Description
Vigor2926 Series is a Dual WANs broadband security firewall router. It ensures a steady Internet connectivity with its multi-WAN accesses. There are two Gigabit Ethernet WAN ports and two USB ports to which 3G/4G/LTE USB modems can be attached. Up to 4 WAN connections can be active simultaneously to do load balancing or failover. VIgor2926 Series is not only a reliable Internet gateway, but also a versatile firewall gateway and VPN server, it also covers comprehensive LAN management features, such as VLAN, Bandwidth Management, Quality of Service, DNS control, which makes it a perfect solution for a small and medium-sized business network.
WAN Load Balancing & Failover
Vigor2926 Series has two Gigabit Ethernet WAN ports that can be used for any types of connection, 3G/4G/LTE USB modem can also be attached to the two USB ports on the router to add a backup wireless connectivity. In fact, all of the WAN interfaces can be configured to operated in either Load Balancing mode, which will be active all the time, or in Failover mode, which will be active only when detecting connection loss or heavy load on the primary connection.
On Vigor2926 Series, Load Balancing can be set in either IP-based mode, which means the packets destined to different IP address will be distributed across different WANs; or in Session-based mode, which means the packets belong to different sessions can take different paths, this allows a multiple-session connection to be established across multiple WANs, and the maximum data rate will be all the WAN’s bandwidth combination. Policy-based Load Balancing is also supported so that you may specify the path for some certain packets.
To increase network accessibility more, Vigor2926 Series also supports High Availability (Hardware Redundancy) which allows one or more redundant Vigor2926 Series to be added to the network and operated in standby mode.
Secure Business Network
Vigor2926 Series has implemented Stateful Packet Inspection (SPI) Firewall, flexible filtering rules can be set up to accept or deny packets based on source IP, destination IP, protocol, port number, or even the packet’s contents. Content Filtering by URL keyword or application can help you to prevent time and network resource wasting on inappropriate network activities.
With an annual subscription to CYREN Web Content Filtering service, you may also filter the websites by their categories, and set up restrictions to block the whole categories of websites (such as Social Networking, Gambling.. etc.) without the need to specify every site you would like to block. The CYREN service is constantly updating the categorization, and a free 30-day trial is included in each new router.
Vigor2926 Series is also robust VPN server which is perfect for a company based in multiple locations or has teleworkers. The VPN is compliant with all common industry standard protocols, and its compatible with third-party VPN devices.
Central Management
Vigor2926 Series can act as a Central Management portal for the other Vigor devices on the network, including VigorAP, Vigor Switch, and even Vigor Routers. With Central Management feature, device maintenance (such as firmware upgrading, configuration backup and restore) and monitoring can all be done from a single portal, which is the Web User Interface of Vigor2926 Series
Vigor2926 Series can manage up to 20 VigorAPs on its LAN and works as an AP controller. Automatic Provisioning can be triggered when a VigorAP newly join the network and this makes AP deployment much faster. You may also get the client or traffic history of all the APs from Vigor2926 Series, and set up load balancing rules for the APs.
Central Switch Management allows you to manage up to 10 Vigor Switches from Vigor2926 Series, the status of every port can be directly viewed from the router. Vigor2926 Series also supports VLAN configuration for the switches, setting that matches the router’s VLAN settings and the switch hierarchy is automatically provided which makes the VLAN configuration much easier.
Specifications
Hardware
Interface
- 1 x GbE WAN port
- 1 x GbE WAN/LAN Switchable port
(It is a fixed WAN port on f/w v3.8.9 or lower)
- 4 x GbE LAN port
- 2 x USB 2.0 port
- Factory Reset Button
- Power On/Off Switch
Power
- DC 12V @1.5~2A
- Max. Power Consumption: 24 watts
Temperature
- Operating: 0°C ~ 45°C
- Storage: -25°C ~ 70°C
Humidity
- Operating: 10% ~ 90%
(non-condensing)
Dimension (mm)
WAN
Ethernet Connection (IPv4)
- PPPoE Client
- DHCP Client
- Static IP
- PPTP/L2TP
- 802.1Q VLAN Tagging
- Triple-Play Applications
Ethernet Connection (IPv6)
- PPP
- DHCPv6 Client
- Static IPv6
- TSPC
- AICCU (AYIYA/Heartbeat)
- 6rd
- 6in4 Static Tunnel
Load Balancing
- IP-based Load Balancing
- Session-based Load Balancing
- WAN Data Budget
Failover
- Failover by Link Failure
- Failover by Traffic Threshold
Connectivity Detection
High Availability
- Method: Active-Standby /Hot-Standby
- Automatic Configuration Sync
- WCF License Key Sharing
LAN Managment
VLAN
- Up to 16 VLAN
- 802.1Q Tag-based VLAN
- Port-based VLAN
DHCP Server
- Up to 8 IP Subnet
- Supports up to 1022 IP addresses on Subnet 1-3
- Bind-IP-to-MAC
- Custom DHCP Option
Security
- Wired 802.1x authentication
DNS Control
- Local Name Server
- Conditional DNS Forwarding
Hotspot Portal
- Authentication by Click-Through, Social Login, and SMS PIN
- Custom Portal Page
- URL Redirection
- Walled-Garden
- User Info Collection
Routing
Static Route
- 40 IPv4 Static Routing Rules
- 40 IPv6 Static Routing Rules
- Inter-VLAN Routing
Dynamic Routing
Policy Routing
- 50 Route Policy
- Criteria: Protocol, Source IP, Destination IP, Destination Domain Name, Destination Country, Destination Port
- Failover options
VPN
Performance
- 50 concurrent VPN tunnels
- Max. 25 concurrent SSL VPN
Protocols
- PPTP, L2TP, IPsec, L2TP over IPsec, SSL, GRE, IKEv2
- LAN-to-LAN VPN
- Teleworker-to-LAN VPN
Encryption
- MPPE 40/128 bit
- Hardware-based AES/DES/3DES
Authentication
- PAP, CHAP, MS-CHAP, MS-CHAPv2
- MD5, SHA-1
- Pre-Shared Key, Digital Signature (X.509)
- mOTP
Advanced
- Hub-and-Spoke Topology support
- DHCP over IPsec
- VPN Redundancy for Load Balancing or Failover
- NAT-Traversal (NAT-T)
- Dead Peer Detection (DPD)
- Single-Armed VPN
Firewall
NAT
- One-to-One Port Redirection
- Range-to-Range Port Redirection
- Open Ports
- Port Triggering
- DMZ Host
- ALG: SIP, RTSP, FTP, TFTP, H.323
- VPN Pass-Through: PPTP, L2TP, IPsec
- UPnP
Firewall Filter
- IP-based Firewall Policy
- User-based Firewall Policy
- Object-based Configuration
- Schedule Enable/Disable
Content Filtering
- URL Keyword Filtering
- Category Filtering (subscription required)
- DNS Keyword Filtering
- Web Features Filtering
Attack Protection
Bandwidth Management
Bandwidth Policy
Quality of Service
- Layer 3 QoS (TOS/DSCP)
- Layer 2 QoS (802.1p)
- 4-Level Priority with user-defined classification
- Bandwidth Borrowing
- Guaranteed bandwidth for VoIP traffic
- APP QoS
Network Features
- Dynamic DNS
- DNS Security (DNSSEC)
- Bonjour
- IGMP Proxy
- IGMP Snooping
- SMB File Sharing
User Authentication
- Local User Database
- RADIUS Server
- Active Directory/LDAP
- TACACS+
- Internal RADIUS Server
Wireless LAN (n/ac/Vac model)
Standards
- 802.11 b/g/n (2.4G)
- 802.11a/n/ac/ac Wave-2 (5G)
- 4×4 MU-MIMO (5G)
- TX Beam Forming (5G)
2.4G Frequency
- USA: 2.412 ~ 2.462 GHz
- Europe ETSI: 2.412 ~ 2.472 GHz
5G Frequency
- USA: 5.150 ~ 5.250 & 5.725 ~ 5.825 GHz
- Europe ETSI: 5.150 ~ 5.250 & 5.470 ~ 5.725 GHz
Max. TX Power
- 2.4G: 19 dBm
- 5G: 28 dBm (ac/Vac model)
SSID
- Up to 4 SSID per radio
- SSID-based 802.1Q VLAN
Radio Management
- Auto Channel Selection
- Auto Channel Width (2.4G)
- Wi-Fi Scheduling
Security
- WEP, WEP-802.1x, WPA-PSK, WPA-802.1x, WPA2-PSK, WPA2-802.1x
- Hidden SSID
- Client Isolation
- Access Control per SSID
- WPS
Advanced
- Rate Control per SSID
- AirTime Fairness
- Band Steering
(ac/Vac model)
- WMM
WDS
VoIP (Vac model)
General
- Protocol: SIP, RTP/RTCP
- 12 SIP Registrars
- Jitter Buffer: 180 ms
- G.168 line echo-cancellation
Call Services
- Call Hold/Retrieve
- Call Waiting
- Call Waiting with Caller ID
- Call Transfer
- Call Forwarding (Always, Busy, No Answer, Busy or No Answer)
- Barring (Incoming / Outgoing)
- DND (Do Not Disturb)
- MWI (Message Waiting Indicator) (RFC-3842)
- Hotline
- ZRTP
Dial Plan
- Phone Book
- Digit Map
- Call Barring
- Regional
Voice Codec
- G.711 a/u law
- G.723.1
- G.726
- G.729 A/B
- VAD/CNG
DTMF Tone
- In band
- Out band (RFC-2833)
- SIP Info
Management
Configuration
- Web Interface: HTTP, HTTPS
- Command-Line Interface: Telnet, SSH
- TR-069 via VigorACS
- Config File Export & Import
- Compliant with the config file exported from Vigor2925
F/W Upgrade
Admin Access Control
- 2-level Administration Privilege
- Access from the Internet
- Access List
- Brute Force Protection
Monitoring
- Dashboard
- Syslog
- SMS/E-mail Alert
- TR-069 via VigorACS
- SNMP v2, v3