Vigor2926ac

Security firewall router

    • Dual Gigabit Ethernet WAN port for failover and load-balancing
    • 2 USB 2.0 ports for 3G/LTE mobile, FTP server and network printers
    • 4 x Gigabit LAN ports with multiple subnets
    • Support High Availiability (HA), Load Balancing and Failover
    • Integrated with IEEE 802.11ac WAVE 2 (up to 1.7Gbps)(Vigor2926ac, Vigor2926Vac only)
    • Support of Wifi Bandwidth Bandwidth Steering
    • Object-based SPI Firewall and CSM (Content Security Management) for network security
    • VLAN for secure and efficient workgroup management
    • Support central AP / VPN / Switch Management
    • 50 VPN tunnels with comprehensive secure protocols
    • VPN load-balancing and backup for site-to-site applications
    • Flexible Network Management
    • Supports Smart Monitor Traffic Analyzer (50-nodes)
Vigor2926 Series is a Dual WANs broadband security firewall router.

Vigor2926 Series provides reliable broadband connectivity with the multi-WAN accesses. The two Gigabit Ethernet WAN ports can be operated in failover or load balancing mode to ensure a steady Internet connection. The two USB ports can work with 3G/4G/LTE USB modem to add additional wireless Internet access.

Vigor2926 Series also covers comprehensive functions, including VLAN, Bandwidth Management, Quality of Service, DNS Control, SPI Firewall, Web Content Filtering, and Central Management solutions to provide a reliable and secure business network.

WAN Load Balancing and Failover 

Vigor2926 Series has two Gigabit Ethernet WAN ports that can be used for any types of connection, 3G/4G/LTE USB modem can also be attached to the USB ports of the router, and offer wireless Internet connectivity in case the fixed lines are not available. All of the WAN interfaces can be configured to be operated in either Load Balancing mode, which will be active all the time, or in Failover mode, which will be active only when detecting connection loss or heavy load on the primary connection.

On Vigor2926 Series, Load Balancing can be either IP-based mode, which will distribute the packets destined to different IP address across different WANs, or Session-based mode, which allows the packets of different sessions to take different paths, which means a multiple-session connection can be established across multiple WANs, and use multiple WAN's bandwidth at the same time. Policy-based Load Balancing is also supported so that you may specify the path for some certain packets.

To increase network accessibility, Vigor2926 Series also supports High Availability feature and allows one or more redundant Vigor2926 Series to be added to the network and operated in standby mode.

Flexible LAN Management 

The 4-port Gigabit Ethernet switch on the LAN side provides high-speed connectivity for the servers and PCs on the local network, and the Virtual LAN (VLAN) feature allows you to separate the LAN clients into different logical domains thus to increase the security and network efficiency. Vigor2926 Series support 802.1Q standard and can build a Tag-based VLAN system with an 802.1Q-support switch, Port-based VLAN is also supported that each LAN port can be configured as a member of different VLAN and be isolated from each other without the use of VLAN tag.

Firewall and Security 

Vigor2926 Series supports Stateful Packet Inspection (SPI) Firewall and flexible filtering rules, it can accept or deny packets based on the information in the packet header (such as source IP, destination IP, protocol, and port number) or the packet's application. IP-based restrictions can be set to filter certain HTTP traffic as well as various application software and help you to prevent time and network resource wasting on inappropriate network activities.

With an annual subscription to Cyren Web Content Filtering service, you may also filter the websites by their categories, and set up restrictions to block the whole categories of websites (such as Social Networking, Gambling.. etc.) without the need to specify every site you would like to block. The Cyren service is constantly updating the categorization, and a free 30-day trial is included in each new router.

The Vigor2926 Series firewall also includes DoS (Denial of Service) Defense to protect the network against variants of attacks.

Comprehensive VPN 

Vigor2926 Series supports both LAN-to-LAN VPN and Remote Dial-in VPN, up to 50 VPN tunnels can be set up simultaneously. All the industry standard tunneling protocols are supported, including PPTP, L2TP, IPsec, and GRE, and it's compatible with 3rd party VPN devices.

