DRAYTEK 2960 , solusi enterprise VPN gateway, up to 200 tunnels


Vigor2960
  • Manage ultra fast high-speed Internet
  • High Availability
  • Support IPv6 network for the next generation Internet
  • Business Continuity by Dual WAN Load-balancing/failover
  • PPPoE quota setting and MAC address filter
  • Support inbound load balance
  • 200 VPN & 50 SSL VPN tunnels for the secure remote access
  • Central VPN Management (CVM)
  • Support VPN Trunk failover mode
  • Up-to 400Mbps site-to-site VPN throughput (IPsec)
  • Advanced firewall for the network security
  • SMS, Email Alert and Notification object profiles for WAN/VPN connection
  • USB port supports USB temperature sensor
  • Working with TR-069 based VigorACS SI for the central management
  • Smart Monitor Traffic Analyzer (Up to 200 nodes)

 Product Feature Video 


gigaipv6vpncsmwcf firewallbandwidth-mgmt
ACSSI


























The Vigor2960 Series serves as a VPN gateway and a central firewall for multi-site offices and tele-workers. With its high data throughput of two-Gigabit Ethernet, Dual WAN, VPN trunking and 4 Gigabit Ethernet LAN ports, the device facilitates productivity of versatile business operations. To secure communications between sites is the establishment of VPN tunnels up to 200 simultaneous tunnels.

DrayTek Vigor2960Series
DrayTek Vigor2960 Enterprise Small Branch Office Deployment

DrayTek Vigor2960 Series - Dual-WAN Security Firewall offers:
  • Gigabit Dual WAN interface providing load-balancing and failover for high performance and business continuity
  • 4-port Gigabit LAN interface for facilitating managed services applications
  • Enhanced security including:
    - Object-base firewall with advance users (e.g. IP), applications (e.g. IM & P2P,) and content management (web category, keyword and URL) 
        - VPN connection for LAN-to-LAN (site-to-site) and Remote dial-in (client-to-site) with dynamic VPN services: IP Security (IPsec)
           VPNs (Triple Data Encryption Standard [3DES] or Advanced Encryption Standard [AES]),and SSL VPN Web Proxy)
  • An 4-port 10/100/1000 Gigabit Ethernet managed switch with VLAN support (Up to 20 VLAN groups)
  • Two USB 2.0 ports for printer, file sharing* and 3.5G/4G USB mobile broadband*
  • Bandwidth Management with 8-level priority Inbound/Outbound QoS
  • IPv4/IPv6 support to protect investment
  • TR-069 Management / Working with VigorACS SI

High Availability 
The High Availability (HA) feature refers to the awareness of component failure and the availability of backup resources. The complexity of HA is determined by the availability needs and the tolerance of system interruptions. Systems, provide nearly full-time availability, typically have redundant hardware and software that make the system available despite failures. 
The high availability of the Vigor2960 Series is designed to avoid single points-of-failure. When failures occur, the failover process moves processing performed by the failed component (the “Master”) to the backup component (the “Slave”). This process remains system-wide resources, recovers partial of failed transactions, and restores the system to normal within a matter of microseconds.
Take the following picture as an example. The upper Vigor2960 is regarded as Master (Active) device, the lower Vigor2960 is regarded as Slave (standby) device. When Master Vigor2960 Series is broken down, the Slave device could replace the Master role to take over all jobs as soon as possible. However, once the original Master is working again, the Slave would be changed to original role to stand by.



Architecture Features and Benefits 
Security without compromise
The Vigor2960 series also provides high-security firewall options with both IP-layer and content based protection. The DoS/DDoS prevention and URL/Web content filter strengthen the security outside and inside the network. The enterprise-level CSM (Content Security Management) enables users to control and manage IM (Instant Messenger) and P2P (Peer to Peer) applications more efficiently. The CSM hence prevents inappropriate content from distracting employees and impeding productivity. Furthermore, the CSM can keep office networks threat-free and available. With CSM, you can protect confidential and essential data from modification or theft.
By incorporating CYREN's GlobalView Web Content Filter services, DrayTek ensures its customers’ networks are protected by the best available security technology.

Security
Enable real-time protection from emerging Web threats including malware, phishing and Zombies/bots

HR compliance/regulation
Prevent browsing to questionable content like pornography and hate sites

Productivity
Block or monitors sites to maximize employee productivity

Bandwidth regulation
Identify sites that consume an organization’s bandwidth (e.g. movies, music)

Enterprise-level VPN Network
With a dedicated VPN co-processor, the hardware encryption of AES/DES/3DES and hardware key hash of SHA-1/MD5 are seamlessly handled, thus maintaining maximum router performance. For remote tele-workers and inter-office links, the Vigor2960 supports up to 200 simultaneous VPN tunnels (such as IPsec/PPTP/L2TP protocols) and the VPN throughput can reach up-to 400Mbps (IPsec).
Centralized Management 
The embedded Central VPN Management (CVM) will let network administrator register up to 16 remote routers but run concurrent remote management over 12 remote routers.
More benefits
DrayTek has implemented IPv6 on Vigor2960 to ensure a smooth migration path for the affordable but faster broadband. The WAN-IPv6-connection can be established via Static IPv6, DHCPv6 and TSPC. It also supports Open Shortest Path First (OSPF) to calculate the route metric (Up-to Version 2). There are two USB ports on Vigor2960. In addition to the function of USB printer server, you can connect a compatible 3.5G USB mobile for access to the cellular network. You can also add storage memory to the USB port of Vigor2960 in the form of a USB memory key or a USB hard drive. Then, the FTP access file uploading/downloading can be from the local LAN of Vigor2960 or from anywhere on the Internet*. It is very simple for you to deploy file depository. With user name and passwords, each of file depository can have their own directories and/or file access rights.

Working with TR-069 Central Management System
The Vigor2960 Series can be centrally managed by VigorACS SI to lower the workload of the IT Dept. The VigorACS SI centrally manages essential router features, such as LAN, WAN, WLAN or VoIP without the technician visits that improves user experience and contribute significant cost-saving. For instance, admin can schedule firmware or configuration updates for selected devices at one time. It also offers the real-time alert to notify admin when things go wrong, such as disconnected or VPN dropped via e-mail and SMS to guarantee the faster response.

Summary
Vigor2960 Series - Dual-WAN Security Firewall delivers state-of-the-art security and performance which allows enterprise small branch-office customers to optimize the usage of the high-speed broadband access. Managed service provider and system integrator can install Vigor2960 Series to give business customers a complete network solution in their remote sites.

Vigor2960 Series for Enterprise Small Branch-Office Deployment
DrayTek Vigor2960 Enterprise Small Branch Office Deployment


DrayTek Vigor2960 Business Growth


DrayTek Vigor2960 Stay Connected



Business Continuity_High Availability

DrayTek Vigor2960 High Availability



The CVM (Central VPN Management) of Vigor2960
DrayTek Vigor2960 Central VPN Management


Security & Firewall

DrayTek Vigor2960 Firewall
 
 

DrayTek Vigor2960 Remote Access
 

 
Vigor2960 Series wth CYREN GlobalView Web Content Filter
 
DrayTek Vigor2960 Web Content Filter
 
Extendability
DrayTek Vigor2960 Extendability