Vigor2136 Series is a broadband VPN router, featuring 2.5G WAN port to deliver fast speed that meets the growing network demands of business. It delivers up to 2.3 Gbps performance without sacrificing bandwidth control features. The router is equipped with business-grade features, including web content filtering, Route Policy, App-based QoS, and more. The series includes models with built-in 802.11ax WiFi.
IPsec throughput up to 390 Mbps
Delivers link rate up to 3 Gbps
Recommended for a network of 30 hosts
(ax model)
1WLAN/WPS Button (ax model)
2Reset Button
3WAN Port: 1x 2.5GbE RJ-45
4LAN/WAN Switchable Port: 1x 2.5GbE RJ-45
5LAN Port: 3x GbE RJ-45
62x USB 2.0
7Power On/Off Switch
8Power Input
9Wireless Antenna (ax model)
Build a secure and private tunnel from the LAN of Vigor2136 Series to the remote offices and teleworkers over the Internet. Learn more
A solution that manages digital identities, authentication, and access control to ensure the right users or groups have appropriate access to critical resources.
Prevent one device using all the bandwidth by bandwidth limit policy, session limit policy, and QoS settings.
The free DDNS service for you to access the router by a fixed hostname of your choice. Learn more
Filter web pages by URL keyword or web category to block access to insecure or inappropriate contents.
Market your business and communicate with the guests while offering hospitality WLAN. Learn more
All-in-one management platform for Vigor2136 Series to maintain and monitor the VigorAPs and VigorSwitches.
Easily link to other VigorAP to expand the wireless network. Learn more
Up to 2.5Gbps internet speed enable the users to fully utilize the available bandwidth
Vigor2136 Series supports the most secure VPN protocols :
The NAT throughput of the Vigor2136 Series can reach 2.3Gbps while meeting high QoS xpectation. Business-critical applications can be easily prioritized, and always keep VoIP in 1st priority.
Vigor2136 Series is a dual-band WiFi router that provides 160MHz bandwidth and 1024-QAM to greatly increase the speed of wireless connection. The theoretically speed is up to 3000Mbps, of which 574Mbps is in the 2.4GHz band and 2402Mbps in the 5GHz band. Which is 2.5 times faster than an 802.11ac 2x2 dual-band router. In the household .It’s also equipped with business-grade features, including URL Reputation, Route Policy, App-based QoS and lots more, and is perfect for professional smart homes/SOHO users who would like to take full control of their own network.
OFDMA (Orthogonal Frequency Division Multiple Access) is a key characteristic of the WiFi 6 certification program. Included in the WiFi 6 standard, OFDMA relies on efficient scheduling techniques to function effectively in congested and complex network environments. As WiFi 6 gains traction among manufacturers and the broader industry, it becomes crucial to analyze and document the potential benefits of successful OFDMA implementation and the ability to measure its impact.
MU-MIMO is similar to multiple trucks serving users simultaneously. It increases capacity and results in higher speed per users.
BSS Coloring is a technique used to improve co-existence of overlapping BSSs and to allow spatial reuse within one channel .Simply say BSS coloring helps in mitigating problem of co-channel interference found in legacy wifi networks.
TWT (Target wake time ) ensures that end devices spend more time in standby while sending and receiving data more economically. This reduces energy consumption and increases overall efficiency within the home network. It allows an AP to manage activity in the WiFi network, in order to minimize medium contention between Stations (STAs), and to reduce the required amount of time that an STA in the power-save mode needs to be awake.
WPA3 (WiFi Protected Access 3) enhances the security of WiFi networks by addressing vulnerabilities in previous standards (like WPA2) and introducing new features to protect modern wireless communications better. WPA3 was introduced in 2018 to provide stronger authentication, better encryption, and improved defenses against attacks such as brute-force password guessing and man-in-the-middle exploits.
DrayTek's WiFi 6 encryption:
And you may check below comparison table to see WPA3's strength is obviously an surplus development in WLAN security design.
WEP | WPA | WPA2 | WPA3 | |
---|---|---|---|---|
Encryption | RC4 | TKIP / RC4 | AES-CCMP | AES-CCMP / AES-GCMP |
Session Key | 64/128 bit | 128 bit | 128 bit | 128/256 bit |
Authentication | Open system, shared key | Pre-shared key | Pre-shared key | AES-CCMP / AES-GCMP |
Level of Security | Very low | Low | Moderate | High |
URL Reputation is a cloud-based technology to provide Threat Intelligence Service. This service adds an extra layer of security protection to LAN client for their online activities.
There are 82 categories in total, 10 of which are security-focused, providing comprehensive and up-to-date protection to your home network or office network.
The various categories cover network security, including malware, spyware, adware, parental control for child protection, business, social networking, and more to ensure a safe online environment while also boosting employee productivity and can reach efficient bandwidth management.
You can purchase URL reputation B card for your Vigor2136 Series.
*Future Support
IAM (Identity and Access Management) is a framework of policies and processes that ensure the right users or groups have appropriate access to critical resources by managing digital identities, authentication, and access control.
It encompasses processes for identifying, authenticating, and authorizing users or groups to access systems, applications, and data. By assigning specific roles to users and ensuring they have the appropriate level of access to corporate resources and networks, IAM enhances both security management and the user experience.
IAM provides a set of security management tools for Vigor Routers, which is Zero Trust Ready. This solution allows you to grant and categorize user privileges, create and manage access policies, and define large-scale group policies that integrate multiple filtering rules and traffic shaping settings. DrayTek's IAM plays an important role in your cloud security strategy.
System administrators can create access policies on the local users in this tab The access policies can be created according to
Combine these access policies can create a robust security framework for your system.
Setup group policies with predefined local resources like employees, workstations, network printers ,and local servers. Customize firewall policies and traffic shaping policies to enhance network security and optimize traffic flow.
Conditional access policies can require users to provide multiple forms of authentication before they are granted access to a resource.
Record local resources’ IP addresses and Mac addresses under Resources tab. For examples, Workstations ,Net printers ,PBX systems ,NVR systems and servers.
You can backup or restore any of your settings such as Users and Groups, Access and Group Policies and so on. Of course, you can add in Password protection to well save them before you take action.
Solve the sticky client problem and improve WiFi roaming experience.
WiFi clients automatically hand-off to another AP/router with a better signal strength when moving around in an area with multiple APs/routers.
However, WiFi clients sometimes stick to the AP/router with weak signal, and not switching to the one with better signal.
Vigor Router will disassociate the WiFi clients who are out of the effective transmission range, forcing them to pick up another access point/router with a stronger signal.
Furthermore, with "Minimum RSSI with Adjacent AP" option, Vigor Router can disassociate the client only when other AP/router has a stronger wireless signal, and keep client stayed when there’s no other AP/router nearby.
You can connect 7 APs, and form the wireless Group within the same network which creates MESH links automatically based on the optimum algorism among the root and node APs.
Market your business while offering free WLAN
Redirect the hotspot guests to the company homepage, online surveys, or display promotion message.
A variety of login methods are supported to meet your business need, including Click Through, IAM User Login, and an external RADIUS Server.
The platform offers comprehensive management for Vigor devices on the LAN side, supporting up to 20 APs (a root AP included) and 5 switches.
All you need is connect the Vigor Switch/AP to the LAN side of the router, Vigor Router will then discover the devices to be managed.
Basic settings may be done on the Vigor Router, and provision to the managed Vigor Switch/AP.
Vigor Router provides a centralized view of managing devices, you may always check if the managed Vigor Switch/AP is online.
You may perform a factory reset, save/restore a configuration backup, or trigger a remote reboot directly on the Vigor Router. There’s no need to log in to each device’s management page.
Discovery, Provisioning, Monitoring, Centralized Hierarchy View
Auto-Discovery, Provisioning, Monitoring, Centralized View, Alarm, Reboot VigorAP Remotely, WiFi Client Load Balancing
Note :The stated throughput performance figures are the maximum derived from DrayTek internal testing, conducted under optimal conditions, with Hardware Acceleration enabled where available. The actual performance may vary based on network conditions and activated applications.
