ER7206 (TL-ER7206)
Omada Gigabit VPN Router
- Integrated into Omada SDN: Zero-Touch Provisioning (ZTP)**, Centralized Cloud Management, and Intelligent Monitoring.
- Centralized Management: Cloud access and Omada app for ultra convenience and easy management.
- Gigabit Ports: 1 gigabit SFP and 5 gigabit RJ45 ports provide high-speed wired connectivity.
- Up to 4 WAN Ports: 1 gigabit SFP WAN port, 1 gigabit RJ45 WAN port, 2 gigabit WAN/LAN ports optimize bandwidth usage.
- Highly Secure VPN: Supports up to 100× LAN-to-LAN IPsec, 50× OpenVPN*, 50× L2TP, and 50× PPTP VPN connections.
- Abundant Security Features: Advanced firewall policies, DoS defense,IP/MAC/URL filtering, and more security functions protect your network and data.
Centralized Management
A Professional, Secure, and Reliable Gateway with Centralized Management Capability
Omada Gigabit VPN Router
ER7206
-
Centralized Management
-
Gigabit Ports
-
Up to 4 WAN Ports
-
Load Balance
-
IPSec/OpenVPN/ PPTP/L2TP
-
Multi-Net
DHCP -
Powerful Firewall
-
Omada App
Omada SDN—The Smarter Cloud Solution for Business Networking
As the gateway that seamlessly integrates into the Omada Software Defined Networking (SDN) platform, ER7206 allows for remote and centralized management, anywhere, anytime. Standalone management via the Web UI or app is also available to maximize convenience.
WiFi 6 AP for High-Density Environments
Cloud-Based Controller
Hassle-Free Centralized Cloud Management:
100% centralized cloud management of whole network from different sites—all controlled from a single interface anywhere, anytime.
Up to Four WAN Gigabit Ports to Optimize Bandwidth Usage
One gigabit SFP WAN port, one gigabit RJ45 WAN port, and two freely interchangeable WAN/LAN ports allow the router to support up to four WAN ports to satisfy various internet access requirements through one device. The multi-WAN Load Balancing function distributes data streams according to the bandwidth proportion of every WAN port to raise the utilization rate of multi-line broadband.
Highly Secure VPN
ER7206 supports IPSec/PPTP/L2TP VPN over IPSec/SSL protocols. With a powerful hardware design, the router supports and manages up to 100× LAN-to-LAN IPSec, 50× OpenVPN*, 50× L2TP, and 50× PPTP VPN connections. One-click auto IPSec VPN* greatly simplifies VPN configuration and facilitates network management and deployment while also securing and encrypting private site-to-site data communications traveling over the internet.
Abundant Security Features
Powerful Firewall
Advanced firewall policies
protect your network and data.
Convenient VLAN Support
Create virtual network segments for
enhanced security and simplified
network management.
DoS Defense
Automatically detects and blocks Denial of Service
(DoS) attacks such as TCP/UDP/ICMP Flooding, Ping
of Death, and other related threats.
IP/MAC/URL Filtering
Forcefully prevent viruses and attacks
from intruders.
IP-MAC Binding
Reserves static IP assignment for
clients to defend against ARP
attacks and spoofing.
One-Click ALG Activation
One-Click ALG Activation for
applications such as FTP, H323, SIP,
IPsec and PPTP.
Internet Access Management Strategy
Standardize users’ online behavior and easily specify the internet access rights and strategies of employee via IP/MAC/URL Filtering and Access Control List (ACL). Captive Portal authentication facilitates network resource control by capturing, authenticating, and classifying user access. Appropriate network resources can also be allocated for particular users or guests.
Easy Management with the Omada App
Follow configuration instructions on the free Omada app to get set up in minutes. Omada lets you configure settings, monitor the network status and manage clients, all from the convenience of a smart phone or tablet.
SECURITY | |
---|---|
Access Control | Source/Destination IP Based Access Control |
Filtering | WEB Group Filtering§URL FilteringWeb Security§ |
ARP Inspection | • Sending GARP Packets§• ARP Scanning§• IP-MAC Binding§ |
Attack Defense | • TCP/UDP/ICMP Flood Defense• Block TCP Scan (Stealth FIN/Xmas/Null)• Block Ping from WAN |
HARDWARE FEATURES | |
---|---|
Standards and Protocols | • IEEE 802.3, IEEE802.3u, IEEE802.3ab, IEEE 802.3z, IEEE 802.3x, IEEE 802.1q• TCP/IP, DHCP, ICMP, NAT, PPPoE, NTP, HTTP, HTTPS, DNS, IPSec, PPTP, L2TP, OpenVPN, SNMP |
Interface | • 1 Fixed Gigabit SFP WAN Port• 1 Fixed Gigabit RJ45 WAN Port• 2 Fixed Gigabit RJ45 LAN Ports• 2 Changeable Gigabit RJ45 WAN/LAN Ports |
Network Media | • 10BASE-T: UTP category 3, 4, 5 cable (Max 100m)EIA/TIA-568 100Ω STP (Max 100m)• 100BASE-TX: UTP category 5, 5e cable (Max 100m)EIA/TIA-568 100Ω STP (Max 100m)• 1000BASE-T: UTP category 5, 5e, 6 cable (Max 100m) |
Fan Quantity | Fanless |
Button | Reset Button |
Power Supply | 100–240 V~50/60 Hz |
PoE Budget | - |
Flash | SPI 4MB + NAND 128MB |
DRAM | 512MB |
LED | PWR, SYS, SFP WAN, WAN (Speed, Link/Act), LAN (Speed, Link/Act) |
Dimensions ( W x D x H ) | 8.9 × 5.2 × 1.4 in (226 × 131 × 35 mm) |
Protection | 4 kV surge protection |
Enclosure | Steel |
Mounting | Desktop |
Max Power Consumption | 8.95W |
PERFORMANCE | |
---|---|
IPS Throughput | TCP: 200 Mbps; UDP: 150 Mbps |
DPI Throughput | TCP: 931 Mbps; UDP: 902 Mbps |
WireGuard VPN | 177.2 Mbps |
Concurrent Session | 150,000 |
New Sessions /Second | 5,500 |
NAT (Static IP) | 940.3 Mbps / 940.2 Mbps |
NAT(DHCP) | 940.3 Mbps / 940.4 Mbps |
NAT(PPPoE) | 939.7 Mbps / 937.9 Mbps |
NAT (L2TP) | 918.0 Mbps / 917.9 Mbps |
NAT (PPTP) | 918.9 Mbps / 914.7 Mbps |
64 Byte Packet Forwarding Rate | - |
IPsec VPN Throughput (AES256) | 291.6 Mbps |
IPsec VPN Throughput | 291.6 Mbps |
OpenVPN | 34.2 Mbps |
L2TP VPN Throughput | Unencrypted: 1360.3 MbpsEncrypted: 202.3 Mbps |
PPTP VPN Throughput | Unencrypted: 1379.3 MbpsEncrypted: 115.6 Mbps |
SSL VPN Throughput | - |
66 Byte Packet forwarding rate | 486,918 pps / 488,372 pps |
1,518 Byte Packet forwarding rate | 81,274 pps / 81,274 pps |
BASIC FUNCTIONS | |
---|---|
WAN Connection Type | • Static/Dynamic IP• PPPoE• PPTP• L2TP |
MAC Clone | Modify WAN/LAN MAC Address† |
DHCP | • DHCP Server• DHCP Address Reservation• Multi-IP Interfaces*• Multi-Net DHCP* |
IPv6 | Yes |
VLAN | 802.1Q VLAN |
IPTV | IGMP v2/v3 Proxy |
ADVANCED FUNCTIONS | |
---|---|
ACL | IP/Port/Protocol/Domain Name Filtering |
Advanced Routing | • Static Routing• Policy Routing |
Bandwidth Control | • IP/Port-based Bandwidth Control• Guarantee & Limited Bandwidth |
Load Balance | • Intelligent Load Balance• Application Optimized Routing• Link Backup (Timing§, Failover)• Online Detection |
NAT | • One-to-One NAT§• Multi-Net NAT• Virtual Server• Port Triggering§• NAT-DMZ• FTP/H.323/SIP/IPSec/PPTP ALG, UPnP |
Security | • SPI Firewall• VPN Passthrough• FTP/H.323/PPTP/SIP/IPsec ALG• DoS Defence, Ping of Death• Local Management |
Session Limit | IP-based Session Limit |
VPN | |
---|---|
SSL VPN | - |
IPsec VPN | • 100 IPSec VPN Tunnels• LAN-to-LAN, Client-to-LAN• Main, Aggressive Negotiation Mode• DES, 3DES, AES128, AES192, AES256 Encryption Algorithm• IKEv1/v2• MD5, SHA1 Authentication Algorithm• NAT Traversal (NAT-T)• Dead Peer Detection (DPD)• Perfect Forward Secrecy (PFS) |
PPTP VPN | • PPTP VPN Server• 10 PPTP VPN Clients**• 50 Tunnels• PPTP with MPPE Encryption |
L2TP VPN | • L2TP VPN Server• 10 L2TP VPN Clients**• 50 Tunnels• L2TP over IPSec |
OpenVPN | • OpenVPN Server*• 10 OpenVPN Clients*△• 50 OpenVPN Tunnels* |
AUTHENTICATION | |
---|---|
Web Authentication | • No Authentication• Simple Password*• Hotspot(Local User / Voucher* / SMS* / Radius*)• External Radius Sever• External Portal Sever*• Facebook* |
MANAGEMENT | |
---|---|
Omada App | Yes. Requiring the use of OC300, OC200, Omada Cloud-Based Controller, or Omada Software Controller. |
Centralized Management | • Omada Cloud-Based Controller• Omada Hardware Controller (OC300)• Omada Hardware Controller (OC200)• Omada Software Controller |
Cloud Access | Yes. Requiring the use of OC300, OC200, Omada Cloud-Based Controller, or Omada Software Controller. |
Service | Dynamic DNS (Dyndns, No-IP, Peanuthull, Comexe) |
Maintenance | • Web Management Interface• Remote Management• Export & Import Configuration• SNMP v1/v2c/v3*• Diagnostics (Ping & Traceroute)§• NTP Synchronize§• Syslog Support |
Zero-Touch Provisioning | Yes. Requiring the use of Omada Cloud-Based Controller. |
Management Features | • Automatic Device Discovery• Intelligent Network Monitoring• Abnormal Event Warnings• Unified Configuration• Reboot Schedule• Captive Portal Configuration |
OTHERS | |
---|---|
Certification | CE, FCC, RoHS |
Package Contents | • ER7206• Power Cord• Quick Installation Guide |
System Requirements | Microsoft Windows 98SE, NT, 2000, XP, Vista™ or Windows 7/8/8.1/10/11, MAC OS, NetWare, UNIX or Linux |
Environment | • Operating Temperature: 0–40 ℃ (32–104 ℉);• Storage Temperature: -40–70 ℃ (-40–158 ℉)• Operating Humidity: 10–90% RH non-condensing• Storage Humidity: 5–90% RH non-condensing |
*These functions require the use of Omada Hardware Controller, Software Controller, or Cloud-Based Controller
**Zero-Touch Provisioning requires the use of Omada Cloud-Based Controller. Go to https://www.tp-link.com/en/omada-cloud-based-controller/product-list/ to confirm which models are compatible with Omada Cloud-Based Controller.
† LAN MAC Address can be modified only in Standalone Mode.
§ These functions are supported only in Standalone Mode.
△For OpenVPN: When set up as a VPN server, each WAN port can connect with up to 10 VPN clients. At the same time, the ER7206 can work as a VPN client to connect with up to 10 VPN servers. The total number of OpenVPN tunnels is 50.
**For PPTP and L2TP VPN: ER7206 can work as a VPN client and can connect with up to 10 VPN servers.