|Number of USB 2.0 Ports||2|
Zyxel ZyWALL USG50 Internet Security Firewall with Dual-WAN, 4 Gigabit LAN/DMZ Ports, 5 IPSec VPN, SSL VPN, and 3G WAN Support
- Enter your model number to make sure this fits.
- Hybrid VPN, both SSL and IPSec VPNs supported for flexible deployment.
- Comprehensive threat protection with firewall,VPN,anti-virus,content filtering,anti-spam,Intrusion detection & prevention to secure front line threats
- IM/P2P management can prevent P2P or Instant Messaging applications to increase productivity.
- User-aware policy engine can set bandwith or network access based on user login
- Network resilience with multiple WANs, 3G cellular support, and device high availability
There is a newer model of this item:
Customers who bought this item also bought
What other items do customers buy after viewing this item?
Compare to similar items
This item Zyxel ZyWALL USG50 Internet Security Firewall with Dual-WAN, 4 Gigabit LAN/DMZ Ports, 5 IPSec VPN, SSL VPN, and 3G WAN Support
|Shipping||—||FREE Shipping||FREE Shipping||FREE Shipping||FREE Shipping||FREE Shipping|
|Sold By||Available from these sellers||2020 PC||Zyxel®||Amazon.com||Anonabox||Amazon.com|
|Data Transfer Rate||100||300||400||1,000||—||1,000 MB per second|
|Item Dimensions||1.4 x 6.9 x 9.5 in||6 x 14 x 10 in||6 x 9 x 1 in||2.68 x 11.22 x 8.78 in||1.5 x 2.5 x 1 in||5.5 x 8.6 x 2.3 in|
|Item Weight||2.6 lbs||7.45 lbs||2 lbs||1.81 lbs||3.52 ounces||1.58 lbs|
|Total LAN Ports||4||5||4||4||1||5|
|Wireless Compatibility||—||802.11abg||802.11 a/b/g/n||—||802.11 a/b/g/n||—|
The ZyWALL USG 50 is a Unified Security Gateway, integrated with complete, enterprise-level and advanced security solutions designed for Small/Medium Business (SMB) recommended for up to 10 PC users. Its flexible configuration helps network administrators set up the network and enforce security policies more efficiently. With certified by ICSA SPI Firewall and IPSec VPN, the ZyWALL USG 50’s security features also include IPSec VPN, SSL VPN, Firewall, Content Filter, Anti-Virus and IDP (Intrusion Detection and Prevention) for maximum network security protection. It also provides bandwidth management, for QoS of VoIP or mission critical applications, Multiple-WAN Failover and Load Balancing. Moreover, IPSec VPN and SSL VPN design for telecommuters and home workers can access data more easily and safely at home. Remote access with SSL VPN requires only a standard web browser. ZyWALL USG 50’s excellent throughput is the key to implement features of an enterprise level to provide a full-time, non-stop and secure service.
From the Manufacturer
Big Security for Small Businesses -Unified Security Gateway ZyWALL USG20W
The ZyWALL USG50 is a Unified Security Gateway designed to provide complete, enterprise-level advanced security solutions to Small and Home Office networks, recommended for up to 10 PC users. Its flexible configuration is designed to help network administrators efficiently set up, manage, and enforce network security policies.
The USG50 features a 180Mbps throughput ICSA certified SPI Firewall, and is designed with state of the art security features including a granular, easily manageable Content Filter; choice of ZyXEL or Kaspersky Anti-Virus; Anti-Spam; and IDP (Intrusion Detection and Prevention) for maximum network security. It also provides bandwidth management for QoS of VoIP, videoconferencing, and other important applications, as well as multiple-WAN Failover and Load Balancing. IPSec, SSL, and L2TP* VPN functionality allows telecommuters and home workers quick and easy access to corporate resources with most any device or network setup.
Built with powerful Integrated High Performance Security architecture designed for Gigabit connections, a VPN throughput of 90Mbps, a UTM throughput of 24Mbps, up to 10,000 max sessions and 10 concurrent IPSec VPN tunnels, the USG50 has the power to monitor and protect even high-throughput networks without sacrificing performance.
With 4x Gigabit LAN/DMZ and 2x Gigabit WAN interfaces you can load balance and failover multiple ISP links, allowing you to safeguard even the largest high-bandwidth environments.
- Comprehensive threat protection with firewall, VPN, anti-virus** content filtering** anti-spam, and intrusion detection and prevention**to secure networks against front line threats.
- Robust hybrid VPN (IPSec, SSL, and L2TP*)
- Easily connect with mobile devices
- IPv6 Support
- QoS options for latency-sensitive applications
- Compatible with Vantage Reporting and Management software
- 30day trial of the antivirus software
* Enabled by ZLD3.0 firmware upgrade
** Yearly subscription required
Flexible, secure VPN options
The USG50 is designed to allow secure VPN connections no matter what device or network settings are being used. IPSec VPN support allows secure connections to branch offices, partners, and headquarters; road warriors and telecommuters can use SSL to securely access the company network without having to install VPN software.
