Cybersecurity – VigorShield

Integrated gateway security framework designed to safeguard business networks.

Choose from two subscription-based security services:

  • URL/IP Reputation
  • Threat Protection: Our comprehensive tier. Because this includes both URL content filtering and IP reputation, you do not need to buy a separate URL/IP Reputation subscription.

What is DrayTek VigorShield?

DrayTek VigorShield is an integrated gateway security framework designed to safeguard business networks at their most critical point, the router.

Rather than treating security as a collection of isolated features, VigorShield unifies multiple gateway-based security services under a single protection framework. Operating directly at the network edge, it acts as a powerful security shield, protecting internal network assets and preventing threats from reaching the LAN.

Gateway-Centric Security by Design

In modern network environments, the router is more than a connectivity device; it is the first line of defence against cyber threats.

VigorShield leverages the router’s strategic position as a network gateway to inspect, control, and protect traffic between the internet and internal networks. This ensures consistent, policy-driven protection across all connected devices, including PCs, servers, IoT systems, and unmanaged endpoints, without requiring endpoint agents or additional security appliances.

A Unified Framework with Scenario-Based Protection

VigorShield is a unified security framework rather than a single feature or a fixed, always-on security bundle.

It brings together multiple gateway-level security services, each designed for specific deployment scenarios and security requirements. Administrators can enable the protection services that best match their network size, risk profile, and hardware platform, ensuring effective security while maintaining consistent and predictable system performance.

DrayTek Security Solutions Comparison

Router + URL/IP Reputation Key (Manual setup)
Network Protection
DoS/Flood Defense
Port Scan Blocker
Brute Force Protection
Device Detection & Identification-
Device Exploit Hot Patching & Command Injection Protection-
Anomaly Detection-
Web & Content Security
Content Filtering
URL/IP Reputation
Automation
Automated Policy Enforcement-
Router   (Manual setup)  
Network Protection
DoS/Flood Defense
Port Scan Blocker
Brute Force Protection
Device Detection & Identification-
Device Exploit Hot Patching & Command Injection Protection-
Anomaly Detection-
Web & Content Security
Content Filtering-
URL/IP Reputation-
Automation
Automated Policy Enforcement-

Key FeaturesRouter
(Manual setup)
Router + URL/IP Reputation Key
(Manual setup)
Router + Threat Protection Sentry/Guardian
(AI-assisted)
Network Protection
DoS/Flood Defense  (With Anti-DDoS)
Port Scan Blocker
Brute Force Protection
Device Detection & Identification
Device Exploit Hot Patching &
Command Injection Protection
Anomaly Detection
Web & Content Security
Content Filtering
URL/IP Reputation
Automation
Automated Policy Enforcement

VigorShield Security Services

URL / IP Reputation

The URL / IP Reputation service blocks access to known malicious destinations by assessing the reputation of URLs and IP addresses before a connection is established. This helps stop threats such as malware distribution, phishing attacks, and command-and-control communications directly at the gateway.

To align with different hardware capabilities and deployment scales, URL / IP Reputation is offered in three license tiers:

  • A Card – Supported on Vigor29xx / Vigor28xx Series
  • B Card – Supported on Vigor27xx / Vigor21xx Series / Vigor2915
  • Silver Card – Supported on Vigor3912 / Vigor2962

This tiered structure ensures an optimal balance between security capability and system performance across different platforms.

Threat Protection

Threat Protection delivers advanced gateway-based security to defend networks and connected devices against evolving cyber threats. It uses intelligent traffic analysis and threat detection at the network edge to identify and mitigate risks in real time.

Threat Protection is available in two license tiers:

  • Sentry
    Designed for SOHO and small office environments
    Supported models: Vigor2136 / Vigor2767
  • Guardian
    Designed for SMB and larger branch networks
    Supported models: Vigor2867 / Vigor2928

Each tier is optimised for different network sizes and security requirements, ensuring the right balance of protection and performance for each deployment scenario.

Platform-Aware Availability

VigorShield security services are selectively supported across specific router models.

Availability is determined by hardware capabilities, performance architecture, and the intended deployment role of each platform. To ensure stable operation and consistent protection quality, VigorShield services are enabled only on models designed to efficiently handle gateway-level security workloads.

As a result, not all Vigor routers support every VigorShield service or license tier.

Why VigorShield Matters

With VigorShield, businesses benefit from:

  • Centralised security enforcement at the network gateway
  • Consistent protection across all connected devices
  • No requirement for endpoint agents or additional security appliances
  • Clear license alignment with router platforms for simplified deployment planning
  • A scalable foundation that supports future security enhancements

By integrating security directly into the router, VigorShield helps reduce the attack surface, simplify network architecture, and strengthen the overall security posture.

The Foundation of DrayTek Gateway Security

VigorShield represents DrayTek’s long-term approach to gateway security—practical, efficient, and aligned with real-world deployment needs.

As DrayTek continues to expand its security portfolio, VigorShield serves as the architectural foundation that unifies gateway-based protection, transforming the router into a reliable, always-on security shield for modern business networks.