Built-in VPN type is natively supported by the OS and no Smart VPN Client required.
|OS||Suggested VPN Type||Matched VPN in DrayTek Router||Security Advisory||FAQ|
|Windows||For V2960 & V3900||IKEv2||IKEv2 EAP||For IPsec, use AES-SHA256 security method for highest security and best performance!|
|For DrayOS Models||L2TP/IPsec||L2TP/IPsec|
|Android||For All Vigor Router Models||IPsec XAuth||IPsec XAuth|
|macOS||Cisco IPsec||IPsec XAuth|
For all clients, download Smart VPN Client for alternative VPN type.
|OS||VPN Type in Vigor Router||Note||FAQ|
|Windows||For All Vigor Router Models||SSL VPN or OpenVPN||Download Smart VPN Client for free to dial SSL VPN and OpenVPN|
Branch offices dial LAN-to-LAN VPN to the HQ to have secure access to the company resources.
If HQ dials a LAN-to-LAN VPN to the cloud server, branches can also access to the cloud server via HQ.
IPsec tunnel with AES-SHA256 security method for highest security and best performance
1. Connect Vigor Router’s WAN port to DMZ port on your company gateway router (or setup port forwarding for VPN to pass to Vigor Rotuer, e,g., port 443 for SSL VPN).
2. Download Smart VPN Client on your device. Select VPN type, and either add your office network to “more route” or enable Change Default Route.
3. Done! Start working from home!
It works for LAN-to-LAN VPN as well! See more at Single-Arm VPN
Some ISPs assign private IP addresses for a multi-site company, and most 4G providers offer private IP, too.
VPN Server with private IP behind NAT makes branches unable to establish a LAN-to-LAN VPN tunnel.
To overcome the limitations, register all your VPN Vigor Routers to DrayTek VPN Matcher, then VPN Matcher will help exchanging the connection information between VPN Server and branches.
With the connection information, VPN tunnel can be established successfully.