ZYXEL ATP200 安裝、保養、維修

ATP200

裝WIFI | 裝ROUTER | 裝FIREWALL — 硬件連工程一站式

產品簡介

Zyxel ATP200 為ATP Firewall,HKEZIT 提供原廠行貨連保養、上門安裝、調試及使用教學一站式服務。詳細規格以下方原廠 Datasheet 欄位為準,歡迎聯絡我們查詢 ATP200 香港價格連安裝報價。

  • 接口:3 x LAN/DMZ, 1 x WAN, 3 x LAN/DMZ, 1 x WAN, 4 x LAN/DMZ, 2 x
  • USB 3.0 ports:1 1 2
  • Console port:RJ-45 RJ-45 DB9
  • Rack-mountable:- - Yes
  • Fanless:Yes Yes Yes
HKEZIT 提供原廠行貨保養。硬件連專業安裝、設定及使用教學一站式報價,無需自行研究安裝與設定。我們同時承接裝WIFI、裝ROUTER、裝FIREWALL工程,硬件與工程同一團隊負責。
查詢價格連安裝
ATP200 Zyxel ATP Firewall 產品圖片

詳細規格

接口3 x LAN/DMZ, 1 x WAN, 3 x LAN/DMZ, 1 x WAN, 4 x LAN/DMZ, 2 x WAN, 1x OPT 1 x SFP, 1x OPT 1 x SFP
USB 3.0 ports1 1 2
Console portRJ-45 RJ-45 DB9
Rack-mountable- - Yes
FanlessYes Yes Yes
SPI firewall throughput (Mbps)*21,000 1,000 2,000
VPN throughput (Mbps)*3300 300 500
IPS throughput (Mbps)*4 600 600 1,200
Anti-malware throughput (Mbps)*4380 380 630
UTM throughput380 380 600
Max. TCP concurrent sessions*5300,000 300,000 600,000
Max. concurrent IPsec VPN tunnels*6 50 50 100
Recommended gateway-to-gateway20 20 50
VLAN interface8 8 16
SPI firewall throughput (Mbps)*7850 850 900
安全Sandboxing*8 Yes Yes Yes
ServiceWeb Filtering*8 Yes Yes Yes
Application Patrol*8Yes Yes Yes
Anti-Malware*8Yes Yes Yes IPS* 8
YesYes Yes
Reputation Filter*8
Geo EnforcerYes Yes Yes
SecuReporter*8
CollaborativeYes Yes Yes Detection & Response*8
Device InsightYes Yes Yes
Security Profile Sync*8Yes Yes Yes
SSL (HTTPS) Inspection YesYes Yes 2-Factor Yes Yes Yes
VPN FeaturesVPN IKEv2, IPSec, L2TP/IPSec IKEv2, IPSec, L2TP/IPSec IKEv2, IPSec, L2TP/IPSec
Microsoft AzureYes Yes Yes
Amazon VPCYes Yes Yes
WLANDefault number of 8 8 8
Managementmanaged AP
Recommend max. AP in 1010 20 1 AP Group
Secure WiFi Service*8Yes Yes Yes
Maximum Number of6 6 10 Tunnel-Mode AP
Management & Nebula Cloud ModeYes Yes Yes
Connectivity Nebula CloudYes Yes Yes Monitoring Mode
Device HA Pro- - -
Link Aggregation (LAG) -- -
Concurrent devices64 64 200 logins (max.)
Burst login rate64 64 200 (users/30sec)
Power input12V DC, 2A max. 12V DC, 2A max. 12V DC, 2.5A max.
最大功耗12.5 12.5 13.3
Heat dissipation (BTU/hr)42.65 42.65 45.38
ItemDimensions (WxDxH) 216 x 147.3 x 33/ 216 x 147.3 x 33/ 272 x 187 x 36/ (mm/in.) 8.50 x 5.80 x 1.30 8.50 x 5.80 x 1.30 10.7 x 7.36 x 1.42
Weight (kg/lb.)0.85/1.87 0.85/1.87 1.4/3.09
PackingDimensions (WxDxH) 284 x 190 x 100/ 284 x 190 x 100/ 427 x 247 x 73/ (mm/in.) 11.18 x 7.48 x 3.94 11.18 x 7.48 x 3.94 16.81 x 9.72 x 2.87
Included accessories• Power adapter • Power adapter • Power adapter
• RJ-45 cable• RJ-45 cable • Rack mounting kit
• RS-232 cable• RS-232 cable
OperatingTemperature 0°C to 40°C/ 0°C to 40°C/ 0°C to 40°C/
environment32°F to 104°F 32°F to 104°F 32°F to 104°F
Humidity10% to 90% 10% to 90% 10% to 90% (non-condensing) (non-condensing) (non-condensing)
StorageTemperature -30°C to 70°C/ - 30°C to 70°C/ -30°C to 70°C/
