EasyManua.ls Logo

Draytek Vigor2860 Series User Manual

Draytek Vigor2860 Series
905 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image

Other manuals for Draytek Vigor2860 Series

Question and Answer IconNeed help?

Do you have a question about the Draytek Vigor2860 Series and is the answer not in the manual?

Draytek Vigor2860 Series Specifications

General IconGeneral
Firewall TypeStateful Packet Inspection (SPI)
VPN SupportIPSec, PPTP, L2TP, SSL VPN
DoS ProtectionYes
Intrusion Prevention System (IPS)Yes
LAN Interfaces4 x Gigabit Ethernet
User AuthenticationLocal, RADIUS, LDAP
VPN Tunnels32
Management InterfaceWeb-based, CLI
Concurrent Sessions50, 000
Content FilteringURL Keyword Filtering, Web Content Filtering

Summary

Part I Installation

I-2 Hardware Installation

Guides users through the physical setup and connection of the Vigor router and associated devices like printers.

Part II Connectivity

II-1 WAN

Details Wide Area Network (WAN) concepts, including Internet Protocol basics, public/private IP addresses, and connection methods like DSL and 3G/4G USB modem.

II-1-2 Internet Access

Explains how to configure WAN settings for various access modes like ADSL, VDSL, Ethernet, USB, LTE, PPPoE, and Static IP.

II-2 LAN

Explains Local Area Network (LAN) concepts, NAT function, and how to configure IP subnets, including the use of Virtual LANs.

II-4 NAT

Explains Network Address Translation (NAT) and its benefits, including cost savings and enhanced security by obscuring private IP addresses.

II-5-12 High Availability

Explains High Availability (HA) feature for component failure awareness and backup resource management, ensuring continuous service.

II-6 Routing

Explains routing strategies including Route Policy (PBR), Load Balance, Specify Interface, Address Mapping, Priority, and Failover mechanisms.

II-6-2 Load-Balance /Route Policy

Details configurations for Load Balance and Route Policy, enabling traffic distribution and custom routing rules for optimizing network performance.

II-7 LTE

Covers LTE WAN functionality for convenient internet access via SIM card, including SMS related operations for status reporting and remote control.

Part III Wireless LAN

III-1 Wireless LAN (2.4GHz/5GHz)

Covers wireless LAN configurations for "n" models, detailing operation modes, channel settings, and security options.

III-1-3 Security

Details wireless security settings for WPA and WEP, including pre-shared keys and encryption modes for secure wireless connections.

Part IV VoIP

IV-1 VoIP

Explains Voice over IP (VoIP) network usage, enabling toll-quality voice calls over the internet, supporting SIP protocol.

IV-1-3 SIP Accounts

Details how to set up SIP accounts, register with SIP registrars, and configure call signaling protocols for VoIP communication.

IV-1-4 DialPlan

Allows configuration of phone book, digit map, call barring, regional settings, and PSTN setup for VoIP function, simplifying call management.

Part V VPN

V-1 VPN and Remote Access

Explains Virtual Private Network (VPN) technology for secure connections across networks, suitable for remote access and site-to-site communication.

V-1-1 VPN Client Wizard

Guides users through configuring VPN client settings, creating LAN-to-LAN profiles for outgoing VPN connections.

V-1-2 VPN Server Wizard

Assists in configuring VPN server settings, allowing creation of LAN-to-LAN profiles for incoming VPN connections.

V-1-5 IPsec General Setup

Explains IPsec General Setup, covering Phase 1 and Phase 2 configurations, authentication methods, and security protocols for secure tunnels.

V-1-7 Remote Dial-in User

Describes managing remote user profiles for VPN dial-in access, allowing authentication via various methods and setting connection parameters.

V-1-8 LAN to LAN

Explains how to manage LAN-to-LAN VPN connections, setting up profiles for dial-in/dial-out, connection types, and security methods.

V-1-9 VPN Trunk Management

Covers VPN trunk features like backup, load balance, GRE over IPsec, and binding tunnel policy for robust and flexible VPN management.

V-2 SSL VPN

Explains SSL VPN, a secure VPN form usable with standard web browsers, offering benefits like no client software installation and fewer restrictions.

