Draytek Vigor 2926

  • Dual Gigabit Ethernet WAN ports for failover and load-balancing
  • Two USB 2.0 ports for connection to two 3G/4G LTE USB modems, FTP server and network printer
  • 4 x Gigabit LAN ports with multiple subnets and 50,000 NAT sessions
  • 50 x VPN tunnels (including 25 SSL VPN tunnels) with comprehensive secure protocols
  • Fast VPN throughput, VPN load-balancing and backup for site-to-site applications
  • 16 x VLANs for secure and efficient workgroup management
  • IPv6 & IPv4
  • Increased IP addresses (1022) and IP subnets (8)
  • High Availability mode
  • Object-based SPI Firewall and CSM (Content Security Management) for network security
  • Supports VigorACS 2 (Central Management system) for multi-site deployment
  • Central VPN Management for 8 remote Vigor routers
  • Central AP Management for deployment of multiple wireless VigorAPs
  • Free Smart Monitor Network Traffic Analyzer for 30-nodes



WAN Load Balancing & Failover

Vigor2926 Series has two Gigabit Ethernet WAN ports that can be used for any type of connection, 3G/4G/LTE USB modem can also be attached to the USB ports of the router, and offer wireless Internet connectivity in case the fixed lines are not available. All of the WAN interfaces can be configured to be operated in either Load Balancing mode, which will be active all the time, or in Failover mode, which will be active only when detecting connection loss or heavy load on the primary connection.

On Vigor2926 Series, Load Balancing can be either IP-based mode, which will distribute the packets destined to different IP address across different WANs, or Session-based mode, which allows the packets of different sessions to take different paths, which means a multiple-session connection can be established across multiple WANs, and use multiple WAN’s bandwidth at the same time. Policy-based Load Balancing is also supported so that you may specify the path for some certain packets.

To increase network accessibility, Vigor2926 Series also supports High Availability feature and allows one or more redundant Vigor2926 Series to be added to the network and operated in standby mode.


Flexible LAN Management

The 4-port Gigabit Ethernet switch on the LAN side provides high-speed connectivity for the servers and PCs on the local network, and the Virtual LAN (VLAN) feature allows you to separate the LAN clients into different logical domains thus to increase the security and network efficiency. Vigor2926 Series support 802.1Q standard and can build a Tag-based VLAN system with an 802.1Q support switch, Port-based VLAN is also supported that each LAN port can be configured as a member of different VLAN and be isolated from each other without the use of VLAN tag.


Firewall & Security

Vigor2926 Series supports Stateful Packet Inspection (SPI) Firewall and flexible filtering rules, it can accept or deny packets based on the information in the packet header (such as source IP, destination IP, protocol, and port number) or the packet’s application. IP-based restrictions can be set to filter certain HTTP traffic as well as various application software and help you to prevent time and network resource wasting on inappropriate network activities.

With an annual subscription to Cyren Web Content Filtering service, you may also filter the websites by their categories, and set up restrictions to block the whole categories of websites (such as Social Networking, Gambling.. etc.) without the need to specify every site you would like to block. The Cyren service is constantly updating the categorization, and a free 30-day trial is included in each new router.

The Vigor2926 Series firewall also includes DoS (Denial of Service) Defense to protect the network against variants of attacks.


Comprehensive VPN

Vigor2926 Series supports both LAN-to-LAN VPN and Remote Dial-in VPN, up to 50 VPN tunnels can be set up simultaneously. All the industry standard tunneling protocols are supported, including PPTP, L2TP, IPsec, and GRE, and it’s compatible with 3rd party VPN devices.

Vigor2926 Series also support SSL VPN – a type of VPN based on the very common encryption method which is used by all the HTTPS websites. While the traditional VPN protocols might be filtered by the firewall and NAT of public networks, SSL VPN will be passed as long as the HTTPS is allowed. DrayTek also offers free official client App for Windows, iOS, and Android.

VPN Trunking is also supported by Vigor2926 Series, this allows you to establish two VPN tunnels to the same remote site but through different WAN interfaces. The two trunking tunnels can be set up in load balancing or failover mode.


Centralized Management

Vigor2926 Series can be the central management portal for all the Vigor devices on the same network, including VigorAPs and VigorSwitches, which allows the administrator to manage all the devices through a single portal. Vigor2926 Series also embeds CVM (Central VPN Management), an easier way for Network administrator to establish and manage VPN connections between several CPEs (VPN Client). The router itself supports TR-069 protocol and can be remotely managed and monitored through the TR-069-based VigorACS system, thus to reduce the need for on-site technicians.