MTBF (hr)989,811(at 25°C) and 989,811(at 25°C) and 832,102(at 25°C) and 576,237(at 40°C) 576,237(at 40°C) 536,472(at 40°C)
Acoustic noise- - -
EMCFCC Part 15 (Class B), FCC Part 15 (Class B), FCC Part 15 (Class B),
CE EMC (Class B),CE EMC (Class B), CE (Class B), C-Tick
BSMIBSMI (Class B), BSMI
SafetyLVD (EN60950-1), BSMI LVD (EN60950-1), BSMI LVD (EN60950-1), BSMI
System Capacity & Performance*1
VPN throughput (Mbps)*3 900 1,200 1,500
Max. concurrent IPsec VPN tunnels*6300 500 1,000
Application Patrol*8
Reputation Filter*8Yes Yes Yes
SecuReporter*8Yes Yes Yes
Security Profile Sync*8
Recommend max. AP in 60200 300 1 AP Group
Link Aggregation (LAG) YesYes Yes
Connt devices logins300 1500 1500 (max.)
Max. power consumption (watt)24.1 46 46
• Power cord• Rack mounting kit • Rack mounting kit • Rack mounting kit
Operating Temperature,Operating Temperature Operating Temperature 41.5dBA on full FAN speed 46.2dBA on full FAN speed 46.2dBA on full FAN speed
CE EMC (Class A),CE EMC (Class A), CE EMC (Class A),
C-Tick (Class A), BSMIC-Tick (Class A), BSMI C-Tick (Class A), BSMI
conditions, and activated applications.*6: Including Gateway-to-Gateway and Client-to-Gateway. standard HTTP performance test (1,460-byte HTTP packets). Testing done with *9: ATP100 rev1 is adapting new hardware design equipped with
multiple flows.4 x LAN/DMZ, 1 x WAN
Standard compliance802.11 a/b/g/n/ac
Wireless frequency2.4 / 5 GHz
Radio2
SSID number4
Maximum transmit power US (FCC) 2.4 GHz25 dBm, 3 antennas
EU (ETSI) 2.4 GHz20 dBm(EIRP), 3 antennas
EU (ETSI) 5 GHz20 dBm(EIRP), 3 antennas
No. of antenna3 detachable antennas
天線增益2 dBi @2.4 GHz 3 dBi @ 5 GHz
Data rate2.4 GHz: up to 300 Mbps 5 GHz: up to 866 Mbps
Frequency Band2.4 GHZ USA (FCC) : 2.412 to 2.462 GHz (IEEE 802.11 b/g/n) Europe (ETSI) : 2.412 to 2.472 GHz TWN (NCC) : 2.412 to 2.462 GHz 5 GHZ USA (FCC) : 5.150 to 5.250 GHz; 5.250 to 5.350 GHz; 5.470 to 5.725 GHz; (IEEE 802.11 a/n/ac) 5.725 to 5.850 GHz Europe (ETSI) : 5.15 to 5.35 GHz; 5.470 to 5.725 GHz TWN (NCC) : 5.15 to 5.25 GHz; 5.25 to 5.35 GHz; 5.470 to 5.725 GHz; 5.725 to 5.850 GHz
Receive sensitivity2.4 GHZ 11 Mbps ≤ -87 dBm 54 Mbps ≤ -77 dBm HT20 ≤ -71 dBm HT40 ≤ -68 dBm 5 GHZ 54 Mbps ≤ -74 dBm HT40, MCS23 ≤ -68 dBm VHT40, MCS9 ≤ -62 dBm HT20, MCS23 ≤ -71 dBm VHT20, MCS8 ≤ -66 dBm VHT80, MCS9 ≤ -59 dBm
Security Service• Policy criteria: source and • Streamed-based engine
destination IP address, user group,• Support SSL inspection*2
time• Inspection on various protocols:
• Policy criteria: zone, user*2HTTP, FTP, SMTP, POP3, and IMAP modes • Inspection on various protocols:
• Stateful packet inspectionIntrusion Prevention System (IPS) HTTPs, FTPs, SMTPs, POP3s, and
• SIP NAT traversal• Support both intrusion detection and IMAPs*2
• H.323 NAT traversal*2prevention • Customizable signature & protection
• ALG support for customized ports• Support allowlist (whitelist) to deal profile*2