Model | WAN Port | 2.4GHz WLAN | 5GHz WLAN | Wireless Antenna | Wireless Standard | Max. Link Rate | Max. Bandwidth | WDS | Mesh |
Vigor2136 | 2.5GbE, RJ-45 | - | - | - | - | - | - | - | - |
Vigor2136ax | 2.5GbE, RJ-45 | 2 x External Detachable + 1 x 5GHz Internal PIFA (2.7dBi for 5GHz, 2.6dBi for 2.4GHz) |
2.4 GHz: 802.11b/g/n/ax 5 GHz: 802.11 a/n/ac/ax |
2.4 GHz: 574 Mbps 5 GHz: 2.4 Gbps |
160 MHz |
Model |
Performance |
NAT Session | Max. NAT (Mbps) | Max. NAT with Hardware Acceleration (Mbps) | Max. NAT with Hardware Acceleration : Single WAN (Mbps) | Max. NAT with Hardware Acceleration : Dual WAN (Mbps) | Max. NAT with Software Acceleration (single-directional) (Mbps) | Max. NAT with Software Acceleration (bi-directional) (Mbps) | Max. VDSL Link Rate (Mbps) | Max. ADSL Link Rate (Mbps) | WAN |
Ethernet (GbE) | Ethernet (2.5 GbE) | Switchable WAN/LAN (GbE) | xDSL | VDSL Standards | VDSL2 Profile | G.fast Profile | ADSL Standards | Other Standards | Band Plan | SFP | SFP (WAN/LAN Switchable) | SFP/Ethernet Combo (WAN/LAN Switchable) | Cellular (via USB) | Cellular (Built-in) | Wireless WAN (2.4GHz or 5GHz) | Wireless WAN (2.4GHz + 5GHz) | 4G LTE |
LTE Category | LTE Antenna (External Dipole) | LTE Antenna Peak Gain (dBi) | SIM Slot | Max. Rx Link Rate (Mbps) | Max. Tx Link Rate (Mbps) | FDD Band | TDD Band | WCDMA (3G) Band | SMS Gateway | 5G |
5G Band | 5G Antenna Peak Gain (dBi) | 5G NSA Max. Rx Link Rate (Mbps) | 5G NSA Max. Tx Link Rate (Mbps) | 5G SA Max. Rx Link Rate (Mbps) | 5G SA Max. Tx Link Rate (Mbps) | Note | Internet Connection |
IPv4 | IPv6 | LTE WAN Bridge | 802.1p/q Multi-VLAN Tagging | Multi-VLAN/PVC | Virtual WAN | PPPoE Pass-Through | MPoA Bridge | Failover | Load Balancing | WAN Active on Demand | Connection Detection | WAN Data Budget | Dynamic DNS | DrayDDNS | LAN |
Fixed LAN (RJ-45, GbE) | LAN Subnet | DMZ Port | VLAN | Max. Number of VLAN | DHCP Server | IPv6 Address Assignment | LAN IP Alias | IP Pool Count | PPPoE Server | Wired 802.1x Authentication | Port Mirroring | Local DNS Server | Conditional DNS Forwarding | Hotspot Web Portal (Profile No.) | Hotspot Authentication | WLAN |
2.4GHz WLAN | 5GHz WLAN | Antennas | Antenna Type | Antenna Spec | 2.4GHz Antenna Gain (dBi) | 5GHz Antenna Gain (dBi) | 2.4GHz Max. Link Rate (Mbps) | 5GHz Max. Link Rate (Mbps) | Max. Number of SSIDs per band | Security Mode | Authentication | WiFi 6 | OFDMA | Roaming | WPS | WDS | Access Control | AirTime Fairness | Band Steering | WMM | Mesh (5GHz Only) | Other Ports |
Console (RJ-45) | USB | USB Type | USB Application | FXS (RJ-11) | Networking |
Routing | Policy-based Routing | Smart Action | High Availability | DNS Security (DNSSEC) | IGMP | Local RADIUS server | SMB File Sharing (Requires external storage) | Bandwidth Management |
Traffic Shaping Policy | IP-based Bandwidth Limit | IP-based Session Limit | QoS (Quality of Service) | APP QoS | Default Policy | VoIP Prioritization | Management |
Local Service | Config Backup/Restore | Config File Compatibility | Firmware Upgrade | 2-Level Administration Privilege | Role-based Privilege | Access Control | Notification Alert | Netflow | SNMP | Syslog | Broadcast DSL Info to LAN | VPN Managment | AP Managment (APM) | Virtual AP Controller (Device up to) | Mesh (Number of manageable APs) | Switch Management (SWM) | Virtual Switch Controller | VigorACS Management (Since f/w) | Security |
