The Dratek Vigor 2820 is the base adsl model from Drayteks Vigor 2820 series routers, DrayTek’s latest premium ADSL and broadband router/firewall family, featuring an entirely new stylish case design and new DrayOS 3 operating system. Packed with features, the Draytek 2820 range offers truly comprehensive ADSL connetivity and security. Compatible with all variants of ADSL (include ADSLMax, ADSL2+ and Annex M), the Draytek Vigor 2820 series can also be used for cable-modem and leased line applications thanks to its additional WAN port (Ethernet). A Gigabit Ethernet port on the WAN side provides high speed connectivity for your server (or uplink to a larger Ethernet Switch).

Draytek 2820 Main Feature Highlights
- ADSL/ADSL2+ and Broadband Router
- Annex A, Annex L (READSL) & Annex M Support
- Dual-WAN ports for ADSL or cable modem or both
- 3G (Cellular) Modem support*
- Ethernet and WLAN Virtual LAN segmentation (common or distinct groups)
- Configurable QoS Features (For traffic prioritisation)
- VPN- 32 concurrent tunnels with hardware co-processor
- Gigabit Ethernet LAN Port for LAN Server connectivity
- USB Port for Printer sharing or 3G Modem connection
Physical Interfaces:
- LAN Ports (Switch)
- 1 X Gigabit Ethernet (1000Mb/s) Ports
- 3 X Megabit (100Mb/s) Ports
- Port-Based VLAN (Inclusive/Exclusive Groups)
- WAN Ports:
- ADSL Port Compliant with:
- ANSI T1.413 Issue2
- ITU-T G.992.1 G.dmt (ADSL)
- ITU-T G.992.2 G.lite
- ITU-T G.992.3 ADSL2
- ITU-T G.992.5 ADSL2+
- Annex L (READSL)
- Annex M
- Secondary WAN Port : 10/100 Base-TX Ethernet for load balance and WAN failover
- USB Port for 3G Cellular Modem*
Load Balance/Failover Features:
- Outbound Policy-Based Load-Balance
- WAN Connection Fail-over
- BoD (Bandwidth on Demand)
Vigor 2820 ATM Protocols (DSL):
- RFC-2684/RFC-1483 Multiple Protocol over AAL5
- RFC-2516 PPP over Ethernet
- RFC-2364 PPP over AAL5
- PPPoE pass through LAN/WLAN
- PPPoE/PPPoA Relay
- Transparent bridge for MPoA
- Multiple PVC support for Triple Play Applications (up to 8 simultaneous)
WAN Protocols (Ethernet):
- DHCP Client
- Static IP
- PPPoE
- PPTP
- L2TP *
- BPA
Firewall & Security Features:
- CSM (Content Security Management):
- URL Keyword Filtering – Whitelist or Blacklist specific sites or keywords in URLs
- Prevent accessing of web sites by using their direct IP address (thus URLs only)
- Blocking automatic download of Java applets and ActiveX controls
- Blocking of web site cookies
- Block http downloads of file types :
- Binary Executable : .EXE / .COM / .BAT / .SCR / .PIF
- Compressed : .ZIP / .SIT / .ARC / .CAB/. ARJ / .RAR
- Multimedia : .MOV / .MP3 / .MPEG / .MPG / .WMV / .WAV / .RAM / .RA / .RM / .AVI / .AU
- Time Schedules for enabling/disabling the restrictions
- Block P2P (Peer-to-Peer) file sharing programs (e.g. Kazza, WinMX etc. )
- Block Instant Messaging programs (e.g. IRC, MSN/Yahoo Messenger etc.)
- Multi-NAT, DMZ Host
- Port Redirection and Open Port Configuration
- Policy-Based Firewall
- MAC Address Filter
- SPI ( Stateful Packet Inspection ) with new FlowTrack Mechanism
- DoS / DDoS Protection
- IP Address Anti-spoofing
- E-Mail Alert and Logging via Syslog
- Bind IP to MAC Address
Bandwidth Management:
- QoS
- Guaranteed Bandwidth for VoIP
- Class-based Bandwidth Guarantee by User-Defined Traffic Categories
- DiffServ Code Point Classifying
- 4-level Priority for each Direction (Inbound / Outbound)
- Bandwidth Borrowed
- Temporary (5 minute) Quick Blocking of any LAN Client
- Bandwidth / Session Limitation
Network/Router Management:
- Web-Based User Interface (HTTP / HTTPS)
- CLI ( Command Line Interface ) / Telnet / SSH*
- Administration Access Control
- Configuration Backup / Restore
- Built-in Diagnostic Function
- Firmware Upgrade via TFTP / FTP
- Logging via Syslog
- SNMP Management with MIB-II
- TR-069
- TR-104
VPN Facilities:
- Up to 32 Concurrent VPN Tunnels (incoming or outgoing)
- Tunnelling Protocols: PPTP, IPSec, L2TP, L2TP over IPSec
- IPSec Main and Agressive modes
- Encryption : MPPE and Hardware-Based AES / DES / 3DES
- Authentication : Hardware-Based MD5 and SHA-1
- IKE Authentication : Pre-shared Key and X.509 Digital Signature
- LAN-to-LAN & Teleworker-to-LAN connectivity
- DHCP over IPSec
- NAT-Traversal ( NAT-T )
- Dead Peer Detection (DPD)
- VPN Pass-Through
Network Features: