| Interface | 
| WAN/LAN Switchable Port | 1x 2.5G Ethernet, RJ-45 (PoE capable port for P model) 1x GbE/SFP Combo
 2x GbE, RJ-45 (PoE capable port(P4) for P model)
 *up to 2 simultaneous WANs | 
| Fixed LAN Port | 2x GbE, RJ-45 (PoE capable ports for P model) | 
| USB Port | 1x USB 2.0 + 1x USB 3.0 for storage (since f/w v3.9.6) and USB Thermometer (since f/w v4.3.1) | 
| Performance | 
| NAT Throughput w/ Hardware Acceleration | 2.2 Gbps | 
| IPsec VPN Performance | 1 Gbps (AES 256 bits) | 
| SSL VPN Performance | 800 Mbps | 
| NAT Sessions | 300,000(since f/w v3.9.6, 150,000 with f/w v3.9.3.1 or before) | 
| Max. Concurrent VPN Tunnels | 200 | 
| Max. Concurrent OpenVPN + SSL VPN | 50 | 
| PoE (P model) | 
| PoE Capable Ports | 4 (P1/P4/P5/P6) | 
| PoE Standards | PoE/PoE+ (802.3af/802.3at) | 
| Power Budget | 65 watts | 
| PD Device Check |  | 
| Internet Connection | 
| IPv4 | PPPoE, DHCP, Static IP | 
| IPv6 | PPP, DHCPv6, Static IPv6, TSPC, AICCU, 6rd, 6in4 Static Tunnel | 
| 802.1p/q Multi-VLAN Tagging |  | 
| Multi-VLAN/PVC |  | 
| Load Balancing | IP-based, Session-based | 
| WAN Active on Demand | Link Failure, Traffic Threshold | 
| Connection Detection | ARP, Ping, Strict ARP | 
| WAN Data Budget | (since f/w v3.9.6) | 
| Dynamic DNS |  | 
| DrayDDNS |  | 
| LAN Management | 
| VLAN | 802.1q Tag-based, Port-based | 
| Max. Number of VLAN | 20 | 
| Number of LAN Subnet | 20 | 
| DHCP Server | Multiple IP Subnet, Custom DHCP Options, Bind-IP-to-MAC | 
| LAN IP Alias |  | 
| Wired 802.1x Authentication |  | 
| Port Mirroring |  | 
| Local DNS Server |  | 
| Conditional DNS Forwarding |  | 
| Hotspot Web Portal |  | 
| Hotspot Authentication | Click-Through, Social Login, SMS PIN, RADIUS, External Portal Server | 
| Networking | 
| Routing | IPv4 Static Routing, IPv6 Static Routing, Inter-VLAN Routing, RIP, OSPF, BGP | 
| Policy-based Routing | Protocol, IP Address, Port, Domain, Country | 
| High Availability |  | 
| DNS Security (DNSSEC) |  | 
| IGMP | IGMP v2/v3, IGMP Proxy, IGMP Snooping & Fast Leave | 
| Local RADIUS server |  | 
| VPN | 
| LAN-to-LAN |  | 
| Teleworker-to-LAN |  | 
| Protocols | PPTP, L2TP, IPsec, L2TP over IPsec, SSL, GRE, IKEv2, IKEv2-EAP, IPsec-XAuth, OpenVPN(Host to LAN), Wireguard | 
| User Authentication | Local, RADIUS, LDAP, TACACS+, mOTP | 
| IKE Authentication | Pre-Shared Key, X.509 | 
| IPsec Authentication | SHA-1, SHA-256, MD5 | 
| Encryption | MPPE, DES, 3DES, AES | 
| VPN Trunk (Redundancy) | Load Balancing, Failover | 
| Single-Armed VPN |  | 
| NAT-Traversal (NAT-T) |  | 
| DrayTek VPN Matcher |  | 
| Firewall & Content Filtering | 
| NAT | Port Redirection, Open Ports, Port Triggering, DMZ Host | 
| ALG (Application Layer Gateway) | SIP, RTSP, FTP, H.323 | 
| VPN Pass-Through | PPTP, L2TP, IPsec | 
| IP-based Firewall Policy |  | 
| Content Filtering | Application, URL, DNS Keyword, Web Features, Web Category* (*: subscription required) | 
| DoS Attack Defense |  | 
| Spoofing Defense |  | 
| Bandwidth Management | 
| IP-based Bandwidth Limit |  | 
| IP-based Session Limit |  | 
| QoS (Quality of Service) | TOS, DSCP, 802.1p, IP Address, Service Type | 
| VoIP Prioritization |  | 
| Management | 
| Local Service | HTTP, HTTPS, Telnet, SSH v2, FTP, TR-069 | 
| Config File Export & Import |  | 
| Firmware Upgrade | TFTP, HTTP, TR-069 | 
| 2-Level Administration Privilege |  | 
| Access Control | Access List, Brute Force Protection | 
| Notification Alert | SMS, E-mail | 
| SNMP | v1, v2c, v3 | 
| Syslog |  | 
| Managed by VigorACS |  | 
| Central AP Management | 50 VigorAP | 
| Central Switch Management | 30 VigorSwitch | 
| Physical | 
| Rack Mountable | Mouting Kit Included | 
| Power Supply | AC 100-240V @ 1A | 
| Max. Power Consumption | 100 watts (P model) | 
| Dimension | 273 mm x 171 mm x 45 mm | 
| Weight | 1.53 kg (P model) | 
| Operating Temperature | 0 to 45°C | 
| Storage Temperature | -25 to 70°C | 
| Operating Humidity (non-condensing) | 10 to 90% | 
| Certificate |     |