The DrayTek Vigor2867 series is a Dual-WAN VPN router with integrated DSL modem, supporting both VDSL2 (including 35b Super Vectoring) / ADSL and Ethernet WAN connections. It provides flexible, high-speed WAN access, making it ideal for environments where DSL remains essential while ensuring reliable connectivity for business networks.
The Vigor2867 series supports advanced features including load balancing, VPN, QoS, VigorShield IP/URL filtering and Threat Protection, and a hotspot portal with built-in IAM to enhance network security. It also functions as a virtual controller for centralized management of VigorAPs and VigorSwitches, delivering a secure, scalable, and easy-to-manage network solution. Selected models also include integrated Wi-Fi 7 for high-performance wireless connectivity.
10M/100M/1G/2.5G/10G Ethernet, RJ-45
Download speed up to 300 Mbps
IPsec throughput up to 540 Mbps
Recommended for a network of 50 hosts

(be model)
12x Wi-Fi Antenna (External)1x Wi-Fi Antenna (Internal)
2Reset Button
3LED Indicator
42x USB 2.0
5Fixed WAN Port: 1x GbE RJ-45
6Fixed WAN Port: 1x DSL (VDSL2 & ADSL2+)*
7WAN/LAN Switchable Port: 1x 10GbE RJ-45*
8Fixed LAN Port: 1x 10G SFP+*
9Fixed LAN Port: 1x 2.5GbE RJ-45
10Fixed LAN Port: 3x GbE RJ-45
11Power On/Off Switch
12Power Input
*Only two of these ports can be active at the same time, and P2 & P3 cannot both act as WAN
Features enhanced OFDMA and Multi-Link Operation (MLO) technologies to improve wireless efficiency and performance.
Integrated VDSL modem, supporting VDSL2 profile 35b supervectoring.
Supports 10G-capable fiber SFP+ ports for high-speed fiber WAN or LAN connectivity.
Provides ultra-fast 10G connectivity to meet the needs of high-demand network.
Provides higher performance to Wi-Fi 6 AP and other Ethernet devices.
Maximize throughput and reliability by using multiple Internet connections. Learn more
Prevent one device using all the bandwidth by bandwidth limit policy, session limit policy, and QoS settings.
The free DDNS service for you to access the router by a fixed hostname of your choice. Learn more
Build a secure and private tunnel from the LAN of Vigor2867 Series to the remote offices and teleworkers over the Internet. Learn more
Secure VPN in Seconds: No Keys, No Configs, Just Login.
Filter web pages by URL keyword or web category to block access to insecure or inappropriate contents.
Detect and mitigate cyber threats with cloud-assisted threat intelligence, helping protect users, devices, and networks from malicious activities. Learn more
Improve network security by classifying URLs and IPs to control web access and protect against online threats. Learn more
Add a stealth security layer to protect ports from unauthorized access.
A solution that manages digital identities, authentication, and access control to ensure the right users or groups have appropriate access to critical resources. Learn more
Market your business and communicate with the guests while offering hospitality WLAN. Learn more
All-in-one management platform for Vigor2867 Series to maintain and monitor the VigorAPs and VigorSwitches.
Easily link to other VigorAP to expand the wireless network. Learn more
Get Internet access wirelessly from a wireless network, a mobile hotspot, or a personal hotspot set up on smartphones. Learn more
Vigor2867 Series is a Dual-WAN VPN Router with Super Vectoring VDSL2 35b/ADSL2+ connectivity through three versatile interfaces. The series includes built-in 802.11be model which offers Wi-Fi 7 feature such as Multi-Link Operation (MLO) and Multiple Resource Units (MRU). It is ideal for companies that require high-performance connectivity with an efficient network.
Vigor2867 Series offers high throughput with load balancing, ideal for SMB network environment. All active WAN interfaces join the Load Balance Pool to optimize bandwidth utilization.
Supports automatic WAN failover to maintain seamless internet connectivity during ISP outages, minimizing downtime and associated costs.
Routing policies allows user to assign specific WAN interfaces to applications, VoIP, or traffic by source or destination, enhancing network efficiency and performance.
Traditional VPN setup can be complex, with protocol choices and manual configuration. Vigor2867 Series supports IPsec, WireGuard, and OpenVPN, while EasyVPN streamlines Teleworker VPN, giving remote users secure access with a simple profile import.
With EasyVPN, users can establish secure connections without the hassle of:
By automating these steps, EasyVPN ensures a fast, secure, and user-friendly VPN experience for everyone.
Vigor2867 Series with the new DrayOS 5 is Zero Trust ready!
Using each device’s unique IP and MAC address provides a solid basis for identification and authentication.
IAM assigns access permissions based on user roles. IT team can manage high-security access according to department, authority level, and responsibilities.
Combining user, device, and session-based policies strengthens security without relying on a single factor.
When security incidents occurs, you can quickly pinpoint the devices involved and take appropriate actions.
Vigor2867 Series running DrayOS 5 provides built-in IAM and advanced security features, making it ready for Zero Trust deployments.
A variety of login methods are supported to meet business need, including Click Through, IAM User Login, and external RADIUS authentication.
Hotspot offers simple yet powerful tools such as quota and bandwidth control, per-subnet or SSID policies, server bypass options, session timeout, and MAC binding—ensuring seamless guest access without disrupting internal services.
Redirect hotspot guests to the company homepage, online surveys, or promotional messages for brand engagement and customer interaction.
URL Reputation is a cloud-based technology to provide Threat Intelligence Service. This service adds an extra layer of security protection to LAN client for their online activities.
There are 82 categories in total, 10 of which are security-focused, providing comprehensive and up-to-date protection to your home network or office network.
