ER7406
NewOmada Gigabit Rackmount/Desktop VPN Gateway
- 1× Gigabit SFP WAN/LAN port
- 5× Gigabit RJ45 ports (1× WAN, 4× WAN/LAN)
- 1× USB 3.0 port (Supports USB storage, and LTE backup with LTE dongle)
- Load Balancing on up to 5 WAN ports raises the utilization rate of multi-line broadband
- High-security SSL/ IPSec / GRE§ / WireGuard / PPTP / L2TP VPN & OpenVPN
- Centralized cloud management via the web or the Omada app*
- DoS/DDoS protection, IP/MAC/URL filtering, DPI, and IPS/IDS for enhanced security.
- Rackmount/Desktop
Learn more about Omada Cloud SDN>
- 
	6× Gigabit Ports 
 (1× SFP, 5× RJ45)
- 
	Load Balancing on 
 up to 5 WAN Ports
- 
	1× USB 3.0 Port 
 (Supports USB LTE dongle)
- 
	Desktop or 
 Rackmount
- 
	Centralized Cloud 
 Management†
- 
	SSL/ IPSec / GRE§ / 
 WireGuard / PPTP / L2TP VPN
 & OpenVPN
- 
	Multi-Net DHCP 
- 
	DPI & IPS/IDS 
Up to 5 WAN Ports & One USB WAN for Mobile Broadband
(supports USB LTE dongle)
WAN/LAN ports
(1× WAN, 4× WAN/LAN)
WAN port to increase the utilization rate of multi-line broadband△
Software Defined Networking (SDN) with Cloud Access
Remotely manage your access points, switches, and gateways across multiple sites all from a single interface.
Controller
Controller
Controller
High-Security and High-Performance VPN
SSL/ IPSec / GRE / WireGuard / PPTP / L2TP VPN & OpenVPN easily build secure VPN tunnels for secure Internet browsing, communication between different branches, or enabling remote work or study from home.
- 
	DPI (Deep Packet Inspection)Leverage Deep Packet Inspection (DPI) to effectively block or prioritize specific applications for enhanced security and optimized bandwidth allocation. Easily manage internet access rights and policies through IP/MAC/Location/URL Filtering and Access Control Lists (ACL). 
- 
	Attack Prevention with 4000+ Signature RulesEnhance threat detection and defense with the integrated IDS/IPS engine. Benefit from continuous protection with an extensive attack prevention signature database, featuring over 4,000 regularly updated signature rules. 
- 
	DoS/DDoS ProtectionAutomatically detect and block Denial of Service (DoS) attacks, including TCP/UDP/ICMP Flooding, Ping of Death, and related threats, ensuring uninterrupted network performance. 


| SECURITY | |
|---|---|
| Access Control | Source/Destination IP Based Access Control | 
| Filtering | • WEB Group Filtering§• URL Filtering• Web Security§ | 
| ARP Inspection | • Sending GARP Packets• ARP Scanning§• IP-MAC Binding | 
| Attack Defense | • TCP/UDP/ICMP Flood Defense• Block TCP Scan (Stealth FIN/Xmas/Null)• Block Ping from WAN | 
| HARDWARE FEATURES | |
|---|---|
| Standards and Protocols | • IEEE 802.3, IEEE802.3u, IEEE802.3ab, IEEE802.3z, IEEE 802.3x, IEEE 802.1q• TCP/IP, DHCP, ICMP, NAT, PPPoE, NTP, HTTP, HTTPS, DNS, IPSec, PPTP, L2TP, OpenVPN, WireGuard VPN, GRE VPN, SNMP | 
| Interface | • 1 Gigabit SFP WAN/LAN Port • 1 Gigabit WAN Port• 4 Gigabit LAN/WAN Ports • 1 USB 3.0 Port (supports USB LTE dongle and USB storage) | 
| Network Media | • 10BASE-T: UTP category 3, 4, 5 cable (Max 100 m) EIA/TIA-568 100Ω STP (Max 100 m)• 100BASE-TX: UTP category 5, 5e cable (Max 100 m) EIA/TIA-568 100Ω STP (Max 100 m)• 1000BASE-T: UTP category 5, 5e, 6 cable (Max 100 m) | 
| Fan Quantity | Fanless | 
| Button | Reset Button | 
| Power Supply | 100-240VAC, 50/60Hz | 
| Flash | 128 MB NAND | 
| DRAM | 512 MB DDR4 | 
| LED | PWR, SYS, SFP, USB, WAN(1000M Link/Act, 100/10M Link/Act), WAN/LAN (1000M Link/Act, 100/10M Link/Act) | 
| Dimensions ( W x D x H ) | 11.6 × 5.5 × 1.7 in (294 × 140 × 44 mm) | 
| Protection | 4 kV surge protection | 
| Enclosure | Steel | 
| Mounting | • Desktop• Rackmountable | 
| Max. Power Consumption | • 7.5 W (with USB 3.0 connected)• 4.5 W (without USB 3.0 connected) | 
| PERFORMANCE | |
|---|---|
| IPS Throughput | TCP: 229 Mbps; UDP: 188 Mbps | 
| DPI Throughput | TCP: 933 Mbps; UDP: 927 Mbps | 
| GRE | • Unencrypted: 611.9 Mbps• Encrypted: 325.0 Mbps | 
| WireGuard VPN | 341.3 Mbps | 
| Concurrent Session | 150,000 | 
| New Sessions /Second | 5,300 | 
| NAT (Static IP) | 945.3 Mbps / 940.5 Mbps | 
| NAT(DHCP) | 939.6 Mbps / 940.9 Mbps | 
| NAT(PPPoE) | 943.6 Mbps / 940.9 Mbps | 
| NAT (L2TP) | 880.1 Mbps / 859.0 Mbps | 
| NAT (PPTP) | 855.0 Mbps / 907.2 Mbps | 
| IPsec VPN Throughput | • ESP-SHA1-AES256: 617.1 Mbps• ESP-SHA256-AES256: 592.8 Mbps• ESP-SHA384-AES256: 592.4 Mbps• ESP-SHA512-AES256: 604.5 Mbps | 
| OpenVPN | 139.1 Mbps | 
| L2TP VPN Throughput | • Unencrypted: 977.4 Mbps • Encrypted: 334.6 Mbps | 
| PPTP VPN Throughput | • Unencrypted: 1064.1 Mbps • Encrypted: 206.8 Mbps | 
| SSL VPN Throughput | 131.6 Mbps | 
| 66 Byte Packet Forwarding Rate | 1,453,489 pps / 1,453,488 pps | 
| 1,518 Byte Packet forwarding rate | 81,279 pps / 81,275 pps | 
| BASIC FUNCTIONS | |
|---|---|
| WAN Connection Type | • Static IP• Dynamic IP• PPPoE(supports MRU Configuration)• PPTP• L2TP | 
| MAC Clone | Modify WAN/LAN MAC Address (LAN MAC Address can be modified only in Standalone Mode) | 
| DHCP | • DHCP Server• DHCPv6 PD Server (only in Standalone Mode) • DHCP Options Customization• DHCP Address Reservation• Multi-IP Interfaces• Multi-Net DHCP | 
| IPv6 | StaticIP/SLAAC/DHCPv6/PPPoE/6to4Tunnel/PassThrough/Non-Address mode | 
| VLAN | 802.1Q VLAN | 
| IPTV | IGMP v2/v3 Proxy, Custom Mode, Bridge Mode | 
| Advanced Features | |
|---|---|
| Advanced Routing | • Static Routing• Policy Routing• RIP (available in Standalone Mode)• OSPF (available in Standalone Mode) | 
| Bandwidth Control | IP-based Bandwidth Control | 
| Load Balance | • Intelligent Load Balance• Application Optimized Routing• Link Backup (Timing, Failover)• Online Detection | 
| NAT | • One-to-One NAT• Multi-Net NAT• Port Forwarding• Port Triggering§• NAT-DMZ• FTP/H.323/SIP/IPSec/PPTP ALG• UPnP | 
| Session Limit | IP-based Session Limit | 
| VPN | |
|---|---|
| GRE | √ (Only in Standalone Mode) | 
| SD-WAN | √ (Only in Controller Mode) | 
| SSL VPN | 50 Tunnels | 
| IPsec VPN | • 100 IPSec VPN Tunnels• LAN-to-LAN, Client-to-LAN• Main, Aggressive Negotiation Mode• DES, 3DES, AES128, AES192, AES256 Encryption Algorithm • IPsec Failover• IKE v1/v2• MD5, SHA1, SHA2-384 and SHA2-512 Authentication Algorithm • NAT Traversal (NAT-T)• Dead Peer Detection (DPD)• Perfect Forward Secrecy (PFS) | 
| PPTP VPN | • PPTP VPN Server• PPTP VPN Client (10)**• 50 Tunnels• PPTP with MPPE Encryption | 
| L2TP VPN | • L2TP VPN Server • L2TP VPN Client (10)**• 50 Tunnels• L2TP over IPSec | 
| OpenVPN | • OpenVPN Server • OpenVPN Client (5)**• 55 OpenVPN Tunnels• "Certificate + Account" Mode • Full Mode | 
| WireGuard VPN | • 20 Tunnels | 
| AUTHENTICATION | |
|---|---|
| Web Authentication | • No Authentication• Simple Password*• Hotspot (Local User /Voucher*/ SMS/Radius*)• External Radius Server• External Portal Sever<*• LDAP§ | 
| Management Features | |
|---|---|
| Omada App | Yes. Requires the use of Omada Hardware Controller, Omada Cloud-Based Controller, or Omada Software Controller. | 
| Centralized Management | • Omada Cloud-Based Controller• Omada Hardware Controller• Omada Software Controller | 
| Cloud Access | Yes. Requires the use of Omada Hardware Controller, Omada Cloud-Based Controller, or Omada Software Controller. | 
| Service | Dynamic DNS (Dyndns, No-IP, Peanuthull, Comexe, DDNS Customization) | 
| Maintenance | • Web Management Interface • Remote Management • Export & Import Configuration • SNMP v1/v2c/v3 • Diagnostics (Ping & Traceroute) (only in Standalone Mode) • NTP Synchronize (only in Standalone Mode) • Port Mirroring• CLI (only in Standalone Mode) • Syslog Support | 
| Zero-Touch Provisioning | Yes. Requires the use of Omada Cloud-Based Controller. | 
| Management Features | • Automatic Device Discovery*• Batch Configuration*• Batch Firmware Upgrading*• Intelligent Network Monitoring*• Abnormal Event Warnings*• Unified Configuration*• Reboot Schedule* | 
| OTHERS | |
|---|---|
| Certification | CE, FCC, RoHS | 
| Package Content | • ER7406• Power Cord• Quick Installation Guide• Rackmount Kit | 
| System Requirements | • Microsoft Windows 98SE, NT, 2000, XP, Vista™ or Windows 7/8/8.1/10• MAC OS, NetWare, UNIX or Linux | 
| Environment | • Operating Temperature: 0 °C to 50 °C (32 °F to 122°F) • Storage Temperature: -40 °C to 70 °C (-40 °F to 158 °F) • Operating Humidity: 10% to 90% non-condensing • Storage Humidity: 5% to 90% non-condensing | 
*These functions require the use of the Omada SDN Controller. Zero-Touch Provisioning requires the use of the Omada Cloud-Based Controller. Go to the Omada Cloud-Based Controller Product List to find all the models supported by the Omada Cloud-Based Controller.
**For PPTP VPN and L2TP VPN, ER7406 can connect with up to 10 VPN servers. For OpenVPN, ER7406 can connect with up to 5 VPN servers
§These functions are supported only in Standalone Mode.
△At least one WAN/LAN port needs to function as a LAN port.
 
             
                
             
                
             
                
             
                
             
            
           
            
           
            
           
            
           
            
          