Omada Multi-Gigabit VPN Gateway
- Quad-core @2.0GHz CPU
- 2× 2.5G RJ45 WAN/LAN ports
- 10× Gigabit WAN/LAN Ports (2× SFP, 8× RJ45)
- 1× USB 3.0 Port (Supports USB storage, and LTE backup with LTE dongle)
- Load Balancing on up to 11 WAN ports△ increases the utilization rate of multi-line broadband
- High-security SSL/ IPSec / GRE§ / WireGuard / PPTP / L2TP VPN & OpenVPN
- Centralized cloud management via the web or the Omada app*
- DoS/DDoS protection, IP/MAC/URL filtering, DPI, and IPS/IDS for enhanced security
- 
	2× 2.5Gbps 
 WAN/LAN
 RJ45 Ports
- 
	10× Gigabit 
 WAN/LAN Ports
 (2× SFP, 8× RJ45)
- 
	Load Balancing on 
 up to 11 WAN Ports
- 
	Quad-Core 
 2.0 GHz CPU
- 
	Centralized Cloud 
 Management†
- 
	SSL/ IPSec / GRE§ / 
 WireGuard / PPTP /
 OpenVPN & L2TP VPN
- 
	Multi-Net DHCP 
- 
	DPI & IPS/IDS 
Engineered for Dense
Environments, Powered by
Dual 2.5 Gbps Ports and
Quad-Core 2.0 GHz CPU
Easily build a multi-gigabit network for schools, hotels, and offices.
Up to 11 WAN Ports & One USB WAN for Mobile Broadband
WAN/LAN RJ45 ports
WAN/LAN RJ45 ports
WAN/LAN SFP ports
Software Defined Networking (SDN) with Cloud Access
Remotely manage your access points, switches, and gateways across multiple sites all from a single interface.
Controller
Controller
Controller
- 
	Easy to Use
- 
	Hardware, Software, or Cloud-Based Controllers
- 
	Centralized Management via Web or Omada App
- 
	Zero-Touch Provisioning (ZTP)*
High-Security and High-Performance VPN
SSL/ IPSec / GRE / WireGuard / PPTP / L2TP VPN & OpenVPN easily build secure VPN tunnels for secure Internet browsing, communication between different branches, or enabling remote work or study from home.
Abundant Security Features
- 
	DPI (Deep Packet Inspection)Easily specify internet access rights and strategies via DPI (Deep Packet Inspection), IP/MAC/URL Filtering and Access Control List (ACL). 
- 
	IDS/IPSThe integrated IDS/IPS engine bolsters threat detection and defense. Additionally, there is an embedded, regularly updated signature database for attack prevention. 
- 
	DoS DefenseAutomatically detects and blocks Denial of Service (DoS) attacks such as TCP/UDP/ICMP Flooding, Ping of Death, and other related threats. 