Easy Mobile Access
The new ZLD3.0 firmware upgrade enables L2TP support on all USG devices, making it easy for Android, iOS, and other mobile devices to establish VPN tunnels to remote networks directly from their native settings.
Comprehensive frontline threat protection
The USG50 employs a comprehensive suite of security systems to proactively protect networks from threats before they ever reach networked devices.
- ZyXEL’s anti-spam service eliminates spam, phishing, virus, and malware e-mail threats before they ever reach company inboxes while ensuring legitimate messages don’t get lost in the deluge.
- Administrators can choose between BlueCoat and Commtouch web filtering services to allow administrators to quickly and easily block websites both by category and by specific URL in order to protect networks from inappropriate web traffic, as well as to prevent viruses and spyware from forcing computers on a protected network to ‘phone home,’ saving bandwidth and preventing security breaches.
- ZyXEL’s signature-based Intrusion Detection and Prevention service allows network administrators granular control over the network functionality of specific applications while providing an added layer of defense from the most dangerous Trojans and backdoor applications on the internet today. With support for up to 2,500 signatures for the most common threats, IDP provides a powerful defense against threats to your network – both from the outside and from within.
- Gateway virus protection acts as a first line of defense from the worst viruses and malware on the internet. A 24/7 service with constant updates, administrators can choose between ZyXEL’s ICSA-Certified anti-virus or Kaspersky’s award winning virus protection system to keep the most dangerous viruses and malware from ever reaching a protected network.
- The USG50’s Content Filtering service is an integrated security system powered by an administrator’s choice of BlueCoat or Commtouch filtering services. The service is designed to allow administrators to quickly and easily block websites both by category and by specific URL in order to protect networks from inappropriate web traffic, as well as to prevent viruses and spyware from forcing computers on a protected network to ‘phone home,’ saving bandwidth and preventing security breaches.
With the advent of the new ZLD3.0 firmware, the USG50 is fully compatible with both IPv4 and IPv6 networks. Full backward compatibility allows VPN tunnels to be created between networks newly upgraded to IPv6 and older IPv4 networks, ensuring a seamless transition and painless network upgrades.
The USG50’s network optimization functionality makes it far more than a network security device. Support for multiple WANs allows the USG to load-balance and fail-over, protecting networks from congestion and downtime. Bandwidth management options let administrators prioritize latency-sensitive applications like VoIP and videoconferencing, ensuring high-quality connections without lag or performance issues.
Vantage Management and Reporting
The USG50 supports the use of ZyXEL’s Vantage CNM and Vantage Reporting software, allowing centralized management and monitoring of multiple ZyWALL devices on a single network.
Vantage Reporting offers a comprehensive set of real-time and historical reports including firewall attacks, bandwidth usage, website usage, and more - all organized into an automated, easy-to-read format that can be viewed from anywhere. Administrators can use this data to easily identify security problems and their causes and take prompt action.
Vantage CNM provides a suite of diagnostic and management tools that allows management of multiple ZyWALL devices from a centralized interface, reducing the time, cost, and complexity involved in VPN and security management. VPN monitoring allows network administrators to actively troubleshoot VPN problems as they occur, while centralized configuration of UTM functionality allows network administrators to manage license subscriptions, update devices, and isolate and repair security problems across all ZyWALL devices on a network.