V-3 Certificate Management

Covers managing digital certificates, including generating, importing, and managing local and trusted CA certificates for secure VPN connections.

Part VI Security

VI-1 Firewall

Explains firewall facilities including user-configurable IP filters, Stateful Packet Inspection (SPI), and DoS/DDoS attack protection for network security.

VI-1-1 General Setup

Allows adjustment of IP Filter and common options, including enabling/disabling Call Filter or Data Filter, and setting serial filter sets for traffic control.

VI-1-2 Filter Setup

Guides users on editing or adding filter rules within filter sets, specifying direction, IP addresses, protocols, and actions for packet filtering.

VI-1-3 DoS Defense

Explains Denial of Service (DoS) Defense functionality to detect and mitigate various attack types by inspecting packets against an attack signature database.

VI-2 Central Security Management (CSM)

Covers Central Security Management (CSM) for controlling IM/P2P usage, filtering web content, and managing URL content for enhanced network security.

VI-2-3 URL Content Filter Profile

Guides users on activating and configuring URL Content Filter (WCF) to limit access to objectionable websites and prevent malicious code downloads.

VI-2-4 Web Content Filter Profile

Details Web Content Filter (WCF) activation and profile settings to protect businesses from threats like inappropriate content and malicious downloads.

Part VII Management

VII-1 System Maintenance

Covers essential system setup and maintenance tasks, including System Status, TR-069, password management, and firmware upgrades.

VII-1-1 System Status

Provides basic network settings of the Vigor router, displaying LAN and WAN interface information, firmware details, and connection status.

VII-1-3 Administrator Password

Guides users on setting and changing the administrator password for secure access to the router's web interface.

VII-1-6 Configuration Backup

Details how to back up and restore router configurations, enabling easy transfer of settings to Vigor2860 series devices or for recovery purposes.

VII-1-10 Management

Covers management settings for Internet/LAN access control, port setup, TLS/SSL encryption, CVM access, and device management for secure remote access.

VII-1-13 Firmware Upgrade

Details the process of upgrading router firmware to the latest version for improved functionality, security, and bug fixes.

VII-2 Bandwidth Management

Details managing network bandwidth through Sessions Limit, Bandwidth Limit, and Quality of Service (QoS) settings to ensure optimal performance for critical applications.

VII-2-1 Sessions Limit

Explains how to limit the number of concurrent sessions for hosts to manage resource usage and prevent performance degradation, especially for P2P applications.

VII-2-2 Bandwidth Limit

Covers setting upstream and downstream bandwidth limits for LAN computers and subnets, optimizing network resource allocation.

VII-2-3 Quality of Service

Details Quality of Service (QoS) management for prioritizing traffic, classifying applications, and scheduling packets to ensure service levels and sufficient bandwidth.

VII-3 User Management

Provides a security feature to manage hosts by user account, allowing different firewall rules and policies for various users.

VII-3-1 General Setup

Determines user management standards (Rule-Based or User-Based), influencing how firewall rules are applied to users and controlling internet access.

VII-3-2 User Profile

Guides users on setting customized profiles for users, defining access authorities, authentication methods, and connection limitations.

VII-4 Central Management (VPN)

Details central VPN management for building virtual private networks, covering CVM settings, IPsec VPN, and managing remote devices.

VII-4-2 CPE Management

Explains how to manage connected CPE devices, including device discovery, maintenance tasks like firmware upgrades, and configuration backup.

VII-4-3 VPN Management

Provides an overview of VPN connections and management, allowing users to view connection status, initiate dial-out, and manage VPN tunnels.

VII-5 Central Management (AP)

Details Central AP Management features, including AP Map for placement optimization, AP Maintenance for remote management, and Load Balance for traffic distribution.

Part IX Troubleshooting

IX-1 Diagnostics

Guides users through troubleshooting common issues like inability to access the internet by checking hardware, network settings, and ISP configurations.

IX-1-18 DoS Flood Table

Displays DoS/DDoS attack information detected by the firewall, helping to identify and block malicious traffic to protect the network.

IX-7 Backing to Factory Default Setting If Necessary

Details how to reset the router to factory default settings via software or hardware, a crucial step for resolving persistent configuration problems.

Related product manuals