IP Reputation Filter | Firewall Filter | Defense Setup | MAC Filtering Profile | IPv6 Address Security | IAM |
Users & Groups | Access Policies | Group Policies | Conditional Access Policy | Resources | Backup and Restore | VPN |
Site-to-Site VPN | Teleworker VPN | Protocols | Max. VPN Tunnels | Max. OpenVPN + SSL VPN Tunnels | IPsec VPN Throughput (AES 256 bits) (single-directional) (Mbps) | IPsec VPN Throughput (AES 256 bits) (bi-directional) (Mbps) | SSL VPN Throughput (single-directional) (Mbps) | SSL VPN Throughput (bi-directional) (Mbps) | Wireguard VPN Throughput (single-directional) (Mbps) | Wireguard VPN Throughput (bi-directional) (Mbps) | User Authentication | IKE Authentication | IPsec Authentication | Encryption | VPN Trunk (Redundancy) | Single-Armed VPN | NAT-Traversal (NAT-T) | VPN from LAN (Mainline fw only) | VPN Isolation (Mainline fw only) | VPN Packet Capture (Mainline fw only) | VPN 2FA Authentication for AD/LDAP (Mainline fw only) | VPN Matcher | VPN Connection Status | Backup & Restore | VoIP |
Protocols | SIP Registrars | Dial Plan | Call Features | Voice Codec | Caller ID | Linux Applications |
Suricata | VigorConnect | Monitoring |
Clients List | Log Center | Wireless Information | WAN | ARP Table | Route Table | DHCP Table | IPv6 TSPC Status | IPv6 Neighbor Table | DNS Cache Table | PPPoE Pass-Through | Session Table | Physical |
Power Input | Max. Power Consumption (watts) | Memory | Dimension (mm) | Weight (g) | Operating Temperature | Storage Temperature | Operating Humidity (non-condensing) |
Vigor2136 |
K | 2300 | 0 | 0 | 0 | - | - | - | - | 0 | 1 | 1 | 0 | 0 | 0 | 0 | 2 | - | F | F | - | - | - | - | - | - | F Learn More | - | - | - | - | - | PPPoE DHCP Static IP |
PPP DHCPv6 Static IPv6 TSPC 6rd 6in4 Static Tunnel |
F | T | T | F | F | F | T | ARP, Ping | T | T | T | 3 | 4 | - | 802.1q Tag-based VLAN Port-based VLAN |
8 | Multiple IP Subnet Custom DHCP Options Bind-IP-to-MAC |
F | - | F | T | * | T | T | 2 | Click-Through External Portal Server |
0 | 0 | 0 | - | F | F | Assisted Roaming |
F | F | F | 0 | 2 | 2.0 | User Management File Explorer Device Status Printer Server Temperature Sensor USB WAN |
- | IPv4 Static Route IPv6 Static Route Policy Route Inter-VLAN Route RIP v1/v2 OSPF(V2/V3) |
Protocol IP Address Port |
F | F | T | IGMP v2/v3 IGMP Proxy IGMP Snooping & Fast Leave |
T | T | T | T | F | IP Address Port Application |
T | T | T | HTTP HTTPS Telnet SSH v2 FTP TR-069 |
T | - | TFTP, HTTP, TR-069 | F | T | Access List, Brute Force Protection | SMS, E-mail | v1, v2c, v3 | T | F | 0 | 0 | 20 | - | 0 | 5 | V5.3.0 | * | IP Content Traffic |
ARP Spoofing IP Spoofing |
T | T | T | T | T | T | T | T | T | T | IPsec IKEv1/IKEv2 IKEv2-EAP IPsec-XAuth OpenVPN Wireguard |
4 | - | 390 | - | - | - | 90 | - | Local RADIUS TACACS+ mOTP TOTP |
Pre-Shared Key, X.509 | SHA-1, SHA-256 | DES 3DES AES |
T | T | F | F | F | F | - | T | T | - | F | F | T | T | T | T | T | T | T | T | T | T | T | T | DC 12V @ 0.9A | 10 | - | 207 x 131 x 42 | - | 0 to 45°C | -25 to 70°C | 10 to 90% | |||||||||||||||||||||||||||||||||||||||||||||||||||
Vigor2136ax |
K | 2300 | 0 | 0 | 0 | - | - | - | - | 0 | 1 | 1 | 0 | 0 | 0 | 0 | 2 | - | F | T | - | - | - | - | - | - | F Learn More | - | - | - | - | - | PPPoE DHCP Static IP |
PPP DHCPv6 Static IPv6 TSPC 6rd 6in4 Static Tunnel |
F | T | T | F | F | F | T | ARP, Ping | T | T | T | 3 | 4 | - | 802.1q Tag-based VLAN Port-based VLAN |
8 | Multiple IP Subnet Custom DHCP Options Bind-IP-to-MAC |
F | - | F | T | * | T | T | 2 | Click-Through External Portal Server |
802.11ax 2x2 MIMO | 802.11ax 3x3 MU-MIMO | 3 | 2 x External Detachable + 1 x 5GHz Internal PIFA | 2.6 | 2.7 | 574 | 2402 | 8 | OWE WEP WPA WPA2 WPA2/WPA WPA3 WPA3/WPA2 |
Pre-Shared Key, 802.1X | T | T | Assisted Roaming |
PIN, PBC | Repeater | Access List Client Isolation Hide SSID WLAN Scheduling |
T | T | T | Root | 0 | 2 | 2.0 | User Management File Explorer Device Status Printer Server Temperature Sensor USB WAN |
- | IPv4 Static Route IPv6 Static Route Policy Route Inter-VLAN Route RIP v1/v2 OSPF(V2/V3) |
Protocol IP Address Port |
F | F | T | IGMP v2/v3 IGMP Proxy IGMP Snooping & Fast Leave |
T | T | T | T | F | IP Address Port Application |
T | T | T | HTTP HTTPS Telnet SSH v2 FTP TR-069 |
T | - | TFTP, HTTP, TR-069 | F | T | Access List, Brute Force Protection | SMS, E-mail | v1, v2c, v3 | T | F | 0 | 0 | 20 | 7 | 0 | 5 | V5.3.0 | * | IP Content Traffic |
ARP Spoofing IP Spoofing |
T | T | T | T | T | T | T | T | T | T | IPsec IKEv1/IKEv2 IKEv2-EAP IPsec-XAuth OpenVPN Wireguard |
4 | - | 390 | - | - | - | 90 | - | Local RADIUS TACACS+ mOTP TOTP |
Pre-Shared Key, X.509 | SHA-1, SHA-256 | DES 3DES AES |
T | T | F | F | F | F | - | T | T | - | F | F | T | T | T | T | T | T | T | T | T | T | T | T | DC 12V @ 1.5A | 18 | - | 207 x 131 x 42 | - | 0 to 45°C | -25 to 70°C | 10 to 90% |
{ "NAT Session":"K", "Max. NAT (Mbps)":"2300", "Max. NAT with Hardware Acceleration (Mbps)":"0", "Max. NAT with Hardware Acceleration : Single WAN (Mbps)":"0", "Max. NAT with Hardware Acceleration : Dual WAN (Mbps)":"0", "Max. NAT with Software Acceleration (single-directional) (Mbps)":"-", "Max. NAT with Software Acceleration (bi-directional) (Mbps)":"-", "Max. VDSL Link Rate (Mbps)":"-", "Max. ADSL Link Rate (Mbps)":"-", "Ethernet (GbE)":"0", "Ethernet (2.5 GbE)":"1", "Switchable WAN/LAN (GbE)":"1", "xDSL":"0", "VDSL Standards":"", "VDSL2 Profile":"", "G.fast Profile":"", "ADSL Standards":"", "Other Standards":"", "Band Plan":"", "SFP":"0", "SFP (WAN/LAN Switchable)":"0", "SFP/Ethernet Combo (WAN/LAN Switchable)":"0", "3G/4G/LTE (via USB)":"2", "3G/4G/LTE (Built-in)":"F", "Wireless WAN (2.4GHz or 5GHz)":"F", "Wireless WAN (2.4GHz + 5GHz)":"F", "LTE Category":"-", "LTE Antenna (External Dipole)":"-", "LTE Antenna Peak Gain (dBi)":"", "SIM Slot":"-", "Max. Rx Link Rate (Mbps)":"-", "Max. Tx Link Rate (Mbps)":"-", "FDD Band":"", "TDD Band":"", "WCDMA (3G) Band":"", "SMS Gateway":"F", "5G Band":"", "5G Antenna Peak Gain (dBi)":"-", "5G NSA Max. Rx Link Rate (Mbps)":"-", "5G NSA Max. Tx Link Rate (Mbps)":"-", "5G SA Max. Rx Link Rate (Mbps)":"-", "5G SA Max. Tx Link Rate (Mbps)":"-", "Note":"", "IPv4":"PPPoEDHCPStatic IP", "IPv6":"PPPDHCPv6Static IPv6TSPC6rd6in4 Static Tunnel", "LTE WAN Bridge":"F", "802.1p/q Multi-VLAN Tagging":"T", "Multi-VLAN/PVC":"T", "Virtual WAN":"F", "PPPoE Pass-Through":"F", "MPoA Bridge":"F", "Failover":"T", "Load Balancing":"", "WAN Active on Demand":"", "Connection Detection":"ARP, Ping", "WAN Data