Vigor2136ax-4G delivers reliable and high-speed connectivity with built-in 4G Cellular, and embedded dual SIM slots (one active at a time) provide enhanced redundancy to maintain continuous cellular network access. The equipped 2.5G WAN port delivers fast wired performance. With Wi-Fi 6 capability, it ensures efficient and stable wireless connections even in high-dentisy environments. In addition to the primary 4G WAN, the router supports Ethernet WAN or Wi-Fi WAN as backup options to ensure uninterrupted internet connectivity.
Vigor2136ax-4G integrates advanced business features such as Route Policy, App-based QoS, and IP/URL Filtering, providing a secure and robust networking solution for offices, retail, and remote sites.
LTE Download Speed up to 300 Mbps
1x 2.5G WAN, 1x 2.5G LAN/WAN Switchable
Delivers link rate up to 3 Gbps
Recommended for a network of 30 hosts

1Wi-Fi Antenna
2Fixed WAN Port: 1x 2.5GbE RJ-45
3LAN/WAN Switchable Port: 1x 2.5GbE RJ-45
4Fixed LAN Port: 3x GbE RJ-45
51x USB 2.0
62x Nano-Sized SIM Slots
72x Cellular Antenna
Provide 4G LTE Internet access to where fixed lines are (temporarily) not available without the need for a USB dongle.
Provides higher performance to Wi-Fi 6 AP and other Ethernet devices.
Prevent one device using all the bandwidth by bandwidth limit policy, session limit policy, and QoS settings.
The free DDNS service for you to access the router by a fixed hostname of your choice. Learn more
Build a secure and private tunnel from the LAN of Vigor2136ax-4G to the remote offices and teleworkers over the Internet. Learn more
Secure VPN in Seconds: No Keys, No Configs, Just Login.
Filter web pages by URL keyword or web category to block access to insecure or inappropriate contents.
Improve network security by classifying URLs and IPs to control web access and protect against online threats. Learn more
A solution that manages digital identities, authentication, and access control to ensure the right users or groups have appropriate access to critical resources. Learn more
Market your business and communicate with the guests while offering hospitality WLAN. Learn more
Feature OFDMA and MU-MIMO technology to improve Wi-Fi efficiency and deliver higher wireless speed.
Easily link to other VigorAP to expand the wireless network. Learn more
All-in-one management platform for Vigor2136ax-4G to maintain and monitor the VigorAPs and VigorSwitches.
Up to 2.5Gbps internet speed enable the users to fully utilize the available bandwidth
The NAT throughput of the Vigor2136ax-4G can reach 2.3Gbps while meeting high QoS expectation. Business-critical applications can be easily prioritized, and always keep VoIP in 1st priority.
Traditional VPN setup can be complex, with protocol choices and manual configuration. Vigor2136ax-4G supports IPsec, WireGuard, and OpenVPN, while EasyVPN streamlines Teleworker VPN, giving remote users secure access with a simple profile import.
With EasyVPN, users can establish secure connections without the hassle of:
By automating these steps, EasyVPN ensures a fast, secure, and user-friendly VPN experience for everyone.
Vigor2136ax-4G is a dual-band Wi-Fi router that provides 160MHz bandwidth and 1024-QAM to greatly increase the speed of wireless connection. The theoretically speed is up to 3000Mbps, of which 574Mbps is in the 2.4GHz band and 2402Mbps in the 5GHz band. Which is 2.5 times faster than an 802.11ac 2x2 dual-band router. In the household. It's also equipped with business-grade features, including URL Reputation, Route Policy, App-based QoS and lots more, and is perfect for professional smart homes/SOHO users who would like to take full control of their own network.
OFDMA (Orthogonal Frequency Division Multiple Access) is a key characteristic of the Wi-Fi 6 certification program. Included in the Wi-Fi 6 standard, OFDMA relies on efficient scheduling techniques to function effectively in congested and complex network environments. As Wi-Fi 6 gains traction among manufacturers and the broader industry, it becomes crucial to analyze and document the potential benefits of successful OFDMA implementation and the ability to measure its impact.
MU-MIMO is similar to multiple trucks serving users simultaneously. It increases capacity and results in higher speed per users.
BSS Coloring is a technique used to improve co-existence of overlapping BSSs and to allow spatial reuse within one channel .Simply say BSS coloring helps in mitigating problem of co-channel interference found in legacy Wi-Fi networks.
