





TP-LINK TL-ER6520G Multi-WAN Gigabit VPN Router 5 ports with machine capacity 2000 manage 200 APs
Quad-core CPU, 1GB DDRIII high-speed memory, powerful performance 5 Gigabit Ethernet ports, 1WAN+3WAN/LAN+1LAN IPSec/PPTP/L2TP VPN, remote communication is more secure Web authentication, SMS authentication, PPPoE server Internet behavior management (mobile APP control/desktop application control/website filtering/behavior audit) Built-in AC function, unified management of TP-LINK enterprise AP Load balancing and line backup Internal and external network ARP protection and common attack protection Intelligent IP bandwidth management and connection limit Newly upgraded hardware, more powerful performance The newly upgraded hardware architecture adopts a professional quad-core 64-bit network dedicated processor, with a single-core frequency of up to 1.2GHz, and 1GB DDRIII high-speed memory
Product Features
Newly upgraded hardware, more powerful performanceThe newly upgraded hardware architecture adopts a professional quad-core 64-bit network dedicated processor, with a single-core frequency of up to 1.2GHz, and 1GB DDRIII high-speed memory, which greatly improves the packet processing capacity. In the actual environment, the typical belt machine volume is about 2000 units. Built-in AC function, unified management of TP-LINK enterprise APBuilt-in AC function, both routers and wireless controllers, can be unified to control up to 250 TP-LINK enterprise APs, easy to extend enterprise wireless networks; It can automatically discover TP-LINK APs in the network, configure and manage APs uniformly, realize AP zero-configuration access, plug-and-play, and support AP status monitoring and upgrades, which is easy to maintain. Multiple VPNs to ensure the security of remote communicationSupport IPSec VPN, allow up to 200 tunnels to be established, encrypt confidential data of enterprises and branches, and ensure data security; Support PPTP VPN and L2TP VPN server/client mode, allowing up to 200 tunnels (shared) to be established, which is convenient for employees on business trips and mobile office workers to remotely access the internal server of the enterprise and realize remote office easily. Internet behavior management, standardize employee network useBuilt-in database of common Internet applications, one-key control of various desktop and mobile Internet applications, including social software / video software / music software / shopping and leisure software / news information software / P2P software / financial software / online games / application store / Basic applications and other categories; Built-in database of hundreds of URLs in dozens of categories, which can limit employees' access to corresponding websites with one click; Support prohibiting webpage submission, restrict employees from logging in to various web-based forums, Weibo, emails, etc. to post information, to avoid leakage of sensitive corporate data; Supports file expansion types, which can easily filter various small files embedded in web pages to prevent viruses, Trojans, etc. from intruding into the corporate network through these small files and jeopardizing network security; Support behavior auditing function, comprehensively record online behaviors, and output audit results in report form. VLAN (multiple local area network)Support IEEE 802.1Q VLAN, enterprises can divide the internal network into different network segments isolated from each other according to their needs, reducing the impact of broadcast storms and viruses; Support VLAN Layer 3 interface, can realize the IP message forwarding across VLAN, and can set DHCP Server, firewall rules, access authentication strategy and other functions based on VLAN. A variety of authentication methods to control online access and realize advertising and marketingSupport Web authentication, you can push merchant advertising information through the authentication page; Support SMS authentication, meet real-name authentication requirements, and conduct secondary marketing based on mobile phone number; Support PPPoE server, which can realize unified dial-up Internet access for intranet users. Efficient firewall to ensure the security of internal and external networksSupport IP and MAC address binding, effectively prevent internal/external network ARP spoofing; in case of ARP spoofing, it can actively send ARP correction information according to the designated frequency to restore the normal state of the network in time; Support internal/external network attack protection function, which can effectively prevent various common DoS attacks, scanning attacks, and suspicious packet attacks; Support MAC address-based filtering function, effectively blocking the access of illegal hosts; It can assign the authority to pass through the router for various network services, ensure the security of the internal and external networks, support access control rules based on user groups and time periods, and achieve more refined management. Flexible bandwidth control to ensure reasonable utilization of bandwidthSupports flexible strategies that enable bandwidth control based on bandwidth utilization, which can perform two-way bandwidth control for each host (IP) in the network, effectively suppressing excessive bandwidth usage by P2P applications such as BT and Thunder, and ensuring that the network is always smooth; Provide IP-based connection number limit function, which can limit the number of connections of each computer, prevent a small number of users from excessively occupying a large number of connections, and ensure the smooth progress of games, Internet access, chat, video and voice. Multi-WAN port load balancing and line backupProvides 1 10/100/1000M fixed WAN port, 1 10/100/1000M fixed LAN port and 3 10/100/1000M WAN/LAN configurable ports. Users can flexibly configure the number of WAN ports according to actual network requirements to meet Networking requirements for multiple line access; Supports rich traffic balancing functions such as intelligent routing, special application routing, ISP routing, etc., which can realize bandwidth superposition, make full use of bandwidth resources, and protect user investment; Support WAN port backup function, can automatically switch to the backup line when the main line fails to ensure the normal operation of the network. More useful featuresSupport DDNS and virtual server function, easily build intranet server and private website; Support UPnP and ALG service functions to ensure that special network applications smoothly penetrate NAT; The new all-Chinese WEB management interface makes management and maintenance more convenient and quick; Provide log list function to record the network running status in detail; Support Ping, Tracert and other fault detection tools to help quickly find and eliminate network faults. |
Technical Specifications
Property Description | Property Value |
---|---|
port | 1 10/100/1000M RJ45 WAN port 3 10/100/1000M RJ45 WAN/LAN configurable ports 1 10/100/1000M RJ45 LAN port 1 Console port |
processor | Quad-core MIPS 64-bit dedicated network processor, single-core frequency 1.2GHz |
RAM | DDRIII 1GB |
FLASH | 64MB |
Indicator light | Per port: WAN/LAN, Speed Per device: PWR, SYS |
Dimensions | 440(w)x227(D)x44(H) mm |
Input power | 100~240V AC,50/60Hz |
Cooling method | Natural cooling |
Use environment | Operating temperature: 0°C~40°C, operating humidity: 10%~90%RH non-condensing Storage temperature: -40°C~70°C, storage humidity: 5%~90%RH non-condensing |
Typical belt load | Around 2000 |
Network protocol | TCP/IP、DHCP、ICMP、NAT、PPPoE、SNTP、HTTP、DNS、H.323、SIP、DDNS |
basic settings | Interface setting DHCP server MAC address setting VLAN (multi-local area network) switch setting DNS proxy |
AP management | AP settings, manage up to 200 TP-LINK AP wireless network settings wireless client status |
Transmission control | One-to-one NAT, NAPT, virtual server, ALG, NAT-DMZ IP bandwidth control, connection number control, flow/connection number monitoring, large concurrent connections: 600,000 intelligent balances, ISP routing, special application routing, online detection , Line backup strategy routing, static routing |
Safety management | Support ARP scanning, ARP list, GARP Support IP/MAC binding Anti-DoS type, scanning type, suspicious packet type and other common attack behaviors Support setting MAC address filtering black and white list Access control list |
Behavior control | Social software/Video software/Music software/Shopping and leisure software/News software/P2P software/Financial software/Online games/App store/Basic applications and other common applications limit QQ black and white list URL group filtering, URL filtering web security (prohibited Web page submission, filtering various file types in the web page) Behavior audit application signature database update |
VPN | IPSec VPN (200 tunnels) PPTP/L2TP VPN (200 tunnels) |
Access authentication | Web authentication, support local authentication, Radius authentication, one-click Internet access, meet a variety of authentication needs SMS authentication, meet real-name authentication requirements, and can conduct secondary marketing based on mobile phone No authentication strategy |
system service | PPPoE server with 1000 dynamic DNS (Peanut Shell, Comay, 3322) UPnP service |
Management and maintenance | Chinese Web network management, remote management configuration backup and import configuration system software upgrade interface traffic statistics, IP traffic statistics ping, tracert diagnostic tool time setting system log |