Omada Multi-Gigabit VPN Gateway
- Quad-core @2.0GHz CPU
- 2× 2.5G RJ45 WAN/LAN ports
- 10× Gigabit WAN/LAN Ports (2× SFP, 8× RJ45)
- 1× USB 3.0 Port (Supports USB storage, and LTE backup with LTE dongle)
- Load Balancing on up to 11 WAN ports△ increases the utilization rate of multi-line broadband
- High-security SSL/ IPSec / GRE§ / WireGuard / PPTP / L2TP VPN & OpenVPN
- Centralized cloud management via the web or the Omada app*
- DoS/DDoS protection, IP/MAC/URL filtering, DPI, and IPS/IDS for enhanced security








Omada Multi-Gigabit
VPN Gateway
ER7412-M2
-
2× 2.5Gbps
WAN/LAN
RJ45 Ports -
10× Gigabit
WAN/LAN Ports
(2× SFP, 8× RJ45) -
Load Balancing on
up to 11 WAN Ports -
Quad-Core
2.0 GHz CPU -
Centralized Cloud
Management† -
SSL/ IPSec / GRE§ /
WireGuard / PPTP /
OpenVPN & L2TP VPN -
Multi-Net DHCP
-
DPI & IPS/IDS
Engineered for Dense
Environments, Powered by
Dual 2.5 Gbps Ports and
Quad-Core 2.0 GHz CPU
Easily build a multi-gigabit network for schools, hotels, and offices.
Up to 11 WAN Ports & One USB WAN for Mobile Broadband
WAN/LAN RJ45 ports
WAN/LAN RJ45 ports
WAN/LAN SFP ports
Software Defined Networking (SDN) with Cloud Access
Remotely manage your access points, switches, and gateways across multiple sites all from a single interface.
Controller
Controller
Controller
-
Easy to Use
-
Hardware, Software, or Cloud-Based Controllers
-
Centralized Management via Web or Omada App
-
Zero-Touch Provisioning (ZTP)*
High-Security and High-Performance VPN
SSL/ IPSec / GRE / WireGuard / PPTP / L2TP VPN & OpenVPN easily build secure VPN tunnels for secure Internet browsing, communication between different branches, or enabling remote work or study from home.
Abundant Security Features
-
DPI (Deep Packet Inspection)
Easily specify internet access rights and strategies via DPI (Deep Packet Inspection), IP/MAC/URL Filtering and Access Control List (ACL).
-
IDS/IPS
The integrated IDS/IPS engine bolsters threat detection and defense. Additionally, there is an embedded, regularly updated signature database for attack prevention.
-
DoS Defense
Automatically detects and blocks Denial of Service (DoS) attacks such as TCP/UDP/ICMP Flooding, Ping of Death, and other related threats.
SECURITY | |
---|---|
Access Control | • Source/Destination IP-Based ACL • Stateful ACL • IPv4/IPv6 ACL • Location Based ACL |
Filtering | • WEB Group Filtering§ • URL Filtering • Web Security§ |
ARP Inspection | • Sending GARP Packets§ • ARP Scanning§ • IP-MAC Binding§ |
Attack Defense | • TCP/UDP/ICMP Flood Defense • Block TCP Scan (Stealth FIN/Xmas/Null) • Block Ping from WAN |
HARDWARE FEATURES | |
---|---|
Standards and Protocols | • IEEE 802.3, IEEE802.3u, IEEE802.3ab, IEEE802.3z, IEEE 802.3x, IEEE802.1q • TCP/IP, DHCP, ICMP, NAT, PPPoE, NTP, HTTP, HTTPS, DNS, IPSec, PPTP, L2TP, OpenVPN, WireGuard VPN, GRE VPN, SNMP |
Interface | • 1× 2.5G RJ45 WAN/LAN Port • 1× 2.5G RJ45 WAN/LAN Port • 2× Gigabit SFP WAN/LAN Ports • 8× Gigabit RJ45 WAN/LAN Ports • 1× RJ45 Console Port • 1× USB 3.0 Port (Supports USB storage, and LTE backup with LTE dongle) |
Network Media | • 10BASE-T: UTP category 3, 4, 5 cable (Max 100 m) EIA/TIA-568 100Ω STP (Max 100 m) • 100BASE-TX: UTP category 5, 5e cable (Max 100 m) EIA/TIA-568 100Ω STP (Max 100 m) • 1000BASE-T: UTP category 5, 5e, 6 cable (Max 100 m) • 2500BASE-T: UTP category 5e, 6 cable (Max 100 m) |
Button | Reset Button |
Power Supply | 100–240 VAC, 50/60 Hz |
Flash | 128MB NAND |
DRAM | 1 GB DDR4 |
Dimensions ( W x D x H ) | 11.6×7.1×1.7 in (294×180×44 mm) |
Protection | 4 kV surge protection |
Enclosure | Steel |