• Protocol anomaly detection andwith false positives involving known • Automatic new signature update
防護等級benign activity*2 mechanism support
• Traffic anomaly detection and• Support rate-based IPS signatures
• Flooding detection and protectionapplication-based DoS and brute • Smart single-pass scanning engine
• DoS/DDoS protectionforce attacks*2 • Identifies and control thousands of
• Signature-based and behavior-applications and their behaviors
based scanning• Identify, categorize and control over
• Support exploit-based and3,000 apps and behaviors
vulnerability-based protection• Granular control over the most Application Patrol, firewall (ACL)
• Support Web attacks like XSS andpopular applications SQL injection
• Prioritize and throttle applicationWeb Filtering • Perfect forward secrecy (DH groups)
bandwidth usage• HTTPs domain filtering support 1, 2, 5, 14, 15-18, 20-21
• Real-time application statistics and• SafeSearch support: Google, • PSK and PKI (X.509) certificate
reportsYouTube, and Microsoft Bing*2 support
• Identify and control the use of DOH• Allow List websites enforcement • IPSec NAT traversal (NAT-T) (DNS over HTTPS) • URL Block and Allow List with • Dead Peer Detection (DPD) and relay
keyword blockingdetection
Sandboxing• Customizable warning messages • VPN concentrator
• Cloud-based multi-engine inspectionand redirect URL • Route-based VPN Tunnel Interface
• Support HTTP/SMTP/POP3/FTP• Customizable Content Filtering block (VTI)
• Wild range file type examinationpage • VPN high availability (Failover, LB)
• Real-time threat synchronization• URL categories increased to 111 • GRE over IPSec*2
• SSL inspection support*2• CTIRU (Counter-Terrorism Internet • NAT over IPSec
Anti-MalwareReferral Unit) support • L2TP over IPSec
• High performance query-based scan• Support DNS base filtering (domain • SecuExtender Zero Trust VPN Client
engine (Express Mode)filtering) provisioning
• Works with over 30 billion of known• Support native Windows, iOS/macOS Geo Enforcer
malicious file identifiers and stilland Android (StrongSwan) client • Geo IP blocking
growingprovision*2 • Geographical visibility on traffics
• Multiple file types supported• Support 2FA Email/SMS*2 statistics and logs
• Stream-based scan engine (Stream• Support 2FA Google Authenticator • IPv6 address support*2 Mode)
• No file size limitationIP Exception Networking
• HTTP, FTP, SMTP, and POP3 protocol• Provides granular control for target
supportedsource and destination IP Secure WiFi
• Automatic signature updatebypass for Anti-malware (including • L2 access between home office and
Sandboxing), IPS, IP Reputation, andHQ (Secured Tunnel)
Hybrid Mode Malware ScanningURL Threat Filter • GRE Tunnel for Campus AP
• Both stream-based engine and cloud• Enforcing 2FA with Google
query concurrently in actionDevice Insight Authenticator
• Works with local cache and over 30• Agentless Scanning for discovery • WPA2 Enterprise (802.1x) supported
billion databases and growingand classification of devicess • Wireless Storm Control
• HTTP, HTTPS, and FTP protocol• View all devices on the network, • Applicable regardless of the On
E-mail Security*2• Supports AP Controller (APC) version • Visibility of network devices
• Transparent mail interception via4.00 (switches, wireless access points,
SMTP and POP3 protocols• 802.11ax Wi-Fi 6 AP and WPA3 firewalls) from Zyxel or 3rd party
• Spam, Phishing, mail detectionsupport vendors
• Block and Allow List support• 802.11k/v/r support
• Supports DNSBL checkingCollaborative Detection & Response • Supports auto AP FW update
• Support Alert/Block/Quarantine• Scheduled WiFi service
IP Reputation Filtercontainment actions • Dynamic Channel Selection (DCS)
• IP-based reputation filter• Prevent malicious wireless clients • Client steering for 5 GHz priority and
• Supports 10 Cyber Threat Categoriesnetwork access with blocking feature sticky client prevention
• Supports external IP blacklist• Customizable warning messages and • Auto healing
• Inbound & Outbound traffic filteringredirect URL • Customizable captive portal page
DNS Threat Filterexempt list • CAPWAP discovery protocol
• Block clients to access malicious• Multiple SSID with VLAN
domainVPN • Supports ZyMesh
• Effective against any IP protocolIPSec VPN • Support AP forward compatibility
• Monitoring or blocking the use of• Key management: IKEv1 (x-auth, • Rogue AP Detection
DoH/DoTmode-config), IKEv2 (EAP, Multi-WAN
URL Threat Filterconfiguration payload) • Multi-WAN support on ATP200 and
• Botnet C&C websites blocking• Encryption: DES, 3DES, AES (256-bit) above
• Malicious URL blocking• Authentication: MD5, SHA1, SHA2 • Dual-WAN support on ATP100/100W
• Supports External URL blacklist(512-bit) (with OPT port)
Mobile Broadband*2• Bandwidth management by • XAUTH, IKEv2 with EAP VPN
• WAN connection failover via 3G andapplication authentication 4G* USB modems • Link Aggregation support*1*2 • IP-MAC address binding
• Auto fallback when primary WAN• SSO (Single Sign-On) support*2
recoversManagement • Supports 2-factor authentication (Google Authenticator, SMS/Email)
IPv6 Support*2Nebula Cloud Mode
• Dual stack• Unlimited Registration & Central System Management
• IPv4 tunneling (6rd and 6to4Management (Configuration, • Role-based administration
transition tunnel)Monitoring, Dashboard, Location • Multi-lingual Web GUI (HTTPS and
• SLAAC, static IP addressMap & Floor Plan Visual) of Nebula HTTP)
• DNS, DHCPv6 server/clientDevices • Command line interface (console,
• Static/Policy route• Zero Touch Auto-Deployment of web console, SSH and telnet)*2
• IPSec (IKEv2 6in6, 4in6, 6in4)Hardware/Configuration from Cloud • SNMP v1, v2c, v3
• Over-the-air Firmware Management• System configuration rollback*2
• Central Device and Client• Configuration auto backup*2
Monitoring (Log and Statistics• Firmware upgrade via FTP, FTP-TLS,
Information) and Reportingand web GUI*2
• Security Profile Sync• New firmware notify and auto
Nebula Cloud Monitoring Modeupgrade
• Monitor device on/off status• Dual firmware images
• Firmware upgrade operation• Cloud CNM SecuManager*2
• Policy-based routing (user-aware)*2• Manage firewall licenses Logging and Monitoring
• Policy-based NAT (SNAT)• Access remote GUI (requires Nebula • Comprehensive local logging
• GRE*2Pro Pack) • Syslog (to up to 4 servers)
• Dynamic routing (RIPv1/v2 and OSPF,• Backup and restore firewall • Email alerts (to up to 2 servers)
BGP)*2configurations (requires Nebula Pro • Real-time traffic monitoring
• DHCP client/server/relayPack) • Built-in daily report
• Dynamic DNS supportAuthentication • Cloud CNM SecuReporter
• WAN trunk for more than 2 ports• Local user database *: For specific models supporting the 3G and 4G
• Per host session limit• Cloud user database*3 dongles on the list, please refer to the Zyxel
• Guaranteed bandwidth• External user database: Microsoft product page at 3G dongle document
• Maximum bandwidthWindows Active Directory, RADIUS, *1: Supported models ATP500/700/800 *2: Only supported in On Premises Mode
• Priority-bandwidth utilizationLDAP *3: Only supported in Nebula Cloud Mode
• Bandwidth limit per user*2• IEEE 802.1x authentication
• Bandwidth limit per IP• Captive portal Web authentication Secure Tunnel for Remote AP
ProductRemote AP Number of Tunnel Mode AP Supported Remote AP
ATPATP100(W) 6 • WAX655E
ATP20010 • WAX650S • WAX640S-6E
ATP50018 • WAX630S
ATP70066 • WAX620D-6E
ATP800130 • WAX610D • WAX510D
USG FLEXUSG FLEX 100(AX/W) 6 • WAC500
USG FLEX 20010 • WAC500H
USG FLEX 50018
USG FLEX 700130
VPNVPN50 10
VPN10018
VPN300130
VPN1000258
Models• NWA5123-AC • WAX510D* • WAC6103D-I • WAX650S
• NWA5123-AC HD*1• WAC500* • WAC6503D-S • WAX630S
• WAC5302D-S• WAC500H* • WAC6502D-S • WAX610D
• WAC5302D-Sv2• WAX300H • WAC6303D-S • WAX640S-6E
• WAC6553D-E• WAX620D-6E
• WAC6552D-S• WAX655E • WAC6502D-E Functions
Central managementYes Yes
Auto provisioningYes Yes
Data forwardingLocal bridge Local bridge / Data tunnel
ZyMeshYes Yes *: Support both local bridge and data tunnel for data forwarding.
SFP10G-SR*10-Gigabit Duplex LC 850 nm 300 m/ Multi Mode Yes
SFP+328 yd
SFP10G-LR*10-Gigabit Duplex LC 1310 nm 10 km/ Single Mode Yes
SFP-1000TGigabit RJ-45 - 100 m/ Multi Mode - 109 yd
SFP-LX-10-DGigabit Single LC 1310 nm 10 km/ Single Mode Yes 10936 yd
SFP-SX-DGigabit Single LC 850 nm 500 m/ Multi Mode Yes 601 yd
SFP-BX1310-10-D*1Gigabit Single LC 1310 nm(TX) 10 km/ Single Mode Yes 1490 nm(RX) 10936 yd
SFP-BX1490-10-D*1Gigabit Single LC 1490 nm(TX) 10 km/ Single Mode Yes 1310 nm(RX) 10936 yd *:only USG2200 Series supports 10-Gigabit SFP+ *1: SFP-BX1310-10-D & SFP-BX1490-10-D, SFP-BX1310-E & SFP-BX1550-E must be used in pairs. 18/12/24

* 規格以原廠最新 Datasheet 為準。

網絡 WiFi安裝工程服務

HKEZIT 專營裝WIFI、裝ROUTER、裝FIREWALL工程,ATP200 由我們供貨、安裝、調試到使用教學一站式完成。無論裝WIFI、裝ROUTER或裝FIREWALL,均由自家工程團隊上門施工,品質有保證。

裝WIFI裝ROUTER裝FIREWALL

網絡 WiFi適合邊類專業客戶

ATP200 Zyxel ATP Firewall亦適合以下專業服務機構使用,保安同合規要求同一般商鋪唔一樣,歡迎查詢度身方案。

會計師行

審計旺季外勤同事考勤管理、財務資料室保安,同會計師行嘅合規要求相符。

WhatsApp 查詢 →

測量師行/則師樓

現場勘察資料同客戶物業圖則屬機密,辦公室網絡同門禁保安係基本要求。

WhatsApp 查詢 →

建築工程顧問公司

圖則模型檔案室保密,配合工地現場監控延伸管理,項目資料防外洩。

WhatsApp 查詢 →

律師事務所

客戶機密文件與會議記錄保安需求高,門禁分級、CCTV存證、通話錄音缺一不可。

WhatsApp 查詢 →

企業秘書/稅務顧問公司

大量客戶公司機密檔案室保安,稅季外勤同事出入記錄管理清晰。

WhatsApp 查詢 →

保險經紀行

客戶會面室簽單過程存證,減少銷售爭議,配合保監局合規要求。

WhatsApp 查詢 →

常見問題

ATP200 香港哪裡有代理?

HKEZIT 提供原廠行貨連保養,ATP200 原廠行貨連保養,提供上門安裝、佈線及網絡設定一站式服務,全港 32 區均有服務。

此設備適合什麼工程場景?

詳細規格請參閱上方規格表;我們會按現場點位數量、距離及功率需求設計網絡架構,並提供整體方案報價。

安裝後有問題如何跟進?

原廠行貨保養,工程另設保養期;網絡設備我們會預先設定好即插即用,日後有問題可遠程協助或上門檢查。

ATP200 定 ATP800 邊個好?

兩者主要規格分別:Management方面,ATP200 係 managed AP,ATP800 係 • New firmware notify and auto upgrade;BSMI方面,ATP200 係 BSMI (Class B), BSMI,ATP800 係 BSMI BSMI;SSID number方面,ATP200 係 4,ATP800 係 8。實際邊個型號更適合,需視乎現場環境同需求而定,可先比較 ATP800 詳細規格,或直接聯絡我們免費現場評估,由工程師建議最合適方案。

ATP200 保養、維修邊度做?

HKEZIT 提供 ATP200 原廠行貨連保養,安裝後如有故障可直接聯絡我們安排上門維修,毋須自行聯絡原廠。詳情請參閱網絡 WiFi安裝工程頁面或聯絡我們查詢保養範圍。

香港安裝服務地區

HKEZIT 於全港各區提供 ATP200 Zyxel ATP Firewall供貨連專業安裝服務(裝WIFI、裝ROUTER、裝FIREWALL),熱門地區包括:旺角網絡佈線 WiFi 工程柴灣網絡佈線 WiFi 工程沙田網絡佈線 WiFi 工程油麻地網絡佈線 WiFi 工程深水埗網絡佈線 WiFi 工程灣仔網絡佈線 WiFi 工程筲箕灣網絡佈線 WiFi 工程紅磡網絡佈線 WiFi 工程。港島、九龍、新界全港 32 區均有上門安裝,歡迎聯絡我們查詢 ATP200 香港價格連安裝報價。

網絡 WiFi適用場景

ATP200 Zyxel ATP Firewall適合多種場景使用,以下為部分常見安裝場景,歡迎查詢是否適合您的現場環境。

查看更多網絡 WiFi適用場景,請參閱 網絡 WiFi安裝工程

相關產品

如需整套網絡 WiFi方案,請參閱 網絡 WiFi安裝工程

查詢 ATP200 連安裝價格

免費上門評估,即日報價,原廠行貨保養

立即查詢