

VoIP Security: Protecting the Converged Networks
As a VoIP-friendly firewall, the ZyWALL USG 1000 reduces the security risks associated with the adoption of VoIP by offering the SIP/H.323 ALG feature to dynamically open only the required ports during the VoIP calls; once the call is complete, the opened ports are automatically closed to prevent port sniffing. The IDP feature can detect and prevent attacks usually associated VoIP deployment. Ultimately, by constructing VoIP traffic over VPNs with traffic prioritization, security staff could mitigate security breaches while optimizing call quality over existing ISP links.

High Availability Features Guarantee Non-Stop Operations for Mission-Critical Applications
With high availability features, the ZyWALL USG 1000 helps the security staff to easily set up a highly reliable and secure network infrastructure for your business. To minimize the impact of single-point of failures, the ZyWALL USG 1000 supports device HA (High Availability) to assure network availability should any device failure happen.
On the WAN side, the ZyWALL USG 1000 can connect multiple ISP links to ensure Internet availability while a single ISP link may be unreliable. The multiple WAN load balancing features optimizes bandwidth usage over each ISP link.

Product Specification:

Performance and Capacity
• SPI Firewall Throughput: 350Mbps
• IPSec VPN (AES) Throughput: 150Mbps
• Maximum Concurrent NAT Sessions: 200,000
• Maximum IPSec VPN Tunnels: 1,000
• Maximum SSL VPN Tunnels: 50
• New Session Rate: 13,000 (sessions/sec)

Gateway Anti-Virus
• Stream-Based Gateway Anti-Virus Powered by Kaspersky Labs
• Covers Top Active Viruses in the Wild List
• Scans HTTP / FTP / SMTP / POP3 / IMAP4
• Automatic Signature Update
• No File Size Limitation
• Blacklist / Whitelist

Application Patrol (AppPatrol)
• IM / P2P Granular Access Control
• Integrated with Scheduling / Rate-Limit / User-Aware
• IM / P2P Up-To-Date Support
• Real-Time Statistical Reports

Intrusion Detection and Prevention
• In-line Mode (Routing / Bridge)
• Zone-Based IDP Inspection
• Customizable Protection Profile
• Signature-Based Deep Packet Inspection
• Automatic Signature Update
• Custom Signatures
• Traffic Anomaly: Scanning Detection and Flood Protection
• Protocol Anomaly: HTTP / ICMP / TCP / UDP

Content Filter
• URL Blocking, Keyword Blocking
• Exempt List (Blacklist and Whitelist)
• Blocks Java Applet, Cookies and Active X
• Content Filter Category Service (Dynamic URL Filtering Database Powered by BlueCoat)

• Encryptions (AES / 3DES / DES)
• Authentication (SHA-1 / MD5)
• Key Management (Manual Key / IKE)
• Perfect Forward Secrecy (DH Group 1 / 2 / 5)
• NAT over IPSec
• Dead Peer Detection / Replay Detection
• PKI (X.509)
• Certificate Enrollment (CMP / SCEP)
• Xauth Authentication
• VPN Concentrator (Hub and Spoke VPN)
• L2TP over IPSec Support

• Clientless Secure Remote Access (Reverse Proxy Mode)
• SecuExtender (Full Tunnel Mode)
• Unified Policy Enforcement
• Supports Two Factor Authentication
• Customizable User Portal

• Routing Mode / Bridge Mode / Mixed Mode
• Layer 2 Port Grouping
• Ethernet / PPPoE / PPTP
• Tagged VLAN (802.1Q)
• Virtual Interface (Alias Interface)
• Policy-Based Routing (User-Aware)
• Policy-Based NAT (SNAT / DNAT)
• RIP v1 / v2
• IP Multicasting (IGMP v1 / v2)
• DHCP Client / Server / Relay
• Built-in DNS Server
• Dynamic DNS

Bandwidth Management
• Bandwidth Priority
• Policy-Based Traffic Shaping
• Maximum / Guaranteed Bandwidth
• Bandwidth Borrowing

SPI Firewall
• Zone-Based Access Control List
• Customizable Security Zone
• Stateful Packet Inspection
• DoS/DDoS Protection
• User-Aware Policy Enforcement
• ALG Supports Custom Ports

• Internal User Database
• Microsoft Windows Active Directory
• External LDAP / RADIUS User Database
• ZyWALL OTP (One Time Password)
• Force User Authentication (Transparent Authentication)

High Availability
• Device HA (Active-Passive Mode)
• Device Failure Detection
• Link Monitoring
• Auto-Sync Configurations
• Multiple WAN Load Balancing
• VPN HA (Redundant Remote VPN Gateways)

System Management
• Role-Based Administration
• Simultaneous Administrative Logins
• Multi-Lingual Web GUI (HTTPS / HTTP)
• Object-Based Configuration
• Command Line Interface (Console / WebConsole / SSH / TELNET)
• Comprehensive Local Logging
• Syslog (4 Servers)
• E-mail Alert (2 Servers)
• SNMP v2c (MIB-II)
• Real-Time Traffic Monitoring
• System Configuration Rollback
• Text-Based Configuration File
• Firmware upgrade via FTP / FTP-TLS / WebGUI
• Advanced Reporting (Vantage Report 3.1 Patch 1*)
• Centralized Network Management (Vantage CNM 3.0*)

• ICSA Firewall Certified
• ICSA IPSec VPN Certified

Hardware Specifications
• Memory: 1GB RAM / 256MB Flash
• Interface: GbE x 5 (RJ-45, with LED)
• Auto-Negotiation and Auto MDI/MDI-X
• Console: RS-232 (DB9F)
• AUX: RS-232 (DB9M)
• LED Indicator: PWR, SYS, AUX, HDD
• Power Switch: Yes
• Reset Pinhole: Yes
• Extension Card Slot: Yes(1)
• USB: Yes* (2)
• Optional HDD: Yes (IDE, 2.5")

Physical Specifications
• Rack Mountable: Yes (19-inch, rack-mount kit included)

Power Requirements
• Input Voltage¡G100-240VAC, 50/60Hz, 1A Max
• Power Rating¡G80W Max
Device Type Security appliance
Width 16.9 in
Depth 11.5 in
Height 1.7 in
Weight 10.4 lbs
Processor / Memory / Storage
Flash Memory 256 MB
Connectivity Technology Wired
Data Link Protocol Ethernet, Fast Ethernet, Gigabit Ethernet
Network / Transport Protocol PPTP, L2TP, IPSec, PPPoE
Routing Protocol OSPF, RIP-1, RIP-2, IGMPv2, IGMP
Remote Management Protocol Telnet, SNMP 2c, HTTP, HTTPS
Communication Mode Full-duplex
Performance Firewall throughput : 350 Mbps ¦ VPN throughput (3DES/AES) : 150 Mbps
Capacity Concurrent sessions : 200000 ¦ IPSec VPN tunnels : 1000 ¦ VPN tunnels : 50
Status Indicators Port status, power, system
Features Firewall protection, DMZ port, routing, DHCP support, NAT support, VPN support, auto-negotiation, load balancing, LDAP support, auto-uplink (auto MDI/MDI-X), Syslog support, traffic shaping, Stateful Packet Inspection (SPI), DoS attack prevention, content filtering, packet filtering, ALG support, dynamic DNS server, manageable, Intrusion Detection System (IDS), E-mail alert, antivirus analysis, High Availability, Intrusion Prevention System (IPS), URL filtering, firmware upgradable, DDos attack prevention, Quality of Service (QoS), Data prioritization (Qos) for VoIP applications, IPSec passthrough
Encryption Algorithm DES, Triple DES, MD5, AES, IKE, SSL, DH, SHA-1, PKI
Authentication Method Secure Shell (SSH), RADIUS, X.509 certificates, LDAP, Active Directory
Compliant Standards IEEE 802.1Q, X.509
Expansion / Connectivity
Expansion Bays 1 (total) / 1 (free) x external - 2.5"
Expansion Slots 1 (total) / 1 (free) x expansion slot
Interfaces 5 x 1000Base-T - RJ-45 ¦ 1 x management - DB-9 ¦ 1 x RS-232 - DB-9 ¦ 2 x USB - Type A
Rack Mounting Kit Included
Compliant Standards FCC Class A certified, CSA, ICSA IPSec certified, ICSA Firewall certified, VCCI Class A ITE, CSA 22.2 No. 60950, EMC, RoHS, UL 60950-1, IEC 60950-1, EN 60950-1, WEEE, C-Tick Class A
Voltage Required AC 120/230 V ( 50/60 Hz )
Power Consumption Operational 80 Watt
Manufacturer Warranty
Service & Support 5 years warranty
Service & Support Details Limited warranty - 5 years
Environmental Parameters
Min Operating Temperature 32 °F
Max Operating Temperature 104 °F
Humidity Range Operating 5 - 90%
  View/Download Coupon

Zyxel ZyWALL USG-1000 - security appliance (ZWUSG1000)

The ZyWALL USG 1000 provides bandwidth management features for traffic prioritization to guarantee or restrict the bandwidth usage per interface / protocol.

0 Question(s) • 0 Answer(s)

Back to top

Rules and Regulations

0 Question(s) from the Community

Most Recent Reviews

No reviews have been submitted for this product. Be the first user to  submit a review .
Entrust bbb Rating Tool Twist

1940 E. Mariposa Ave. El Segundo, CA 90245 - 877.888.2678
© 1999 – 2014 eCOST