Vigor2926 Series also support SSL VPN - a type of VPN based on the very common encryption method which is used by all the HTTPS websites. While the traditional VPN protocols might be filtered by the firewall and NAT of public networks, SSL VPN will be passed as long as the HTTPS is allowed. DrayTek also offers free official client App for Windows, iOS, and Android.

VPN Trunking is also supported by Vigor2926 Series, this allows you to establish two VPN tunnels to the same remote site but through different WAN interfaces. The two trunking tunnels can be set up in load balancing or failover mode.

Centralised Management 

Vigor2926 Series can be the central management portal for all the Vigor devices on the same network, including VigorAPs and VigorSwitches, which allows the administrator to manage all the devices through a single portal. Vigor2926 Series also embeds CVM (Central VPN Management), an easier way for Network administrator to establish and manage VPN connections between several CPEs (VPN Client). The router itself supports TR-069 protocol and can be remotely managed and monitored through the TR-069-based VigorACS system, thus to reduce the need for on-site technicians.

WAN Protocol

  • Ethernet WAN
    • DHCP Client
    • Static IP
    • PPPoE
    • PPTP / L2TP (WAN-2 only)
    • 802.1q Multi-VLAN Tagging
  • IPv6 Connection Type
    • Dual Stack: PPP, DHCPv6 Client, Static IPv6
    • Tunnel Mode: TSPC, AICCU, 6rd, 6in4 Static Tunnel
  • USB WAN
    • PPP(3G) / CDC driver(3G) / support IPv6 protocol :TSPC/AICCU
 

Dual WAN

  • Load-Balance / Route Policy
  • Outbound policy-based load-balance
  • WAN Connection Failover
  • Multiple-VLAN
 

Firewall

  • DMZ Host:Port-redirection, Open Port, Port Triggering
  • User-based / Rule-based Firewall
  • Object-based Firewall:SPI (Stateful Packet Inspection) (Flow Track)
  • DoS Prevention
  • Time Schedule Control
  • DNS Filter Enhancement
  • User Management
  • Firewall Wizard Mode and Advanced Mode
 

VPN

  • Up to 50 VPN Tunnels (including 25 SSL VPN tunnels)
  • VPN Wizard
  • VPN Trunk with Backup / Load Balance
  • Protocol : PPTP, IPsec, L2TP, L2TP over IPsec, GRE over IPSec
  • Encryption : MPPE and hardware-based AES/DES/3DES
  • Authentication : MD5, SHA-1
  • IKE Authentication : Pre-shared Key and Digital Signature (X.509)
  • LAN-to-LAN, Teleworker-to-LAN (remote user dial-in)
  • DHCP over IPsec
  • IPsec NAT-traversal (NAT-T)
  • Dead Peer Detection (DPD)
  • VPN Pass-through
  • mOTP
 

Bandwidth Management

  • QoS
    • Guarantee bandwidth for VoIP
    • Class-based bandwidth guarantee by user-defined traffic categories
    • DiffServ Code Point classifying
    • 4-level priority for each direction (Inbound/Outbound)
    • Bandwidth borrowed
  • Bndwidth/Session limitation
    • Smart Bandwidth Limit
    • config by ip range
    • Layer-3 (TOS/DSCP) QoS
  • Layer-2 (802.1p) QoS
  • WAN budget
 

Network Feature

  • Hotspot Web Portal
  • Packet Forwarding Acceleration
  • DHCP client/relay/server
  • DHCP Option: 1,3,6,51,53,54,58,59,60,61,66,125
  • IGMP v2/v3
  • LAN DNS /DNS Forwarding
  • Dynamic DNS
  • NTP Client
  • Call Scheduling
  • RADIUS /TACACS+ Client
  • Internal RADIUS Server
  • Active Directory /LDAP compatible (client)
  • DNS Cache/Proxy and LAN DNS
  • UPnP 50 sessions
  • Wake on LAN
  • Bonjour service
  • Routing Protocol:
    • Static Routing
    • RIP v1/v2
    • BGP
  • Triple-Play Application
    • IGMP snooping/proxy
  • 6 x Multiple Subnet LAN
  • Support Smart Monitor (Up to 30 PCs)
 

Central Device Management

  • AP Management
  • VPN Management
  • Switch Management
  • External Devices
 

CSM (Content Security Management)

  • APP Enforcement
    • Support APPE Signature Upgrade by license
  • URL Content Filter
    • Access Control : URL Keyword Blocking (White/Black List)
    • Web Feature : Java Applet, Cookies, Active X, Compressed, Executable, Multimedia File Blocking
  • Web Content Filter (support Cyren and BPjM)
  • DNS Filter
 

USB

  • Printer Sharing
  • File System
    • Support FAT32 File System
    • Support FTP Function for File Sharing
  • 3.5G (HSDPA) and 4G (LTE) as WAN3/WAN4 by using USB dongle (can support Dual USB WAN)
  • USB Device Status (disk/modem/printer/sensor)
  • Support USB Temperature Sensor
  • Support file sharing (DrayTek’s own SMB protocol stack)

Network Management

  • Web-based User Interface (HTTP/HTTPS)
  • CLI (Command Line Interface, Telnet/SSH)
  • Administration Access Control
  • Configuration Backup/Restore
  • Built-in Diagnostic Function
  • Firmware Upgrade via TFTP/HTTP/TR-069
  • Logging via Syslog
  • SNMP v2/v3
  • Support SMS/E-mail Alert
  • Management Session Time Out
  • Two-level Management (Admin/User Mode)
  • External device detection (master mode)
  • TR-069/TR-104
  • Support Multiple-Firmware Upgrade Utility (MFUU)
  • Dashboard
 

Wireless AP (n/ac/Vac model)

  • 2.4GHz (n model)
  • 2.4 + 5GHz (ac/Vac model)
  • Wireless Client List
  • Wireless LAN Isolation
  • 64/128-bit WEP
  • WPA/WPA2
  • Hidden SSID
  • WPS
  • MAC Address Access Control
  • Access Point Discovery
  • WDS (Wireless Distribution System)
  • 802.1x Authentication
  • Multiple SSID
  • Wireless Rate-control
  • WMM
  • SSID VLAN Grouping with LAN Port (Port-based VLAN)
 

VoIP (Vac model)

  • Protocol: SIP, RTP/RTCP
  • 12 SIP Registrars
  • Automatic Gain control
  • Jitter buffer (180ms)
  • Jitter Buffer
  • Voice codec:G.711 A/u law, G.723.1, G.726, G.729 A/B, VAD/CNG
  • Tone generation and detection:DTMF, dial, busy, ring back, call progress
  • DTMF Tone:Inband, Out band (RFC-2833), SIP Info
  • FAX/Modem Support:Tone detection, G.711 Pass-through, T.38 for FAX
  • Supplemental Services
    • Call Hold/Retrieve/Waiting
    • Call Waiting with Caller ID
    • Call Transfer
    • Call Forwarding (Always, Busy, No Answer, Busy or No Answer)
    • Call Barring (Incoming/Outgoing)
    • DND (Do Not Disturb)
    • MWI (Message Waiting Indicator) (RFC-3842)
    • Hotline
    • ZRTP
  • PSTN Loop-through When Power Failure
  • Dial Plan :
    • Phone Book
    • Digit Map
    • Call Barring
    • Regional
Multi-site Business Deployment


 
Comprehensive Firewall


 
802.11ac Wave 2 (ac/Vac model)


 
Central Management


 
Support Smart Monitor up to 30 PC Users


 
Flexible Installation with Rackmount

Specification

Hardware Interface
  • 2 x 10/100/1000Base-TX, RJ-45 (WAN1/WAN2)
  • 4 x 10/100/1000Base-TX LAN, RJ-45 (Configurable Physical DMZ on Port4)
  • 2 x Detachable Antennas (n model)
  • 4 x Detachable Antennas (ac,Vac Model)
  • 2 x USB Host 2.0
  • 1 x Factory Reset Button
  • 1 x Wireless On/Off/ WPS Button (n/ac/Vac model)
  • 2 x FXS and 1 x Life Line Port, RJ11 (Vac Model)
Temperature Operating : 0°C ~ 45°C Storage : -25°C ~ 70°C
Humidity 10% ~ 90% ( non-condensing )
Power Adapter DC 12V @ 1.5A ~ 2A
Power Consumption 19~24 Watt
Dimension L241 * W165 * H44 (mm)