TL-ER7206

SafeStream Gigabit Multi-WAN VPN Router

  • Integrated into Omada SDN: Zero-Touch Provisioning (ZTP)**, Centralized Cloud Management, and Intelligent Monitoring.
  • Centralized Management: Cloud access and Omada app for ultra convenience and easy management.
  • Gigabit Ports: 1 gigabit SFP and 5 gigabit RJ45 ports provide high-speed wired connectivity.
  • Up to 4 WAN Ports: 1 gigabit SFP WAN port, 1 gigabit RJ45 WAN port, 2 gigabit WAN/LAN ports optimize bandwidth usage.
  • Highly Secure VPN: Supports up to 100× LAN-to-LAN IPsec, 50× OpenVPN*, 50× L2TP, and 50× PPTP VPN connections.
  • Abundant Security Features: Advanced firewall policies, DoS defense,IP/MAC/URL filtering, and more security functions protect your network and data.

Learn more about Omada Cloud SDN>​

  • What is Omada Cloud SDN?

TP-Link | Omada Centralized Management

A Professional, Secure, and Reliable Gateway with Centralized Management Capability

SafeStream Gigabit Multi-WAN VPN Router

TL-ER7206

  •  

    Centralized
    Cloud Management

    Omada SDN Platform Integration

  •  

    Up to 4 Gigabit
    WAN Ports

    1× SFP WAN Port + 5× RJ45 (1× WAN + 2× WAN/LAN + 2× LAN) Ports

  •  

    High-Security VPN

    IPSec/ PPTP/ L2TP
    VPN & OpenVPN

  •  

    Multi-WAN
    Load Balance

    Full Use of Multi-Line Broadband

Software Defined Networking (SDN) with Cloud Access

Omada’s Software Defined Networking (SDN) platform integrates network devices, including access points, switches and gateways, providing 100% centralized cloud management. Omada creates a highly scalable network—all controlled from a single interface. Seamless wireless and wired connections are provided, ideal for use in hospitality, education, retail, offices, and more.

JetStream Switches SafeStream Gateways Omada Access Points Wi-Fi 6 Celling
Mount
Wall
Plate
Outdoor Unified Management Interface Controllers Cloud Access Cloud
HARDWARE FEATURES
Standards and Protocols • IEEE 802.3, 802.3u, 802.3ab
• TCP/IP, DHCP, ICMP, NAT, PPPoE, SNTP, HTTP, DNS, IPsec, PPTP, L2TP
Interface • 1 Fixed Gigabit SFP WAN Port
• 1 Fixed Gigabit RJ45 WAN Port
• 2 Fixed Gigabit RJ45 LAN Ports
• 2 Changeable Gigabit RJ45 WAN/LAN Ports
Network Media • 10BASE-T: UTP category 3, 4, 5 cable (Max 100m)
EIA/TIA-568 100Ω STP (Max 100m)
• 100BASE-TX: UTP category 5, 5e cable (Max 100m)
EIA/TIA-568 100Ω STP (Max 100m)
• 1000BASE-T: UTP category 5, 5e, 6 cable (Max 100m)
Button Reset Button
Power Supply 100–240 V~50/60 Hz
Flash SPI 4MB + NAND 128MB
DRAM 512MB
LED PWR, SYS, SFP WAN, Speed, Link/Act
Dimensions ( W x D x H ) 8.9 × 5.2 × 1.4 in (226 × 131 × 35 mm)
PERFORMANCE
Concurrent Session 150,000
IPsec VPN Throughput 291.6 Mbps
BASIC FUNCTIONS
WAN Connection Type • Static/Dynamic IP
• PPPoE
• PPTP
• L2TP
MAC Clone Modify WAN/LAN MAC Address
DHCP • DHCP Server
• DHCP Address Reservation
• Multi-IP Interfaces*
• Multi-Net DHCP*
IPv6 Developing
VLAN 802.1Q VLAN
IPTV IGMP v2/v3 Proxy
ADVANCED FUNCTIONS
ACL IP/Port/Protocol/Domain Name Filtering
Advanced Routing • Static Routing
• Policy Routing
Bandwidth Control • IP/Port-based Bandwidth Control
• Guarantee & Limited Bandwidth
Load Balance • Intelligent Load Balance
• Application Optimized Routing
• Link Backup (Timing§, Failover)
• Online Detection
NAT • One-to-One NAT§
• Multi-Net NAT
• Virtual Server
• Port Triggering§
• NAT-DMZ
• FTP/H.323/SIP/IPSec/PPTP ALG, UPnP
Security • SPI Firewall
• VPN Passthrough
• FTP/H.323/PPTP/SIP/IPsec ALG
• DoS Defence, Ping of Death
• Local Management
Session Limit IP-based Session Limit
VPN
IPsec VPN • 100 IPSec VPN Tunnels
• LAN-to-LAN, Client-to-LAN
• Main, Aggressive Negotiation Mode
• DES, 3DES, AES128, AES192, AES256 Encryption Algorithm
• IKEv1/v2*
• MD5, SHA1 Authentication Algorithm
• NAT Traversal (NAT-T)
• Dead Peer Detection (DPD)
• Perfect Forward Secrecy (PFS)
PPTP VPN • PPTP VPN Server
• 10 PPTP VPN Clients
• 50 Tunnels
• PPTP with MPPE Encryption
L2TP VPN • L2TP VPN Server
• 10 L2TP VPN Clients
• 50 Tunnels
• L2TP over IPSec
OpenVPN • OpenVPN Server*
• 10 OpenVPN Clients*
• 50 OpenVPN Tunnels*
SECURITY
Filtering WEB Group Filtering§
URL Filtering
Web Security§
ARP Inspection • Sending GARP Packets§
• ARP Scanning§
• IP-MAC Binding§
Attack Defense • TCP/UDP/ICMP Flood Defense
• Block TCP Scan (Stealth FIN/Xmas/Null)
• Block Ping from WAN
Access Control Source/Destination IP Based Access Control
AUTHENTICATION
Web Authentication • No Authentication
• Simple Password*
• Hotspot(Local User / Voucher* / SMS* / Radius*)
• External Radius Sever
• External Portal Sever*
• Facebook*
MANAGEMENT
Omada App Yes
Centralized Management • Omada Cloud-Based Controller
• Omada Hardware Controller (OC300)
• Omada Hardware Controller (OC200)
• Omada Software Controller
Cloud Access Yes (Through OC300, OC200, Omada Cloud-Based Controller, or Omada Software Controller)
Service Dynamic DNS (Dyndns, No-IP, Peanuthull, Comexe)
Maintenance • Web Management Interface
• Remote Management
• Export & Import Configuration
• SNMP v1/v2c/v3*
• Diagnostics (Ping & Traceroute)§
• NTP Synchronize§
• Syslog Support
Management Features • Automatic Device Discovery
• Intelligent Network Monitoring
• Abnormal Event Warnings
• Unified Configuration
• Reboot Schedule
• Captive Portal Configuration
• ZTP (Zero-Touch Provisioning)**
OTHERS
Certification CE, FCC, RoHS
Package Contents • TL-ER7206
• Power Cord
• Quick Installation Guide
System Requirements Microsoft Windows 98SE, NT, 2000, XP, Vista™ or Windows 7/8/8.1/10, MAC OS, NetWare, UNIX or Linux
Environment • Operating Temperature: 0–40 ℃ (32–104 ℉);
• Storage Temperature: -40–70 ℃ (-40–158 ℉)
• Operating Humidity: 10–90% RH non-condensing
• Storage Humidity: 5–90% RH non-condensing

*These functions require the use of Omada Hardware Controller, Software Controller, or Cloud-Based Controller

**Zero-Touch Provisioning requires the use of Omada Cloud-Based Controller.

 LAN MAC Address can be modified only in Standalone Mode.

 IPv6 is being developed and will be updated in the following software versions.

§ These functions are supported only in Standalone Mode.