Description
The Vigor 3900 is a high-performance quad-Gigabit WAN firewall for high-performance applications. The 5 WAN ports on the Vigor 3900 can provide load balancing, WAN failover or bandwidth aggregation. Based on a DrayTek OS platform, the Vigor 3900 combines high performance and capacity with DrayTek's traditional ease of use and comprehensive features set.
For multi-tenant or departmental flexibility, the Vigor 3900 will support multiple LAN IP subnets, together with VLAN capabilities and user management, providing access to WAN resources only to the appropriate users or departments, as well as maintaining infrastructure efficiency.
-
WAN and LAN connectivity
Four Gigabit Ethernet WAN ports and one SFP slot provide 5 independent WAN ports for either load-balancing or failover applications. Gigabit Ethernet and SFP LAN interfaces provide high speed connectivity to your LAN. Fiber is of particular use for longer distance deliveries, beyond the range of standard Ethernet, or where copper connections cannot be used. WAN load-balancing weight or traffic-type rules can be set or on an automatic basis to spread WAN traffic evenly across all interfaces on a best-endeavor basis. -
Firewall
The Vigor 3900's firewall is fully stateful, with a flow-track mechanism and comprehensive WAN defenses, including DOS/DDoS protection and flexible IP packet filtering. On the content side, the Vigor 3900 has several methods of content filtering to control user access to the web to keep their access appropriate, safe and productive. That helps keep your network efficient, your data secure and your online productivity high. -
QoS
Extensive QoS facilities allow for efficient local traffic handling, ensuring that critical traffic is given the appropriate priority and that your network topology handles data in the most efficient way to help avoid congestion and bottlenecks. WAN traffic can be assigned one of 8 different priority levels based on egress or ingress. Bandwidth can be reserved for critical applications and DiffServ code-point classifying can also be applied. Rules can be based on traffic type, users or IP source/destinations. -
VPN
As a VPN endpoint/concentrator, the Vigor 3900 will support simultaneous teleworker or LAN-to-LAN VPNs with a VPN throughput of up to 500 Mb/s, thanks to its hardware-based VPN co-processor. VPN security includes certificate, MOTP or token/PSK based access and key-hash authentication to ensure maximum security. -
VPN trunking
By the use of multiple WAN connections, the Vigor 3900's VPN-trunking features can increase the bandwidth/capacity of your VPN connections, creating a single virtual tunnel between locations using 2, 3 or all 4 WAN connections. The Vigor 3900 already supports load balancing to the Internet using its four-WAN ports. What VPN trunking does is enables a single virtual tunnel to be created across two or more WAN connections to the same remote location creating a single virtual tunnel. -
SSL VPN
For ease of remote access, the Vigor 3900 can provide simultaneous SSL VPN web-proxy tunnels, remote access to your network possible from virtually anywhere with both security and ease and without the inconvenience or compatibility issues of installing a VPN client. As SSL is a standard Internet protocol, SSL VPNs are also resilient to difficulties in creating tunnels through guest networks where traditional IPSec/PPTP tunnels can often have difficulties. -
High availability
For even greater resilience, the Vigor 3900 provides High Availability (HA). The CARP protocol lets you set up a master and secondary Vigor 3900 whereby in the event of the master unit failing, the secondary unit can seamlessly and automatically switch over. This can remove the possibility of a single point of failure within your routers.
Specifications
Summary
- Product Description
- Draytek Vigor 3900 - security appliance
- Device Type
- Security appliance
- Form Factor
- External - 1U
- Data Link Protocol
- Ethernet, Fast Ethernet, Gigabit Ethernet
- Capacity
- Concurrent IPSec VPN tunnels: 500 , PPTP VPN tunnels: 500 , Concurrent L2TP VPN tunnels: 500 , Simultaneous NAT sessions: 100000
- Manufacturer Warranty
- 2-year warranty
Detailed Specification
General
- Device Type
- Security appliance
- Height (Rack Units)
- 1U
Networking
- Form Factor
- External
- Connectivity Technology
- Wired
- Data Link Protocol
- Ethernet, Fast Ethernet, Gigabit Ethernet
- Network / Transport Protocol
- PPTP, L2TP, NTP, IPSec, FTP, DNS
- Routing Protocol
- Static IP routing
- Remote Management Protocol
- SNMP, Telnet, HTTP, HTTPS, TFTP, SSH, CLI
- Capacity
- Concurrent IPSec VPN tunnels: 500 , PPTP VPN tunnels: 500 , Concurrent L2TP VPN tunnels: 500 , Simultaneous NAT sessions: 100000
- Features
- Firewall protection, routing, DHCP support, NAT support, VPN support, trunking, load balancing, DiffServ support, IPv6 support, High Availability, URL filtering, firmware upgradable, Quality of Service (QoS), IPSec NAT-Traversal (NAT-T), IPv4 support
- Encryption Algorithm
- DES, Triple DES, RC4, MD5, IKE, SSL, SHA-1, 128-bit AES, 192-bit AES, 256-bit AES
- Authentication Method
- X.509 certificates
- Compliant Standards
- IEEE 802.1Q
Expansion / Connectivity
- Expansion Slots
- 2 (total) / 2 (free) x SFP (mini-GBIC)
- Interfaces
- 4 x 1000Base-T - RJ-45 (WAN) , 2 x 1000Base-T - RJ-45 , 2 x USB - Type A , 1 x management - RJ-45
Miscellaneous
- Rack Mounting Kit
- Included
Power
- Power Device
- Internal power supply
Manufacturer Warranty
- Service & Support
- Limited warranty - 2 years
Environmental Parameters
- Min Operating Temperature
- 0 °C
- Max Operating Temperature
- 45 °C
- Humidity Range Operating
- 10 - 90% (non-condensing)