Datasheet | Z1
Cisco Meraki Z1
Teleworker Gateway
Cloud-managed teleworker gateway with built-in wireless
The Cisco Meraki Z1 is an enterprise class firewall / VPN gateway Z1 and Cisco Meraki Cloud Management: A Powerful Combo
with five Gigabit Ethernet ports and a dual-radio 802.11n wireless. The Z1 is managed via the Meraki cloud, with an intuitive browser-
The Z1 extends the power of the Meraki cloud managed networking based interface. Since the Z1 is self-configuring and managed over
to employees, IT staff, and executives working from home. the web, you can deploy the Z1 at remote locations without any
assistance from end-users.
Using the patent-pending Meraki Auto VPN, administrators can
deploy network services including VoIP and remote desktop The Z1 is monitored 24x7 and delivers real-time alerts if your
(RDP) to remote employees with a single-click, provide wired and network encounters problems. Remote diagnostics tools enable real-
wireless access, and increase end-user productivity through Layer 7 time troubleshooting through any web browser. New features, bug
traffic shaping. fixes, and enhancements are delivered seamlessly over the web, so
you never have to manually download software updates or worry
The Z1 features a fully-fledged stateful firewall, support for multiple about missing security patches.
VLANs, inter-VLAN routing, and isolation to segregate corporate
data from recreational traffic. In addition, the Z1 is packed with
advanced 802.11n technologies including MIMO, beam forming, and
channel bonding to provide reliable and high speed network access
for most demanding business applications.
Product Highlights
• 4 GbE ports for printers, phones and • Layer 3 firewall to separate corporate • Self-configuring, plug-and-play
other wired devices data from personal traffic deployment
• Patent-pending Auto VPN for site-to-site • Dual-concurrent 802.11n radios, up to • Ideal for telecommuters using VoIP and
VPN connectivity 600 Mbps data rate remote desktop (RDP)
• Layer 7 application traffic shaping and • Up to 4 SSIDs with integrated enterprise • Sleek, low profile design
prioritization security and personal / guest access
• USB port for 3G/4G connectivity
Features
Self-configuring, self-optimizing, self-healing
When plugged in, the Z1 automatically connects to the Meraki cloud,
downloads its configuration, and joins your network. In case of WAN
IP address changes, the Z1 self heals by re-establishing the site-
to-site VPN tunnels using the new IP address. Also, if a supported
3G/4G modem is connected to the Z1 and primary WAN uplink
connectivity fails, the Z1 will automatically failover to cellular.
Industry-leading cloud management
Meraki’s award-winning cloud management architecture unifies WAN,
LAN, and wireless management under a web based dashboard, and
AUTO CONFIGURING SITE-TO-SITE VPN scales easily from small deployments to large, multi-site deployments
with tens of thousands of devices. The Meraki dashboard provides
intuitive yet powerful role-based administration, firmware updates,
Auto VPN
configuration changes, email alerts, and easy to audit change logs.
Leveraging Meraki’s cloud architecture, VPN tunnels to HQ or the
data center can be enabled via a single click without any command-
line configurations or multi-step key permission setups. Meraki’s
patent-pending Auto VPN technology automatically tunnels, hole
punches, sets up route tables, and establishes the IPsec connections,
completely eliminating the complexity seen in traditional site-to-site
VPN solutions.
Dual 802.11n radios, up to 600 Mbps data rate
The Z1 features two powerful radios and advanced RF design.
Combined with 802.11n technologies including 2x2 MIMO-enhanced
receive sensitivity and transmit beamforming, the Z1 delivers up to
600 Mbps data rate. The Z1 is purpose-built for accessing rich, cloud-
based business applications while providing plenty of bandwidth for
recreational traffic.
Application-aware traffic shaping MULTI-SITE MANAGEMENT VIA THE MERAKI CLOUD
The Z1 includes an integrated layer 7 packet inspection, classification,
and control engine, enabling you to set QoS policies based on traffic
type. Prioritize your mission critical applications like VoIP or remote
desktop, while setting limits on recreational traffic, e.g., peer-to-peer
and video streaming.
APPLICATION VISIBILITY AND CONTROL
2 Cisco Systems, Inc. | 500 Terry A. Francois Blvd, San Francisco, CA 94158 | (415) 432-1000 | sales@meraki.com
Specifications
Performance Remote Diagnostics
Firewall: 50 Mbps Live remote packet capture
VPN: 10 Mbps Real-time diagnostic and troubleshooting tools
Recommended for 5 users or fewer Aggregated event logs with instant search
Interfaces Management
WAN interface: 1x GbE Managed via the web using the Meraki Cloud Controller
LAN interfaces: 4x GbE Single pane of glass management of wired and wireless networks
1x USB 2.0 port for 3G / 4G connectivity Zero-touch remote deployment (no staging needed)
Automatic firmware upgrades and security patches
Network and Security Services Centralized policy management
Stateful firewall, 1:1 NAT, DMZ Org-level two-factor authentication and single sign-on
Auto (site-to-site IPsec) VPN
Role based administration with change logging and alerts
Client VPN (IPsec L2TP), limit 2 authorized users (with Meraki-hosted authentication only)
Automatic Layer 3 failover (including VPN connections)
Physical and Environmental Specifications
Application level (Layer 7) traffic analysis and shaping
Dimensions: 6.46” x 4.55” x 1.14” (164 mm x 116 mm x 29 mm)
Multiple WAN IP, PPPoE, NAT
Weight: 0.9 lbs (0.408 kg)
VLAN support and DHCP services
Power: 12 V / 1.5 Amp power supply (included)
Static routing
Operating temperature: 32°F to 104°F (0°C to 40°C)
User and device quarantine
Humidity: 5 to 95% non-condensing
Desktop or wall mount (all standard mounting hardware included)
Integrated Wireless
Kensington lock hard point
4 SSIDs
2x 802.11a/b/g/n (2.4Ghz or 5 Ghz)
Regulatory
Max data rate 600 Mbit/s
FCC (US)
2x2 MIMO with 2 spatial streams, beamforming
CB (IEC)
4x internal dipole antennas (gain: 3 dBi @ 2.4 GHz, 4 dBi @ 5 GHz)
CISPR (Australia/New Zealand)
WPA2-PSK authentication
Regulatory: FCC (US), IC (Canada), CE (Europe), C-Tick (Australia/New Zealand), RoHS
Warranty
Full lifetime hardware warranty with next-day advanced replacement included.
Monitoring and Reporting
Throughput, connectivity monitoring and email alerts
Ordering Information
Detailed historical per-port and per-client usage statistics
Z1-HW-US Meraki Z1 Cloud Managed Teleworker Gateway (US Plug)
Application usage statistics
Z1-HW-UK Meraki Z1 Cloud Managed Teleworker Gateway (UK Plug)
Org-level change logs for compliance and change management
Z1-HW-EU Meraki Z1 Cloud Managed Teleworker Gateway (EU Plug)
VPN tunnel and latency monitoring
Z1-HW-AU Meraki Z1 Cloud Managed Teleworker Gateway (AU Plug)
Network asset discovery and user identification
LIC-Z1-ENT-1YR Meraki Z1 Enterprise License and Support, 1 Year
Periodic emails with key utilization metrics
LIC-Z1-ENT-3YR Meraki Z1 Enterprise License and Support, 3 Years
Syslog integration
LIC-Z1-ENT-5YR Meraki Z1 Enterprise License and Support, 5 Years
LIC-Z1-ENT-7YR Meraki Z1 Enterprise License and Support, 7 Years
LIC-Z1-ENT-10YR Meraki Z1 Enterprise License and Support, 10 Years
3 Cisco Systems, Inc. | 500 Terry A. Francois Blvd, San Francisco, CA 94158 | (415) 432-1000 | sales@meraki.com