ZyWALL USG Series Firewall Comparison
| || |
|Recommended number of PC Users||1-5||1-5||1-10||10-25||25-50||50-75||75-200||200-500|
|Unlimited User (No Per Node Limitation)|| || || || || || || || |
|High Performance multi-layer threat Protection|| || || || || || || || |
|10/100/1000 Interfaces (ALL GbE Copper)||4x LAN/DMZ, 1x WAN||4x LAN/DMZ, 1x WAN||4x LAN/DMZ, 2x WAN||5x LAN/DMZ, 2x WAN||5x LAN/DMZ, 2x WAN |
|7x Configurable||5x Configurable||6x Configurable|
System Capacity and Performance
|SPI Firewall Throughput (Mbps) (Largest Packet Size)||150||150||180||180||250||300||400||2000|
|VPN Throughput (AES)(Mbps) |
(Largest Packet Size)
|UTM Throughput (AV+IDP) (Mbps)(Largest Packet Size)||24||30||40||80||100||400|
|Max Concurrent IPSec VPN Tunnels||5||5||5||50||100||200||1000||2000|
|Max Concurrent SSL VPN Tunnels||1||1||5||5||10||25||250||750|
|Included SSL VPN Users||1||1||2||2||2||2||5||5|
|VPN Support||IPSec / SSL||IPSec / SSL||IPSec / SSL||IPSec / SSL/L2TP||IPSec / SSL/L2TP||IPSec / SSL/L2TP||IPSec / SSL/L2TP||IPSec / SSL/L2TP|
|Multiple WAN Load Balance / Fail Over|| || || || || || |
|iCard Antispam (Commtouch) 1 Year||ICAS1YUSG20WC||ICAS1YUSG20C||ICAS1YUSG50C||ICAS1YUSG100C||ICAS1YUSG200C||ICAS1YUSG300C||ICAS1YUSG1000C||ICAS1YUSG2000C|
|Anti-Virus (ZyXEL or Kaspersky) 1 Year|| |
|IDP (ZyXEL) 1 Year||ICID1YUSG50||ICID1YUSG100||ICID1YUSG200||ICID1YUSG300||ICID1YUSG1000||ICID1YUSG2000|
|iCard Content Filtering (BlueCoat or Commtouch) 1 Year|| |
|Total Security Service Kit(1 Year Kaspersky AV, 1 Year ZyXEL IDP, 1 Year BlueCoat CF bundle)||ICTS1YUSG50||ICTS1YUSG100||ICTS1YUSG200||ICTS1YUSG300||ICTS1YUSG1000||ICTS1YUSG2000|
|iCard SSL Upgrade Licenses(One Time)||2-5 Users SSL2TO5USG50||2-5 Users SSL2TO5USG100||2-10 Users |
2-10 Users SSL2TO10USG300
5-250 Users SSL5TO250USG2000
Top customer reviews
When I contact ZyXEL support, they say that this device is fully supported and not end of life however they recommend that I purchase a next gen device if I want the above fixed.
Plus dude: features are fantastic. UI is pretty good. CLI is nice if you want it. You REALLY need to spend some time going through all the menu's and getting a feel for all the groups, and categories and all that. Dont change stuff until you go through it all. Like all firewalls, take your time and configure it. All the features I ever needed are there, just took me a bit to go through all of them. I only have one problem and it's minimal, but needs to be noted.
The enclosure/case is REALLY REALLY cheap. The plastic feels like styrofoam or super brittle plastic. I personally don't care because I sit it on a shelf and I will never touch it but they could invest a LITTLE BIT in the case. I would pay an extra $20 to get aluminum or metal or some sort so it's stackable or atleast doesnt feel like it would shatter if it got bumped! I would NOT stack anything near this guy and if you think it might move or be moved often... this thing is NOT rugged!
On the other hand, trying to register it through ZyXEL's procedure doesn't work at all. The process requires visiting portal.myzyxel.com and setting up an account. I did that and received a popup stating, "You will receive an email with instructions on how to confirm your email address in a few minutes." That was yesterday morning.
After waiting about six hours and having clicked on the "Resend Confirmation" link several times, I submitted a request to ZyXEL customer service. Several hours later I received an email response from Miguel, saying, "We check on our system the e-mail address that you provided and still shows unconfirmed. Please check your spam, junk or any other firewall folder on your e-mail that may be preventing you from receiving the confirmation e-mail."
Well, yes, it is unconfirmed because I never received the instructions telling me how to confirm it. And I don't have a spam folder or a junk folder or any other firewall folder that would prevent me from receiving the confirmation email.
Interestingly, I registered two switches with ZyXEL at the same time yesterday. These do not "qualify" for the special myzyxel registration , so I registered them over the web. I immediately received confirmation emails for both of them. I also received Miguel's email. So I wonder why my system would be suspected of trapping the confirmation email for the USG 50.
I did reply to Miguel last night and, not surprisingly, have heard nothing back. In the meantime I have waited over 28 hours for their gimmicky registration process to process my registration.
However, please note this: if you are looking for something that will do content filtering AV inspection of SSL/TLS encrypted traffic, then you should probably look at the next gen models, because this one only supports plaintext protocols. I now see that for just $100 over the price I paid ($550 total - $250 for the USG50 + $299 for the AV/filtering licenses), you can get the USG110 and the purported inspection of SSL/TLS traffic. Perhaps I should have done additional requirements analysis here, but feel a bit miffed since the price diff was minimal. And given the trend for malware and other attacks to increasingly occur over encrypted channels, it just feels pointless to only offer inspection of plaintext protocols. For this, I took a star away from the rating.
Another issue I have is that this is a security device that still has SSLv3 enabled by default on its management interfaces (haven't tested it with the SSL vpn feature though) and with no perceivable way to disable it. I won't opine as to why SSLv3 should not be used any longer (just google it), but I feel compelled to take away a star on my rating for this.
Nonetheless, this little guy is able to keep up with the small office needs in terms of throughput (save for full bore vulnerability scans that have to be appropriately throttled). You aren't going to find a magic bullet for your network security needs. It just doesn't exist. But this is a great layer in your defenses that can't be beat for the price.
Most recent customer reviews
Two internet providers connected and so far running perfect.Read more
They are hard to set up but work well if you can get them set up.Read more
See the Top Rated Wireless Routers in our Wireless Router Reviews.