Budget":"T", "Dynamic DNS":"T", "DrayDDNS":"T", "Fixed LAN (RJ-45, GbE)":"3", "LAN Subnet":"4", "DMZ Port":"-", "VLAN":"802.1q Tag-based VLANPort-based VLAN", "Max. Number of VLAN":"8", "DHCP Server":"Multiple IP SubnetCustom DHCP OptionsBind-IP-to-MAC", "IPv6 Address Assignment":"", "LAN IP Alias":"F", "IP Pool Count":"-", "PPPoE Server":"F", "Wired 802.1x Authentication":"T", "Port Mirroring":"*", "Local DNS Server":"T", "Conditional DNS Forwarding":"T", "Hotspot Web Portal (Profile No.)":"2", "Hotspot Authentication":"Click-ThroughExternal Portal Server", "Console (RJ-45)":"0", "USB":"2", "USB Type":"2.0", "FXS (RJ-11)":"-", "Routing":"IPv4 Static RouteIPv6 Static RoutePolicy RouteInter-VLAN RouteRIP v1/v2OSPF(V2/V3)", "Policy-based Routing":"ProtocolIP AddressPort", "Smart Action":"F", "High Availability":"F", "DNS Security (DNSSEC)":"T", "IGMP":"IGMP v2/v3IGMP ProxyIGMP Snooping & Fast Leave", "Local RADIUS server":"T", "SMB File Sharing (Requires external storage)":"T", "LAN-to-LAN":"T", "Teleworker-to-LAN":"T", "VPN Protocols":"IPsecIKEv1/IKEv2IKEv2-EAPIPsec-XAuthOpenVPNWireguard", "Max. VPN":"4", "Max. OpenVPN + SSL VPN":"-", "IPsec VPN (AES 256 bits) (single-directional) (Mbps)":"390", "IPsec VPN (AES 256 bits) (bi-directional) (Mbps)":"-", "SSL VPN (single-directional) (Mbps)":"-", "SSL VPN (bi-directional) (Mbps)":"-", "Wireguard VPN (single-directional) (Mbps)":"90", "Wireguard VPN (bi-directional) (Mbps)":"-", "User Authentication":"LocalRADIUSTACACS+mOTPTOTP", "IKE Authentication":"Pre-Shared Key, X.509", "IPsec Authentication":"SHA-1, SHA-256", "Encryption":"DES3DESAES", "VPN Trunk (Redundancy)":"", "Single-Armed VPN":"T", "NAT-Traversal (NAT-T)":"T", "VPN from LAN (Mainline fw only)":"F", "VPN Isolation (Mainline fw only)":"F", "VPN Packet Capture (Mainline fw only)":"F", "VPN 2FA Authentication for AD/LDAP (Mainline fw only)":"F", "VPN Matcher":"-", "NAT":"Port TriggeringDMZ HostUPnPPort Forwarding", "ALG (Application Layer Gateway)":"SIP, RTSP", "VPN Pass-Through":"", "IP-based Firewall Policy":"T", "Content Filtering":"APPURL KeywordDNS KeywordWeb FeaturesWeb Category*(*subscription required)", "IP Reputation":"*", "DoS Attack Defense":"T", "Spoofing Defense":"T", "Suricata":"F", "VigorConnect":"F", "IP-based Bandwidth Limit":"T", "IP-based Session Limit":"F", "QoS (Quality of Service)":"IP AddressPortApplication", "VoIP Prioritization":"T", "APP QoS":"T", "2.4GHz WLAN":"", "5GHz WLAN":"", "Antennas":"0", "Antenna Type":"", "Antenna Spec":"", "2.4GHz Antenna Gain (dBi)":"", "5GHz Antenna Gain (dBi)":"", "2.4GHz Max. Link Rate (Mbps) ":"0", "5GHz Max. Link Rate (Mbps)":"0", "Max. Number of SSIDs per band":"-", "Security Mode":"", "Authentication":"", "WiFi 6":"F", "OFDMA":"F", "WPS":"", "WDS":"", "Access Control WLAN":"", "AirTime Fairness":"F", "Band Steering":"F", "WMM":"F", "Mesh (5GHz Only)":"", "Protocols":"", "SIP Registrars":"-", "Dial Plan":"", "Call Features":"", "Voice Codec":"", "Caller ID":"", "Local Service":"HTTPHTTPSTelnetSSH v2FTPTR-069", "Config Backup/Restore":"T", "Config File Compatibility":"-", "Firmware Upgrade":"TFTP, HTTP, TR-069", "2-Level Administration Privilege":"F", "Role-based Privilege":"T", "Access Control":"Access List, Brute Force Protection", "Notification Alert":"SMS, E-mail", "Netflow":"", "SNMP":"v1, v2c, v3", "Syslog":"T", "Broadcast DSL Info to LAN":"F", "VPN Managment":"0", "AP Managment (APM)":"0", "Virtual AP Controller":"20", "Mesh (Number of manageable APs)":"-", "Switch Management (SWM)":"0", "Virtual Switch Controller":"5", "VigorACS Management (Since f/w)":"V5.3.0", "Power Input":"DC 12V @ 0.9A", "Max. Power Consumption (watts)":"10", "Memory":"-", "Dimension (mm)":"207 x 131 x 42", "Weight (g)":"-", "Operating Temperature":"0 to 45°C", "Storage Temperature":"-25 to 70°C", "Operating Humidity (non-condensing)":"10 to 90%", "IAM - Users & Groups":"T", "IAM - Access Policies":"T", "IAM - Group Policies":"T", "IAM - Confidential Access Policy":"", "IAM - Resources":"T", "IAM - Backup and Restore":"T" }
{ "NAT Session":"K", "Max. NAT (Mbps)":"2300", "Max. NAT with Hardware Acceleration (Mbps)":"0", "Max. NAT with Hardware Acceleration : Single WAN (Mbps)":"0", "Max. NAT with Hardware Acceleration : Dual WAN (Mbps)":"0", "Max. NAT with Software Acceleration (single-directional) (Mbps)":"-", "Max. NAT with Software Acceleration (bi-directional) (Mbps)":"-", "Max. VDSL Link Rate (Mbps)":"-", "Max. ADSL Link Rate (Mbps)":"-", "Ethernet (GbE)":"0", "Ethernet (2.5 GbE)":"1", "Switchable WAN/LAN (GbE)":"1", "xDSL":"0", "VDSL Standards":"", "VDSL2 Profile":"", "G.fast Profile":"", "ADSL Standards":"", "Other Standards":"", "Band Plan":"", "SFP":"0", "SFP (WAN/LAN Switchable)":"0", "SFP/Ethernet Combo (WAN/LAN Switchable)":"0", "3G/4G/LTE (via USB)":"2", "3G/4G/LTE (Built-in)":"F", "Wireless WAN (2.4GHz or 5GHz)":"F", "Wireless WAN (2.4GHz + 5GHz)":"T", "LTE Category":"-", "LTE Antenna (External Dipole)":"-", "LTE Antenna Peak Gain (dBi)":"", "SIM Slot":"-", "Max. Rx Link Rate (Mbps)":"-", "Max. Tx Link Rate (Mbps)":"-", "FDD Band":"", "TDD Band":"", "WCDMA (3G) Band":"", "SMS Gateway":"F", "5G Band":"", "5G Antenna Peak Gain (dBi)":"-", "5G NSA Max. Rx Link Rate (Mbps)":"-", "5G NSA Max. Tx Link Rate (Mbps)":"-", "5G SA Max. Rx Link Rate (Mbps)":"-", "5G SA Max. Tx Link Rate (Mbps)":"-", "Note":"", "IPv4":"PPPoEDHCPStatic IP", "IPv6":"PPPDHCPv6Static IPv6TSPC6rd6in4 Static Tunnel", "LTE WAN Bridge":"F", "802.1p/q Multi-VLAN Tagging":"T", "Multi-VLAN/PVC":"T", "Virtual WAN":"F", "PPPoE Pass-Through":"F", "MPoA Bridge":"F", "Failover":"T", "Load Balancing":"", "WAN Active on Demand":"", "Connection Detection":"ARP, Ping", "WAN Data Budget":"T", "Dynamic DNS":"T", "DrayDDNS":"T", "Fixed LAN (RJ-45, GbE)":"3", "LAN Subnet":"4", "DMZ Port":"-", "VLAN":"802.1q Tag-based VLANPort-based VLAN", "Max. Number of VLAN":"8", "DHCP Server":"Multiple IP SubnetCustom DHCP OptionsBind-IP-to-MAC", "IPv6 Address Assignment":"", "LAN IP Alias":"F", "IP Pool Count":"-", "PPPoE Server":"F", "Wired 802.1x Authentication":"T", "Port Mirroring":"*", "Local DNS Server":"T", "Conditional DNS Forwarding":"T", "Hotspot Web Portal (Profile No.)":"2", "Hotspot Authentication":"Click-ThroughExternal Portal Server", "Console (RJ-45)":"0", "USB":"2", "USB Type":"2.0", "FXS (RJ-11)":"-", "Routing":"IPv4 Static RouteIPv6 Static RoutePolicy RouteInter-VLAN RouteRIP v1/v2OSPF(V2/V3)", "Policy-based Routing":"ProtocolIP AddressPort", "Smart Action":"F", "High Availability":"F", "DNS Security (DNSSEC)":"T", "IGMP":"IGMP v2/v3IGMP ProxyIGMP Snooping & Fast Leave", "Local RADIUS server":"T", "SMB File Sharing (Requires external storage)":"T", "LAN-to-LAN":"T", "Teleworker-to-LAN":"T", "VPN Protocols":"IPsecIKEv1/IKEv2IKEv2-EAPIPsec-XAuthOpenVPNWireguard", "Max. VPN":"4", "Max. OpenVPN + SSL VPN":"-", "IPsec VPN (AES 256 bits) (single-directional) (Mbps)":"390", "IPsec VPN (AES 256 bits) (bi-directional) (Mbps)":"-", "SSL VPN (single-directional) (Mbps)":"-", "SSL VPN (bi-directional) (Mbps)":"-", "Wireguard VPN (single-directional) (Mbps)":"90", "Wireguard VPN (bi-directional) (Mbps)":"-", "User Authentication":"LocalRADIUSTACACS+mOTPTOTP", "IKE Authentication":"Pre-Shared Key, X.509", "IPsec Authentication":"SHA-1, SHA-256", "Encryption":"DES3DESAES", "VPN Trunk (Redundancy)":"", "Single-Armed VPN":"T", "NAT-Traversal (NAT-T)":"T", "VPN from LAN (Mainline fw only)":"F", "VPN Isolation (Mainline fw only)":"F", "VPN Packet Capture (Mainline fw only)":"F", "VPN 2FA Authentication for AD/LDAP (Mainline fw only)":"F", "VPN Matcher":"-", "NAT":"Port TriggeringDMZ HostUPnPPort Forwarding", "ALG (Application Layer Gateway)":"SIP, RTSP", "VPN Pass-Through":"", "IP-based Firewall Policy":"T", "Content Filtering":"APPURL KeywordDNS KeywordWeb FeaturesWeb Category*(*subscription required)", "IP Reputation":"*", "DoS Attack Defense":"T", "Spoofing Defense":"T", "Suricata":"F", "VigorConnect":"F", "IP-based Bandwidth Limit":"T", "IP-based Session Limit":"F", "QoS (Quality of Service)":"IP AddressPortApplication", "VoIP Prioritization":"T", "APP QoS":"T", "2.4GHz WLAN":"802.11ax 2x2 MIMO", "5GHz WLAN":"802.11ax 3x3 MU-MIMO", "Antennas":"3", "Antenna Type":"", "Antenna Spec":"2 x External Detachable + 1 x 5GHz Internal PIFA", "2.4GHz Antenna Gain (dBi)":"2.6", "5GHz Antenna Gain (dBi)":"2.7", "2.4GHz Max. Link Rate (Mbps) ":"574", "5GHz Max. Link Rate (Mbps)":"2402", "Max. Number of SSIDs per band":"8", "Security Mode":"OWEWEPWPAWPA2WPA2/WPAWPA3WPA3/WPA2", "Authentication":"Pre-Shared Key, 802.1X", "WiFi 6":"T", "OFDMA":"T", "WPS":"PIN, PBC", "WDS":"Repeater", "Access Control WLAN":"Access ListClient IsolationHide SSIDWLAN Scheduling", "AirTime Fairness":"T", "Band Steering":"T", "WMM":"T", "Mesh (5GHz Only)":"Root", "Protocols":"", "SIP Registrars":"-", "Dial Plan":"", "Call Features":"", "Voice Codec":"", "Caller ID":"", "Local Service":"HTTPHTTPSTelnetSSH v2FTPTR-069", "Config Backup/Restore":"T", "Config File Compatibility":"-", "Firmware Upgrade":"TFTP, HTTP, TR-069", "2-Level Administration Privilege":"F", "Role-based Privilege":"T", "Access Control":"Access List, Brute Force Protection", "Notification Alert":"SMS, E-mail", "Netflow":"", "SNMP":"v1, v2c, v3", "Syslog":"T", "Broadcast DSL Info to LAN":"F", "VPN Managment":"0", "AP Managment (APM)":"0", "Virtual AP Controller":"20", "Mesh (Number of manageable APs)":"7", "Switch Management (SWM)":"0", "Virtual Switch Controller":"5", "VigorACS Management (Since f/w)":"V5.3.0", "Power Input":"DC 12V @ 1.5A", "Max. Power Consumption (watts)":"18", "Memory":"-", "Dimension (mm)":"207 x 131 x 42", "Weight (g)":"-", "Operating Temperature":"0 to 45°C", "Storage Temperature":"-25 to 70°C", "Operating Humidity (non-condensing)":"10 to 90%", "IAM - Users & Groups":"T", "IAM - Access Policies":"T", "IAM - Group Policies":"T", "IAM - Confidential Access Policy":"", "IAM - Resources":"T", "IAM - Backup and Restore":"T" }
Note: