null Skip to main content

Contemporary Controls EIGR-VB : Skorpion Gigabit Bridge VPN Router, Bridge Mode OpenVPN Server (10 PC Clients), Multicast/Broadcast Pass-Through for BACnet/IP, 10/100/1000 Mbps + 4-Port LAN Switch, Stateful Firewall, UL 508

Contemporary Controls

MSRP: $624.00
$574.08
(You save $49.92 )
(No reviews yet) Write a Review
SKU:
EIGR-VB
Condition:
New
Availability:
Ships in 1-2 Days
Adding to cart… The item has been added
TypeGigabit Bridge VPN Router
VPN ModeBridge Mode (Layer 2)
VPN Server Capacity10 PC Clients (Win/Linux)
Multicast/BroadcastPasses Through VPN Tunnel
WAN / LAN1 WAN + 4-Port Gigabit LAN
Speed10 / 100 / 1000 Mbps
UL ListingUL 508 ICE
Warranty5 Years

The Contemporary Controls EIGR-VB Skorpion Gigabit Wired Bridge VPN Router is the bridge-mode VPN variant in the EIGR family. Unlike the routed-VPN EIGR-V, the EIGR-VB operates its OpenVPN server in bridge mode: VPN clients are bridged directly to the LAN side, receive an IP address from the LAN subnet, and can send and receive multicast and broadcast traffic across the VPN tunnel as if physically connected to the LAN. This is the only EIGR variant that can transparently carry BACnet/IP broadcast traffic, Who-Is/I-Am, BBMD-style messaging, and other broadcast-dependent automation protocols through a VPN. Up to 10 PC clients (Windows or Linux) can connect simultaneously. All standard router features (stateful firewall, NAT/PAT, Port Forwarding, Allowlist, gigabit 4-port LAN switch) are included. UL 508 Listed.

Best For
BACnet/IP and broadcast-dependent automation protocols across a VPN - the specific job the routed EIGR-V cannot do. Common applications include remote BACnet/IP discovery and Who-Is/I-Am traffic from a service technician's PC, cross-site Niagara/Workbench access to remote JACEs, multi-site Sedona Application Editor (SAE) commissioning, lighting-control protocols requiring multicast (KNX/IP, sACN, multicast DMX), and any application where the VPN client needs to appear as if it were physically on the remote LAN. For typical BAS routing and remote-controller access where broadcast forwarding isn't required, the routed-mode EIGR-V supports more clients (15 router + 15 PC) and is the more economical choice. EIGR-VB operates 0°C to +60°C only - no wide-temperature variant currently available.
5-Year Warranty Backed by Contemporary Controls' 5-year limited warranty against defects in materials and workmanship.

Bridge Mode VPN Server (Unique)

  • VPN clients bridged directly to LAN side - same subnet as physical LAN devices
  • Multicast and broadcast traffic passes through VPN tunnel
  • BACnet/IP Who-Is, I-Am, and broadcast discovery work across VPN
  • Up to 10 PC clients simultaneously (Windows / Linux)
  • Built-in certificate/key generation via webpage interface
  • Onboard real-time clock for certificate validity checking

Stateful Firewall + NAT / PAT

  • Blocks WAN-initiated traffic by default; LAN requests pass freely
  • PAT (many-to-one), NAT (one-to-one), Port Forwarding, Port Range Forwarding
  • NAT Loopback supports LAN devices accessing WAN-side IP via Port Forwarding
  • Allowlist restricts which WAN devices can reach forwarded ports
  • Remote Router Access for WAN-side configuration (optional)
  • Firewall can be disabled for unrestricted internal routing

Gigabit 4-Port LAN Switch + WAN

  • 4 × 10/100/1000 Mbps shielded RJ-45 LAN ports, all Auto-MDIX
  • 1 × 10/100/1000 Mbps WAN port for cable/DSL/fiber modem
  • DSL via PPPoE; remote-ISP via PPTP also supported
  • Auto-negotiation of speed and duplex on every port
  • Web-based configuration with mandatory password change
  • Plug-and-play default operation

Industrial Build, Flexible Power

  • Rugged metal enclosure with TS-35 DIN-rail clip, 41 mm wide
  • 10-36 VDC (7 W) or 24 VAC ±10% (11 VA), half-wave rectified
  • Redundant power: DC + DC, AC + DC backup, reverse-polarity protected
  • PWR + STATUS LEDs for at-a-glance health check
  • Per-port H/L LEDs show negotiated speed and activity
  • Writable side label for field cable documentation
Specifications
FunctionGigabit IP router with bridge-mode OpenVPN server, real-time clock, stateful firewall, NAT/PAT, port forwarding, and integrated 4-port LAN switch
VPN ModeBridge mode (Layer 2) - VPN clients bridged to LAN side, get IP from LAN subnet, multicast and broadcast traffic passes through tunnel
VPN Server CapacityUp to 10 PC clients (Windows / Linux) simultaneously
VPN Client ModeAlso supports OpenVPN client mode for connecting to other VPN servers
Broadcast/Multicast Pass-ThroughYes - critical for BACnet/IP, KNX/IP, sACN, and other multicast/broadcast protocols across VPN
Real-Time ClockOnboard RTC required for certificate validation; current time must be set during commissioning
Certificate GenerationBuilt-in webpage tool generates root CA, server, and client certificates and keys
WAN Port1 × 10/100/1000 Mbps RJ-45, Auto-MDIX, DHCP client, Static IP, PPPoE, or PPTP
LAN Ports4 × 10/100/1000 Mbps RJ-45, Auto-MDIX, integrated unmanaged switch
Ethernet StandardsIEEE 802.3 10BASE-T / 100BASE-TX / 1000BASE-T, 100 m max CAT5e
FirewallStateful inspection (can be disabled); blocks WAN-initiated traffic by default
Routing FeaturesPAT, NAT, Port Forwarding, Port Range Forwarding, NAT Loopback, Allowlist, Remote Router Access
DHCPDHCP client on WAN; DHCP server on LAN with configurable range and lease time
ConfigurationWeb browser with authentication; onboard help screens; configuration save/restore
Default IP192.168.92.1 / 255.255.255.0 (LAN side)
Power Input10-36 VDC ±10% (7 W) or 24 VAC ±10% 47-63 Hz (11 VA)
Power RedundancyBackup input supports DC or AC; reverse-polarity protected; half-wave rectified for shared 24VAC bus
Power Connector4-pin removable terminal block (COM / HI / HIB / chassis)
Operating Temperature0°C to +60°C (+32°F to +140°F)
Storage Temperature-40°C to +85°C
Humidity10-95%, non-condensing
Protection RatingIP30
MountingTS-35 DIN-rail
Dimensions (W × D × H)41 × 95 × 100 mm (1.61 × 3.73 × 3.94 in)
EnclosureRugged metal, with integrated 35 mm DIN-rail clip
Wire Size (Power)16-22 AWG solid, 16-18 AWG stranded
LEDsPWR (green=power OK); STATUS (green=boot complete); per-port H (green=1000 Mbps, yellow=100 Mbps, flash=activity); per-port L (yellow=10 Mbps, flash=activity)
RegulatoryUL 508 Listed (Industrial Control Equipment), C22.2 No. 142-M1987, CE Mark, FCC Part 15 Class A, RoHS
UL 508A CompatibilityDirectly acceptable in UL 508A panels when supplied from a Class 2 limited-energy source
Warranty5-year limited (Contemporary Controls)

Frequently Asked Questions

How does the EIGR-VB compare to the other EIGR family routers?

The EIGR family is Contemporary Controls' gigabit Skorpion router line, all sharing the same 41 mm DIN-rail enclosure, 4-port gigabit LAN switch, stateful firewall, and NAT/PAT/Port Forwarding capabilities. The differences come down to temperature range and VPN capability: EIGR-E (0 to 60°C, no VPN), EIGR-EX (-40 to +75°C, no VPN), EIGR-V (0 to 60°C, OpenVPN client/server with 15 router + 15 PC clients), EIGR-VX (-40 to +75°C, same VPN as EIGR-V), and EIGR-VB (0 to 60°C, OpenVPN client + bridge-mode server with 10 PC clients and broadcast/multicast pass-through). Pick by environment first, then by VPN need.

What is bridge mode VPN, and why does it matter for BACnet/IP?

Most VPN implementations operate in routed mode: the VPN client gets an IP address on a separate subnet from the LAN, and the VPN server routes traffic between the two. This works fine for unicast TCP and UDP, but it blocks broadcast and multicast traffic by default - which is a problem for BACnet/IP, which depends heavily on broadcasts for device discovery (Who-Is/I-Am), and other protocols like KNX/IP and sACN that use multicast. The EIGR-VB operates its VPN server in bridge mode: VPN clients are bridged directly to the LAN side, receive an IP address from the LAN subnet, and can send and receive broadcast and multicast traffic as if physically connected to the LAN. This makes the EIGR-VB the right pick when a remote technician needs to discover BACnet devices, run Niagara Workbench against a JACE on the remote LAN, or use any tool that relies on broadcast traffic.

When should I choose the EIGR-VB over the EIGR-V?

Choose the EIGR-VB specifically when broadcast or multicast traffic must traverse the VPN - the most common case is BACnet/IP discovery (Who-Is/I-Am), but it also covers Niagara Workbench against remote JACEs, KNX/IP lighting protocols, and any application where the VPN client needs to appear as if physically on the remote LAN. Choose the EIGR-V when you need higher client capacity (15 router + 15 PC clients vs 10 PC only on VB), don't need broadcast pass-through, or already have BBMD/Foreign Device Registration handling BACnet broadcasts on the remote subnet. Many integrators deploy the EIGR-V at sites where BACnet broadcasting is handled by a BAS Router (BASRT-B), and reserve the EIGR-VB for sites where bridge-mode behavior is genuinely needed.

Can I install the EIGR-VB in an outdoor or unconditioned enclosure?

The EIGR-VB is rated 0°C to +60°C (+32°F to +140°F), suitable for conditioned indoor panels and most mechanical rooms. For outdoor installations, rooftop enclosures, unconditioned warehouses, refrigerated environments, or any panel where ambient temperature can exceed 60°C in summer or drop below 0°C in winter, choose the wide-temperature variant: EIGR-EX (wired, no VPN) or EIGR-VX (wired with OpenVPN client/server). Both are rated -40°C to +75°C with otherwise identical features to their standard-temp counterparts.

Can the EIGR-VB be installed in a UL 508A control panel?

Yes. The EIGR-VB is UL 508 Listed for Industrial Control Equipment and CSA C22.2 No. 142-M1987 compliant. UL 508-listed components are directly acceptable for use in UL 508A panels without invalidating the panel listing, as long as the device is supplied from a Class 2 limited-energy source per the panel's circuit requirements.

Can I power the EIGR-VB from my existing 24VAC control bus?

Yes. The EIGR-VB accepts 24 VAC ±10% on a half-wave rectified low-voltage input, which lets it share a common 24VAC source with other control devices such as actuators, valves, and thermostats. A second power input accepts 10-36 VDC for either redundant power or DC-only installations. The two inputs are independent - you can mix sources (for example 24 VAC primary with a 24 VDC battery backup). Power consumption is 7 W DC or 11 VA AC.

Does the EIGR-VB still need a BBMD on the remote LAN?

It depends on what's communicating. Within the LAN itself, BACnet/IP broadcasts work normally - no BBMD needed. For BACnet broadcasts that need to traverse the VPN tunnel from a remote PC client to the LAN, the EIGR-VB's bridge-mode VPN handles that transparently because the PC client appears as if physically on the LAN. A BBMD is still required if the LAN is segmented across multiple IP subnets (for example, controllers on multiple floors with separate IP networks linked by additional routers) - the EIGR-VB doesn't replace BBMD's between-subnet role, only extends LAN-equivalent visibility to VPN clients.

When do I need gigabit (10/100/1000) instead of 10/100 like the EIPR series?

For typical BAS panels running BACnet/IP between controllers, 100 Mbps is more than sufficient and the older EIPR series remains a cost-effective choice. Gigabit becomes worthwhile when at least one device on the network natively prefers gigabit - IP cameras and NVRs, Niagara Supervisor stations and historian-heavy JACEs, BACnet/IP networks with thousands of points polling at high frequency, large building portfolios where the panel network is part of a corporate gigabit infrastructure, or applications doing bulk data transfers (firmware updates, log retrievals). The EIGR-VB also future-proofs your panel network: deploy gigabit today, run at 100 Mbps if that's all your devices need, and gain headroom for additions over the panel's 15-20 year service life.

What's the default IP address and how do I configure the EIGR-VB?

The default LAN-side IP address is 192.168.92.1 with subnet mask 255.255.255.0. To configure, connect a PC directly to one of the LAN ports with the PC set to obtain an IP address automatically (the EIGR-VB's built-in DHCP server will assign the PC an address), then browse to http://192.168.92.1. Default username and password are both admin and must be changed on first login (8-63 characters, at least one letter and one number required). The reset switch on the front panel restores factory defaults if you need to start over - hold for at least 3 seconds while powered, then power-cycle the unit.

Sub-Category:
IP Routers