TWT (Target wake time ) ensures that end devices spend more time in standby while sending and receiving data more economically. This reduces energy consumption and increases overall efficiency within the home network. It allows an AP to manage activity in the Wi-Fi network, in order to minimize medium contention between Stations (STAs), and to reduce the required amount of time that an STA in the power-save mode needs to be awake.
WPA3 (Wi-Fi Protected Access 3) enhances the security of Wi-Fi networks by addressing vulnerabilities in previous standards (like WPA2) and introducing new features to protect modern wireless communications better. WPA3 was introduced in 2018 to provide stronger authentication, better encryption, and improved defenses against attacks such as brute-force password guessing and man-in-the-middle exploits.
DrayTek's Wi-Fi 6 encryption:
And you may check below comparison table to see WPA3's strength is obviously an surplus development in WLAN security design.
| WEP | WPA | WPA2 | WPA3 | |
|---|---|---|---|---|
| Encryption | RC4 | TKIP / RC4 | AES-CCMP | AES-CCMP / AES-GCMP |
| Session Key | 64/128 bit | 128 bit | 128 bit | 128/256 bit |
| Authentication | Open system, shared key | Pre-shared key | Pre-shared key | AES-CCMP / AES-GCMP |
| Level of Security | Very low | Low | Moderate | High |
URL Reputation is a cloud-based technology to provide Threat Intelligence Service. This service adds an extra layer of security protection to LAN client for their online activities.
There are 82 categories in total, 10 of which are security-focused, providing comprehensive and up-to-date protection to your home network or office network.
The various categories cover network security, including malware, spyware, adware, parental control for child protection, business, social networking, and more to ensure a safe online environment while also boosting employee productivity and can reach efficient bandwidth management.
Every communication over the internet involves IP addresses-source and destination. Cybercriminals often leverage known malicious IP addresses to carry out attacks using techniques like:
Blocking communication with these harmful IPs is essential, but it requires dynamic, predictive intelligence-a challenge that static blocklists cannot meet. The IP Reputation Service solves this by providing real-time scoring and classification of IP addresses, enabling automatic blocking of:
The system evaluates IPs across multiple criteria, including infection history, protocol usage, and attack frequency. Each IP is given a reputation score, which determines whether it should be trusted, monitored, or blocked outright.
IAM (Identity and Access Management) is a framework of policies and processes that ensure the right users or groups have appropriate access to critical resources by managing digital identities, authentication, and access control.
It encompasses processes for identifying, authenticating, and authorizing users or groups to access systems, applications, and data. By assigning specific roles to users and ensuring they have the appropriate level of access to corporate resources and networks, IAM enhances both security management and the user experience.
IAM provides a set of security management tools for Vigor Routers, which is Zero Trust Ready. This solution allows you to grant and categorize user privileges, create and manage access policies, and define large-scale group policies that integrate multiple filtering rules and traffic shaping settings. DrayTek's IAM plays an important role in your cloud security strategy.
System administrators can create access policies on the local users in this tab The access policies can be created according to
Combine these access policies can create a robust security framework for your system.
Setup group policies with predefined local resources like employees, workstations, network printers ,and local servers. Customize firewall policies and traffic shaping policies to enhance network security and optimize traffic flow.
Conditional access policies can require users to provide multiple forms of authentication before they are granted access to a resource.
Record local resources’ IP addresses and Mac addresses under Resources tab. For examples, Workstations, Net printers, PBX systems, NVR systems and servers.

DrayTek’s Hotspot Web Portal is a customizable Wi-Fi login page with multiple login options like username/password, social media, and vouchers. It includes features like quotation management, Wi-Fi marketing for promotions, and branding options. Administrators can control access, set bandwidth limits, and monitor usage.
The account status feature includes brute force protection, which logs the attacking IP address, the targeted username/profile, and the type of service under attack.
It also tracks the protection duration, recording the time from when the blocking begins to when it ends, along with the total number of hits. Additionally, it allows you to manually unblock access in case of an incorrect restriction.
You can backup or restore any of your settings such as Users and Groups, Access and Group Policies and so on. Of course, you can add in Password protection to well save them before you take action.
WiFi roaming is essential in environments with multiple APs to ensure consistent and reliable wireless connectivity. It enhances the wireless experience by addressing the sticky client issue and ensuring smooth WiFi roaming.
