DrayTek Dual WAN Security Firewall

Vigor2830 series

  • ADSL2/2+ IAD with comprehensive Firewall & VPN
  • Built-in Giga LAN switch
  • 802.11n WLAN with selectable 2.4/5 GHz frequency (n-plus & Vn-plus model)
  • WAN 2 (Giga Ethernet) for high speed broadband connectivity
  • USB port for network FTP, printer and 3.5G/4G* mobile broadband connectivity
  • Load-balancing for DSL, Giga WAN and 3.5G/4G* mobile connectivity
  • Smart Monitor Traffic Analyzer (Up to 30 nodes) *
* Firmware Upgradeable from version 3.3.7

 

Vigor2830 Dual-WAN ADSL2/2+ Security Firewall series including Vigor2830, Vigor2830n, Vigor2830Vn, Vigor2830n-plus and Vigor2830Vn-plus embedded with 1-port ADSL2/2+ WAN, 1-port Giga Ethernet WAN and 1 USB port for 3.5G USB modem provide flexible and future proof connection choices for current and next generation network (NGN) infrastructure. 4-port Gigabit LAN switch facilitates unified communication applications in business CO / remote site to handle large data from subscribed fatter pipe. The state-of-art routing feature, VPN, security, Dual WAN provides integrated benefits for professional users and small offices.

Flexible WAN interface for load balancing, backup and bandwidth management
In addition to the ADSL interface, Vigor2830 series have additional Giga Ethernet WAN interface to connect to a second ADSL modem from another ISP or cable/VDSL2/Ethernet FTTx modem. Plus, users can let the USB port as the 3rd WAN interface via 3.5G mobile broadband. In the connection uptime, these three WAN interfaces can do load-balancing to facilitate bandwidth usage. Moreover, they can do failover backup during downtime. If users have different ISPs to provide internet connection to each WAN interface, they can be complete worry-free even one or two ISPs’ service are temporary outage. Besides, its 4-port Gigabit LAN switch can smooth large data transmission of bandwidth consumed applications for today business needs.
 
Vigor2830 series embedded with tag-based multi-subnet function can satisfy the security needs of distinguishing extranet and corporate intranet by Routine/NAT mode or multiple workgroups by different subnets. Besides, it can configure different subnets to each application, such as VoIP and IPTV to prevent interference.
 
USB port for 3.5G, FTP and printer server
Not only for 3.5G/4G mobile broadband, USB port also supports printer servers and allows the connection of a USB disk or hard drive for FTP file transfer through the Internet or local networks. The network administrator can set username/password and directory/file access privilege for individual users.
 
Secured networking
By adopting hardware-based VPN platform and hardware encryption of AES/DES/3DS, the router increases the performance of VPN greatly, and offers several protocols (such as IPSec/PPTP/L2TP) with up to 32 VPN tunnels. The object-based design used in SPI (Stateful Packet Inspection) firewall allows users to set firewall policy with ease. Object-based firewall is flexible and allows your network be safe. DoS/DDoS prevention and URL/Web content filter strengthen the security outside and control inside. The enterprise-level CSM (Content Security Management) enables users to control and manage IM(Instant Messenger) and P2P (Peer-to-Peer) applications more efficiently. The CSM hence prevents inappropriate content from distracting employees and impeding productivity. Furthermore, the CSM can keep office networks threat-free and available.
 
Vigor2830 series support DrayTek’s SmartMonitor network activity management application (up to 30 users), which captures actual live data of activities in your managed network, such as the content of MSN entering to or out of your network. You can track specified files download/upload or view statistics on data type activities to realize what corporate related information have been released accidentally or on purpose.

Easy-to-manage and configurable WLAN
Besides the encryption methods of WEP/WPA/WPA2 and MAC address control, it also offers wireless LAN isolation, Wireless VLAN and 802.1X authentication. WDS (Wireless Distribution System) can help users extend wireless coverage easily. Moreover, the wireless rate control can adjust the connection rate of each wireless station. The WMM (Wi-Fi multimedia) keeps the priority of voice, video and audio applications in a Wi-Fi network and lowers priority of other network traffic, which is not time-critical such as large file downloading.
 
Selectable 5G/2.4GHz configuration of Vigor2830n-plus and Vigor2830Vn-plus provides extra choice for SMB to build the WLAN network. In addition to the common 2.4GHz frequency, SMB can configure WLAN network on less congested 5GHz spectrum.
 
