DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
Initial experience with 2928
- piste basher
- Topic Author
- Away
- Big Contributor
-
Less
More
- Posts: 1319
- Thank yous received: 18
29 Aug 2026 21:05 - 30 Aug 2026 08:10 #106901
by piste basher
Initial experience with 2928 was created by piste basher
I've just changed from a 2927ax to a 2928 (on 5.4.3.1) and thought I'd report on my initial experience in the event that it might be of help to others. For comparison purposes I didn't change any other network devices when I swapped the routers.
Firstly, on the WAN side I have two WAN connections, one a Zen vdsl PPPoE connection on a Draytek 130 modem (WAN1) and the other a TPLink 5G router connected via a Static IP on WAN3. Both were straightforward to set up and haven't given any issues. On the plus side the Load Balancing feature actually seems to work, the 2927ax never made much use of the 5G connection for some reason (I use IP based balancing as it seems that dial-in VPN users do not get an internet connection if Session based is used).
The only "issue" I've noticed is that under "Monitoring - Remote DSL Status" the vdsl information from the 130 is not displayed on the Dashboard - as no info is provided as to any "expected" modem I have no idea if this is specific to the 130.
Secondly, on the LAN side there do seem to be some serious issues, which I do not have the knowledge to understand. I have 4 VLAN subnets in addition to the default LAN1. On one of these, LAN4, I have (had!) four (different model) Hikvision IP cameras and an NVR, all on fixed IP addresses, and four Amazon Blink devices, all on DHCP. I have Inter-LAN routing switched on between LANS 1 and 4. With the 2927ax, I have always been able to access the Hikvision cameras from PC's on LAN1 and from my phone, either when it is wifi connected to LAN1 or via a VPN connection to the router. These cameras were also able to send "snapshots" via FTP to a NAS on LAN1.
Using what appeared to be exactly the same settings on the 2928 I found that I was unable to access any of the Hikvision devices from PC's on the LAN and my phone, although the cameras were all functioning and the Hikvision SADP App on a PC was able to "see" them. The cameras could no longer send to the NAS via FTP. Stranger still, from the router I could ping two of the Hikvision cameras from LAN1, but I could not ping the other two cameras nor the NVR from LAN1. NONE of these devices could be pinged from their own gateway address, 192.168.4.1.
After some considerable time and puzzlement I finally gave up and put all of the Hikvision devices onto LAN1 - and hey presto, everything works as it should. Although Inter-LAN routing is still turned on, I can't ping the Blink devices from LAN1, although I can from the LAN4 gateway address - something I couldn't do with any of the Hikvision devices.
I also have a problem when trying to add some "Bind IP to MAC" entries - it seems that one can only add devices that appear in the DHCP lease list, but that not all connected devices (especially some on VLANS other than LAN1) appear on that list. It's also a bit frustrating that one can't easily "see" all LAN connected devices and "sort" entries in the various tables, as was previously possible. On the other hand I can now see how many attempts there are by bad actors to connect to my VPN - I was in blissful ignorance before...
Hope this may be of help - if you're tearing your hair out it may not be you!
Firstly, on the WAN side I have two WAN connections, one a Zen vdsl PPPoE connection on a Draytek 130 modem (WAN1) and the other a TPLink 5G router connected via a Static IP on WAN3. Both were straightforward to set up and haven't given any issues. On the plus side the Load Balancing feature actually seems to work, the 2927ax never made much use of the 5G connection for some reason (I use IP based balancing as it seems that dial-in VPN users do not get an internet connection if Session based is used).
The only "issue" I've noticed is that under "Monitoring - Remote DSL Status" the vdsl information from the 130 is not displayed on the Dashboard - as no info is provided as to any "expected" modem I have no idea if this is specific to the 130.
Secondly, on the LAN side there do seem to be some serious issues, which I do not have the knowledge to understand. I have 4 VLAN subnets in addition to the default LAN1. On one of these, LAN4, I have (had!) four (different model) Hikvision IP cameras and an NVR, all on fixed IP addresses, and four Amazon Blink devices, all on DHCP. I have Inter-LAN routing switched on between LANS 1 and 4. With the 2927ax, I have always been able to access the Hikvision cameras from PC's on LAN1 and from my phone, either when it is wifi connected to LAN1 or via a VPN connection to the router. These cameras were also able to send "snapshots" via FTP to a NAS on LAN1.
Using what appeared to be exactly the same settings on the 2928 I found that I was unable to access any of the Hikvision devices from PC's on the LAN and my phone, although the cameras were all functioning and the Hikvision SADP App on a PC was able to "see" them. The cameras could no longer send to the NAS via FTP. Stranger still, from the router I could ping two of the Hikvision cameras from LAN1, but I could not ping the other two cameras nor the NVR from LAN1. NONE of these devices could be pinged from their own gateway address, 192.168.4.1.
After some considerable time and puzzlement I finally gave up and put all of the Hikvision devices onto LAN1 - and hey presto, everything works as it should. Although Inter-LAN routing is still turned on, I can't ping the Blink devices from LAN1, although I can from the LAN4 gateway address - something I couldn't do with any of the Hikvision devices.
I also have a problem when trying to add some "Bind IP to MAC" entries - it seems that one can only add devices that appear in the DHCP lease list, but that not all connected devices (especially some on VLANS other than LAN1) appear on that list. It's also a bit frustrating that one can't easily "see" all LAN connected devices and "sort" entries in the various tables, as was previously possible. On the other hand I can now see how many attempts there are by bad actors to connect to my VPN - I was in blissful ignorance before...
Hope this may be of help - if you're tearing your hair out it may not be you!
Last edit: 30 Aug 2026 08:10 by piste basher.
The following user(s) said Thank You: HodgesanDY, John
Please Log in or Create an account to join the conversation.
Moderators: Admin3, Christopher