Products & Services

PQC VPN

    Network Expert Group, For your Security
    PQC VPN
    Features

    PQC VPN products provide next-generation VPN solutions that ensure maximum security and stability even against hacking threats from quantum computers that can compromise conventional cryptography.

    Functions
    • 1 Korea’s first commercial IPsec (PQC-VPN)

      - Korea’s first commercial IPsec VPN device applying PQC algorithms
      - Supports various PQC algorithms

    • 2 KCMVP (Cryptography Module Validation Program) applied

      - Equipped with KCMVP-certified cryptographic module
      - Ensures encryption reliability and trustworthiness

    • 3 Optimal Performance Guarantee

      - Maintains top VPN performance even with enhanced security
      - No tunnel delays when combining PQC algorithms with key exchange

    • 4 100% Compatible with Existing VPN Devices

      - Fully compatible with existing VForce UTM x700 products PQC algorithm selectable

    Hardware Specifications

    Branch Model Line-up
    Registered procurement product
    Category VForce UTM 7S VForce UTM 7US VForce UTM 70US VForce UTM 700U
    Appearance
    CPU 2 Core 4 Core 4 Core 4 Core
    Memory 1 GB 1 GB 4 GB 4 GB
    Storage
    (*SSD option available)
    32 GB 8 GB 8 GB 8 GB
    - - 500 GB (Option) 500 GB
    NIC 1GC 7(1 POE) 6 (4 Switch) 12 (8 Switch) 12 (8 Switch/MAX 16)
    1GF - - - Option(max 4)
    10GF - - - -
    40GF - - - -
    100GF - - - -
    WIFI / LTE OPTION(3G, LTE) - - -
    Slot - - - -
    MGMT - - - -
    QRNG O - - -
    Firewall Throughput (MAX) 2.2 G 1.6 G 6 G 12 G
    Power Single Single Single Single
    W x D x H (mm) 270 x 168 x 43 267 x 127 x 45 290 x 231 x 44 440 x 281 x 44
    ❖ Specifications and appearance are subject to change for product improvements.
    Middle & Enterprise Model Line-up
    Registered procurement product
    Category VForce UTM 1700U VForce UTM 1700US VForce UTM 3700U VForce UTM 4700U VForce UTM 5700U
    Appearance
    CPU 4 Core 8 Core 8 Core 8 Core x 2 16 Core x 2
    Memory 8 GB 16 GB 32 GB 64 GB 64 GB
    Storage
    (*SSD option available)
    256 GB 256 GB 256 GB 256 GB 256 GB
    1 TB 2 TB 2 TB 2 TB 2 TB
    NIC 1GC 4(max 20) 4(max 20) 8(max 24) 8(max 64) 8(max 64)
    1GF 4(max 16) 4(max 16) 6(max 18) 8(max 64) 8(max 64)
    10GF Option(max 8) Option(max 8) Option(max 8) 4(max 32) 4(max 32)
    40GF - - Option(max 4) Option(max 16) Option(max 16)
    100GF - - - - -
    Slot 2 2 2 8 8
    MGMT - - - 2 2
    QRNG O O O O O
    Firewall Throughput (MAX) 15 G 30 G 60 G 119 G 159 G
    Power Redundant Redundant Redundant Redundant Redundant
    W x D x H (mm) 430 x 426 x 44.2 430 x 426 x 44.2 430 x 450 x 44 430 x 562 x 88 430 x 562 x 88
    ❖ Specifications and appearance are subject to change for product improvements.

    Detailed Features

    Firewall
    • Stateful Inspection
    • Zone and user-based policy support
    • Policy support based on MAC address, network, domain objects, and GeoIP (country DB)
    • Schedule-based policy support
    • Search functions for unused policies, unused objects, and duplicate policies
    • Policy validation through simulation
    • Automatic policy adjustment based on interface/line status changes
    • Integration with user authentication systems (RADIUS, LDAP, TACACS+)
    • Support for two-factor authentication (2FA)
    • Supports S-NAT / D-NAT / Double NAT / Excluded NAT and LS-NAT
    • Bridge firewall support without requiring network reconfiguration
    Network
    • 802.3ad Link Aggregation, 802.1Q VLAN Trunk
    • RIP, OSPF
    • PIM-SM/DM, IGMP support
    • ECMP routing / Policy-based routing
    • VoIP (H.323, SIP) support
    • QoS (guarantee, limit, priority) support
    • VRRP, IP backup
    • DHCP server, DHCP Relay agent support
    • DNS, Split DNS, DDNS, LLDP support
    • IPv6 Tunneling 6to4, ISATAP
    Application
    • Behavior control by application
    • Control of games, P2P, and HTS / webmail
    • Instant messenger control / web hard drive control
    • Streaming and file-type control
    IPsec VPN
    • IKE version 1, 2
    • Support for multiple encryption algorithms (3DES / AES / SEED / ARIA / LEA)
    • Support for multiple integrity algorithms (SHA1 / SHA256 / SHA384 / SHA512)
    • Line-based load balancing tunnel support
    • Flexible VPN redundancy configuration (A-A, A-S) with Multi-Tunneling technology
    • VPN support in network bonding and bridge environments
    • VPN operation in line NAT environments
    • VPN disconnection on device theft or extended inactivity
    • VPN line switching with built-in line fault detection
    IPS
    • Deep Packet Inspection
    • User-defined signatures
    • Supports Snort rule format / PCRE
    • Profile-based policy configuration
    • Blacklist / Whitelist / Anti-evasion
    • Anti-Virus (Stream-based detection) and Blocking
    HA
    • Active-Active / Active-Standby without L4, LLCF
    • Configuration, policy, and session synchronization
    Anti DDoS
    • Protection against TCP/UDP/ICMP/DNS/HTTP flooding
    • Scan, Sweep protection / Signature-based protection
    • Tampering / Traffic Limit-based protection
    Monitoring & Management
    • Web UI, CLI / Dashboard (System status and real-time monitoring)
    • Administrator account authentication integration support (Radius, AD, LDAP, TACACS+)
    • SNMP v1 / v2 / v3 support
    • Syslog forwarding with keyword filtering
    • Statistics and reporting support
    • Policy export / import support
    • System configuration / firmware backup and recovery support
    • VForce NMS and NexG ESM integration
    Web Filter
    • URL and URI extended inspection / user-defined DB filtering
    • Provides web filtering based on 96 Web Category DB
    • Supports the Internet Content Rating Database of the Korea Communications Standards Commission (KCSC) External DB filtering support for malware, phishing, etc.
    • User-defined URL filtering