The various categories cover network security, including malware, spyware, adware, parental control for child protection, business, social networking, and more to ensure a safe online environment while also boosting employee productivity and can reach efficient bandwidth management.
Every communication over the internet involves IP addresses-source and destination. Cybercriminals often leverage known malicious IP addresses to carry out attacks using techniques like:
Blocking communication with these harmful IPs is essential, but it requires dynamic, predictive intelligence-a challenge that static blocklists cannot meet. The IP Reputation Service solves this by providing real-time scoring and classification of IP addresses, enabling automatic blocking of:
The system evaluates IPs across multiple criteria, including infection history, protocol usage, and attack frequency. Each IP is given a reputation score, which determines whether it should be trusted, monitored, or blocked outright.
Wi-Fi 7 with advanced Multi-Link Operation (MLO) allows devices to leverage the 2.4 GHz, 5 GHz, and 6 GHz bands simultaneously, unlike traditional WiFi, which can only transmit data on a single band at a time. This enables faster speeds, lower latency, and more reliable connections.
MLO improves speed, reliability, and reduces latency, which significantly benefits business applications such as video conferencing, large file transfers, and business-critical platforms, as it reduces congestion and ensures a more stable connection.
Multiple Resource Units (MRU) enhances the OFDMA technology first introduced in WiFi 6. In WiFi 6, each client is limited to a single Resource Unit, which may leave portions of the channel bandwidth underutilized. With WiFi 7 MRU, clients can be assigned multiple RUs concurrently, eliminating this restriction and enabling more efficient spectrum utilization. This ensures that more of the available spectrum is actively used, resulting in higher overall throughput and lower latency.
Zero-Wait DFS allows WiFi router to monitor radar signals on DFS channels without interrupting service. The wireless router features a dedicated 5G antenna for Zero-Wait DFS, enabling it to detect radar signals independently while maintaining active communication. When radar interference is detected, the router can quickly switch to a standby block that has already passed the CAC.
In the example below, the wireless device is operating on an 80 MHz block (Channels 52, 56, 60, 64). Once radar is detected on Channel 64, DFS rules require the entire block to be vacated. With Zero-Wait DFS, a standby block (Channels 100, 104, 108, 112) is ready, so the router can instantly switch, ensuring smooth service.
DrayTek’s Port Knocking technology provides an advanced stealth security layer by keeping critical network services invisible to unauthorized users. Instead of exposing management ports or VPN services to the public internet, Port Knocking requires a predefined “knock” sequence before granting access, ensuring that only trusted users can find and use these services.
By integrating three key functions, Port Knocking delivers unmatched protection against port scanning, brute-force attacks, and unauthorized access
With DrayTek Port Knocking, your network operates in stealth mode, invisible to attackers, yet instantly accessible to authorized administrators and remote users. This makes it an ideal solution for organizations demanding high security without sacrificing accessibility.
DrayTek's Virtual Controller is an on-device management platform built into supported routers and firewalls. It enables centralized control without cloud dependency - reducing data exposure risks and enhancing network privacy.
Virtual Controller supports two modes for flexible deployment.
Automatically creates a self-healing wireless mesh with the Vigor2867 Series as the Root AP and up to 7 Node APs for easy, scalable Wi-Fi coverage.
For networks with more than 8 APs, Virtual Controller switches to AP Management mode, enabling centralized control of up to 20 APs via the router's interface.
Devices power on and automatically discover each other, assigning roles as Root or Node APs without manual setup. This auto device role assignment enables quick mesh network formation with optimized coverage and self-healing capabilities.
Vigor2867 Series can act as master to manage and monitor up to 10 switches. It also provides visibility into PD devices behind the switch, such as IP cameras and access points.
Monitor switch status, current firmware version, and uptime across all managed devices.
Create multiple port profiles to provision the PoE, VLAN, QoS, and other settings to selected switches.
Perform configuration backup and restore, remote reboot, or factory reset.
Antenna x 2
RJ-45 Cable (Ethernet)
Power Adapter
Quick Start GuideNote: The stated throughput performance figures are the maximum derived from DrayTek internal testing, conducted under optimal conditions, with Hardware Acceleration enabled where available. The actual performance may vary based on network conditions and activated applications.
| Model | 2.4GHz WLAN | 5GHz WLAN | Wireless Antenna | Wireless Mode | Max. Link Rate | Max. Bandwidth | Wireless WAN | Mesh |
| Vigor2867 | - | - | - | - | - | - | - | - |
| Vigor2867be | 2 x detachable for 2.4GHz & 5GHz + 1 x 5 GHz internal |
2.4 GHz: 802.11 b/g/n/ax/be 5 GHz: 802.11 a/n/ac/ax/be |
2.4 GHz: 1376 Mbps 5 GHz: 5764 Mbps |
80 MHz |
Model |
Performance |
NAT Session | Max. PON (Mbps) | Max. NAT (Mbps) | Max. NAT with Hardware Acceleration (Mbps) | Max. NAT with Hardware Acceleration : Single WAN (Mbps) | Max. NAT with Hardware Acceleration : Dual WAN (Mbps) | Max. NAT with Software Acceleration (single-directional) (Mbps) | Max. NAT with Software Acceleration (bi-directional) (Mbps) | Max. VDSL Link Rate (Mbps) | Max. ADSL Link Rate (Mbps) |
WAN |
xDSL | XGS-PON | Ethernet (1 GbE) | Ethernet (2.5 GbE) | Ethernet (10 GbE) | SFP (1G) | SFP (10G) | SFP/Ethernet Combo |
Ethernet - Switchable
* When this field is filled, the port count above includes both switchable and
fixed ports.
