| Interface |
| WAN/LAN Switchable Port |
2 x 10 Gigabit SFP+
2 x 2.5 GbE RJ-45
4 x GbE RJ-45 |
| Fixed LAN Port |
4 x GbE RJ-45 |
| Console Port |
1 x RJ-45 |
| USB Port |
2 x USB3.0 |
| LAN Management |
| LAN Subnet |
100 |
| VLAN |
802.1q Tag-based, Port-based |
| Max. Number of VLAN |
100 |
| DHCP Server |
Multiple IP Subnet, Custom DHCP Options, Bind-IP-to-MAC |
| LAN IP Alias |
Yes |
| IP Pool Count |
4000 |
| PPPoE Server |
Yes |
| Port Mirroring |
Yes |
| Local DNS Server |
Yes |
| Conditional DNS Forwarding |
Yes |
| Hotspot Web Portal |
4 |
| Hotspot Authentication |
Click-Through, Social Login, SMS PIN, RADIUS, External Portal Server |
| Networking |
| Routing |
IPv4 Static Route, IPv6 Static Route, Policy Route, Inter-VLAN Route, Fast Routing, RIP v1/v2, OSPFv2, BGP |
| Policy-based Routing |
Protocol, IP Address, Port, Domain, Country |
| Smart Action |
Yes |
| High Availability |
Yes |
| DNS Security (DNSSEC) |
Yes |
| IGMP |
IGMP v2/v3, IGMP Proxy, IGMP Snooping & Fast Leave |
| Local RADIUS server |
Yes |
| Bandwidth Management |
| IP-based Bandwidth Limit |
Yes |
| IP-based Session Limit |
Yes |
| QoS (Quality of Service) |
TOS, DSCP, 802.1p, IP Address, Service Type |
| VoIP Prioritization |
Yes |
| APP QoS |
Yes |
| Firewall & Content Filtering |
| NAT |
Port Redirection, Open Ports, Port Triggering, Port Knocking, Fast NAT DMZ Host, UPnP, Server Load Balance |
| ALG |
SIP, RTSP, FTP, H.323 |
| VPN Pass-Through |
PPTP, L2TP, IPsec |
| IP-based Firewall Policy |
| Content Filtering |
APP, URL Keyword, DNS Keyword, Web Features, Web Category* (*subscription required) |
| DoS Attack Defense |
Yes |
| Spoofing Defense |
Yes |
| Internet Connection |
| IPv4 |
PPPoE, DHCP, Static IP |
| IPv6 |
PPP, DHCPv6, Static IPv6, TSPC, AICCU, 6rd, 6in4 Static Tunnel |
| 802.1p/q Multi-VLAN Tagging |
Yes |
| Multi-VLAN/PVC |
Yes |
| Failover |
Yes |
| Load Balancing |
IP-based, Session-based |
| WAN Active on Demand |
Link Failure, Traffic Threshold |
| Connection Detection |
PPP, Ping, ARP |
| WAN Data Budget |
Yes |
| Dynamic DNS |
Yes |
| DrayDDNS |
Yes |
| VPN |
| LAN-to-LAN |
Yes |
| Teleworker-to-LAN |
Yes |
| Protocols |
PPTP, L2TP, IPsec, L2TP over IPsec, SSL, GRE, IKEv2, IPsec-XAuth, OpenVPN, Wireguard |
| Max. VPN Tunnels |
500 |
| Max. OpenVPN + SSL VPN |
200 |
| User Authentication |
Local, RADIUS, LDAP, TACACS+, mOTP, TOTP |
| IKE Authentication |
Pre-Shared Key, X.509, XAuth, EAP |
| IPsec Authentication |
MD5, SHA-1, SHA-256, SHA-512 |
| Encryption |
MPPE, DES, 3DES, AES |
| VPN Trunk (Redundancy) |
Load Balancing, Failover |
| Single-Armed VPN |
Yes |
| NAT-Traversal (NAT-T) |
Yes |
| VPN from LAN |
Yes |
| VPN Isolation |
Yes |
| VPN Packet Capture |
Yes |
| VPN 2FA Authentication for AD/LDAP |
Yes |
| VPN Matcher |
Yes |
| Management |
| Local Service |
HTTP, HTTPS, Telnet, SSH v2, FTP, TR-069 |
| Config Backup/Restore |
| Firmware Upgrade |
TFTP, HTTP, TR-069 |
| 2-Level Administration Privilege |
| Access Control |
Access List, Brute Force Protection |
| Syslog |
| Notification Alert |
SMS, E-mail |
| SNMP |
v1, v2c, v3 |
| VigorACS Management |
| AP Management (APM) |
50 |
| Switch Management (SWM) |
30 |