Dual WAN Security Router

Vigor2920 Series

  • Gigabit 2nd WAN complied with FTTx trend (up to 150 Mbps) escalating business essential data exchange
  • 4-port Gigabit LAN switch facilitating the execution of unified communication applications in business CO/remote site
  • 32 VPN tunnels with up to 40 Mpbs IPSec VPN throughput
  • Object-based firewall preventing external attacks/easing policy settings
  • Dual-WAN with load balance and redundancy
  • Support 3.5G USB modem for initiating business anytime and fail-over backup
  • CSM (Content Security Management) for web content access control
  • Bandwidth management for optimizing corporate bandwidth allocation
  • TR-069 and 2-level management are for Telcos/ISPs
  • Multi-subnets *
  • Smart Monitor Traffic Analyzer (Up to 30 nodes)  *

* Firmware upgradeable

 

High user-friendliness and efficiency

Its well-structured Web User Interface (WUI) offers user-friendly configuration and allows specific setting to satisfy users’ various needs. The WUI also provides IP layer QoS (Quality of Service),
NAT session/bandwidth management to help users control and allocate the bandwidth on networks.
In short, the WUI of Vigor2920 give you a nice and smooth way to operate all enrich features you need.
 
Load-balance and backup
You can combine the bandwidth of the Dual WAN to speed up the transmission through the network. The Gigabit WAN port is ideal for connection to fast Internet feed such as Fiber and VDSL2. The 10/100 Base-TX port can act as back up or primary WAN, which is suitable for sharing bandwidth of xDSL or cable modem. In case of your primary ISP or DSL line suffering temporary outage, WAN-backup offers you redundancy to let the secondary Internet access temporarily route Internet traffic. All traffic will be switched back to your normal communication port as services are resumed.
The Dual WAN features of Vigor2920 ensure your operational efficiency and business network continuity.
 
Enhanced security
The Vigor 2920 offers you robust firewall options with both IP-layer and content-based protection. The DoS/DDoS prevention and URL/Web content filter strengthen the security outside and inside the network. The enterprise-level CSM (Content Security Management) enables users to control and manage IM (Instant Messenger) and P2P (Peer-to-Peer) applications more efficiently.
The CSM hence prevents inappropriate content from distracting employees and impeding productivity. Furthermore, the CSM can keep office networks threat-free and available.
With CSM, you can protect confidential and essential data from modification or theft.
 
Comprehensive VPN
For remote tele-workers and inter-office links, Vigor2920 provides up to 32 simultaneous VPN tunnels (such as IPSec/PPTP/L2TP protocols) for secure data exchange and communication.
With a dedicated VPN co-processor, the hardware encryption of AES/DES/3DES and hardware key hash of SHA-1/MD5 are seamlessly handled, thus maintaining maximum router performance.
The LAN-to-LAN and remote dial-in capabilities are ideal for remote office linking or tele-worker connections to access branch or head office resources to handle upcoming tasks wherever they are.
Vigor2920’s comprehensive VPN functions simply escalate productivity in a secure and convenient approach.
 
Multi-subnets
With the 4-port Gigabit switch on the LAN side provides extremely high speed connectivity for the highest speed local data transfer of any server or local PCs. The tagged VLANs (802.1q) can mark data with a VLAN identifier. This identifier can be carried through an onward Ethernet switch to specific ports. The specific VLAN clients can also pick up this identifier as it is just passed to the LAN. You can set the priorities for LAN-side QoS. You can assign each of VLANs to each of the different IP subnets that the router may also be operating, to provide even more isolation. The said functionality is tag-based Multi-subnet.
 
Multi-task USB functionalities
Through mobility, brought by cellular networks, you can connect 3.5G USB mobile to 2.0 version USB port on Vigor2920. This can be a backup broadband connection if the primary fixed line drops. You can connect USB disk or hard-drive to USB port for memory storage and file sharing. The Vigor2920 provide FTP access file uploading/downloading, which can be used from the local LAN or from anywhere on the Internet. The access can be using "username and password" or 'public'. Each of them can have their own directories and/or file access rights.
 
Working with Smart Monitor Traffic Analyzer
The version 3.3.7 firmware of Vigor2920 supports 30-Node DrayTek Smart Monitor Traffic Analyser which enables you to analyze in great depth your Internet traffic, as a professional aid to improving efficiency and detecting potential problems.
 
 
Features:
 
 
1. Dual-WAN (Ethernet / 3.5G)
  • Outbound Policy-based Load-balance
  • BoD (Bandwidth on Demand)
  • WAN Connection Failover
2. WAN Protocol
  • DHCP Client
  • Static IP
  • PPPoE
  • PPTP
  • BPA
  • L2TP
3. VPN
  • Up to 32 VPN Tunnels
  • Protocol: PPTP, IPSec, L2TP, L2TP over IPSec
  • Encryption: MPPE and Hardware-based AES/DES/3DES
  • Authentication: Hardware-based MD5, SHA-1
  • IKE Authentication: Pre-shared Key and Digital Signature (X.509)
  • LAN-to-LAN, Teleworker-to-LAN
  • DHCP over IPSec
  • NAT-Traversal (NAT-T)
  • Dead Peer Detection (DPD)
  • VPN Pass-through
4. Firewall
  • Multi-NAT, DMZ Host, Port-redirection and Open Port
  • Object-based Firewall
  • MAC Address Filter
  • SPI (Stateful Packet Inspection) (Flow Track)
  • DoS / DDoS Prevention
  • IP Address Anti-spoofing
  • E-mail Alert and Logging via Syslog
  • Bind IP to MAC Address
  • Time Schedule Control
5. USB
  • 3.5G USB Modem as 2ndWAN
  • Printer Sharing
  • File System : *
    • Support FAT32 / FAT16 File System *
    • Support FTP Function for File Sharing *
    • Support Samba for Windows File Sharing *
6. Bandwidth Management
  • QoS :
    • Class-based Bandwidth Guarantee by User-defined Traffic Categories
    • DiffServ Code Point Classifying
    • 4-level Priority for Each Direction (Inbound/Outbound)
    • Bandwidth Borrowed
  • Bandwidth / Session Limitation
  • Layer-2 (802.1p) and Layer-3 (TOS / DSCP) QoS Mapping *
7. Network Management
  • Web-Based User Interface (HTTP/HTTPS)
  • Quick Start Wizard
  • CLI (Command Line Interface, Telnet/SSH)
  • Administration Access Control
  • Configuration Backup/Restore
  • Built-in Diagnostic Function
  • Firmware Upgrade via TFTP/FTP/HTTP/TR-069
  • Logging via Syslog
  • SNMP Management with MIB-II
  • Management Session Time Out
  • 2-level management (Admin/User Mode)
  • TR-069 Management
  • TR-104 Management
8. Content Security Management
  • IM/P2P Applications Blocking
  • URL Keyword Filter (Whitelist and Blacklist)
  • GlobalView Web Content Filter (Powered by *
9. Network Features
  • DHCP Client/Relay/Server
  • IGMP Proxy
  • Dynamic DNS
  • NTP Client
  • Call Scheduling
  • RADIUS Client
  • DNS Cache/Proxy
  • UPnP 30 Sessions
  • Port-Based VLAN
  • Packet Forwarding Acceleration
  • Routing Protocol:
    • Static Routing
    • RIP V2
  • Multi Subnets  *  

10. Support

  • Smart Monitor (Free & Optional Utility ) *  : Network service analyze, User Management, System Management, System Management, Top10 ranking system, Up to 30 PC Users
  • Firmware Upgrade : Free Firmware upgrade form Internet

11. Declaration of Conformity


* Firmware upgradeable