The Vigor2136ax-4G supports advanced roaming protocols, including 802.11r, 802.11v, and 802.11k. These protocols allow WiFi clients to seamlessly switch to an AP or router with a stronger signal as they move within a network with multiple APs or routers. Clients compatible with these roaming protocols benefit from proactive and uninterrupted roaming.
The "Minimum RSSI with Adjacent AP" feature in the VigorAP ensures clients are disconnected only when a nearby AP or router offers a stronger signal. This prevents unnecessary disconnections and keeps clients connected to the most optimal access point.
You can connect 7 APs, and form the wireless Group within the same network which creates MESH links automatically based on the optimum algorism among the root and node APs.
DrayTek's Virtual Controller is an on-device management platform built into supported routers and firewalls. It enables centralized control without cloud dependency - reducing data exposure risks and enhancing network privacy.
Virtual Controller supports two modes for flexible deployment.
Automatically creates a self-healing wireless mesh with the Vigor2136ax-4G as the Root AP and up to 7 Node APs for easy, scalable Wi-Fi coverage.
For networks with more than 8 APs, Virtual Controller switches to AP Management mode, enabling centralized control of up to 20 APs via the router's interface.
Devices power on and automatically discover each other, assigning roles as Root or Node APs without manual setup. This auto device role assignment enables quick mesh network formation with optimized coverage and self-healing capabilities.
Vigor2136ax-4G can act as master to manage and monitor up to 5 switches. It also provides visibility into PD devices behind the switch, such as IP cameras and access points.
Monitor switch status, current firmware version, and uptime across all managed devices.
Create multiple port profiles to provision the PoE, VLAN, QoS, and other settings to selected switches.
Perform configuration backup and restore, remote reboot, or factory reset.
Cellular Antenna x 2
Wi-Fi Antenna x 2
RJ-45 Cable (Ethernet)
Power Adapter
Quick Start GuideNote: The stated throughput performance figures are the maximum derived from DrayTek internal testing, conducted under optimal conditions, with Hardware Acceleration enabled where available. The actual performance may vary based on network conditions and activated applications.
Model |
Performance |
NAT Session | Max. NAT (Mbps) | Max. NAT with Hardware Acceleration (Mbps) | Max. NAT with Hardware Acceleration : Single WAN (Mbps) | Max. NAT with Hardware Acceleration : Dual WAN (Mbps) | Max. NAT with Software Acceleration (single-directional) (Mbps) | Max. NAT with Software Acceleration (bi-directional) (Mbps) | Max. VDSL Link Rate (Mbps) | Max. ADSL Link Rate (Mbps) |
WAN |
xDSL | Ethernet (1 GbE) | Ethernet (2.5 GbE) | Ethernet (10 GbE) | SFP (1G) | SFP (10G) | SFP/Ethernet Combo |
Ethernet - Switchable
* When this field is filled, the port count above includes both switchable and
fixed ports.
|
SFP - Switchable
* When this field is filled, the port count above includes both switchable and
fixed ports.
|
SFP/Ethernet Combo - Switchable
* When this field is filled, the port count above includes both switchable and