|
SFP - Switchable
* When this field is filled, the port count above includes both switchable and
fixed ports.
|
SFP/Ethernet Combo - Switchable
* When this field is filled, the port count above includes both switchable and
fixed ports.
|
VDSL Standards | VDSL2 Profile | G.fast Profile | ADSL Standards | Annex Support | Other Standards | Band Plan | Cellular (via USB) | Cellular (Built-in) | Wireless WAN (2.4GHz or 5GHz) | Wireless WAN (2.4GHz + 5GHz) |
3G |
WCDMA (3G) Band |
4G LTE |
SIM Slot | LTE Antenna (External Dipole) | LTE Antenna (Internal PIFA) | LTE Category (Up to) | LTE Antenna Peak Gain (dBi) | Max. Rx Link Rate (Mbps) | Max. Tx Link Rate (Mbps) | FDD Band | TDD Band | SMS Gateway |
5G |
5G Band | 4G/5G Antenna (External Dipole) | 4G/5G Antenna (Internal PIFA) | 4G/5G Antenna Peak Gain (dBi) | 5G NSA Max. Rx Link Rate (Mbps) | 5G NSA Max. Tx Link Rate (Mbps) | 5G SA Max. Rx Link Rate (Mbps) | 5G SA Max. Tx Link Rate (Mbps) | Note |
Internet Connection |
IPv4 | IPv6 | LTE WAN Bridge | 802.1p/q Multi-VLAN Tagging | Virtual WAN | PPPoE Pass-Through | MPoA Bridge | Failover | Load Balancing | Connection Detection | WAN Data Budget | Dynamic DNS | DrayDDNS |
LAN |
Fixed LAN (RJ-45, 1GbE) | Fixed LAN (RJ-45, 2.5GbE) | Fixed LAN (RJ-45, 10GbE) | Fixed LAN (SFP, 10GbE) | LAN Subnet | VLAN | Max. Number of VLAN | DHCP Server | IPv6 Address Assignment | LAN IP Alias | IP Pool Count | PPPoE Server | Wired 802.1x Authentication | Port Mirroring | Local DNS Server | Conditional DNS Forwarding | Hotspot Web Portal (Profile No.) | Hotspot Authentication |
WLAN |
2.4GHz WLAN | 5GHz WLAN | WiFi Antenna (External) | WiFi Antenna (Internal) | 2.4GHz Antenna Gain (dBi) | 5GHz Antenna Gain (dBi) | 2.4GHz Max. Link Rate (Mbps) | 5GHz Max. Link Rate (Mbps) | Max. Number of SSIDs (per band) | Security Mode | Authentication | Wi-Fi 7 | Wi-Fi 6 | 4K-QAM | OFDMA | Roaming | WPS | WDS | Access Control | AirTime Fairness | Band Steering | WMM | Mesh (5GHz Only) |
Other Ports |
Console (RJ-45) | USB | USB Type | USB Application | SMB File Sharing (Requires external storage) | FXS (RJ-11) |
Networking |
Routing | Policy-based Routing | Smart Action | DNS Security (DNSSEC) | IGMP | Local RADIUS server |
Bandwidth Management |
Traffic Shaping Policy | IP-based Bandwidth Limit | IP-based Session Limit | QoS (Quality of Service) | APP QoS | Default Policy | VoIP Prioritization |
NAT |
Port Forwarding | DMZ Host | Port Trigger | ALG (Application Layer Gateway) | UPnP |
Management |
Local Service | Config Backup/Restore | Config File Compatibility | Firmware Upgrade | 2-Level Administration Privilege | Role-based Privilege | Access Control | Notification Alert | SNMP | Syslog | Broadcast DSL Info to LAN | VPN Managment | Virtual AP Controller (Device up to) | Mesh (Number of manageable APs) | Virtual Switch Controller | VigorACS Management (Since f/w) |
Security |
URL/IP Reputation | Threat Protection | Firewall Filter | Port Knocking | Defense Setup | MAC Filtering Profile | IPv6 Address Security |
IAM |
Users & Groups | Access Policies | Group Policies | Conditional Access Policy | Resources | Account Status | Backup and Restore |
VPN |
Site-to-Site VPN | Teleworker VPN | EasyVPN | Protocols | Max. VPN Tunnels | Max. OpenVPN + SSL VPN Tunnels | IPsec VPN Throughput (AES 256 bits) (single-directional) (Mbps) | IPsec VPN Throughput (AES 256 bits) (bi-directional) (Mbps) | SSL VPN Throughput (single-directional) (Mbps) | SSL VPN Throughput (bi-directional) (Mbps) | WireGuard VPN Throughput (single-directional) (Mbps) | WireGuard VPN Throughput (bi-directional) (Mbps) | User Authentication | IKE Authentication | IPsec Authentication | Encryption | Translate Local Network(Site-to-Site VPN) | VPN Trunk (Redundancy) | Single-Armed VPN | NAT-Traversal (NAT-T) | VPN from LAN | VPN Isolation | VPN Packet Capture | VPN 2FA Authentication for AD/LDAP | VPN Matcher | VPN Connection Status | Backup & Restore |
