Keiro NG500


Unified Threat Management and Firewall for small and medium-sized businesses

  • Next-generation firewall, router and leading-edge IPS
  • Lock Advanced gateway antivirus and malware protection
  • Funnel Industry leading web, content and application filtering

Licenses are renewed yearly, each user license costs €27

Want a discount? Become a member!


NG500 - Unlimited License

Product total

Options total

Grand total

Detect threats, block viruses, and filter traffic with the firewall built for SMB

Next-generation firewall

Preserve the integrity of your servers with deep packet inspection and advanced network routing capabilities — including simultaneous IPv4 and IPv6 support. Create inbound and outbound traffic policies, restricting communication by specific URL, application, traffic type, content category and time of day.

Kerio Control’s IPS adds a transparent layer of network protection, with Snort-based behavior analysis, and a regularly updated database of rules and blacklisted IP addresses from Emerging Threats.

Advanced gateway antivirus

Keep viruses, worms, trojans and spyware from infesting your network with integrated Kerio Antivirus.

The optional antivirus service scans all web and FTP traffic, email attachments and downloads, automatically updating itself with the latest virus definitions.

Web, content and application filtering

The Kerio Control Web Filter with application awareness limits legal liability, protects your network and boosts user productivity by limiting user access to dangerous or inappropriate sites or those that just plain waste time.


High availability

High availability/fail-over protection eliminates the risk and cost of connectivity or threat-protection downtime.

Without high-availability, prime device failure due to a power surge or other cause often leads network administrators to put a simple router in place to re-establish connectivity. There may be lost productivity waiting for this solution. But worse, the network is vulnerable to security threats until the secure gateway is repaired or replaced.

With high-availability, if a crash or failure occurs the second machine jumps into action immediately. Users see no drop of service. The organization has no vulnerability exposure.

To initiate high-availability, new and existing customers:

  • Acquire and install a second, same Kerio Control appliance or virtual machine
  • A single software license will cover the two pieces of hardware
  • Customers configure the second device as a clone of the active one
  • Configuration settings are easy-to-do and take minutes
  • Once configured, the two devices connect through a synching port and all rules and routing are replicated and kept up-to-date between them.

Software. Virtual. Hardware. Your Choice.

Kerio Control offers the broadest range of deployment options on the market — and it integrates hassle-free into your existing IT environment.

You can deploy Kerio Control as:

  • A software appliance on your own hardware
  • A virtual appliance in an existing VMware environment
  • A turnkey hardware appliance

Kerio Control software appliance

We’ve packaged Kerio control software — and a hardened OS — into a single bare-metal ISO image. The advantages? Custom spec your own hardware based on performance needs. And avoid conflicting applications and vulnerable system services.

Add more protection and control with Kerio Antivirus and Kerio Control Web Filter.

Kerio Control virtual appliance

Drop this virtual machine pre-configured with Kerio Control software and a hardened OS into your VMware or Hyper-V environment. Add state-of-the art security to your existing network without requiring new hardware. Consolidate multiple single-purpose servers and applications in a single box. Integrate resources and network adapters into your virtual machine as you need them.

Add more protection and control with Kerio Antivirus and Kerio Control Web Filter.

Kerio Control hardware appliance

Ensure the performance of Kerio Control software with a Kerio Control hardware appliance. These performance-optimized boxes enable you to leverage all Kerio Control product features in a stable, solid-state package, pre-configured with Kerio Control, and a hardened OS. The NG100W and NG300W models also include integrated WiFi. All Kerio Control hardware appliances include the added protection and control provided by Kerio Antivirus and Kerio Control Web Filter.

NG100W - Front

NG300W - Front

NG500 - Front

Kerio Control is an all-in-one Unified Threat Management (UTM) solution providing comprehensive next-generation firewall protection of your network and data. Kerio Control includes a next-generation firewall and router, Intrusion Detection and Prevention (IPS), gateway anti-virus, VPN, and web content and application filtering.

Firewall features

  • ICSA Labs certified corporate firewall
  • Deep Packet Inspection (DPI)
  • Stateful Packet Inspection (SPI)
  • Intrusion Detection and Prevention System (IDPS)
  • Application awareness
  • DHCP server
  • DNS forwarding
  • NAT mapping (inbound/outbound)
  • MAC filtering
  • GeoIP filtering
  • Zero-configuration networking
  • Service Discovery forwarding
  • Anti-Spoofing
  • Guest network with captive portal
  • 802.1Q VLAN support
  • Traffic rules configuration wizard
  • Time based rules
  • Connection limits (DoS protection)
  • Dynamic DNS
  • Customizable routing table
  • Reverse proxy
  • Simultaneous IPv4 and IPv6 support
  • IPv6 network prefix translation
  • IPv6 router advertisements
  • Multiple IP addresses on a single network interface (multihoming)

Secure your client-to-site connections with Kerio’s high-performance, configuration-free VPN client—or use an industry-standard IPsec VPN client, such as those pre-loaded on mobile devices.

To create secure, high-performance server-to-server connections between offices running Kerio Control, use Kerio’s superior, easy-to-setup VPN technology. Or, to create a secure VPN connection to a remote office without Kerio Control deployed, use the industry-standard IPsec VPN protocol.

Enable 2-step verification for an extra layer of security on all forms of remote access.

VPN features

  • VPN client for Windows, Mac & Linux
  • Split tunneling
  • Multiple client-to-site and site-to-site tunnels
  • IPsec client-to-site/site-to-site
  • L2TP/IPsec for mobile devices
  • Persistent connection
  • SSL encryption
  • VPN tunnel failover
  • NAT support
  • Automatic or custom routing
  • User authentication via directory services

Get detailed usage reporting with Kerio Control Statistics. This component lets managers and admins view the Internet and application activities of individual users — from a list of all sites visited, to the specific search terms users enter on search engines and websites.

Use granular usage insights to refine traffic-shaping rules, monitor employee performance, and more. Best of all, these highly granular reports can automatically run on a schedule and be emailed to you, ready for your review — no need to actively pull reports each week.

Reporting features

  • Reporting via Kerio Control Statistics
  • Automated email reports
  • AndroidApple Watch and iOS app (notifications and monitoring)
  • Detailed usage reports (web sites, protocols, bandwidth, etc.)
  • Traffic categorization (multimedia, messaging, large file transfers, etc.)
  • Top visited websites & top users per web category
  • Filter reports by individual user, group, or entire network
  • Reporting of Google search keywords
  • Real-time host activity monitoring
  • Traffic charts of users and interfaces
  • System Health Monitor
  • SNMP monitoring
  • Email alerts for firewall events
  • External logging to syslog

Easily prioritize and monitor network traffic to guarantee high-speed transmission for the most important traffic types. Internet Link Load Balancing optimizes Internet access by distributing traffic across multiple links. Kerio Control monitors link availability, and automatically disables or re-enables links to ensure continuous Internet access.

Kerio Control QoS gives you fine-grained control over how much bandwidth each type of network traffic can consume. Cap lower priority traffic by setting a bandwidth maximum, or guarantee high priority traffic by assigning a minimum. Kerio Control also uses Internet Link Load Balancing to distribute Internet traffic across multiple links.

Load balancing and QoS features

  • Internet link-load balancing
  • Policy-based routing
  • Automatic connection failover
  • Reserve bandwidth for high priority traffic
  • Restrict bandwidth for low priority traffic
  • User data transfer quotas
  • Bandwidth rules based on time intervals, traffic and content rules, traffic type, users, service, DSCP, etc.
SKU: KNG5001 Categories: , Tags: , ,
Weight 1.2 kg
Dimensions 43.1 × 30.5 × 4.4 cm

Software Appliance

  • CPU: 500 MHz
  • Memory: 2 GB RAM
  • Hard drive: 8 GB HDD space for OS, product, logs and statistics data
  • Network interface: 2 Ethernet (10/100/1000 Mbit)
  • HW: Kerio Control is based on Linux kernel version 3.16. Hardware supported by this kernel is required. For list of supported hardware see e.g. kmuto.jp


VMware Virtual Appliance

  • VMware Workstation/Player 11.0 or 12.0
  • VMware Fusion 7.0 or 8.0
  • VMware ESXi / vSphere Hypervisor 5.5 or 6.0


  • CPU: 2 GHz
  • Memory: 2 GB RAM assigned to the virtual machine
  • Hard drive: 8 GB assigned HDD space for OS, product, logs and statistics data
  • Network interface: 2 assigned virtual network adapters


Hyper-V Virtual Appliance

  • Windows Server 2016
  • Windows Server 2012 R2
  • Windows Server 2012
  • Windows Server 2008 R2


  • CPU: 2 GHz
  • Memory: 2 GB RAM assigned to the virtual machine
  • Hard drive: 8 GB assigned HDD space for OS, product, logs and statistics data
  • Network interface: 2 assigned virtual network adapters

Based on 0 reviews

0.0 overall

Only logged in customers who have purchased this product may leave a review.

There are no reviews yet.