fixed ports.
|
VDSL Standards | VDSL2 Profile | G.fast Profile | ADSL Standards | Other Standards | Band Plan | Cellular (via USB) | Cellular (Built-in) | Wireless WAN (2.4GHz or 5GHz) | Wireless WAN (2.4GHz + 5GHz) |
3G |
WCDMA (3G) Band |
4G LTE |
SIM Slot | LTE Antenna (External Dipole) | LTE Antenna (Internal PIFA) | LTE Category (Up to) | LTE Antenna Peak Gain (dBi) | Max. Rx Link Rate (Mbps) | Max. Tx Link Rate (Mbps) | FDD Band | TDD Band | SMS Gateway |
5G |
5G Band | 4G/5G Antenna (External Dipole) | 4G/5G Antenna (Internal PIFA) | 4G/5G Antenna Peak Gain (dBi) | 5G NSA Max. Rx Link Rate (Mbps) | 5G NSA Max. Tx Link Rate (Mbps) | 5G SA Max. Rx Link Rate (Mbps) | 5G SA Max. Tx Link Rate (Mbps) | Note |
Internet Connection |
IPv4 | IPv6 | LTE WAN Bridge | 802.1p/q Multi-VLAN Tagging | Virtual WAN | PPPoE Pass-Through | MPoA Bridge | Failover | Load Balancing | Connection Detection | WAN Data Budget | Dynamic DNS | DrayDDNS |
LAN |
Fixed LAN (RJ-45, GbE) | Fixed LAN (RJ-45, 2.5GbE) | Fixed LAN (SFP, 10GbE) | LAN Subnet | VLAN | Max. Number of VLAN | DHCP Server | IPv6 Address Assignment | LAN IP Alias | IP Pool Count | PPPoE Server | Wired 802.1x Authentication | Port Mirroring | Local DNS Server | Conditional DNS Forwarding | Hotspot Web Portal (Profile No.) | Hotspot Authentication |
WLAN |
2.4GHz WLAN | 5GHz WLAN | Wi-Fi Antenna (External) | Wi-Fi Antenna (Internal) | 2.4GHz Antenna Gain (dBi) | 5GHz Antenna Gain (dBi) | 2.4GHz Max. Link Rate (Mbps) | 5GHz Max. Link Rate (Mbps) | Max. Number of SSIDs (per band) | Security Mode | Authentication | Wi-Fi 6 | OFDMA | Roaming | WPS | WDS | Access Control | AirTime Fairness | Band Steering | WMM | Mesh (5GHz Only) |
Other Ports |
Console (RJ-45) | USB | USB Type | USB Application | SMB File Sharing (Requires external storage) | FXS (RJ-11) |
Networking |
Routing | Policy-based Routing | Smart Action | DNS Security (DNSSEC) | IGMP | Local RADIUS server |
Bandwidth Management |
Traffic Shaping Policy | IP-based Bandwidth Limit | IP-based Session Limit | QoS (Quality of Service) | APP QoS | Default Policy | VoIP Prioritization |
NAT |
Port Forwarding | DMZ Host | Port Trigger | ALG (Application Layer Gateway) | UPnP |
Management |
Local Service | Config Backup/Restore | Config File Compatibility | Firmware Upgrade | 2-Level Administration Privilege | Role-based Privilege | Access Control | Notification Alert | SNMP | Syslog | Broadcast DSL Info to LAN | VPN Managment | Virtual AP Controller (Device up to) | Mesh (Number of manageable APs) | Virtual Switch Controller | VigorACS Management (Since f/w) |
Security |
URL/IP Reputation | Firewall Filter | Port Knocking | Defense Setup | MAC Filtering Profile | IPv6 Address Security |
IAM |
Users & Groups | Access Policies | Group Policies | Conditional Access Policy | Resources | Account Status | Backup and Restore |
VPN |