Features:
 
1. WAN Protocol
  • ADSL2+ (WAN-1) :
    • DHCP Client
    • Static IP
    • PPPoE / PPPoA
    • BPA
  • Giga Ethernet (WAN-2) :
    • DHCP Client
    • Static IP
    • PPPoE
    • PPTP
    • L2TP
    • BPA
  • USB (WAN-3) :
    • PPP
2. Multi-WAN
  • Outbound Policy-based Load-balance
  • BoD (Bandwidth On Demand)
  • WAN Connection Fail-over
3. Wireless Access Point (n model)
  • Support Dual Band 2.4/5G Configurable (Configurable/Not Simultaneous)
  • IEEE802.11n Compliant
  • Wireless Client List
  • Wireless LAN Isolation
  • 64 / 128 bit WEP
  • WPA / WPA2
  • Hidden SSID
  • WPS
  • Mac Address Access Control
  • Access Point Discovery
  • WDS (Wireless Distribution System)
  • Multiple SSID
  • Wireless Rate-control
  • IEEE802.11e: WMM (Wi-Fi Multimedia)
  • SSID VLAN Grouping with LAN Port
4. VPN
  • Up to 32 VPN Tunnels
  • Protocol : PPTP, IPSec, L2TP, L2TP over IPSec
  • Encryption : MPPE and Hardware-based AES/DES/3DES
  • Authentication : MD5, SHA-1
  • IKE Authentication : Pre-shared Key and Digital Signature (X.509)
  • LAN-to-LAN , Teleworker-to-LAN
  • DHCP over IPSec
  • IPSec NAT-traversal (NAT-T)
  • Dead Peer Detection (DPD)
  • VPN Pass-through
  • VPN Wizard
  • mOTP
5. Firewall
  • Multi-NAT / DMZ Host / Port-redirection / Open Port
  • Object-based Firewall
  • MAC Address Filter
  • SPI (Stateful Packet Inspection) (Flow Track)
  • DoS / DDoS Prevention
  • IP address Anti-spoofing
  • E-Mail Alert and Logging via Syslog
  • Bind IP to MAC Address
  • Time Schedule Control
  • Firewall v3
6. Bandwidth Management
  • QoS :
    • Guarantee Bandwidth for VoIP
    • Class-based Bandwidth Guarantee by User-Defined Traffic Categories
    • DiffServ Code Point Classifying
    • 4-level Priority for Each Direction (Inbound / Outbound)
    • Bandwidth Borrowed
  • Bandwidth / Session limitation
  • Layer-2 (802.1p) and Layer-3 (TOS/DSCP) QoS Mapping
7. CSM (Content Security Management) 
  • IM/P2P Application V3 (App Enforcement)
  • GlobalView Web Content Filter (Powered by )
  • User Management
  • URL Content Filter :
    • URL Keyword Blocking (Whitelist and Blacklist)
    • Java Applet, Cookies, Active X, Compressed,  Executable, Multimedia File Blocking
    • Excepting Subnets
    • Time Schedule Control
8. Network Feature
  • Packet Forwarding Acceleration
  • DHCP Client / Relay / Server
  • IGMP Version 2 and Version 3 
  • Dynamic DNS
  • NTP Client
  • Call Scheduling
  • RADIUS Client
  • DNS Cache/Proxy
  • UPnP 30 sessions
  • Multiple Subnets
  • VLAN Tagging (802.1q) on LAN  
  • Routing Protocol :
    • Static Routing
    • RIP V2
9. USB
  • 3.5G/4G * as WAN-3
  • Printer Sharing
  • File System :
    • Support FAT32/FAT16 File System
    • Support FTP Function for File Sharing
10. Network Management
  • Web-based User Interface (HTTP / HTTPS)
  • Quick Start Wizard
  • CLI (Command Line Interface , Telnet / SSH)
  • Administration Access Control
  • Configuration Backup / Restore
  • Built-in Diagnostic Function
  • Firmware Upgrade via TFTP / FTP / HTTP / TR-069
  • Logging via Syslog
  • SNMP Management MIB-II
  • Management Session Time Out
  • 2-level Management (Admin/User Mode)
  • TR-069
  • TR-104
11. Switch 
  • Port-based VLAN
  • Triple-Play Application
  • IGMP Snooping
  • Tag-based (802.1q) VLAN
  • Layer-2 (802.1p) QoS


* Firmware Upgradeable