Browse Catalog
USG40-NB Performance Series Unified Security Gateway (Hardware Only)
Product Description
Designed to protect users and businesses against a variety of network initiated threats, the USG40-NB Performance Series Unified Security Gateway from ZyXel utilizes Next Generation Firewall (NGFW) technology to ward off malware, regulate applications, and much more. In addition to basic firewall protection, this gateway is designed to support VPN connectivity with a VPN throughput of up to 100 Mbps and SPI firewall throughput of up to 400 Mbps. Other VPN features include L2TP over IPSec and SSL VPN simplifying the process of configuring and managing extensive VPN networks.
With a fanless design the USG40 is not only quiet, it helps to prevent dirt and debris from entering the unit. On the outside of the gateway you will find three Gigabit LAN and a single Gigabit WAN connector allowing multiple Ethernet enabled devices to connect directly to the network. In addition to Ethernet connectivity this gateway also features a single USB port designed to support USB modems to provide failover support should the initial network connection go down.
With a fanless design the USG40 is not only quiet, it helps to prevent dirt and debris from entering the unit. On the outside of the gateway you will find three Gigabit LAN and a single Gigabit WAN connector allowing multiple Ethernet enabled devices to connect directly to the network. In addition to Ethernet connectivity this gateway also features a single USB port designed to support USB modems to provide failover support should the initial network connection go down.
Hardware | |
Ports | 3 x LAN/DMZ (RJ-45) 1 x WAN (RJ-45) 1 x OPT (RJ-45) 1 x USB 1 x Console |
AP Controller Version | 1.0 |
Managed AP Number | Default: 2 Maximum: 10 |
Power Input | 12 VDC, 2.0 A maximum |
Power Consumption | 14.0 W maximum |
Certifications | EMC: FCC Part 15 (Class B), CE EMC (Class B), C-Tick (Class B), and BSMI Safety: LVD (EN60950-1), BSMI |
MTBF | 414,329.4 hours |
System Capacity and Performance | |
SPI Firewall Throughput | 400 Mb/s |
VPN Throughput | 100 Mb/s |
IDP Throughput | 55 Mb/s |
AV Throughput | 50 Mb/s |
UTM Throughput (AV and IDP) | 50 Mb/s |
Unlimited User Licenses | Yes |
TCP Concurrent Sessions | Maximum: 20,000 |
Concurrent IPsec VPN Tunnels | 10 |
New TCP Session Rate | 3,000 |
Concurrent SSL VPN Users | 7 |
SSL VPN User Number | 2 |
Customizable Zones | Yes |
IPv6 Support | Yes |
VLAN Interface | 8 |
Software | |
Firewall | ICSA-certified firewall (certification in progress) Routing and transparent (bridge) modes Stateful packet inspection User-aware policy enforcement SIP/H.323 NAT traversal ALG support for customized ports Protocol anomaly detection and protection Traffic anomaly detection and protection Flooding detection and protection DoS/DDoS protection |
IPv6 Support | IPv6 Ready gold logo (certification in progress) Dual stack IPv4 tunneling (6rd and 6 to 4 transition tunnel) IPv6 addressing DNS DHCPv6 Bridge VLAN PPPoE Static routing Policy routing Session control Firewall and ADP IPSec VPN Intrusion Detection and Prevention (IDP) Application intelligence and optimization Content filtering Anti-virus, anti-malware Anti-spam |
IPsec VPN | ICSA-certified IPSec VPN (certification in progress) Encryption: AES (256-bit), 3DES and DES Authentication: SHA-2 (512-bit), SHA-1 and MD5 Key management: manual key, IKEv1 and IKEv2 with EAP Perfect forward secrecy (DH groups) support 1, 2, 5 IPSec NAT traversal Dead peer detection and relay detection PKI (X.509) certificate support VPN concentrator Simple wizard support VPN auto-reconnection VPN High Availability (HA): Load-balancing and failover L2TP over IPSec GRE and GRE over IPSec NAT over IPSec ZyXEL VPN client provisioning |
SSL VPN Throughput | Supports Windows and Mac OS X Supports full tunnel mode Supports 2-step authentication Customizable user portal |
Intrusion Detection and Prevention | Routing and transparent (bridge) mode Signature-based and behavior-based scanning Automatic signature updates Customizable protection profile Customized signatures supported |
Unified Security Policy | Unified policy management interface Supported UTM features: anti-virus, antispam, IDP, content filtering, application intelligence, firewall (ACL) 3-Tier Configuration: Object-based, profile based, policy-based Policy Criteria: Zone, source, and destination IP address, user, time |
WLAN Management | ZyXEL AP Controller (APC) 1.0 compliant Client RSSI threshold to prevent sticky clients IEEE 802.1x authentication Captive portal Web authentication Customizable captive portal page RADIUS authentication Wi-Fi Multimedia (WMM) wireless QoS CAPWAP discovery protocol |
Mobile Broadband | WAN connection failover via 3G and 4G* USB modemsAuto fallback when primary WAN recovers |
Networking | Routing mode, bridge mode, and hybrid mode Ethernet and PPPoE NAT and PAT VLAN tagging (802.1Q) Virtual interface (alias interface) Policy-based routing (user-aware) Policy-based NAT (SNAT) Dynamic routing (RIPv1/v2 and OSPF) DHCP client/server/relay Dynamic DNS support WLAN trunk for more than 2 ports Per host session limit Guaranteed bandwidth Maximum bandwidth Priority-bandwidth utilization Bandwidth limit per user Bandwidth limit per IP |
Authentication | Local user database Microsoft Windows Active Directory integration External LDAP/RADIUS user database XAUTH, IKEv2 with EAP VPN authentication Web-based authentication Forced user authentication (transparent authentication) IP-MAC address binding SSO (Single Sign-On) support |
System Management | Role-based administration Multiple administrator logins Multi-lingual Web GUI (HTTPS and HTTP) Command line interface (console, Web console, SSH, and TELNET) SNMP v2c (MIB-II) System configuration rollback Firmware upgrade via FTP, FTP-TLS, and Web GUI Dual firmware images |
Logging and Monitoring | Comprehensive local logging Syslog (to up to 4 servers) Email alerts (to up to 2 servers) Real-time traffic monitoring Built-in daily report Advanced reporting with Vantage Report |
VPN, Management and Reporting | Managed APs: Add 8 APs SecuExtender SSL VPN Client: Add 5 clients IPSec VPN Client: For 1/5/10/50 clients Vantage Report: For 1/5/25/100 devices |
General | |
Compatibility | Access Point NWA5120 Series (Unified Access Point) NWA5121-NI NWA5121-N NWA5123-NI NWA5000 Series (Managed Access Point) NWA5160N NWA5560-N NWA5550-N NWA3000-N Series (Unified Pro Access Point) NWA3160-N NWA3560-N NWA3550-N Functions central management, auto provisioning, and local bridge data forwarding |
Temperature | Operating: 32 to 104°F (0 to 40°C) Storage: -22 to 158°F (-30 to 70°C) |
Humidity | Operating: 10 to 90% (non-condensing) Storage: 10 to 90% (non-condensing) |
Dimensions (W x H x D) | 8.50 x 1.30 x 5.63" (216.00 x 33.00 x 143.00 mm) |
Weight | 1.96 lb (0.89 kg) |
Other items you might enjoy