Site-to-Site VPN | Teleworker VPN | EasyVPN | Protocols | Max. VPN Tunnels | Max. OpenVPN + SSL VPN Tunnels | IPsec VPN Throughput (AES 256 bits) (single-directional) (Mbps) | IPsec VPN Throughput (AES 256 bits) (bi-directional) (Mbps) | SSL VPN Throughput (single-directional) (Mbps) | SSL VPN Throughput (bi-directional) (Mbps) | WireGuard VPN Throughput (single-directional) (Mbps) | WireGuard VPN Throughput (bi-directional) (Mbps) | User Authentication | IKE Authentication | IPsec Authentication | Encryption | VPN Trunk (Redundancy) | Single-Armed VPN | NAT-Traversal (NAT-T) | VPN from LAN | VPN Isolation | VPN Packet Capture | VPN 2FA Authentication for AD/LDAP | VPN Matcher | VPN Connection Status | Backup & Restore |
VoIP |
Protocols | SIP Registrars | Dial Plan | Call Features | Voice Codec | Caller ID |
Linux Applications |
Suricata | VigorConnect |
Monitoring |
Clients List | Log Center | Wireless Information | WAN | ARP Table | Route Table | DHCP Table | IPv6 TSPC Status | IPv6 Neighbor Table | LLDP Neighbors | DNS Cache Table | Cellular WAN Status | DSL Status | Remote DSL Status | PPPoE Pass-Through | Session Table | Running Service | Port Knocking Status |
Physical |
Power Input | Max. Power Consumption (watts) | Memory | Dimension (mm) | Weight (g) | Operating Temperature | Storage Temperature | Operating Humidity (non-condensing) |
Vigor2136ax-4G |
K | 2300 | 0 | 0 | 0 | - | - | - | - | 0 | 0 | 2 | 0 | 0 | 0 | 0 | 1 | 4G | F | T | 1, 8 | 2 | 2 | - | CAT.6 | 3.68 | 300 | 50 | 1(2100MHz), 3(1800MHz), 7(2600MHz), 8(900MHz), 20(800MHz), 28(700MHz) | 38(2600MHz), 40(2300MHz) | F Learn More | 0 | 0 | - | - | - | - | - | PPPoE DHCP Static IP |
PPP DHCPv6 Static IPv6 TSPC 6rd 6in4 Static Tunnel |
F | T | F | F | F | T | ARP, Ping | T | T | T | 3 | - | 0 | 4 | 802.1q Tag-based VLAN |
8 | Multiple IP Subnet Custom DHCP Options Bind-IP-to-MAC |
F | - | F | T | T | T | T | 2 | Click-Through Social Login SMS PIN RADIUS External Portal Server |
802.11ax 2x2 MIMO | 802.11ax 3x3 MU-MIMO | 2 | 1 | 2.6 | 2.7 | 574 | 2402 | OWE WEP WPA WPA2 WPA2/WPA WPA3 WPA3/WPA2 |
Pre-Shared Key, 802.1X | T | T | Assisted Roaming |
WPS Button, PIN Code | Repeater | Access List Client Isolation Hide SSID WLAN Scheduling |
T | T | T | Root | 0 | 1 | 2.0 | User Management FTP File Sharing Device Status Printer Server Temperature Sensor USB WAN File Explorer |
T | - | IPv4 Static Route IPv6 Static Route Policy Route Inter-VLAN Route RIP v1/v2 OSPF(V2/V3) BGP |
Protocol IP Address Port |
F | T | IGMP v2/v3 IGMP Proxy IGMP Snooping & Fast Leave |
T | T | T | T | IP Address Port Application |
T | T | T | T | T | T | SIP, RTSP, FTP, H.323 | T | HTTP HTTPS Telnet SSH v2 FTP TR-069 |
T | - | WUI, TFTP, TR-069 | F | T | Access List, Brute Force Protection | SMS, E-mail | v1, v2c, v3 | T | F | 0 | 20 | 7 | 5 | V5.3.5 | T | IP, Content, Traffic | T | ARP Spoofing, IP Spoofing | T | T | T | T | T | T | T | T | T | T | T | T | IPsec IKEv1/IKEv2 IKEv2-EAP IPsec-XAuth OpenVPN WireGuard |
16 | - | 390 | - | - | - | 90 | - | Local RADIUS TACACS+ mOTP TOTP |
Pre-Shared Key, X.509 | SHA-1, SHA-256 | DES, 3DES, AES | T | T | F | F | F | F | - | T | T | - | F | F | T | T | T | T | T | T | T | T | T | T | T | F | F | T | T | T | T | T | DC 12V @ 1.7A | 20.5 | - | 207 x 131 x 42 | 0 to 45°C | -25 to 70°C | 10 to 90% |
{
"NAT Session":"K",
"Max. NAT (Mbps)":"2300",
"Max. NAT with Hardware Acceleration (Mbps)":"0",
"Max. NAT with Hardware Acceleration : Single WAN (Mbps)":"0",
"Max. NAT with Hardware Acceleration : Dual WAN (Mbps)":"0",
"Max. NAT with Software Acceleration (single-directional) (Mbps)":"-",
