- Support IPv6 and IPv4 network
- Enterprise level Content Security Management (CSM)
- Support up to 100 VPN Tunnels (including 50 SSL VPN tunnels)
- User-based Firewall with SPI, DoS defense, and DNS Filter Enhancement
- Central device management includes AP management and central VPN management
- 4-Port Gigabit WAN with load balance and redundancy to guarantee business essential data exchange
Features of the Vigor3220 series Multi-Subnet security routers will satisfy the network requirements of small to medium business networks. Its Multi-Subnet interface with Multi-VLAN function allows users to easily divide network into different sections based on applications such as ERP and FTP. Each usage/ application or user group can get its dedicated bandwidth and administrator can have security control between user groups for preventing possible data leakage. The said series are equipped with four Gigabit Ethernet WAN ports, one gigabit Ethernet LAN port, one DMZ port, two USB ports, one console port and IEEE802.11n WLAN on n model. The console port allows a dedicated computer to be used for configuring the router. The Vigor3220 and Vigor3220n are designed for small offices using multi super-fast broadband for better business continuity and productivity.
- Multi-WAN (Ethernet / 3.5G)
- Outbound Policy-based Load-balance
- WAN Connection Failover
- WAN Protocol
- DHCP Client
- Static IP
- PPPoE
- PPTP
- L2TP
- VPN
- Up to 100 VPN Tunnels (including 50 SSL VPN tunnels)*
- Protocol: PPTP, IPSec, L2TP, L2TP over IPSec
- Encryption: MPPE and Hardware-based AES/DES/3DES
- Authentication: MD5, SHA-1
- IKE Authentication: Pre-shared Key and Digital Signature (X.509)
- LAN-to-LAN, Teleworker-to-LAN (remote user dial-in)
- DHCP over IPSec
- IPSec NAT-Traversal (NAT-T)
- Dead Peer Detection (DPD)
- VPN Pass-Through
- mOTP
- Firewall
- DMZ Host, Port-redirection(Up to 40 entries) and Open Port(Up to 40 entries)
- Object-based Firewall
- MAC Address Filter
- SPI (Stateful Packet Inspection) (Flow Track)
- DoS / DDoS Prevention
- IP Address Anti-Spoofing
- E-mail alert and logging via Syslog
- Bind IP to MAC Address
- Time Schedule Control
- USB
- 3.5G (HSDPA) and 4G (LTE) as WAN5 by using USB dongle
(USB1: disk/sensor/printer,USB2: 3G/LTEdongle/disk/sensor/printer) - Printer Sharing
- File System :
- Support FAT32 / FAT16 file system
- Support FTP function for File Sharing
- 3.5G (HSDPA) and 4G (LTE) as WAN5 by using USB dongle
- Bandwidth Management
- QoS :
- Guarantee bandwidth for VoIP
- Class-based bandwidth guarantee by user-defined traffic categories
- DiffServ Code Point Classifying
- 4-level priority for each direction (Inbound/Outbound)
- Bandwidth Borrowed
- Bandwidth / Session limitation
- Layer-2 (802.1p) and Layer-3 (TOS / DSCP) QoS
- QoS :
- Network Management
- Web-Based User Interface (HTTP/HTTPS)
- Quick Start Wizard
- CLI (Command Line Interface, Telnet/SSH)
- Administration Access Control
- Configuration Backup/Restore
- Built-in Diagnostic Function
- Firmware Upgrade via TFTP/FTP/HTTP/TR-069
- Logging via Syslog
- SNMP Management with MIB-II
- Management Session Time Out
- 2-level management (Admin/User Mode)
- TR-069 Management
- TR-104 Management
- Central Device Management
- AP Management : 30 nodes (independent with External Device feature)*
- Central VPN Management : 8 nodes
- Switch Management : 10 nodes *
- Content Security Management (CSM)
- APP Enforcement
- Support APPE Signature Upgrade by license.
- URL Content Filter
- Access Control : URL Keyword Blocking (White/Black List)
- Web Feature : Java Applet, Cookies, Active X, Compressed,Executable,Multimedia File Blocking
.
- Web Content Filter (support Cyren and BPjM )
- APP Enforcement
- Network Features
- Packet Forwarding Acceleration
- DHCP client/relay/server
- DHCP Option: 1,3,6,51,53,54,58,59,60,61,66,125
- IGMP v2/v3
- LAN DNS /DNS Forwarding
- Dynamic DNS
- NTP client
- Call scheduling
- RADIUS /TACACS+ Client
- RADIUS Server
- Active Directory /LDAP compatible (client)
- DNS cache/proxy
- UPnP 50 sessions
- Wake on LAN
- Bonjour service
- Routing protocol :
- Static routing (IPv4 static route 40 entries, and IPv6 static route 40 entries)
- RIP v1/v2
- Wireless Features
- Support Single band 2.4G
- IEEE802.11b/g/n Compliant
- Wireless Wizard
- Wireless Client List
- Wireless LAN Isolation
- Security:
- 64/128-bit WEP
- WEP /802.1x only
- WPA /802.1x only
- WPA2 /802.1x only
- Mixed(WPA+WPA2)/802.1x only
- WPA/PSK
- WPA2/PSK
- Mixed(WPA+WPA2)/PSK
- Hidden SSID
- WPS
- WDS (Wireless Distribution System)
- MAC Address Access Control (Total is 64 entries)
- AP Discovery
- Station List
- Station Control
- 802.1x Authentication
- Multiple SSID (Up to 4 SSIDs)
- Bandwidth Management :
- Confidential: level 2 DrayTek Corp.
- Per SSID Bandwidth Limitation (Auto Adjustment)
- Per Station Bandwidth Limitation
- WMM
- SSID VLAN grouping with LAN port (Port based VLAN)
- DrayTek WLAN Security default settings:
- SSID: DrayTek
- Security Settings → Mode: Mixed(WPA+WPA2)/PSK
Advance Business Network (Multi WAN / SSL VPN)
Multi-WAN Load Balancing / Failover LAN & WAN Status
Multi subnet with VLAN tag - Multi-tenant applications along with FTTx
VPN failover / backup by VPN trunk management
Active Directory/LDAP Group Management for VPN remote dial-in authentication
Working with Smart Monitor Traffic Analyzer
The Vigor3220 series supports 100-Node DrayTek Smart Monitor Traffic Analyzer which enables you to analyze in great depth your Internet traffic, as a professional aid to improving efficiency and detecting potential problems.