VoIP |
Protocols | SIP Registrars | Dial Plan | Call Features | Voice Codec | Caller ID |
Linux Applications |
Suricata | VigorConnect |
Monitoring |
Clients List | Log Center | Wireless Information | WAN | ARP Table | Route Table | DHCP Table | IPv6 TSPC Status | IPv6 Neighbor Table | LLDP Neighbors | DNS Cache Table | Cellular WAN Status | DSL Status | XGSPON Information | Remote DSL Status | SFP Information | PPPoE Pass-Through | Session Table | Running Table |
Physical |
Power Input | Max. Power Consumption (watts) | Memory | Dimension (mm) | Weight (g) | Operating Temperature | Storage Temperature | Operating Humidity (non-condensing) |
2867 |
K | - | 9100 | 0 | 0 | 0 | - | - | - | - | 1 | 0 | 1 | 0 | 1 | 0 | 0 | 0 | T | F | F | ITU-T G.993.1 VDSL ITU-T G.993.2 VDSL2 ITU-T G.993.5 Vectoring ITU-T G.997.1 ITU-T G.998.4 Retransmission |
8a, 8b, 8c, 8d, 12a, 12b, 17a, 30a, 35b | ITU-T G.992.1 ADSL (G.dmt) ITU-T G.992.3 ADSL2 ITU-T G.992.5 ADSL2+ T1.413 Issue 2 |
Annex A/B/J/M |
998, 997 | 2 | - | F | F | - | - | - | - | - | - | - | F Learn More | 0 | 0 | - | - | - | - | - | PPPoE DHCP Static IP MPoA PPPoA |
PPP DHCPv6 Static IPv6 TSPC 6rd 6in4 Static Tunnel |
F | T | F | F | F | T | IP-based, Session-based | ARP, Ping | T | T | T | 3 | 1 | - | 1 | 8 | 802.1q Tag-based VLAN |
8 | Multiple IP Subnet Custom DHCP Options Bind-IP-to-MAC |
F | - | F | T | T | T | T | 4 | Click-Through Social Login SMS PIN RADIUS External Portal Server |
0 | 0 | 0 | 0 | F | F | F | F | F | F | F | 0 | 2 | 2.0 | User Management FTP File Sharing Device Status Printer Server Temperature Sensor USB WAN |
T | - | IPv4 Static Route IPv6 Static Route Policy Route Inter-VLAN Route RIP v1/v2 OSPF(V2/V3) BGP |
Protocol IP Address Port |
F | T | IGMP v2/v3 IGMP Proxy IGMP Snooping & Fast Leave |
T | T | T | T | IP Address Port Application |
T | T | T | T | T | T | SIP, RTSP | T | HTTP HTTPS Telnet SSH v2 FTP TR-069 |
T | - | WUI, TFTP, TR069 | F | T | Access List, Brute Force Protection | SMS, E-mail | v1, v2c, v3 | T | F | 0 | 20 | - | 10 | V5.4.0 | T | F | IP, Content, Traffic | T | ARP Spoofing, IP Spoofing | T | T | T | T | T | T | T | T | T | T | T | T | IPsec IKEv1/IKEv2 IKEv2-EAP IPsec-XAuth OpenVPN WireGuard |
50 | - | 540 | - | - | - | 76 | - | Local RADIUS TACACS+ mOTP TOTP |
Pre-Shared Key, X.509 | SHA-1, SHA-256 | DES, 3DES, AES | T | T | T | F | F | F | F | T | T | T | - | F | F | F | T | F | T | T | T | T | T | T | T | T | F | F | F | T | T | T | T | T | DC 12V @ 1.5A | 18 | - | 241 x 210 x 44 | 0 to 45°C | -25 to 70°C | 10 to 90% | |||||||||||||||||||||||||||||||||||||||||||||||
2867be |
K | - | 9100 | 0 | 0 | 0 | - | - | - | - | 1 | 0 | 1 | 0 | 1 | 0 | 0 | 0 | T | F | F | ITU-T G.993.1 VDSL ITU-T G.993.2 VDSL2 ITU-T G.993.5 Vectoring ITU-T G.997.1 ITU-T G.998.4 Retransmission |
8a, 8b, 8c, 8d, 12a, 12b, 17a, 30a, 35b | ITU-T G.992.1 ADSL (G.dmt) ITU-T G.992.3 ADSL2 ITU-T G.992.5 ADSL2+ T1.413 Issue 2 |
Annex A/B/J/M |
998, 997 | 2 | - | F | T | - | - | - | - | - | - | - | F Learn More | 0 | 0 | - | - | - | - | - | PPPoE DHCP Static IP MPoA PPPoA |
PPP DHCPv6 Static IPv6 TSPC 6rd 6in4 Static Tunnel |
F | T | F | F | F | T | IP-based, Session-based | ARP, Ping | T | T | T | 3 | 1 | - | 1 | 8 | 802.1q Tag-based VLAN |
8 | Multiple IP Subnet Custom DHCP Options Bind-IP-to-MAC |
F | - | F | T | T | T | T | 4 | Click-Through Social Login SMS PIN RADIUS External Portal Server |
802.11be 4x4 MU-MIMO | 802.11be 4x4 MU-MIMO | 2 | 1 | 1376 | 5764 | OWE WPA WPA2 WPA2/WPA WPA3 WPA3/WPA2 |
Pre-Shared Key | T | F | F | T | Assisted Roaming Pre-Authentication 802.11r 802.11k |