"Max. NAT with Software Acceleration (bi-directional) (Mbps)":"-",
"Max. VDSL Link Rate (Mbps)":"-",
"Max. ADSL Link Rate (Mbps)":"-",
"xDSL":"0",
"Ethernet (GbE)":"0",
"Ethernet (2.5 GbE)":"2",
"Ethernet (10 GbE)":"0",
"SFP (1GbE)":"0",
"SFP (10GbE)":"0",
"SFP/Ethernet Combo (GbE)":"0",
"Ethernet - Switchable":"T",
"SFP - Switchable":"0",
"SFP/Ethernet Combo - Switchable":"0",
"VDSL Standards":"",
"VDSL2 Profile":"",
"G.fast Profile":"",
"ADSL Standards":"",
"Other Standards":"",
"Band Plan":"",
"Cellular (via USB)":"1",
"Cellular (Built-in)":"4G",
"Wireless WAN (2.4GHz or 5GHz)":"F",
"Wireless WAN (2.4GHz + 5GHz)":"T",
"WCDMA (3G) Band":"1, 8",
"SIM Slot":"2",
"LTE Antenna (External Dipole)":"2",
"LTE Antenna (Internal PIFA)":"-",
"LTE Category (Up to)":"CAT.6",
"LTE Antenna Peak Gain (dBi)":"",
"Max. Rx Link Rate (Mbps)":"300",
"Max. Tx Link Rate (Mbps)":"50",
"FDD Band":"1(2100MHz), 3(1800MHz), 7(2600MHz), 8(900MHz), 20(800MHz), 28(700MHz)",
"TDD Band":"38(2600MHz), 40(2300MHz)",
"SMS Gateway":"F",
"5G Band":"",
"4G/5G Antenna (External Dipole)":"0",
"4G/5G Antenna (Internal PIFA)":"0",
"5G Antenna Peak Gain (dBi)":"-",
"5G NSA Max. Rx Link Rate (Mbps)":"-",
"5G NSA Max. Tx Link Rate (Mbps)":"-",
"5G SA Max. Rx Link Rate (Mbps)":"-",
"5G SA Max. Tx Link Rate (Mbps)":"-",
"IPv4":"PPPoEDHCPStatic IP",
"IPv6":"PPPDHCPv6Static IPv6TSPC6rd6in4 Static Tunnel",
"LTE WAN Bridge":"F",
"802.1p/q Multi-VLAN Tagging":"T",
"Multi-VLAN/PVC":"",
"Virtual WAN":"F",
"PPPoE Pass-Through":"F",
"MPoA Bridge":"F",
"Failover":"T",
"Load Balancing":"",
"Connection Detection":"ARP, Ping",
"WAN Data Budget":"T",
"Dynamic DNS":"T",
"DrayDDNS":"T",
"Fixed LAN (RJ-45, GbE)":"3",
"Fixed LAN (RJ-45, 2.5GbE)":"-",
"Fixed LAN (SFP, 10GbE)":"0",
"LAN Subnet":"4",
"VLAN":"802.1q Tag-based VLAN",
"Max. Number of VLAN":"8",
"DHCP Server":"Multiple IP SubnetCustom DHCP OptionsBind-IP-to-MAC",
"IPv6 Address Assignment":"",
"LAN IP Alias":"F",
"IP Pool Count":"-",
"PPPoE Server":"F",
"Wired 802.1x Authentication":"T",
"Port Mirroring":"T",
"Local DNS Server":"T",
"Conditional DNS Forwarding":"T",
"Hotspot Web Portal (Profile No.)":"2",
"Hotspot Authentication":"Click-ThroughSocial LoginSMS PINRADIUSExternal Portal Server",
"2.4GHz WLAN":"802.11ax 2x2 MIMO",
"5GHz WLAN":"802.11ax 3x3 MU-MIMO",
"Wi-Fi Antenna (External)":"2",
"Wi-Fi Antenna (Internal)":"1",
"Antenna Type":"",
"2.4GHz Antenna Gain (dBi)":"2.6",
"5GHz Antenna Gain (dBi)":"2.7",
"2.4GHz Max. Link Rate (Mbps) ":"574",
"5GHz Max. Link Rate (Mbps)":"2402",
"Max. Number of SSIDs (per band)":"",
"Security Mode":"OWEWEPWPAWPA2WPA2/WPAWPA3WPA3/WPA2",
"Authentication":"Pre-Shared Key, 802.1X",
"Wi-Fi 6":"T",
"OFDMA":"T",
"WPS":"WPS Button, PIN Code",
"WDS":"Repeater",
"WLAN Access Control":"Access ListClient IsolationHide SSIDWLAN Scheduling",
"AirTime Fairness":"T",
"Band Steering":"T",
"WMM":"T",
"Mesh (5GHz Only)":"Root",
"Console (RJ-45)":"0",
"USB":"1",
"USB Type":"2.0",
"USB Application":"User ManagementFTP File SharingDevice Status Printer ServerTemperature SensorUSB WANFile Explorer",
"SMB File Sharing (Requires external storage)":"T",
"FXS (RJ-11)":"-",
"Routing":"IPv4 Static RouteIPv6 Static RoutePolicy RouteInter-VLAN RouteRIP v1/v2 OSPF(V2/V3)BGP",
"Policy-based Routing":"ProtocolIP AddressPort",
"Smart Action":"F",
"DNS Security (DNSSEC)":"T",
"IGMP":"IGMP v2/v3IGMP ProxyIGMP Snooping & Fast Leave",
"Local RADIUS server":"T",
"Traffic Shaping Policy":"T",
"IP-based Bandwidth Limit":"T",
"IP-based Session Limit":"T",
"QoS (Quality of Service)":"IP AddressPortApplication",
"APP QoS":"T",
"Default Policy":"T",
"VoIP Prioritization":"T",
"Port Forwarding":"T",
"DMZ Host":"T",
"Port Trigger":"T",
"ALG (Application Layer Gateway)":"SIP, RTSP, FTP, H.323",
"UPnP":"T",
"Local Service":"HTTPHTTPSTelnetSSH v2FTPTR-069",
"Config Backup/Restore":"T",
"Config File Compatibility":"-",
"Firmware Upgrade":"WUI, TFTP, TR-069",
"2-Level Administration Privilege":"F",
"Role-based Privilege":"T",
"Access Control":"Access List, Brute Force Protection",
"Notification Alert":"SMS, E-mail",
"SNMP":"v1, v2c, v3",
"Syslog":"T",
"Broadcast DSL Info to LAN":"F",
"VPN Managment":"0",
"Virtual AP Controller":"20",
"Mesh (Number of manageable APs)":"7",
"Switch Management (SWM)":"5",
"Virtual Switch Controller":"5",
"VigorACS Management (Since f/w)":"V5.3.5",
"URL/IP Reputation":"T",
"Firewall Filter":"T",
"Port Knocking":"IP, Content, Traffic",
"Defense Setup":"ARP Spoofing, IP Spoofing",
"MAC Filtering Profile":"T",
"IPv6 Address Security":"T",
"Users & Groups":"T",
"Access Policies":"T",
"Group Policies":"T",
"Conditional Access Policy":"T",
"Resources":"T",
"Account Status":"T",
"Backup and Restore":"T",
"Site-to-Site VPN":"T",
"Teleworker VPN":"T",
"EasyVPN":"T",
"VPN Protocols":"IPsecIKEv1/IKEv2IKEv2-EAPIPsec-XAuthOpenVPNWireGuard",
"Max. VPN Tunnels":"16",
"Max. OpenVPN + SSL VPN":"-",
"IPsec VPN (AES 256 bits) (single-directional) (Mbps)":"390",
"IPsec VPN (AES 256 bits) (bi-directional) (Mbps)":"-",
"SSL VPN (single-directional) (Mbps)":"-",
"SSL VPN (bi-directional) (Mbps)":"-",
"Wireguard VPN (single-directional) (Mbps)":"90",
"Wireguard VPN (bi-directional) (Mbps)":"-",
"User Authentication":"LocalRADIUSTACACS+mOTPTOTP",
"IKE Authentication":"Pre-Shared Key, X.509",
"IPsec Authentication":"SHA-1, SHA-256",
"Encryption":"DES, 3DES, AES",
"VPN Trunk (Redundancy)":"",
"Single-Armed VPN":"T",
"NAT-Traversal (NAT-T)":"T",
"VPN from LAN (Mainline fw only)":"F",
"VPN Isolation (Mainline fw only)":"F",
"VPN Packet Capture (Mainline fw only)":"F",
"VPN 2FA Authentication for AD/LDAP (Mainline fw only)":"F",
"VPN Matcher":"-",
"VPN Connection Status":"T",
"Backup & Restore":"T",
"Protocols":"",
"SIP Registrars":"-",
"Dial Plan":"",
"Call Features":"",
"Voice Codec":"",
"Caller ID":"",
"Suricata":"F",
"VigorConnect":"F",
"Clients List":"T",
"Log Center":"T",
"Wireless Information":"T",
"WAN":"T",
"ARP Table":"T",
"Route Table":"T",
"DHCP Table":"T",
"IPv6 TSPC Status":"T",
"IPv6 Neighbor Table":"T",
"LLDP Neighbors":"T",
"DNS Cache Table":"T",
"Cellular WAN Status":"F",
"DSL Status":"F",
"Remote DSL Status":"T",
"Monitoring PPPoE Pass-Through":"T",
"Session Table":"T",
"Running Service":"T",
"Port Knocking Status":"T",
"Power Input":"DC 12V @ 1.7A",
"Max. Power Consumption (watts)":"20.5",
"Memory":"-",
"Dimension (mm)":"207 x 131 x 42",
"Weight (g)":"",
"Operating Temperature":"0 to 45°C",
"Storage Temperature":"-25 to 70°C",
"Operating Humidity (non-condensing)":"10 to 90%"
}
Note: