Ethernet |
WAN |
1 x WAN port 10/100 Mbps, compliance IEEE 802.3, IEEE 802.3u, 802.3az standards, supports auto MDI/MDIX |
LAN |
4 x LAN ports, 10/100 Mbps, compliance with IEEE 802.3, IEEE 802.3u, 802.3az standards, supports auto MDI/MDIX crossover |
Network |
Routing |
Static routing, Dynamic routing (BGP, OSPF v2, RIP v1/v2, EIGRP, NHRP), Policy based routing |
Network protocols |
TCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, SFTP, FTP, SMTP, SSL/TLS, ARP, VRRP, PPP, PPPoE, UPNP, SSH, DHCP, Telnet, SMPP, SNMP, MQTT, Wake On Lan (WOL), VXLAN |
VoIP passthrough support |
H.323 and SIP-alg protocol NAT helpers, allowing proper routing of VoIP packets |
Connection monitoring |
Ping Reboot, Wget Reboot, Periodic Reboot, LCP and ICMP for link inspection |
Firewall |
Port forward, traffic rules, custom rules, TTL target customisation |
Firewall status page |
View all your Firewall statistics, rules, and rule counters |
Ports management |
View device ports, enable and disable each of them, turn auto-configuration on or off, change their transmission speed, and so on |
Network topology |
Visual representation of your network, showing which devices are connected to which other devices |
Hotspot |
Captive portal (hotspot), internal/external Radius server, Radius MAC authentication, SMS authorisation, SSO authentication, internal/external landing page, walled garden, user scripts, URL parameters, user groups, individual user or group limitations, user management, 9 default customisable themes and optionality to upload and download customised hotspot themes |
DHCP |
Static and dynamic IP allocation, DHCP relay, DHCP server configuration, status, static leases: MAC with wildcards |
QoS / Smart Queue Management (SQM) |
Traffic priority queuing by source/destination, service, protocol or port, WMM, 802.11e |
DDNS |
Supported >77 service providers, others can be configured manually |
Network backup |
VRRP, Wired options, each of which can be used as an automatic Failover |
Load balancing |
Balance Internet traffic over multiple WAN connections |
SSHFS |
Possibility to mount remote file system via SSH protocol |
Security |
Authentication |
Pre-shared key, digital certificates, X.509 certificates, TACACS+, Internal & External RADIUS users authentication, IP & login attempts block, time-based login blocking, built-in random password generator |
Firewall |
Preconfigured firewall rules can be enabled via WebUI, unlimited firewall configuration via CLI, DMZ, NAT, NAT-T, NAT64 |
Attack prevention |
DDOS prevention (SYN flood protection, SSH attack prevention, HTTP/HTTPS attack prevention), port scan prevention (SYN-FIN, SYN-RST, X-mas, NULL flags, FIN scan attacks) |
VLAN |
Port and tag-based VLAN separation |
WEB filter |
Blacklist for blocking out unwanted websites, Whitelist for specifying allowed sites only |
Access control |
Flexible access control of SSH, Web interface, CLI and Telnet |
SSL certificate generation |
Let's Encrypt and SCEP certificate generation methods |
802.1x |
Port-based network access control server |
VPN |
OpenVPN |
Multiple clients and a server can run simultaneously, 27 encryption methods |
OpenVPN Encryption |