Hide SSID WLAN Scheduling |
T | F | T | 0 | 2 | 2.0 | User Management FTP File Sharing Device Status Printer Server Temperature Sensor USB WAN |
T | - | IPv4 Static Route IPv6 Static Route Policy Route Inter-VLAN Route RIP v1/v2 OSPF(V2/V3) BGP |
Protocol IP Address Port |
F | T | IGMP v2/v3 IGMP Proxy IGMP Snooping & Fast Leave |
T | T | T | T | IP Address Port Application |
T | T | T | T | T | T | SIP, RTSP | T | HTTP HTTPS Telnet SSH v2 FTP TR-069 |
T | - | WUI, TFTP, TR069 | F | T | Access List, Brute Force Protection | SMS, E-mail | v1, v2c, v3 | T | F | 0 | 20 | 7 | 10 | V5.4.0 | T | F | IP, Content, Traffic | T | ARP Spoofing, IP Spoofing | T | T | T | T | T | T | T | T | T | T | T | T | IPsec IKEv1/IKEv2 IKEv2-EAP IPsec-XAuth OpenVPN WireGuard |
50 | - | 540 | - | - | - | 76 | - | Local RADIUS TACACS+ mOTP TOTP |
Pre-Shared Key, X.509 | SHA-1, SHA-256 | DES, 3DES, AES | T | T | T | F | F | F | F | T | T | T | - | F | F | F | T | F | T | T | T | T | T | T | T | T | F | F | F | T | T | T | T | T | DC 12V @ 2.8A | 18 | - | 241 x 210 x 44 | 0 to 45°C | -25 to 70°C | 10 to 90% |
{
"NAT Session":"K",
"Max. PON (Mbps)":"-",
"Max. NAT (Mbps)":"9100",
"Max. NAT with Hardware Acceleration (Mbps)":"0",
"Max. NAT with Hardware Acceleration : Single WAN (Mbps)":"0",
"Max. NAT with Hardware Acceleration : Dual WAN (Mbps)":"0",
"Max. NAT with Software Acceleration (single-directional) (Mbps)":"-",
"Max. NAT with Software Acceleration (bi-directional) (Mbps)":"-",
"Max. VDSL Link Rate (Mbps)":"-",
"Max. ADSL Link Rate (Mbps)":"-",
"xDSL":"1",
"XGS-PON":"0",
"Ethernet (GbE)":"1",
"Ethernet (2.5 GbE)":"0",
"Ethernet (10 GbE)":"1",
"SFP (1GbE)":"0",
"SFP (10GbE)":"0",
"SFP/Ethernet Combo (GbE)":"0",
"Ethernet - Switchable":"T",
"SFP - Switchable":"0",
"SFP/Ethernet Combo - Switchable":"0",
"VDSL Standards":"ITU-T G.993.1 VDSLITU-T G.993.2 VDSL2ITU-T G.993.5 VectoringITU-T G.997.1ITU-T G.998.4 Retransmission",
"VDSL2 Profile":"8a, 8b, 8c, 8d, 12a, 12b, 17a, 30a, 35b",
"G.fast Profile":"",
"ADSL Standards":"ITU-T G.992.1 ADSL (G.dmt)ITU-T G.992.3 ADSL2ITU-T G.992.5 ADSL2+T1.413 Issue 2",
"Annex Support":"Annex A/B/J/M",
"Other Standards":"",
"Band Plan":"998, 997",
"Cellular (via USB)":"2",
"Cellular (Built-in)":"-",
"Wireless WAN (2.4GHz or 5GHz)":"F",
"Wireless WAN (2.4GHz + 5GHz)":"F",
"WCDMA (3G) Band":"",
"SIM Slot":"-",
"LTE Antenna (External Dipole)":"-",
"LTE Antenna (Internal PIFA)":"-",
"LTE Category (Up to)":"-",
"LTE Antenna Peak Gain (dBi)":"",
"Max. Rx Link Rate (Mbps)":"-",
"Max. Tx Link Rate (Mbps)":"-",
"FDD Band":"",
"TDD Band":"",
"SMS Gateway":"F",
"5G Band":"",
"4G/5G Antenna (External Dipole)":"0",
"4G/5G Antenna (Internal PIFA)":"0",
"5G Antenna Peak Gain (dBi)":"-",
"5G NSA Max. Rx Link Rate (Mbps)":"-",
"5G NSA Max. Tx Link Rate (Mbps)":"-",
"5G SA Max. Rx Link Rate (Mbps)":"-",
"5G SA Max. Tx Link Rate (Mbps)":"-",
"IPv4":"PPPoEDHCPStatic IPMPoAPPPoA",
"IPv6":"PPPDHCPv6Static IPv6TSPC6rd6in4 Static Tunnel",
"LTE WAN Bridge":"F",
"802.1p/q Multi-VLAN Tagging":"T",
"Multi-VLAN/PVC":"",
"Virtual WAN":"F",
"PPPoE Pass-Through":"F",
"MPoA Bridge":"F",
"Failover":"T",
"Load Balancing":"IP-based, Session-based",
"Connection Detection":"ARP, Ping",
"WAN Data Budget":"T",
"Dynamic DNS":"T",
"DrayDDNS":"T",
"Fixed LAN (RJ-45, 1GbE)":"3",
"Fixed LAN (RJ-45, 2.5GbE)":"1",
"Fixed LAN (RJ-45, 10GbE)":"-",
"Fixed LAN (SFP, 10GbE)":"1",
"LAN Subnet":"8",
"VLAN":"802.1q Tag-based VLAN",
"Max. Number of VLAN":"8",
"DHCP Server":"Multiple IP SubnetCustom DHCP OptionsBind-IP-to-MAC",
"IPv6 Address Assignment":"",
"LAN IP Alias":"F",
"IP Pool Count":"-",
"PPPoE Server":"F",
"Wired 802.1x Authentication":"T",
"Port Mirroring":"T",
"Local DNS Server":"T",
"Conditional DNS Forwarding":"T",
"Hotspot Web Portal (Profile No.)":"4",
"Hotspot Authentication":"Click-ThroughSocial LoginSMS PINRADIUSExternal Portal Server",
"2.4GHz WLAN":"",
"5GHz WLAN":"",
"WiFi Antenna (External)":"0",
"WiFi Antenna (Internal)":"0",
"Antenna Type":"",
"2.4GHz Antenna Gain (dBi)":"",
"5GHz Antenna Gain (dBi)":"",
"2.4GHz Max. Link Rate (Mbps) ":"0",
"5GHz Max. Link Rate (Mbps)":"0",
"Max. Number of SSIDs (per band)":"",
"Security Mode":"",
"Authentication":"",
"Wi-Fi 7":"F",
"Wi-Fi 6":"F",
"4K-QAM":"F",
"OFDMA":"F",
"WPS":"",
"WDS":"",
"WLAN Access Control":"",
"AirTime Fairness":"F",
"Band Steering":"F",
"WMM":"F",
"Mesh (5GHz Only)":"",
"Console (RJ-45)":"0",
"USB":"2",
"USB Type":"2.0",
"USB Application":"User ManagementFTP File SharingDevice Status Printer ServerTemperature SensorUSB WAN",
"SMB File Sharing (Requires external storage)":"T",
"FXS (RJ-11)":"-",
"Routing":"IPv4 Static RouteIPv6 Static RoutePolicy RouteInter-VLAN RouteRIP v1/v2 OSPF(V2/V3)BGP",
"Policy-based Routing":"ProtocolIP AddressPort",
"Smart Action":"F",
"DNS Security (DNSSEC)":"T",
"IGMP":"IGMP v2/v3IGMP ProxyIGMP Snooping & Fast Leave",
"Local RADIUS server":"T",
"Traffic Shaping Policy":"T",
"IP-based Bandwidth Limit":"T",
"IP-based Session Limit":"T",
"QoS (Quality of Service)":"IP AddressPortApplication",
"APP QoS":"T",
"Default Policy":"T",
"VoIP Prioritization":"T",
"Port Forwarding":"T",
"DMZ Host":"T",
"Port Trigger":"T",
"ALG (Application Layer Gateway)":"SIP, RTSP",
"UPnP":"T",
"Local Service":"HTTPHTTPSTelnetSSH v2FTPTR-069",
"Config Backup/Restore":"T",
"Config File Compatibility":"-",
"Firmware Upgrade":"WUI, TFTP, TR069",
"2-Level Administration Privilege":"F",
"Role-based Privilege":"T",
"Access Control":"Access List, Brute Force Protection",
"Notification Alert":"SMS, E-mail",
"SNMP":"v1, v2c, v3",
"Syslog":"T",
"Broadcast DSL Info to LAN":"F",
"VPN Managment":"0",
"Virtual AP Controller":"20",
"Mesh (Number of manageable APs)":"-",
"Switch Management (SWM)":"10",
"Virtual Switch Controller":"10",
"VigorACS Management (Since f/w)":"V5.4.0",
"URL/IP Reputation":"T",
"Threat Protection":"F",
"Firewall Filter":"T",
"Port Knocking":"IP, Content, Traffic",
"Defense Setup":"ARP Spoofing, IP Spoofing",
"MAC Filtering Profile":"T",
"IPv6 Address Security":"T",
"Users & Groups":"T",
"Access Policies":"T",
"Group Policies":"T",
"Conditional Access Policy":"T",
"Resources":"T",
"Account Status":"T",
"Backup and Restore":"T",
"Site-to-Site VPN":"T",
"Teleworker VPN":"T",
"EasyVPN":"T",
"VPN Protocols":"IPsecIKEv1/IKEv2IKEv2-EAPIPsec-XAuthOpenVPNWireGuard",
"Max. VPN Tunnels":"50",
"Max. OpenVPN + SSL VPN":"-",
"IPsec VPN (AES 256 bits) (single-directional) (Mbps)":"540",
"IPsec VPN (AES 256 bits) (bi-directional) (Mbps)":"-",
"SSL VPN (single-directional) (Mbps)":"-",
"SSL VPN (bi-directional) (Mbps)":"-",
"Wireguard VPN (single-directional) (Mbps)":"76",
"Wireguard VPN (bi-directional) (Mbps)":"-",
"User Authentication":"LocalRADIUSTACACS+mOTPTOTP",
"IKE Authentication":"Pre-Shared Key, X.509",
"IPsec Authentication":"SHA-1, SHA-256",
"Encryption":"DES, 3DES, AES",
"Translate Local Network(Site-to-Site VPN)":"T",
"VPN Trunk (Redundancy)":"",
"Single-Armed VPN":"T",
"NAT-Traversal (NAT-T)":"T",
"VPN from LAN (Mainline fw only)":"F",
"VPN Isolation (Mainline fw only)":"F",
"VPN Packet Capture (Mainline fw only)":"F",
"VPN 2FA Authentication for AD/LDAP (Mainline fw only)":"F",
"VPN Matcher":"T",
"VPN Connection Status":"T",
"Backup & Restore":"T",
"Protocols":"",
"SIP Registrars":"-",
"Dial Plan":"",
"Call Features":"",
"Voice Codec":"",
"Caller ID":"",
"Suricata":"F",
"VigorConnect":"F",
"Clients List":"F",
"Log Center":"T",
"Wireless Information":"F",
"WAN":"T",
"ARP Table":"T",
"Route Table":"T",
"DHCP Table":"T",
"IPv6 TSPC Status":"T",
"IPv6 Neighbor Table":"T",
"LLDP Neighbors":"T",
"DNS Cache Table":"T",
"Cellular WAN Status":"F",
"DSL Status":"F",
"XGSPON Information":"F",
"Remote DSL Status":"T",
"SFP Information":"T",
"Monitoring PPPoE Pass-Through":"T",
"Session Table":"T",
"Running Table":"T",
"Power Input":"DC 12V @ 1.5A",
"Max. Power Consumption (watts)":"18",
"Memory":"-",
"Dimension (mm)":"241 x 210 x 44",
"Weight (g)":"",
"Operating Temperature":"0 to 45°C",
"Storage Temperature":"-25 to 70°C",
"Operating Humidity (non-condensing)":"10 to 90%"
}
{
"NAT Session":"K",
"Max. PON (Mbps)":"-",
"Max. NAT (Mbps)":"9100",
"Max. NAT with Hardware Acceleration (Mbps)":"0",
"Max. NAT with Hardware Acceleration : Single WAN (Mbps)":"0",
"Max. NAT with Hardware Acceleration : Dual WAN (Mbps)":"0",
"Max. NAT with Software Acceleration (single-directional) (Mbps)":"-",
"Max. NAT with Software Acceleration (bi-directional) (Mbps)":"-",
"Max. VDSL Link Rate (Mbps)":"-",
"Max. ADSL Link Rate (Mbps)":"-",
"xDSL":"1",
"XGS-PON":"0",
"Ethernet (GbE)":"1",
"Ethernet (2.5 GbE)":"0",
"Ethernet (10 GbE)":"1",
"SFP (1GbE)":"0",
"SFP (10GbE)":"0",
"SFP/Ethernet Combo (GbE)":"0",
"Ethernet - Switchable":"T",
"SFP - Switchable":"0",
"SFP/Ethernet Combo - Switchable":"0",
"VDSL Standards":"ITU-T G.993.1 VDSLITU-T G.993.2 VDSL2ITU-T G.993.5 VectoringITU-T G.997.1ITU-T G.998.4 Retransmission",
"VDSL2 Profile":"8a, 8b, 8c, 8d, 12a, 12b, 17a, 30a, 35b",
"G.fast Profile":"",
"ADSL Standards":"ITU-T G.992.1 ADSL (G.dmt)ITU-T G.992.3 ADSL2ITU-T G.992.5 ADSL2+T1.413 Issue 2",
"Annex Support":"Annex A/B/J/M",
"Other Standards":"",
"Band Plan":"998, 997",
"Cellular (via USB)":"2",
"Cellular (Built-in)":"-",
"Wireless WAN (2.4GHz or 5GHz)":"F",
"Wireless WAN (2.4GHz + 5GHz)":"T",
"WCDMA (3G) Band":"",
"SIM Slot":"-",
"LTE Antenna (External Dipole)":"-",
"LTE Antenna (Internal PIFA)":"-",
"LTE Category (Up to)":"-",
"LTE Antenna Peak Gain (dBi)":"",
"Max. Rx Link Rate (Mbps)":"-",
"Max. Tx Link Rate (Mbps)":"-",
"FDD Band":"",
"TDD Band":"",
"SMS Gateway":"F",
"5G Band":"",
"4G/5G Antenna (External Dipole)":"0",
"4G/5G Antenna (Internal PIFA)":"0",
"5G Antenna Peak Gain (dBi)":"-",
"5G NSA Max. Rx Link Rate (Mbps)":"-",
"5G NSA Max. Tx Link Rate (Mbps)":"-",
"5G SA Max. Rx Link Rate (Mbps)":"-",
"5G SA Max. Tx Link Rate (Mbps)":"-",
"IPv4":"PPPoEDHCPStatic IPMPoAPPPoA",
"IPv6":"PPPDHCPv6Static IPv6TSPC6rd6in4 Static Tunnel",
"LTE WAN Bridge":"F",
"802.1p/q Multi-VLAN Tagging":"T",
"Multi-VLAN/PVC":"",
"Virtual WAN":"F",
"PPPoE Pass-Through":"F",
"MPoA Bridge":"F",
"Failover":"T",
"Load Balancing":"IP-based, Session-based",
"Connection Detection":"ARP, Ping",
"WAN Data Budget":"T",
"Dynamic DNS":"T",
"DrayDDNS":"T",
"Fixed LAN (RJ-45, 1GbE)":"3",
"Fixed LAN (RJ-45, 2.5GbE)":"1",
"Fixed LAN (RJ-45, 10GbE)":"-",
"Fixed LAN (SFP, 10GbE)":"1",
"LAN Subnet":"8",
"VLAN":"802.1q Tag-based VLAN",
"Max. Number of VLAN":"8",
"DHCP Server":"Multiple IP SubnetCustom DHCP OptionsBind-IP-to-MAC",
"IPv6 Address Assignment":"",
"LAN IP Alias":"F",
"IP Pool Count":"-",
"PPPoE Server":"F",
"Wired 802.1x Authentication":"T",
"Port Mirroring":"T",
"Local DNS Server":"T",
"Conditional DNS Forwarding":"T",
"Hotspot Web Portal (Profile No.)":"4",
"Hotspot Authentication":"Click-ThroughSocial LoginSMS PINRADIUSExternal Portal Server",
"2.4GHz WLAN":"802.11be 4x4 MU-MIMO",
"5GHz WLAN":"802.11be 4x4 MU-MIMO",
"WiFi Antenna (External)":"2",
"WiFi Antenna (Internal)":"1",
"Antenna Type":"",
"2.4GHz Antenna Gain (dBi)":"",
"5GHz Antenna Gain (dBi)":"",
"2.4GHz Max. Link Rate (Mbps) ":"1376",
"5GHz Max. Link Rate (Mbps)":"5764",
"Max. Number of SSIDs (per band)":"",
"Security Mode":"OWEWPAWPA2WPA2/WPAWPA3WPA3/WPA2",
"Authentication":"Pre-Shared Key",
"Wi-Fi 7":"T",
"Wi-Fi 6":"F",
"4K-QAM":"F",
"OFDMA":"T",
"WPS":"",
"WDS":"",
"WLAN Access Control":"Hide SSIDWLAN Scheduling",
"AirTime Fairness":"T",
"Band Steering":"F",
"WMM":"T",
"Mesh (5GHz Only)":"",
"Console (RJ-45)":"0",
"USB":"2",
"USB Type":"2.0",
"USB Application":"User ManagementFTP File SharingDevice Status Printer ServerTemperature SensorUSB WAN",
"SMB File Sharing (Requires external storage)":"T",
"FXS (RJ-11)":"-",
"Routing":"IPv4 Static RouteIPv6 Static RoutePolicy RouteInter-VLAN RouteRIP v1/v2 OSPF(V2/V3)BGP",
"Policy-based Routing":"ProtocolIP AddressPort",
"Smart Action":"F",
"DNS Security (DNSSEC)":"T",
"IGMP":"IGMP v2/v3IGMP ProxyIGMP Snooping & Fast Leave",
"Local RADIUS server":"T",
"Traffic Shaping Policy":"T",
"IP-based Bandwidth Limit":"T",
"IP-based Session Limit":"T",
"QoS (Quality of Service)":"IP AddressPortApplication",
"APP QoS":"T",
"Default Policy":"T",
"VoIP Prioritization":"T",
"Port Forwarding":"T",
"DMZ Host":"T",
"Port Trigger":"T",
"ALG (Application Layer Gateway)":"SIP, RTSP",
"UPnP":"T",
"Local Service":"HTTPHTTPSTelnetSSH v2FTPTR-069",
"Config Backup/Restore":"T",
"Config File Compatibility":"-",
"Firmware Upgrade":"WUI, TFTP, TR069",
"2-Level Administration Privilege":"F",
"Role-based Privilege":"T",
"Access Control":"Access List, Brute Force Protection",
"Notification Alert":"SMS, E-mail",
"SNMP":"v1, v2c, v3",
"Syslog":"T",
"Broadcast DSL Info to LAN":"F",
"VPN Managment":"0",
"Virtual AP Controller":"20",
"Mesh (Number of manageable APs)":"7",
"Switch Management (SWM)":"10",
"Virtual Switch Controller":"10",
"VigorACS Management (Since f/w)":"V5.4.0",
"URL/IP Reputation":"T",
"Threat Protection":"F",
"Firewall Filter":"T",
"Port Knocking":"IP, Content, Traffic",
"Defense Setup":"ARP Spoofing, IP Spoofing",
"MAC Filtering Profile":"T",
"IPv6 Address Security":"T",
"Users & Groups":"T",
"Access Policies":"T",
"Group Policies":"T",
"Conditional Access Policy":"T",
"Resources":"T",
"Account Status":"T",
"Backup and Restore":"T",
"Site-to-Site VPN":"T",
"Teleworker VPN":"T",
"EasyVPN":"T",
"VPN Protocols":"IPsecIKEv1/IKEv2IKEv2-EAPIPsec-XAuthOpenVPNWireGuard",
"Max. VPN Tunnels":"50",
"Max. OpenVPN + SSL VPN":"-",
"IPsec VPN (AES 256 bits) (single-directional) (Mbps)":"540",
"IPsec VPN (AES 256 bits) (bi-directional) (Mbps)":"-",
"SSL VPN (single-directional) (Mbps)":"-",
"SSL VPN (bi-directional) (Mbps)":"-",
"Wireguard VPN (single-directional) (Mbps)":"76",
"Wireguard VPN (bi-directional) (Mbps)":"-",
"User Authentication":"LocalRADIUSTACACS+mOTPTOTP",
"IKE Authentication":"Pre-Shared Key, X.509",
"IPsec Authentication":"SHA-1, SHA-256",
"Encryption":"DES, 3DES, AES",
"Translate Local Network(Site-to-Site VPN)":"T",
"VPN Trunk (Redundancy)":"",
"Single-Armed VPN":"T",
"NAT-Traversal (NAT-T)":"T",
"VPN from LAN (Mainline fw only)":"F",
"VPN Isolation (Mainline fw only)":"F",
"VPN Packet Capture (Mainline fw only)":"F",
"VPN 2FA Authentication for AD/LDAP (Mainline fw only)":"F",
"VPN Matcher":"T",
"VPN Connection Status":"T",
"Backup & Restore":"T",
"Protocols":"",
"SIP Registrars":"-",
"Dial Plan":"",
"Call Features":"",
"Voice Codec":"",
"Caller ID":"",
"Suricata":"F",
"VigorConnect":"F",
"Clients List":"F",
"Log Center":"T",
"Wireless Information":"F",
"WAN":"T",
"ARP Table":"T",
"Route Table":"T",
"DHCP Table":"T",
"IPv6 TSPC Status":"T",
"IPv6 Neighbor Table":"T",
"LLDP Neighbors":"T",
"DNS Cache Table":"T",
"Cellular WAN Status":"F",
"DSL Status":"F",
"XGSPON Information":"F",
"Remote DSL Status":"T",
"SFP Information":"T",
"Monitoring PPPoE Pass-Through":"T",
"Session Table":"T",
"Running Table":"T",
"Power Input":"DC 12V @ 2.8A",
"Max. Power Consumption (watts)":"18",
"Memory":"-",
"Dimension (mm)":"241 x 210 x 44",
"Weight (g)":"",
"Operating Temperature":"0 to 45°C",
"Storage Temperature":"-25 to 70°C",
"Operating Humidity (non-condensing)":"10 to 90%"
}
Note: