Mobile
- Mobile module4G LTE Cat 4 up to 150 DL/50 UL Mbps; 3G up to 21 DL/5.76 UL Mbps; 2G up to 236.8 DL/236.8 UL kbps
- 3GPP ReleaseRelease 10/11 depending on the hardware version
- eSIMConsumer type eSIM, profile download and removal operations, up to 7 eSIM profiles
- StatusIMSI, ICCID, operator, operator state, data connection state, network type, bandwidth, connected band, signal strength (RSSI), SINR, RSRP, RSRQ, EC/IO, RSCP, data sent/received, LAC, TAC, cell ID, ARFCN, UARFCN, EARFCN, MCC, and MNC
- SMSSMS status, SMS configuration, send/read SMS via HTTP POST/GET, EMAIL to SMS, SMS to EMAIL, SMS to HTTP, SMS to SMS, scheduled SMS, SMS autoreply, SMPP
- USSDSupports sending and reading Unstructured Supplementary Service Data messages
- Black/White listOperator black/white list (by country or separate operators)
- Multiple PDNPossibility to use different PDNs for multiple network access and services
- Band managementBand lock, Used band status display
- SIM PIN code managementSIM PIN code management enables setting, changing, or disabling the SIM card's PIN
- APNAuto APN
- BridgeDirect connection (bridge) between mobile ISP and device on LAN
- PassthroughRouter assigns its mobile WAN IP address to another device on LAN
Wireless
- Wireless mode802.11b/g/n (Wi-Fi 4), Access Point (AP), Station (STA)
- Wi-Fi securityWPA2-Enterprise - PEAP, WPA2-PSK, WPA-EAP, WPA-PSK, WPA3-SAE, WPA3-EAP, OWE; AES-CCMP, TKIP, Auto-cipher modes, client separation, EAP-TLS with PKCS#12 certificates, disable auto-reconnect
- SSID/ESSIDSSID stealth mode and access control based on MAC address
- Wi-Fi usersUp to 50 simultaneous connections
- Wireless Connectivity FeaturesFast roaming (802.11r), Relayd, BSS transition management (802.11v), radio resource measurement (802.11k)
- Wireless MAC filterWhitelist, blacklist
- Wireless QR code generatorOnce scanned, a user will automatically enter your network without needing to input login information.
Network
- HotspotCaptive portal (hotspot), internal/external Radius server, Radius MAC authentication, SMS authorisation, SSO authentication, internal/external landing page, walled garden, user scripts, URL parameters, user groups, individual user or group limitations, user management, 9 default customisable themes and optionality to upload and download customised hotspot themes
- RoutingStatic routing, Dynamic routing (BGP, OSPF v2, RIP v1/v2, EIGRP, NHRP), Policy based routing
- Network protocolsTCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, SFTP, FTP, SMTP, SSL/TLS, ARP, VRRP, PPP, PPPoE, UPNP, SSH, DHCP, Telnet, SMPP, SNMP, MQTT, Wake On Lan (WOL)
- VoIP passthrough supportH.323 and SIP-alg protocol NAT helpers, allowing proper routing of VoIP packets
- Connection monitoringPing Reboot, Wget Reboot, Periodic Reboot, LCP and ICMP for link inspection
- FirewallPort forward, traffic rules, custom rules
- Firewall status pageView all your Firewall statistics, rules, and rule counters
- Ports managementView device ports, enable and disable each of them, turn auto-configuration on or off, change their transmission speed, and so on
- Network topologyVisual representation of your network, showing which devices are connected to which other devices
- HotspotCaptive portal (hotspot), internal/external Radius server, Radius MAC authentication, SMS authorisation, SSO authentication, internal/external landing page, walled garden, user scripts, URL parameters, user groups, individual user or group limitations, user management, 9 default customisable themes and optionality to upload and download customised hotspot themes
- DHCPStatic and dynamic IP allocation, DHCP relay, DHCP server configuration, status, static leases: MAC with wildcards
- QoS / Smart Queue Management (SQM)Traffic priority queuing by source/destination, service, protocol or port, WMM, 802.11e
- DDNSSupported >25 service providers, others can be configured manually
- DNS over HTTPSDNS over HTTPS proxy enables secure DNS resolution by routing DNS queries over HTTPS
- Network backupWi-Fi WAN, Mobile, VRRP, Wired options, each of which can be used as an automatic Failover
- Load balancingBalance Internet traffic over multiple WAN connections
- SSHFSPossibility to mount remote file system via SSH protocol
Ethernet
- WAN1 x WAN port 10/100 Mbps, compliance IEEE 802.3, IEEE 802.3u, 802.3az standards, supports auto MDI/MDIX
- LAN1 x LAN port, 10/100 Mbps, compliance with IEEE 802.3, IEEE 802.3u standards, supports auto MDI/MDIX
DLMS
- DLMS SupportDLMS - standard protocol for utility meter data exchange
- Supported modesClient
- Supported connection typesTCP
Security
- AuthenticationPre-shared key, digital certificates, X.509 certificates, TACACS+, Internal & External RADIUS users authentication, IP & login attempts block, time-based login blocking, built-in random password generator
- FirewallPre-configured firewall rules can be enabled via WebUI, unlimited firewall configuration via CLI; DMZ; NAT; NAT-T
- Attack preventionDDOS prevention (SYN flood protection, SSH attack prevention, HTTP/HTTPS attack prevention), port scan prevention (SYN-FIN, SYN-RST, X-mas, NULL flags, FIN scan attacks)
- VLANPort and tag-based VLAN separation
- Mobile quota controlMobile data limit, customizable period, start time, warning limit, phone number
- WEB filterBlacklist for blocking out unwanted websites, Whitelist for specifying allowed sites only
- Access controlFlexible access control of SSH, Web interface, CLI and Telnet
- TPMIdentification and authentication module, TPM 2.0 standard
- SSL certificate generationLet's encrypt support
VPN
- OpenVPNMultiple clients and a server can run simultaneously, 27 encryption methods
- OpenVPN EncryptionDES-CBC 64, RC2-CBC 128, DES-EDE-CBC 128, DES-EDE3-CBC 192, DESX-CBC 192,BF-CBC 128, RC2-40-CBC 40, CAST5-CBC 128, RC2-64-CBC 64, AES-128-CBC 128, AES-128-CFB 128, AES-128-CFB1 128, AES-128-CFB8 128, AES-128-OFB 128, AES-128-GCM 128, AES-192-CFB 192, AES-192-CFB1 192, AES-192-CFB8 192, AES-192-OFB 192, AES-192-CBC 192, AES-192-GCM 192, AES-256-GCM 256, AES-256-CFB 256, AES-256-CFB1 256, AES-256-CFB8 256, AES-256-OFB 256, AES-256-CBC 256
- IPsecXFRM, IKEv1, IKEv2, with 14 encryption methods for IPsec (3DES, DES, AES128, AES192, AES256, AES128GCM8, AES192GCM8, AES256GCM8, AES128GCM12, AES192GCM12, AES256GCM12, AES128GCM16, AES192GCM16, AES256GCM16)
- GREGRE tunnel, GRE tunnel over IPsec support
- PPTP, L2TPClient/Server instances can run simultaneously, L2TPv3, L2TP over IPsec support
- StunnelProxy designed to add TLS encryption functionality to existing clients and servers without any changes in the program’s code
- DMVPNMethod of building scalable IPsec VPNs
- SSTPSSTP client instance support
- ZeroTierZeroTier VPN client support
- WireGuardWireGuard VPN client and server support
- TincTinc offers encryption, authentication and compression in it's tunnels. Client and server support.
OPC UA
- Supported modesClient, Server
- Supported connection typesTCP
MODBUS
- Supported modesServer, Client
- Supported connection typesTCP
- Custom registersMODBUS TCP custom register block requests, which read/write to a file inside the router, and can be used to extend MODBUS TCP Client functionality
- Supported data formats8-bit: INT, UINT; 16-bit: INT, UINT (MSB or LSB first); 32-bit: float, INT, UINT (ABCD (big-endian), DCBA (little-endian), CDAB, BADC), HEX, ASCII
DATA TO SERVER
- ProtocolHTTP(S), MQTT, Azure MQTT, Kinesis
- Data to serverExtract parameters from multiple sources and different protocols, and send them all to a single server; Custom LUA scripting, allowing scripts to utilize the router's Data to server feature
MQTT Gateway
- Modbus MQTT GatewayAllows sending commands and receiving data from MODBUS Server through MQTT broker
DNP3
- Supported modesStation, Outstation
- Supported connectionTCP
API
- Teltonika Networks Web API (beta) supportExpand your device's possibilities by using a set of configurable API endpoints to retrieve or change data. For more information, please refer to this documentation: https://developers.teltonika-networks.com
Monitoring & Management
- WEB UIHTTP/HTTPS, status, configuration, FW update, CLI, troubleshoot, multiple event log servers, firmware update availability notifications, event log, system log, kernel log, Internet status
- FOTAFirmware update from server, automatic notification
- SSHSSH (v1, v2)
- SMSSMS status, SMS configuration, send/read SMS via HTTP POST/GET
- CallReboot, Status, Mobile data on/off, Output on/off, answer/hang-up with a timer, Wi-Fi on/off
- TR-069OpenACS, EasyCwmp, ACSLite, tGem, LibreACS, GenieACS, FreeACS, LibCWMP, Friendly tech, AVSystem
- MQTTMQTT Broker, MQTT publisher
- SNMPSNMP (v1, v2, v3), SNMP Trap, Brute force protection
- JSON-RPCManagement API over HTTP/HTTPS
- RMSTeltonika Remote Management System (RMS)
IoT Platforms
- ThingWorxAllows monitoring of: WAN Type, WAN IP, Mobile Operator Name, Mobile Signal Strength, Mobile Network Type
- Cumulocity - Cloud of ThingsAllows monitoring of: Device Model, Revision and Serial Number, WAN Type and IP, Mobile Cell ID, ICCID, IMEI, Connection Type, Operator, Signal Strength. Has reboot and firmware upgrade actions.
- Azure IoT HubCan be configured with Data to Server to send all the available parameters to the cloud. Has Direct method support which allows to execute RutOS API calls on the IoT Hub. Also has Plug and Play integration with Device Provisioning Service that allows zero-touch device provisioning to IoT Hubs
System Characteristics
- CPUMediatek, 580 MHz, MIPS 24KEc
- RAM128 MB, DDR2
- FLASH storage16 MB, SPI Flash
Firmware / Configuration
- WEB UIUpdate FW from file, check FW on server, configuration profiles, configuration backup
- FOTAUpdate FW
- RMSUpdate FW/configuration for multiple devices at once
- Keep settingsUpdate FW without losing current configuration
- Factory settings resetA full factory reset restores all system settings, including the IP address, PIN, and user data to the default manufacturer's configuration
FIRMWARE CUSTOMISATION
- Operating systemRutOS (OpenWrt based Linux OS)
- Supported languagesBusybox shell, Lua, C, C++
- Development toolsSDK package with build environment provided
- GPL customizationYou can create your own custom, branded firmware and web page application by changing colours, logos, and other elements in our firmware to fit your or your clients’ needs
- Package ManagerThe Package Manager is a service used to install additional software on the device
Input / Output
- Input1 x Digital Input, 0 - 6 V detected as logic low, 8 - 30 V detected as logic high
- Output1 x Digital Output, Open collector output, max output 30 V, 300 mA
- EventsEmail, RMS, SMS
- I/O jugglerAllows to set certain I/O conditions to initiate event
Power
- Connector4-pin industrial DC power socket
- Input voltage range9 – 30 VDC, reverse polarity protection; surge protection >31 VDC 10us max
- PoE (passive)Passive PoE over spare pairs. Possibility to power up through LAN1 port, not compatible with IEEE802.3af, 802.3at and 802.3bt standards, Mode B, 9 - 30 VDC
- Power consumption< 6.5 W Max
Physical Interfaces
- Ethernet2 x RJ45 ports, 10/100 Mbps
- I/O’s1 x Digital Input, 1 x Digital Output on 4-pin power connector
- Status LEDs3 x Connection type status LEDs, 5 x Connection strength LEDs, 2 x LAN status LEDs, 1 x Power LED
- SIM1 x SIM slot (Mini SIM – 2FF), 1.8 V/3 V, external SIM holder
- Power1 x 4-pin power connector
- Antennas
2 x SMA for LTE, 1 x RP-SMA for Wi-Fi antenna connectors - ResetReboot/User default reset/Factory reset button
Physical Specification
- Casing materialAluminium housing, plastic panels
- Dimensions (W x H x D)83 x 25 x 74 mm
- Weight125 g
- Mounting optionsDIN rail, wall mount, flat surface (all require additional kit)
Operating Environment
- Operating temperature-40 °C to 75 °C
- Operating humidity10% to 90% non-condensing
- Ingress Protection RatingIP30
Regulatory & Type Approvals
- RegulatoryCE, UKCA, ANRT, Kenya, ICASA, FCC, IC, PTCRB, NOM, RCM, KC, Giteki, IMDA, E-mark, CB, UL/CSA Safety, RoHS, REACH, R118
- OperatorAT&T, Verizon, T-Mobile, Uscellular
EMC Emissions & Immunity
- StandardsEN 55032:2015 + A11:2020EN 55035:2017 + A11:2020EN IEC 61000-3-2:2019EN 61000-3-3:2013 + A1:2019EN 301 489-1 V2.2.3EN 301 489-17 V3.2.4Final Draft EN 301 489-52 V1.2.0
- ESDEN 61000-4-2:2009
- Radiated ImmunityEN IEC 61000-4-3:2020
- EFTEN 61000-4-4:2012
- Surge Immunity (AC Mains Power Port)EN 61000-4-5:2014 + A1:2017
- CSEN 61000-4-6:2014
- DIPEN 61000-4-11:2020
RF
- StandardsEN 300 328 V2.2.2EN 301 511 V12.5.1EN 301 908-1 V15.2.1EN 301 908-2 V13.1.1EN 301 908-13 V13.2.1
Safety
- StandardsCE: EN IEC 62368-1:2020 + A11:2020, EN IEC 62311:2020, EN 50665:2017RCM: AS/NZS 62368.1:2022: UL 62368-1, Ed. 3 dated December 13, 20, CAN/CSA C22.2 No. 62368-1:19