DES-CBC 64, RC2-CBC 128, DES-EDE-CBC 128, DES-EDE3-CBC 192, DESX-CBC 192, BF-CBC 128, RC2-40-CBC 40, CAST5-CBC 128, RC2-64-CBC 64, AES-128-CBC 128, AES-128-CFB 128, AES-128-CFB1 128, AES-128-CFB8 128, AES-128-OFB 128, AES-128-GCM 128, AES-192-CFB 192, AES-192-CFB1 192, AES-192-CFB8 192, AES-192-OFB 192, AES-192-CBC 192, AES-192-GCM 192, AES-256-GCM 256, AES-256-CFB 256, AES-256-CFB1 256, AES-256-CFB8 256, AES-256-OFB 256, AES-256-CBC 256 |
IPsec |
XFRM, IKEv1, IKEv2, with 14 encryption methods for IPsec (3DES, DES, AES128, AES192, AES256, AES128GCM8, AES192GCM8, AES256GCM8, AES128GCM12, AES192GCM12, AES256GCM12, AES128GCM16, AES192GCM16, AES256GCM16) |
GRE |
GRE tunnel, GRE tunnel over IPsec support |
PPTP, L2TP |
Client/Server instances can run simultaneously, L2TPv3, L2TP over IPsec support |
Stunnel |
Proxy designed to add TLS encryption functionality to existing clients and servers without any changes in the program’s code |
DMVPN |
Method of building scalable IPsec VPNs, Phase 2 and Phase 3 and Dual Hub support |
SSTP |
SSTP client instance support |
ZeroTier |
ZeroTier VPN client support |
WireGuard |
WireGuard VPN client and server support |
Tinc |
Tinc offers encryption, authentication and compression in it's tunnels. Client and server support. |
OPC UA |
Supported modes |
Client, Server |
Supported connection types |
TCP |
MODBUS |
Supported modes |
Server, Client |
Supported connection types |
TCP, USB |
Custom registers |
MODBUS TCP custom register block requests, which read/write to a file inside the router, and can be used to extend MODBUS TCP Client functionality |
Supported data formats |
8-bit: INT, UINT; 16-bit: INT, UINT (MSB or LSB first); 32-bit: float, INT, UINT (ABCD (big-endian), DCBA (little-endian), CDAB, BADC), HEX, ASCII |
DATA TO SERVER |
Protocol |
HTTP(S), MQTT, Azure MQTT |
Data to server |
Extract parameters from multiple sources and different protocols, and send them all to a single server; Custom LUA scripting, allowing scripts to utilize the router's Data to server feature |
MQTT Gateway |
Modbus MQTT Gateway |
Allows sending commands and receiving data from MODBUS Server through MQTT broker |
DNP3 |
Supported modes |
TCP Master, DNP3 Outstation |
DLMS/COSEM |
DLMS Support |
DLMS - standard protocol for utility meter data exchange |
Supported modes |
Client |
Supported connection types |
TCP |
API |
Teltonika Networks Web API (beta) support |
Expand your device's possibilities by using a set of configurable API endpoints to retrieve or change data. For more information, please refer to this documentation: https://developers.teltonika-networks.com |
Monitoring & Management |
WEB UI |
HTTP/HTTPS, status, configuration, FW update, CLI, troubleshoot, multiple event log servers, firmware update availability notifications, event log, system log, kernel log, Internet status |
FOTA |
Firmware update from server, automatic notification |
SSH |
SSH (v1, v2) |
TR-069 |
OpenACS, EasyCwmp, ACSLite, tGem, LibreACS, GenieACS, FreeACS, LibCWMP, Friendly tech, AVSystem |
MQTT |
MQTT Broker, MQTT publisher |
SNMP |
SNMP (v1, v2, v3), SNMP Trap, Brute force protection |
JSON-RPC |
Management API over HTTP/HTTPS |
RMS |
Teltonika Remote Management System (RMS) |
IoT Platforms |
Cloud of Things |
Allows monitoring of: Device data, Mobile data, Network info, Availability |
ThingWorx |
Allows monitoring of: WAN Type, WAN IP |
Cumulocity - Cloud of Things |
Allows monitoring of: Device Model, Revision and Serial Number, WAN Type and IP. Has reboot and firmware upgrade actions |
Azure IoT Hub |
Can send device IP, Number of bytes send/received, Temperature, PIN count to Azure IoT Hub server |
System Characteristics |
CPU |
Qualcomm MIPS 24kc, 650 MHz |
RAM |
64 MB, DDR2 |
FLASH storage |
16 MB, SPI Flash |
Firmware / Configuration |
WEB UI |
Update FW from file, check FW on server, configuration profiles, configuration backup |
FOTA |
Update FW |
RMS |
Update FW/configuration for multiple devices at once |
Keep settings |
Update FW without losing current configuration |
Factory settings reset |
A full factory reset restores all system settings, including the IP address, PIN, and user data to the default manufacturer's configuration |
FIRMWARE CUSTOMISATION |
Operating system |
RutOS (OpenWrt based Linux OS) |
Supported languages |
Busybox shell, Lua, C, C++ |
Development tools |
SDK package with build environment provided |
GPL customization |
You can create your own custom, branded firmware and web page application by changing colours, logos, and other elements in our firmware to fit your or your clients’ needs |
Location Tracking |
NTRIP |
NTRIP protocol (Networked Transport of RTCM via Internet Protocol) |
USB |
Data rate |
USB 2.0 |
Applications |
Samba share, USB-to-serial |
External devices |
Possibility to connect external HDD, flash drive, additional modem, printer, USB-serial adapter |
Storage formats |
FAT, FAT32, exFAT, NTFS (read-only), ext2, ext3, ext4 |
Input / Output |
Input |
2 x Configurable digital Inputs. Digital input 0 - 5 V detected as logic low, 8 - 30 V detected as logic high. |
Output |
2 x Configurable digital Outputs. Open collector output, max output 30 V, 300 mA. |
Events |
Email, RMS |
I/O juggler |
Allows to set certain I/O conditions to initiate event |
Power |
Connector |
4-pin industrial DC power socket |
Input voltage range |
7 - 30 VDC, reverse polarity protection, voltage surge/transient protection |
PoE (passive) |
Passive PoE over spare pairs. Possibility to power up through LAN1 port, not compatible with IEEE802.3af, 802.3at and 802.3bt standards, Mode B, 9 - 30 VDC |
Power consumption |
Idle: 1.3 W, Max: 3 W |
Physical Interfaces |
Ethernet |
5 x RJ45 ports, 10/100 Mbps |
I/O’s |
2 x Configurable I/O pins on 4-pin power connector |
Status LEDs |
5 x ETH status, 1 x Power |
Power |
1 x 4-pin power connector |
USB |
1 x USB A port for external devices |
Reset |
Reboot/User default reset/Factory reset button |
Physical Specification |
Casing material |
Aluminium housing |
Dimensions (W x H x D) |
100 x 30 x 85 mm |
Weight |
229 g |
Mounting options |
DIN rail, wall mount, flat surface (all require additional kit) |
Operating Environment |
Operating temperature |
-40 °C to 75 °C |
Operating humidity |
10% to 90% non-condensing |
Ingress Protection Rating |
IP30 |
Regulatory & Type Approvals |
Regulatory |
CE, UKCA, UCRF, CITC, ANRT, FCC, IC, RCM, BSMI, KC, CB |
EMC Emissions & Immunity |
Standards |
EN 55032:2015 + A11:2020
EN 61000-3-3:2013 + A1:2019
EN IEC 61000-3-2:2019
EN 55035:2017 |
ESD |
EN 61000-4-2:2009 |
Radiated Immunity |
EN IEC 61000-4-3:2006 + A1:2008 + A2:2010 |
EFT |
EN 61000-4-4:2012 |
Surge Immunity (AC Mains Power Port) |
EN 61000-4-5:2014 + A1:2017 |
CS |
EN 61000-4-6:2014 |
DIP |
EN IEC 61000-4-11:2020 |
Safety |
Standards |
CE: EN IEC 62368-1:2020 + A11:2020, EN IEC 62311:2020, EN 50665:2017
RCM: AS/NZS 62368.1:2022
CB: IEC 62368-1:2018 |