Vigor 3910

  • Professional Top of the Line Router/Firewall
  • 8 WAN/LAN switchable Ports. 2 x 10GB ports
  • 4 LAN ports
  • Up to 50 WAN ports with optional Switch
  • WAN Load Balancing & WAN Failover
  • Up to 500 simultaneous IPSec/PPTP/L2TP Tunnels
  • IPv4 & IPv6 Dual-Stack
  • 802.1q Tagged and port-based VLANs
  • QoS Assurance on different traffic types
  • Mobile One-Time Passwords for Teleworker VPNs
  • VPN Trunking (aggregated/failover links)
  • Up to 50 WAN/LAN-side IP subnets
  • Web Content Filtering

Quad-Core Powerful Enterprise Gateway

Vigor3910 is capable for bandwidth demanding network. The router features a powerful quad-core processor, eight WAN interfaces, including two 10G SFP+ for fiber connectivity, two 2.5G Ethernet, RJ-45, and four Gigabit Ethernet, RJ-45, gives you NAT throughput up to 9 Gbps. All of WAN ports are switchable between WAN and LAN to provide Network Administrator with the flexibility to make the most out of the router. In addition, the router has four Gigabit Ethernet, RJ-45 as a fixed LAN interface.

Flexible WAN/LAN Port

With 8 configurable WAN/LAN ports, including 10G SFP+, 2.5GbE, 1GbE, Vigor3910 is designed to grow with your business.

VPN Hub with High Dialing Speed

Supporting 500 concurrent VPN tunnels for branches (LAN-to-LAN) and remote workers (remote dial-in).
Dialing up 500 IPSec tunnels within 80 seconds

Editable Plaintext Configuration File

Supporting exporting and importing editable plaintext configuration file.

Packet Capture Tool

By either mirroring all packets to designated LAN port or downloading .pcap file via WUI remotely, spotting an issue is easier than ever.

Hardware Acceleration

All sessions accelerate without sacrificing either QoS or Bandwidth Limit functionality

Key Features

quad-core CPU
Quad-Core Processor

Offer excellent performance for bandwidth-demanding enterprise networks.

10G SFP+

Provides 2x 10G-capable fiber SFP ports for WAN or LAN connection.

load balancing router
Load Balancing

Maximize throughput and reliability by using multiple Internet connections. Learn more

VPN router
VPN (Virtual Private Network)

Build a secure and private tunnel from the LAN of Vigor3910 to the remote offices and teleworkers over the Internet. Learn more

SSL VPN router

The VPN works through firewalls providing secure remote access to any network environment. Learn more

PPP over Ethernet
PPPoE Server

Use Point-to-Point connection on LAN to keep track of individual user's traffic. Setup Guide

captive portal
Hotspot Web Portal

Market your business and communicate with the guests while offering hospitality Wi-Fi. Learn more

speed control
Bandwidth Management

Prevent one device using all the bandwidth by bandwidth limit policy, session limit policy, and QoS settings.

Firewall & Content Filter

Filter web pages by URL keyword or web category to block access to insecure or inappropriate contents.

dynamic DNS service

The free DDNS service for you to access the router by a fixed hostname of your choice. Learn more

wireless management
Central AP Management

Use the Vigor3910 router as a wireless controller to maintain and monitor the VigorAPs. Learn more

switch management
Central Switch Management

Set up VLAN easily from the router and get a centralized hierarchy view of the switches. Learn more

Enterprise-level central site VPN gateway
By using VPNs to establish secure, end-to-end private network connections over a public networking infrastructure, business can reduce considerable communications/travels expenses and still remain seamless connectivity between central and remote sites including mobile workers, telecommuters, and extranet users by accessing corporate database any time in anywhere.
Vigor3910 with a dedicated VPN co-processor, the hardware encryption of AES/DES/3DES and hardware key hash of SHA-1/MD5 are seamlessly handled, thus maintaining maximum router performance. For remote sites and inter-office links, the Vigor3910 supports up to 500 simultaneous VPN tunnels (such as IPsec/PPTP/L2TP protocols). The site-to-site VPN throughput can reach up-to 800Mbps (IPsec). The SSL VPN* by using X.509 certificate-based authentication is also available for tele-worker applications.
Without the necessity of installing VPN client on individual PC, the Secure Socket Layer (SSL) virtual private network (VPN) facility lets remote workers connect to the office network at any time. SSL is supported by standard web browsers such as FireFox and IE. For users of small offices and tele-workers who need to access enterprises’ internal applications, file server and file sharing.

Centralized Management 
Embedded Central VPN Management (CVM) will let network administrator register up to 16 remote routers and also run concurrent remote management over 16 remote routers.

In short, Vigor3910 gives a highly secure but flexible network for the multi-site business operation and retain corporate HQ’s ultimate control of the system.
High performance gigabit and fiber interfaces
Eight WAN interfaces, including two 10G SFP+ for fiber connectivity, two 2.5G Ethernet, RJ-45, and four Gigabit Ethernet, RJ-45, gives you NAT throughput up to 9 Gbps. All of WAN ports are switchable between WAN and LAN to provide Network Administrator with the flexibility to make the most out of the router. In addition, the router has four Gigabit Ethernet, RJ-45 as a fixed LAN interface.
Vigor3910 is also the future proof procurement as considering tech refresh of your central site or major regional branches. From infrastructure viewpoint, Vigor3900 is not only working with current IPv4 network but also compliant with future IPv6 migration. From service viewpoint, corporation begins to turn to virtualization and cloud computing services when the speed of WAN connection is rising to reduce overhead of IT and enhance productivity.
Stable inline reliability
The advance Load Balance and Failover features of Vigor3910 can balance traffic from your LAN to multiple internet connections (WANs). The easy-to-use web user interface allows administrator to configure comprehensive network settings in minutes to optimize bandwidth usage and establish a reliable network based on actual operation needs. Traffics from the LAN are shared out on a round robin basis across the available WANs. Vigor3910 can monitor each WAN connection, using an IP address you provide, and if Vigor3910 monitors fails, a failover configuration will take place and typically just feeds all traffic down the other connection(s). Especially, the pooling configuration concept allows administrator to select desire WAN ports as load-balancing pools with weight setting capability / failover pools and modify policy if necessary and then configure each WAN port with detail network information that helps administrator build a substantial network to facilitate daily operation with versatility, scalability and reliability. 
Highly secure and efficient corporate application management
Vigor3900 with Certificate Management function including Root CA, Trusted CA and Local CA is a comprehensive Certificate Authority (CA) server. To prevent eavesdropping, Vigor3900 enforces advance encrypted mechanism implemented a pair of public and private keys as exchanging certificate between server and client instead of using pre-shared key which might be stolen by hackers during interchange. Vigor3900 offers flexible methods to grant certificate for any trusted applicant who may use it for the VPN connection. Administrator of Vigor3900 can choose to accept/sign client’s CA certificate or generate a signed CA certificate through building root CA function for client’s VPN connection needs in case some clients do not have CA certificate in hand. As a result, Certificate Management by Vigor3900 offers secure and flexible ways for business certification process.
The DoS/DDoS prevention and URL/Web content filter strengthen the security outside and inside the network. They can block the HTTPS web access well with the integration of the object-based firewall setting. The enterprise-level CSM (Content Security Management) enables users to control and manage IM (Instant Messenger) and P2P (Peer-to-Peer) applications more efficiently. The CSM hence prevents inappropriate content from distracting employees and impeding productivity. Furthermore, the CSM can keep office networks threat-free and available. The Vigor3900 supports authentication by the PPPoE server with wire-speed Internet Access capability to LAN users (e.g. employees). This feature saves a lot of time compared with IP-bind-MAC method to benefits the network administrators.
Quality of Service (QoS) function of Vigor3910 implemented Ingress and Egress Filter Rules monitoring LAN/WAN incoming and outgoing data packets. These rules can prevent unwanted data packets from outside to access corporate network as well as distribute corporate data to non-recognizable destinations. The subscribed bandwidth wouldn’t be wasted on useless data packet exchange activities and may reduce the risk of damage corporate network or confidential information leakage. Moreover, Vigor3910 has eight classes of priority level settings which allow administrator to better prioritize the importance of bandwidth usage in detail. Administrator can use bandwidth limitation to grant different bandwidth to different workgroups based on their main job function which can be viewed as macro view of bandwidth allocation. In the micro view, administrator can define different sessions through session limitation to individual client device based on IP address in each workgroup. For instance, Sales Dept. in total might need the larger bandwidth than others for better serving customers. However, sales assistants could be granted minimum sessions because they don’t need to interact with customers directly to facilitate their jobs.
Easy-to-use centralized management
Vigor3910 embedded with an easy-to-use user interface shorten administrator’s learning curve to adopt its management mechanism to control CO side network and hundreds VPN connections of remote sites. By the easy-to-use user interface, business doesn’t need to allocate the highly experienced technician as the administrator and can save training cost/time for recruiting new hire. Besides, Vigor3910 compliant with TR-069 protocol can be managed by VigorACS SI centralized management system that makes you have the choice to outsource IT management to System Integrator who can provide both Internet access service (last mile license from ISP/Telco) and device remote management/diagnostic services to stay focused on business essentials.
WAN/LAN Switchable Port 2x 10G/1G SFP+ Fiber Slot
2x 2.5G/1G/100M/10M Ethernet, RJ-45
4x 1G/100M/10M Ethernet, RJ-45
Fixed LAN Port 4x 1G/100M/10M Ethernet, RJ-45
USB Port 2x USB 3.0
Console Port 1x RJ-45
Button 1x Factory Reset
NAT Throughput 9 Gbps
IPsec VPN Performance 3.3 Gbps
SSL VPN Performance 1.6 Gbps
NAT Sessions 150,000
Max. Concurrent VPN Tunnels 500
Max. Concurrent OpenVPN + SSL VPN 200
Internet Connection
IPv4 PPPoE, DHCP, Static IP
IPv6 PPP, DHCPv6, Static IPv6, TSPC, AICCU, 6rd, 6in4 Static Tunnel
802.1p/q Multi-VLAN Tagging  
Load Balancing IP-based, Session-based
WAN Active on Demand Link Failure, Traffic Threshold
Connection Detection ARP, PPP, Ping
Dynamic DNS  
LAN Management
VLAN 802.1q Tag-based, Port-based
Max. Number of VLAN 50
Number of LAN Subnet 50
DHCP Server Multiple IP Subnet, Custom DHCP Options, Bind-IP-to-MAC
LAN IP Alias  
IP Pool Count Up to 4K per LAN Subnet
PPPoE Server  
Port Mirroring  
Local DNS Server  
Conditional DNS Forwarding  
Hotspot Web Portal  
Hotspot Authentication Click-Through, Social Login, SMS PIN, RADIUS, External Portal Server
Routing IPv4 Static Routing, IPv6 Static Routing, Inter-VLAN Routing, RIP v1/v2/ng, OSPFv2, BGP
Policy-based Routing Protocol, IP Address, Port, Domain, Country
High Availability Active-Standby, Hot-Standby
DNS Security (DNSSEC)  
Multicast IGMP Proxy, Bonjour
Local RADIUS server  
SMB File Sharing  (Requires external storage)
Protocols PPTP, L2TP, IPsec, L2TP over IPsec, SSL, GRE, IKEv2, IPsec-XAuth, OpenVPN
User Authentication Local, RADIUS, LDAP, TACACS+, mOTP
IKE Authentication Pre-Shared Key, X.509, XAuth, EAP
IPsec Authentication SHA-1, SHA-256, MD5
Encryption MPPE, DES, 3DES, AES
VPN Trunk (Redundancy) Load Balancing, Failover
Single-Armed VPN  
NAT-Traversal (NAT-T)  
DrayTek VPN Matcher  
Firewall & Content Filtering
NAT Port Redirection, Open Ports, Port Triggering, DMZ Host, UPnP
ALG (Application Layer Gateway) SIP, RTSP, FTP, H.323
VPN Pass-Through PPTP, L2TP, IPsec
IP-based Firewall Policy  
Content Filtering Application, URL, DNS Keyword, Web Features, Web Category* (*: subscription required)
DoS Attack Defense  
Spoofing Defense  
Bandwidth Management
IP-based Bandwidth Limit  
IP-based Session Limit  
QoS (Quality of Service) TOS, DSCP, 802.1p, IP Address, Service Type
VoIP Prioritization  
Local Service HTTP, HTTPS, Telnet, SSH, FTP, TR-069
Config File Export & Import  
Firmware Upgrade TFTP, HTTP, TR-069
2-Level Administration Privilege  
Access Control Access List, Brute Force Protection
Notification Alert SMS, E-mail
SNMP v1, v2c, v3
Managed by VigorACS  
Central AP Management 50 VigorAPs
Central Switch Management 30 VigorSwitches
Rack Mountable  Mouting Kit Included
Dimension 443 mm x 285 mm x 45 mm
Weight 3.23 kg
Power AC 100~240V, 50/60Hz
Max.Power Consumption 35 watts
Operating Temperature 0 to 45°C
Storage Temperature -10 to 55°C
Operating Humidity (non-condensing) 10 to 90%
Certificate CE FCC

CLICK HERE to access a Vigor 3910 Web Interface