Loading
LOADING IMAGES
Vigor2925 Series Vigor2925 Series Vigor2925 Series Vigor2925 Series Vigor2925 Series Vigor2925 Series blank.jpg blank.jpg blank.jpg blank.jpg

Vigor2925 Series

Dual-WAN Load Balancing VPN Router
  • Dual Gigabit Ethernet WAN
  • Up to 4 WAN for Load Balancing or Failover
  • 5 Gigabit Ethernet LAN ports with VLAN settings and multiple subnet
  • 50 concurrent VPN tunnels, including up to 25 SSL VPN
  • SPI Firewall with Content Filtering by URL keyword, web category, and apps
  • 2 USB ports for 3G/4G modem or storage
  • Central Management for VigorAP & Vigor Switch
  • Compliant with Central Management Software VigorACS2
  • Provide DrayDDNS service since firmware v3.8.4.2 new

 

About

Vigor2925 Series is a firewall router that has two Gigabit Ethernet WAN ports for load balancing or failover. There are also two USB ports which can work with 3G/4G/LTE USB modems to add wireless Internet connectivity. Vigor2925 Series offer features including VPN, Firewall, Content Filtering, and Central Management Solution for Vigor access points and switches, which makes it the perfect solution for a small-medium business.

WAN Load Balancing & Failover

Vigor2925 Series has two Gigabit Ethernet WAN ports that can be used for any types of connection, 3G/4G/LTE USB modem can also be attached to the two USB ports on the router to add a backup wireless connectivity. In fact, all of the WAN interfaces can be configured to operated in either Load Balancing mode, which will be active all the time, or in Failover mode, which will be active only when detecting connection loss or heavy load on the primary connection.

On Vigor2925 Series, Load Balancing can be set in either IP-based mode, which means the packets destined to different IP address will be distributed across different WANs; or in Session-based mode, which means the packets belong to different sessions can take different paths, this allows a multiple-session connection to be established across multiple WANs, and the maximum data rate will be all the WAN's bandwidth combined. Policy-based Load Balancing is also supported so that you may specify the path for some certain packets.

Flexible LAN Management

The 5-port Gigabit Ethernet switch on the LAN side provides high-speed connectivity for the servers and PCs on the local network, and the Virtual LAN (VLAN) features allow you to separate the LAN clients into different logical domains thus to increase the security and network efficiency.

Vigor2925 Series supports 802.1Q standard and can build a Tag-based VLAN system with an 802.1Q-support switch, Port-based VLAN is also supported that each LAN port can be configured as a member of different VLAN and be isolated from each other without the use of VLAN tag. Moreover, up to 5 IP subnet can be set up on Vigor2925 Series, that allows each VLAN to use a different IP addressing space.

Vigor2925 Series also supports LAN DNS and Conditional DNS forwarding that allows you to control the domain name resolution for the LAN clients, also you can use the router as an internal name server and make the LAN servers to be accessed by a hostname which is easier to remember.

Firewall & Security

Vigor2925 Series supports Stateful Packet Inspection (SPI) Firewall and flexible filtering rules, it can accept or deny packets based on the source, destination, port number, and its application. IP-based restrictions can be set to filter certain HTTP traffic as well as various application softwares, and prevent time and network resource wasting on inappropriate network activities.

With an annual subscription to CYREN Web Content Filtering service, you may also filter the websites by their categories, and set up restrictions to block the whole categories of websites (such as Social Networking, Gambling.. etc.) without the need to specify every site you would like to block. The CYREN service is constantly updating the categorization, and a free 30-day trial is included in every new router.

Comprehensive VPN

Vigor2925 Series supports both LAN-to-LAN VPN and Remote Dial-in VPN, up to 50 VPN tunnels can be set up simultaneously. All the industry standard tunneling protocols are supported, including PPTP, L2TP, IPsec, and GRE, and they are compatible with 3rd party VPN devices.

Vigor2925 Series also supports SSL VPN - a type of VPN based on the very common encryption method which is used by all the HTTPS websites. While the traditional VPN protocols might be filtered by the firewall and NAT of public networks, SSL VPN will be passed as long as the HTTPS is allowed. DrayTek also offers free official client App for Windows, iOS, and Android.

VPN Redundancy is also supported by Vigor2925 Series, this allows you establish two VPN tunnels to the same remote network but through different WAN interfaces to increase the reliability of VPN.

Central Management

Vigor2925 Series can act as a Central Management portal for the other Vigor devices on the network, including VigorAP, Vigor Switch, and even Vigor Routers. With Central Management feature, device maintenance (such as firmware upgrading, configuration backup and restore) and monitoring can all be done from a single portal, which is the Web User Interface of Vigor2925 Series.

Vigor2925 Series can manage up to 20 VigorAP on its LAN and works as an AP controller. Automatic Provisioning can be triggered when a VigorAP newly join the network and this makes AP deployment much faster. You may also get the client or traffic history of all the AP from Vigor2925 Series, and set up load balancing rules for the APs.

Central Switch Management allows you to manage up to 10 Vigor Switches from Vigor2925 Series, the status of every port can be directly viewed from the router. Vigor2925 Series also supports VLAN configuration for the switches, setting that matches the router's VLAN settings and the switch hierarchy is automatically provided which makes the VLAN configuration easier.

Hardware
Interface
  • 2 x GbE WAN port
  • 5 x GbE LAN port
  • 2 x USB 2.0 port
  • Factory Reset Button
  • Power On/Off Switch
Power
  • DC 12V @1.5A – 2.0A
  • Max. Power Consumption: 24 watts
Temperature
  • Operating: 0°C ~ 45°C
  • Storage: -25°C ~ 70°C
Humidity
  • Operating: 10% ~ 90%
    (non-condensing)
Dimension (mm)
  • 241(H) x 165(W) x 44(H)
WAN
Ethernet Connection (IPv4)
  • PPPoE Client
  • DHCP Client
  • Static IP
  • PPTP/L2TP
  • 802.1Q VLAN Tagging
  • Triple-Play Applications
Ethernet Connection (IPv6)
  • PPP
  • DHCPv6 Client
  • Static IPv6
  • TSPC
  • AICCU (AYIYA/Heartbeat)
  • 6rd
  • 6in4 Static Tunnel
Load Balance
  • IP-based Load Balancing
  • Session-based Load Balancing
  • WAN Data Budget 
Failover
  • Failover by Link Failure
  • Failover by Traffic Threshold
Connectivity Detection
  • ARP
  • Ping Probe
High Availability
  • Method: Active-Standby /Hot-Standby
  • Automatic Configuration Sync
  • WCF License Key Sharing
LAN Managment
VLAN
  • Up to 8 VLAN
  • 802.1Q Tag-based VLAN
  • Port-based VLAN
DHCP Server
  • Up to 5 IP Subnet
  • Bind-IP-to-MAC
  • Custom DHCP Option
Security
  • Wired 802.1x authentication
DNS Control
  • Local Name Server
  • Conditional DNS Forwarding
Hotspot Portal
  • Authentication by Click-Through, Social Login, and SMS PIN
  • Custom Portal Page
  • URL Redirection
  • Walled-Garden
Routing
Static Route
  • 30 IPv4 Static Routing Rules
  • 40 IPv6 Static Routing Rules
  • Inter-VLAN Routing
Dynamic Routing
  • RIPv2
  • BGP
Policy Routing
  • 50 Route Policy
  • Criteria: Protocol, Source IP, Destination IP, Destination Domain Name, Destination Country, Destination Port
  • Failover options
VPN
Performance
  • Up to 50 concurrent tunnels
  • Max. 25 concurrent SSL VPN
Protocols
  • PPTP, L2TP, IPsec, L2TP over IPsec, SSL, GRE, IKEv2
  • LAN-to-LAN VPN
  • Teleworker-to-LAN VPN
Encryption
  • MPPE 40/128 bit
  • Hardware-based AES/DES/3DES
Authentication
  • PAP, CHAP, MS-CHAP, MS-CHAPv2
  • MD5, SHA-1
  • Pre-Shared Key, Digital Signature (X.509)
  • mOTP
Advanced
  • Hub-and-Spoke Topology support
  • DHCP over IPsec
  • VPN Redundancy for Load Balancing or Failover
  • Single-Armed VPN
Firewall
NAT
  • One-to-One Port Redirection
  • Range-to-Range Port Redirection
  • Open Ports
  • Port Triggering
  • DMZ Host
  • ALG: SIP, RTSP, FTP, TFTP, H.323
  • VPN Pass-Through: PPTP, L2TP, IPsec
  • UPnP
Firewall Filter
  • IP-based Firewall Policy
  • User-based Firewall Policy
  • Object-based Configuration
  • Schedule Enable/Disable
Content Filtering
  • URL Keyword Filtering
  • Category Filtering (subscription required)
  • DNS Keyword Filtering
  • Web Features Filtering
Attack Protection
  • DoS Defense
Bandwidth Management
Bandwidth Policy
  • Session Limit
  • Bandwidth Limit
  • IP-Based Policy
  • Scheduled Enable/Disable
Quality of Service
  • Layer 3 QoS (TOS/DSCP)>
  • Bandwidth Borrowing
  • Guaranteed bandwidth for VoIP traffic
  • APP QoS
Network Features
 
    li>Dynamic DNS
  • DNS Security
  • Bonjour
  • IGMP Proxy
  • IGMP Snooping
  • SMB File Sharing
User Authentication
  • Local User Database
  • RADIUS Server
  • Active Directory/LDAP
  • TACACS+
  • Internal RADIUS Server
Wireless LAN
Standards
  • IEEE 802.11 b/g/n 2.4G
  • IEEE 802.11a/n 5G (n-plus/Vn-plus/ac/Vac model)
  • IEEE 802.11ac (ac/Vac model)
SSID
  • Up to 4 SSID per radio
  • SSID-based 802.1Q VLAN
Radio Management
  • Auto Channel Selection
  • Auto Channel Width (2.4G)
  • Wi-Fi Scheduling
Security
  • WEP, WEP-802.1x, WPA-PSK, WPA-802.1x, WPA2-PSK, WPA2-802.1x
  • Hidden SSID
  • Client Isolation
  • Access Control per SSID
  • WPS
Advanced
  • Rate Control per SSID
  • AirTime Fairness
  • Band Steering
    (n-plus/Vn-plus/ac/Vac model)
  • WMM
WDS
  • Bridge
  • Repeater
VoIP
General
  • Protocol: SIP, RTP/RTCP
  • 12 SIP Registrars
  • Jitter Buffer: 180 ms
  • G.168 line echo-cancellation
Call Services
  • Call Hold/Retrieve
  • Call Waiting
  • Call Waiting with Caller ID
  • Call Transfer
  • Call Forwarding (Always, Busy, No Answer, Busy or No Answer)
  • Barring (Incoming / Outgoing)
  • DND (Do Not Disturb)
  • MWI (Message Waiting Indicator) (RFC-3842)
  • Hotline
  • ZRTP
Dial Plan
  • Phone Book
  • Digit Map
  • Call Barring
  • Regional
Voice Codec
  • G.711 a/u law
  • G.723.1
  • G.726
  • G.729 A/B
  • VAD/CNG
DTMF Tone
  • In band
  • Out band (RFC-2833)
  • SIP Info
Management
Configuration
  • Web Interface: HTTP, HTTPS
  • Command-Line Interface: Telnet, SSH
  • TR-069 via VigorACS
  • Config File Export & Import
  • Compliant with the Config file exported from Vigor2920
F/W Upgrade
  •  TFTP, HTTP, TR-069
Admin Access Control
  • 2-level Administration Privilege
  • Access from the Internet
  • Access List
  • Brute Force Protection
Monitoring
  • Dashboard
  • Syslog
  • SMS/E-mail Alert
  • TR-069 via VigorACS
  • SNMP v2c, v3
Central Management
  • Wireless Controller for up to 20 VigorAP
  • 10 Vigor Switch
  • 8 Vigor Router (CVM Feature)

 

ModelVigor2925Vigor2925nVigor2925n-plusVigor2925Vn-plusVigor2925acVigor2925Vac
2.4G WLAN -

Yes

Yes

Yes

Yes

Yes

5G WLAN - -

Yes

Yes

Yes

Yes

Wi-Fi Antenna - 2 3 3 3 3
VoIP - - -

Yes

-

Yes

RJ-11 Port - - - 2 - 2