Mounting | • Desktop • Rackmountable |
Max. Power Consumption | 18.5W (With USB 3.0 connected) |
PERFORMANCE | |
---|---|
IDS Throughput | 573 Mbps |
IPS Throughput | 573 Mbps |
DPI Throughput | 2.2Gbps |
GRE | • Unencrypted: 1153.0 Mbps • Encrypted: 559.2 Mbps |
WireGuard VPN | 771.6 Mbps |
Concurrent Session | 1,000,000 |
New Sessions /Second | 7,000 |
NAT (Static IP) | 2345.71 Mbps / 2351.22 Mbps |
NAT(DHCP) | 2353.41 Mbps / 2353.40 Mbps |
NAT(PPPoE) | 2336.52 Mbps / 2336.08 Mbps |
NAT (L2TP) | 1937.53 Mbps / 1761.82 Mbps |
NAT (PPTP) | 1757.54 Mbps / 2011.33 Mbps |
IPsec VPN Throughput | • ESP-SHA1-AES256: 1125.60 Mbps • ESP-SHA256-AES256: 1133.1 Mbps • ESP-SHA384-AES256: 1126.6 Mbps • ESP-SHA512-AES256: 1132.8 Mbps |
OpenVPN | UDP: 266.2 Mbps |
L2TP VPN Throughput | • Unencrypted: 2724.5 Mbps • Encrypted: 1018.4Mbps |
PPTP VPN Throughput | • Unencrypted: 3035 Mbps • Encrypted: 534.6 Mbps |
SSL VPN Throughput | 263.1 Mbps |
66 Byte Packet Forwarding Rate | Upload: 3,471,591pps Download: 3,475,379pps |
1,518 Byte Packet forwarding rate | Upload: 202,652pps Download: 202,652pps |
BASIC FUNCTIONS | |
---|---|
WAN Connection Type | • Static IP/Dynamic IP • PPPoE (supports MRU Configuration) • PPTP • L2TP • Mobile Broadband: 4G/3G modem for backup via USB port |
MAC Clone | Modify WAN/LAN MAC Address† |
DHCP | • DHCP Server • DHCPv6 PD Server (only in Standalone Mode) • DHCP Options Customization • DHCP Address Reservation • Multi-IP Interfaces • Multi-Net DHCP |
IPv6 | StaticIP / SLAAC / DHCPv6 / PPPoE / 6to4Tunnel / PassThrough / Non-Address mode |
VLAN | 802.1Q VLAN |
IPTV | IGMP v2/v3 Proxy, Custom Mode, Bridge Mode |
Advanced Features | |
---|---|
Advanced Routing | • Static Routing • Policy Routing • RIP (available in Standalone Mode) • OSPF (available in Standalone Mode) |
Bandwidth Control | IP/Port-based Bandwidth Control |
Load Balance | • Intelligent Load Balance • Application Optimized Routing • Link Backup (Timing§, Failover) • Online Detection |
NAT | • One-to-One NAT§ • Multi-Net NAT • Virtual Server • Port Triggering§ • NAT-DMZ • FTP/H.323/SIP/IPSec/PPTP ALG • UPnP |
Session Limit | IP-based Session Limit |
VPN | |
---|---|
GRE | Only in Standalone Mode |
SSL VPN | 80 Tunnels |
IPsec VPN | • 150 IPSec VPN Tunnels • LAN-to-LAN, Client-to-LAN • Main, Aggressive Negotiation Mode • DES, 3DES, AES128, AES192, AES256 Encryption Algorithm • IPsec Failover • IKE v1/v2 • MD5, SHA1, SHA2-384 and SHA2-512 Authentication Algorithm • NAT Traversal (NAT-T) • Dead Peer Detection (DPD) • Perfect Forward Secrecy (PFS) |
PPTP VPN | • PPTP VPN Server • PPTP VPN Client (15)** • 150 Tunnels • PPTP with MPPE Encryption |
L2TP VPN | • L2TP VPN Server • L2TP VPN Client (15)** • 150 Tunnels • L2TP over IPSec |
OpenVPN | • OpenVPN Server • OpenVPN Client (11)** • 121 OpenVPN Tunnels • "Certificate + Account" Mode • Full Mode |
WireGuard VPN | • 20 Tunnels |
AUTHENTICATION | |
---|---|
Web Authentication | • No Authentication • Simple Password* • Hotspot (Local User/Voucher*/SMS*/Radius*) • External Radius Server • External Portal Server* • LDAP |
Management Features | |
---|---|
Omada App | Yes. Requiring the use of Omada Hardware Controller, Omada Cloud-Based Controller, or Omada Software Controller. |
Centralized Management | • Omada Cloud-Based Controller • Omada Hardware Controller • Omada Software Controller |
Cloud Access | Yes. Requiring the use of Omada Hardware Controller, Omada Cloud-Based Controller, or Omada Software Controller. |
Service | Dynamic DNS (Dyndns, No-IP, Peanuthull, Comexe, DDNS Customization) |
Maintenance | • Web Management Interface • Remote Management • Export & Import Configuration • SNMP v1/v2c/v3* • Diagnostics (Ping & Traceroute)§ • NTP Synchronize§ • Port Mirroring • CLI (only in Standalone Mode) • Syslog Support |
Zero-Touch Provisioning | Yes. Requiring the use of Omada Cloud-Based Controller. |
Management Features | • Automatic Device Discovery* • Batch Configuration* • Batch Firmware Upgrading* • Intelligent Network Monitoring* • Abnormal Event Warnings* • Unified Configuration* • Reboot Schedule* |
OTHERS | |
---|---|
Certification | CE, FCC |
Package Content | • ER7412-M2 • Power Cord • Quick Installation Guide • Rackmount Kit • RJ45 Console Cord |
System Requirements | • Microsoft Windows 98SE, NT, 2000, XP, Vista™ or Windows 7/8/8.1/10/11 • MAC OS, NetWare, UNIX or Linux |
Environment | • Operating Temperature: 0–45 ℃ (32–113 ℉); • Storage Temperature: -40–70 ℃ (-40–158 ℉) • Operating Humidity: 10–90% RH non-condensing • Storage Humidity: 5–90% non-condensing |
*These functions require the use of the Omada Hardware Controller, Software Controller, or Cloud-Based Controller. Zero-Touch Provisioning requires the use of the Omada Cloud-Based Controller. Go to the Omada Cloud-Based Controller Product List to find all the models supported by the Omada Cloud-Based Controller.
**ER7412-M2 can work as a VPN client and can connect with up to 15 PPTP/L2TP VPN servers and 11 OpenVPN servers.
†LAN MAC Address can be modified only in Standalone Mode.
§These functions are supported only in Standalone Mode.
△At least one WAN/LAN port needs to function as a LAN port
‡For the complete compatibility list of 4G/3G modem, go to https://www.tp-link.com/en/omada-router/compatibility/
This website uses cookies to improve website navigation, analyze online activities and have the best possible user experience on our website. You can object to the use of cookies at any time. You can find more information in our privacy policy . Don’t show again
Your Privacy Choices
This website uses cookies to improve website navigation, analyze online activities and have the best possible user experience on our website. You can object to the use of cookies at any time. You can find more information in our privacy policy . Don’t show again
Basic Cookies
These cookies are necessary for the website to function and cannot be deactivated in your systems.
TP-Link
SESSION, JSESSIONID, accepted_local_switcher, tp_privacy_banner, tp_privacy_base, tp_privacy_marketing, tp_top-banner, tp_popup-bottom, tp_popup-center, tp_popup-right-middle, tp_popup-right-bottom, tp_productCategoryType
Youtube
id, VISITOR_INFO1_LIVE, LOGIN_INFO, SIDCC, SAPISID, APISID, SSID, SID, YSC, __Secure-1PSID, __Secure-1PAPISID, __Secure-1PSIDCC, __Secure-3PSID, __Secure-3PAPISID, __Secure-3PSIDCC, 1P_JAR, AEC, NID, OTZ
Zendesk
OptanonConsent, __cf_bm, __cfruid, _cfuvid, _help_center_session, _pendo___sg__.<container-id>, _pendo_meta.<container-id>, _pendo_visitorId.<container-id>, _zendesk_authenticated, _zendesk_cookie, _zendesk_session, _zendesk_shared_session, ajs_anonymous_id, cf_clearance
Analysis and Marketing Cookies
Analysis cookies enable us to analyze your activities on our website in order to improve and adapt the functionality of our website.
The marketing cookies can be set through our website by our advertising partners in order to create a profile of your interests and to show you relevant advertisements on other websites.
Google Analytics & Google Tag Manager
_gid, _ga_<container-id>, _ga, _gat_gtag_<container-id>
Google Ads & DoubleClick
test_cookie, _gcl_au