  1. Hardware Interface

    • 2 x 10/100/1000Base-TX, RJ-45 (WAN1/WAN2)
    • 4 x 10/100/1000Base-TX LAN, RJ-45 (Configurable Physical DMZ on Port4)
    • 2 x Detachable Antennas (n model)
    • 4 x Detachable Antennas (ac,Vac Model)
    • 2 x USB Host 2.0
    • 1 x Factory Reset Button
    • 1 x Wireless On/Off/ WPS Button (n/ac/Vac model)
    • 2 x FXS and 1 x Life Line Port, RJ11 (Vac Model)
    • Temperature
      • Operating: 0°C~45°C
      • Storage: -25°C~70°C
    • Humidity: 10%~90% (non-condensing)
    • Power Adapter: DC 12V @ 1.5A~2A
    • Power Consumption: 19~24 Watt
    • Dimension: L241*W165*H44 (mm)

  2. WAN Protocol

    • Ethernet WAN:
      • DHCP Client
      • Static IP
      • PPPoE
      • PPTP / L2TP (WAN-2 only)
      • 802.1q Multi-VLAN Tagging
    • IPv6 Connection Type:
      • Dual Stack: PPP, DHCPv6 Client, Static IPv6
      • Tunnel Mode: TSPC, AICCU, 6rd, 6in4 Static Tunnel
    • USB WAN:
      • PPP (3G) / CDC driver (3G)
      • Support IPv6 protocol: TSPC/AICCU

  3. Dual WAN

    • Load-Balance / Route Policy
    • Outbound policy-based load-balance
    • WAN Connection Failover
    • Multiple-VLAN

  4. LAN

    • Support IPv6 LAN
    • Port-based / Tag-based VLAN
    • Bind IP to MAC Address:
      • Disable / Enable / Strict Bind
      • IP Bind list: 1024 entries
    • LAN Port Mirror
    • Wired 802.1x
    • Web Portal
    • Support IP Pool Count more than 253 (up to 1022) for LAN1~3 subnet
    • 8 x Multiple Subnet LAN

  5. Firewall

    • DMZ Host: Port-redirection, Open Port, Port Triggering
    • User-based / Rule-based Firewall
    • Object-based Firewall´╝ÜSPI (Stateful Packet Inspection) (Flow Track)
    • DoS Prevention
    • Time Schedule Control
    • DNS Filter Enhancement
    • User Management
    • Firewall Wizard Mode and Advanced Mode

  6. VPN

    • Up to 50 VPN Tunnels (including 25 SSL VPN tunnels)
    • VPN Wizard
    • VPN Trunk with Backup / Load Balance
    • Protocol: PPTP, IPsec, L2TP, L2TP over IPsec, GRE over IPSec
    • Encryption: MPPE and hardware-based AES/DES/3DES
    • Authentication: MD5, SHA-1
    • IKE Authentication: Pre-shared Key and Digital Signature (X.509)
    • LAN-to-LAN, Teleworker-to-LAN (remote user dial-in)
    • DHCP over IPsec
    • IPsec NAT-traversal (NAT-T)
    • Dead Peer Detection (DPD)
    • VPN Pass-through
    • mOTP

  7. Bandwidth Management

    • QoS
      • Guarantee bandwidth for VoIP
      • Class-based bandwidth guarantee by user-defined traffic categories
      • DiffServ Code Point classifying
      • 4-level priority for each direction (Inbound/Outbound)
      • Bandwidth borrowed
    • Bndwidth/Session limitation
      • Smart Bandwidth Limit
      • config by ip range
      • Layer-3 (TOS/DSCP) QoS
    • Layer-2 (802.1p) QoS
    • WAN budget

  8. Network Feature

    • Hotspot Web Portal
    • Packet Forwarding Acceleration
    • DHCP client/relay/server
    • DHCP Option: 1,3,6,51,53,54,58,59,60,61,66,125
    • IGMP v2/v3
    • LAN DNS/DNS Forwarding
    • Dynamic DNS
    • NTP Client
    • Call Scheduling
    • RADIUS/TACACS+ Client
    • Internal RADIUS Server
    • Active Directory/LDAP compatible (client)
    • DNS Cache/Proxy and LAN DNS
    • UPnP 50 sessions
    • Wake on LAN
    • Bonjour service
    • Routing Protocol:
      • Static Routing
      • RIP v1/v2
      • BGP
    • Triple-Play Application
      • IGMP snooping/proxy
    • 6 x Multiple Subnet LAN
    • Support Smart Monitor (Up to 30 PCs)

  9. Central Device Management

    • AP Management
    • VPN Management
    • Switch Management
    • External Devices

  10. CSM (Content Security Management)

    • APP Enforcement
      • Support APPE Signature Upgrade by license
    • URL Content Filter
      • Access Control : URL Keyword Blocking (White/Black List)
      • Web Feature : Java Applet, Cookies, Active X, Compressed, Executable, Multimedia File Blocking
    • Web Content Filter (support Cyren and BPjM)
    • DNS Filter

  11. USB

    • Printer Sharing
    • File System
      • Support FAT32 File System
      • Support FTP Function for File Sharing
    • 3.5G (HSDPA) and 4G (LTE) as WAN3/WAN4 by using USB dongle (can support Dual USB WAN)
    • USB Device Status (disk/modem/printer/sensor)
    • Support USB Temperature Sensor
    • Support file sharing (DrayTek’s own SMB protocol stack)

  12. Network Management

    • Web-based User Interface (HTTP/HTTPS)
    • CLI (Command Line Interface, Telnet/SSH)
    • Administration Access Control
    • Configuration Backup/Restore
    • Built-in Diagnostic Function
    • Firmware Upgrade via TFTP/HTTP/TR-069
    • Logging via Syslog
    • SNMP v2/v3
    • Support SMS/E-mail Alert
    • Management Session Time Out
    • Two-level Management (Admin/User Mode)
    • External device detection (master mode)
    • TR-069/TR-104
    • Support Multiple-Firmware Upgrade Utility (MFUU)
    • Dashboard