| SECURITY | |
|---|---|
| Access Control | • Source/Destination IP-Based ACL• Stateful ACL• IPv4/IPv6 ACL• Location Based ACL | 
| Filtering | • WEB Group Filtering§• URL Filtering• Web Security§ | 
| ARP Inspection | • Sending GARP Packets§• ARP Scanning§• IP-MAC Binding§ | 
| Attack Defense | • TCP/UDP/ICMP Flood Defense• Block TCP Scan (Stealth FIN/Xmas/Null)• Block Ping from WAN | 
| HARDWARE FEATURES | |
|---|---|
| Standards and Protocols | • IEEE 802.3, IEEE802.3u, IEEE802.3ab, IEEE802.3z, IEEE 802.3x, IEEE802.1q• TCP/IP, DHCP, ICMP, NAT, PPPoE, NTP, HTTP, HTTPS, DNS, IPSec, PPTP, L2TP, OpenVPN, WireGuard VPN, GRE VPN, SNMP | 
| Interface | • 1× 2.5G RJ45 WAN/LAN Port• 1× 2.5G RJ45 WAN/LAN Port• 2× Gigabit SFP WAN/LAN Ports• 8× Gigabit RJ45 WAN/LAN Ports• 1× RJ45 Console Port• 1× USB 3.0 Port (Supports USB storage, and LTE backup with LTE dongle) | 
| Network Media | • 10BASE-T: UTP category 3, 4, 5 cable (Max 100 m) EIA/TIA-568 100Ω STP (Max 100 m)• 100BASE-TX: UTP category 5, 5e cable (Max 100 m) EIA/TIA-568 100Ω STP (Max 100 m)• 1000BASE-T: UTP category 5, 5e, 6 cable (Max 100 m)• 2500BASE-T: UTP category 5e, 6 cable (Max 100 m) | 
| Button | Reset Button | 
| Power Supply | 100–240 VAC, 50/60 Hz | 
| Flash | 128MB NAND | 
| DRAM | 1 GB DDR4 | 
| Dimensions ( W x D x H ) | 11.6×7.1×1.7 in (294×180×44 mm) | 
| Protection | 4 kV surge protection | 
| Enclosure | Steel | 
| Mounting | • Desktop• Rackmountable | 
| Max. Power Consumption | 18.5W (With USB 3.0 connected) | 
| PERFORMANCE | |
|---|---|
| IDS Throughput | 573 Mbps | 
| IPS Throughput | 573 Mbps | 
| DPI Throughput | 2.2Gbps | 
| GRE | • Unencrypted: 1153.0 Mbps• Encrypted: 559.2 Mbps | 
| WireGuard VPN | 771.6 Mbps | 
| Concurrent Session | 1,000,000 | 
| New Sessions /Second | 7,000 | 
| NAT (Static IP) | 2345.71 Mbps / 2351.22 Mbps | 
| NAT(DHCP) | 2353.41 Mbps / 2353.40 Mbps | 
| NAT(PPPoE) | 2336.52 Mbps / 2336.08 Mbps | 
| NAT (L2TP) | 1937.53 Mbps / 1761.82 Mbps | 
| NAT (PPTP) | 1757.54 Mbps / 2011.33 Mbps | 
| IPsec VPN Throughput | • ESP-SHA1-AES256: 1125.60 Mbps• ESP-SHA256-AES256: 1133.1 Mbps• ESP-SHA384-AES256: 1126.6 Mbps• ESP-SHA512-AES256: 1132.8 Mbps | 
| OpenVPN | UDP: 266.2 Mbps | 
| L2TP VPN Throughput | • Unencrypted: 2724.5 Mbps• Encrypted: 1018.4Mbps | 
| PPTP VPN Throughput | • Unencrypted: 3035 Mbps• Encrypted: 534.6 Mbps | 
| SSL VPN Throughput | 263.1 Mbps | 
| 66 Byte Packet Forwarding Rate | Upload: 3,471,591ppsDownload: 3,475,379pps | 
| 1,518 Byte Packet forwarding rate | Upload: 202,652ppsDownload: 202,652pps | 
| BASIC FUNCTIONS | |
|---|---|
| WAN Connection Type | • Static IP/Dynamic IP• PPPoE (supports MRU Configuration)• PPTP• L2TP• Mobile Broadband: 4G/3G modem for backup via USB port | 
| MAC Clone | Modify WAN/LAN MAC Address† | 
| DHCP | • DHCP Server• DHCPv6 PD Server (only in Standalone Mode)• DHCP Options Customization• DHCP Address Reservation• Multi-IP Interfaces• Multi-Net DHCP | 
| IPv6 | StaticIP / SLAAC / DHCPv6 / PPPoE / 6to4Tunnel / PassThrough / Non-Address mode | 
| VLAN | 802.1Q VLAN | 
| IPTV | IGMP v2/v3 Proxy, Custom Mode, Bridge Mode | 
| Advanced Features | |
|---|---|
| Advanced Routing | • Static Routing• Policy Routing• RIP (available in Standalone Mode)• OSPF (available in Standalone Mode) | 
| Bandwidth Control | IP/Port-based Bandwidth Control | 
| Load Balance | • Intelligent Load Balance• Application Optimized Routing• Link Backup (Timing§, Failover)• Online Detection | 
| NAT | • One-to-One NAT§• Multi-Net NAT• Virtual Server• Port Triggering§• NAT-DMZ• FTP/H.323/SIP/IPSec/PPTP ALG• UPnP | 
| Session Limit | IP-based Session Limit | 
| VPN | |
|---|---|
| GRE | Only in Standalone Mode | 
| SSL VPN | 80 Tunnels | 
| IPsec VPN | • 150 IPSec VPN Tunnels• LAN-to-LAN, Client-to-LAN• Main, Aggressive Negotiation Mode• DES, 3DES, AES128, AES192, AES256 Encryption Algorithm• IPsec Failover• IKE v1/v2• MD5, SHA1, SHA2-384 and SHA2-512 Authentication Algorithm• NAT Traversal (NAT-T)• Dead Peer Detection (DPD)• Perfect Forward Secrecy (PFS) | 
| PPTP VPN | • PPTP VPN Server• PPTP VPN Client (15)**• 150 Tunnels• PPTP with MPPE Encryption | 
| L2TP VPN | • L2TP VPN Server• L2TP VPN Client (15)**• 150 Tunnels• L2TP over IPSec | 
| OpenVPN | • OpenVPN Server• OpenVPN Client (11)**• 121 OpenVPN Tunnels• "Certificate + Account" Mode• Full Mode | 
| WireGuard VPN | • 20 Tunnels | 
| AUTHENTICATION | |
|---|---|
| Web Authentication | • No Authentication• Simple Password*• Hotspot (Local User/Voucher*/SMS*/Radius*)• External Radius Server• External Portal Server*• LDAP | 
| Management Features | |
|---|---|
| Omada App | Yes. Requiring the use of Omada Hardware Controller, Omada Cloud-Based Controller, or Omada Software Controller. | 
| Centralized Management | • Omada Cloud-Based Controller• Omada Hardware Controller• Omada Software Controller | 
| Cloud Access | Yes. Requiring the use of Omada Hardware Controller, Omada Cloud-Based Controller, or Omada Software Controller. | 
| Service | Dynamic DNS (Dyndns, No-IP, Peanuthull, Comexe, DDNS Customization) | 
| Maintenance | • Web Management Interface• Remote Management• Export & Import Configuration• SNMP v1/v2c/v3*• Diagnostics (Ping & Traceroute)§• NTP Synchronize§• Port Mirroring• CLI (only in Standalone Mode)• Syslog Support | 
| Zero-Touch Provisioning | Yes. Requiring the use of Omada Cloud-Based Controller. | 
| Management Features | • Automatic Device Discovery*• Batch Configuration*• Batch Firmware Upgrading*• Intelligent Network Monitoring*• Abnormal Event Warnings*• Unified Configuration*• Reboot Schedule* | 
| OTHERS | |
|---|---|
| Certification | CE, FCC | 
| Package Content | • ER7412-M2• Power Cord• Quick Installation Guide• Rackmount Kit• RJ45 Console Cord | 
| System Requirements | • Microsoft Windows 98SE, NT, 2000, XP, Vista™ or Windows 7/8/8.1/10/11• MAC OS, NetWare, UNIX or Linux | 
| Environment | • Operating Temperature: 0–45 ℃ (32–113 ℉);• Storage Temperature: -40–70 ℃ (-40–158 ℉)• Operating Humidity: 10–90% RH non-condensing• Storage Humidity: 5–90% non-condensing | 
*These functions require the use of the Omada Hardware Controller, Software Controller, or Cloud-Based Controller. Zero-Touch Provisioning requires the use of the Omada Cloud-Based Controller. Go to the Omada Cloud-Based Controller Product List to find all the models supported by the Omada Cloud-Based Controller.
**ER7412-M2 can work as a VPN client and can connect with up to 15 PPTP/L2TP VPN servers and 11 OpenVPN servers.
†LAN MAC Address can be modified only in Standalone Mode.
§These functions are supported only in Standalone Mode.
△At least one WAN/LAN port needs to function as a LAN port
‡For the complete compatibility list of 4G/3G modem, go to https://www.tp-link.com/en/omada-router/compatibility/
 
             
                
             
                
             
                
             
                
             
            
           
            
           
            
           
            
           
            
          