The ZyWALL USG (Unified Security Gateway) 20 is the "third generation" ZyWALL featuring an all-new platform. It provides greater performance protection as well as a deep packet inspection security solution for small businesses to enterprises alike. It embodies a Stateful Packet Inspection (SPI) firewall, Content Filtering, Anti-Spam, and VPN (IPSec/SSL/L2TP) in one box. This multilayered security safeguards your organization's customer and company records, intellectual property, and critical resources from external and internal threats.
Features:
| © 2026 Respective owners and brand holders. This table has been carefully researched and generated by ComXpert International CC (//www.comx-computers.co.za), however, errors and omissions may occur. Only references to South Africa apply. All products are sourced in South Africa from the official suppliers and the warranty is that of the local supplier. E&OE. This table and our site's content may be used on condition that this notice and link remains intact and unaltered. |
Specifications for the product series |
| Product Code | ZY-USG20 |
| Firewall | ICSA-certified firewall |
| Routing and transparent (bridge) mode |
| Zone-based access control list |
| Stateful packet inspection |
| NAT, PAT |
| Policy base NAT |
| VLAN tagging |
| User-aware policy enforcement |
| SIP/H.323 NAT traversal |
| ALG supports custom ports |
| Virtual Private Network (VPN) | ICSA-certified IPSec VPN |
| L2TP, IPSec |
| Algorithm: AES/3DES/DES |
| Authentication: SHA-1/MD5 |
| Key management: Manual key/IKE |
| Perfect forward secrecy: (DH group) supprt 1, 2, 5 |
| IPSec NAT traversal |
| Dead peer detection/relay detection |
| PKI (X.509) certificate support |
| Centralize VPN Support |
| Simple wizard support |
| Auto reconnect VPN |
| VPN HA (redundant remote VPN gateways) |
| SSL VPN | Clientless secure remote access |
| Support reverse proxy mode and full tunnel mode |
| Unified policy enforcement |
| Supports two-factor authentication |
| Customizable user portal |
| Anti-Spam | Zone to zone protection |
| Transparently intercept mail via SMTP/POP3 protocols |
| Blacklist/whitelist support |
| Support DNSBL checking |
| Spam tag support |
| Statistics report |
| Content Filtering | Social networking control |
| Web security - ZyXEL safe browsering |
| URL blocking, keyword blocking |
| Profile base setting |
| Exempt list (blacklist and whitelist) |
| Blocks java applet, cookies and active X |
| Dynamic URL filtering database (powered by BlueCoat) |
| Unlimited user licenses support |
| Customize warning messages and redirect URL |
| Networking | Routing mode/bridge mode/mixed mode |
| Layer 2 port grouping |
| Ethernet/PPPoE |
| Tagged VLAN (802.1Q) |
| Virtual interface (alias interface) |
| Policy-based routing (user-aware) |
| Policy-based NAT (SNAT) |
| Dynamic routing(RIP v1/v2, OSPF) |
| DHCP client/server/relay |
| Dynamic DNS support |
| WAN Trunk more than 2 port |
| Per host session limit |
| Guaranteed bandwidth |
| Maximum bandwidth |
| Priority-bandwidth utilization |
| Authentication | Local user database |
| Microsoft Windows active directory integrate |
| External LDAP/RADIUS user database |
| Xauth over RADIUS for IPSec IPV |
| Forced user authentication (transparent authentication) |
| IP/MAC address binding |
| System Management | Role-based administration |
| Multiple administrator login |
| Multi-Lingual Web GUI (HTTPS/HTTP) |
| Out-of-band management (AUX) |
| Object-based configuration |
| Command line interface (console/web console/SSH/TELNET) |
| SNMP v2c (MIB-II) |
| System configuration rollback |
| Firmware upgrade via FTP/FTP-TLS/Web GUI |
| Logging/Monitoring | Comprehensive local logging |
| Syslog (send to up to 4 servers) |
| E-mail alert (send to up to 2 servers) |
| Real-Time traffic monitoring |
| Built-in daily report |
| Advanced reporting (Vantage Report) |
| Centralized Network Management (Vantage CNM) manageable |
| Features | Unified Security Gateway for SB (1~5 PC Users) |
| All Gigabit Ethernet interface hardware design |
| High-performance multi-layer threat protection |
| Hybrid VPN (IPSec and SSL) secures connection |
| 3G USB dongle as the backup WAN |
| System Capacity & Performance | SPI Firewall Throughput*1: 100 Mbps |
| VPN Throughput (3DES)*2: 30 Mbps*4 |
| Unlimited User Licenses |
| Max. Sessions*6: 6, 000 |
| New Session Rate: 900 |
| Max. Concurrent IPSec VPN Tunnels: 2 |
| Max. Concurrent SSL VPN Users: 1 |
| Included SSL VPN Users: 1 |
| Customizable Zone |
| Hardware Specifications | 10/100/1000 Interfaces (Copper): 4 x LAN/DMZ, 1 x WAN |
| USB ports: 1 |
| Power Requirements | Input Voltage: 100 - 240 V AC, 50 - 60 Hz, 1.2 A |
| Power Rating: 15 W Max |
| Physical Specifications | Dimensions: 215.75 (W) x 140 (D) x 33 (H) mm |
| Weight: 0.38 kg |
| Environmental Specifications | Operating temperature: 0ºC to 40ºC |
| Storage temperature: 0ºC to 40ºC |
| Operating humidity: 20% to 95% (non-condensing) |