product description
#1: RUT950
INDUSTRIAL CELLULAR ROUTERRUT950 is a high-performance cellular router featuring dual SIM, four Ethernet interfaces, and Wi-Fi. The device is designed as a primary or backup internet source to guarantee a reliable connection with high data throughput and data redundancy. RUT950 comes with RutOS software security features and RMS support.
#2: Content of delivery
- Router RUT950
- 9 W PSU
- 2 x Mobile antennas (swivel, SMA male)
- 2 x WiFi antennas (swivel, RP-SMA male)
- Ethernet cable (1.5 m)
- SIM Adapter kit
- QSG (Quick Start Guide)
- Packaging box
#3: Features
MOBILE
-
Mobile module
4G (LTE) – Cat 4 up to 150 Mbps, 3G – Up to 42 Mbps, 2G – Up to 236.8 kbps
-
3GPP Release
Release 10/11 depending on the hardware version
-
SIM switch
2 SIM cards, auto-switch cases: weak signal, data limit, SMS limit, roaming, no network, network denied, data connection fail, SIM idle protection
-
Status
Signal strength (RSSI), SINR, RSRP, RSRQ, EC/IO, RSCP, Bytes sent/received, connected band, IMSI, ICCID
-
SMS
SMS status, SMS configuration, send/read SMS via HTTP POST/GET, EMAIL to SMS, SMS to EMAIL, SMS to HTTP, SMS to SMS, scheduled SMS, SMS autoreply, SMPP
-
USSD
Supports sending and reading Unstructured Supplementary Service Data messages
-
Black/White list
Operator black/white list
-
Multiple PDN
Possibility to use different PDNs for multiple network access and services
-
Band management
Band lock, Used band status display
-
APN
Auto APN
-
Bridge
Direct connection (bridge) between mobile ISP and device on LAN
-
Passthrough
Router assigns its mobile WAN IP address to another device on LAN
WIRELESS
-
Wireless mode
IEEE 802.11b/g/n, Access Point (AP), Station (STA)
-
Wi-Fi security
WPA2-Enterprise - PEAP, WPA2-PSK, WEP, WPA-EAP, WPA-PSK; AES-CCMP, TKIP, Auto Cipher modes, client separation
-
SSID/ESSID
SSID stealth mode and access control based on MAC address
-
Wi-Fi users
Up to 100 simultaneous connections
-
Wireless MAC filter
Whitelist, blacklist
-
Wireless QR code generator
Once scanned, a user will automatically enter your network without needing to input login information.
-
Wireless Connectivity Features
Wireless mesh (802.11s), fast roaming (802.11r), Relayd
NETWORK
-
Hotspot
Captive portal (Hotspot), internal/external Radius server, SMS authorization, internal/external landing page, walled garden, user scripts, URL parameters, user groups, individual user or group limitations, user management, 9 default customizable themes and option to upload and download customised hotspot themes
-
Routing
Static routing, Dynamic routing (BGP, OSPF v2, RIP v1/v2, EIGRP, NHRP), Policy based routing
-
Network protocols
TCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, SFTP, FTP, SMTP, SSL/TLS, ARP, VRRP, PPP, PPPoE, UPNP, SSH, DHCP, Telnet, SMPP, SMNP, MQTT, Wake On Lan (WOL)
-
VoIP passthrough support
H.323 and SIP-alg protocol NAT helpers, allowing proper routing of VoIP packets
-
Connection monitoring
Ping Reboot, Wget Reboot, Periodic Reboot, LCP and ICMP for link inspection
-
Firewall
Port forward, traffic rules, custom rules
-
Firewall status page
View all your Firewall statistics, rules, and rule counters
-
Ports management
View device ports, enable and disable each of them, turn auto-configuration on or off, change their transmission speed, and so on
-
Network topology
Visual representation of your network, showing which devices are connected to which other devices
-
Hotspot
Captive portal (Hotspot), internal/external Radius server, SMS authorization, internal/external landing page, walled garden, user scripts, URL parameters, user groups, individual user or group limitations, user management, 9 default customizable themes and option to upload and download customised hotspot themes
-
DHCP
Static and dynamic IP allocation, DHCP Relay
-
QoS / Smart Queue Management (SQM)
Traffic priority queuing by source/destination, service, protocol or port, WMM, 802.11e
-
DDNS
Supported >25 service providers, others can be configured manually
-
Network backup
Wi-Fi WAN, Mobile, VRRP, Wired options, each of which can be used as an automatic Failover
-
Load balancing
Balance Internet traffic over multiple WAN connections
-
SSHFS
Possibility to mount remote file system via SSH protocol
ETHERNET
-
WAN
1 x WAN port 10/100 Mbps, compliance IEEE 802.3, IEEE 802.3u standards, supports auto MDI/MDIX
-
LAN
3 x LAN ports, 10/100 Mbps, compliance IEEE 802.3, IEEE 802.3u standards, supports auto MDI/MDIX
SECURITY
-
Authentication
Pre-shared key, digital certificates, X.509 certificates, TACACS+, Radius, IP & Login attempts block
-
Firewall
Pre-configured firewall rules can be enabled via WebUI, unlimited firewall configuration via CLI; DMZ; NAT; NAT-T
-
Attack prevention
DDOS prevention (SYN flood protection, SSH attack prevention, HTTP/HTTPS attack prevention), port scan prevention (SYN-FIN, SYN-RST, X-mas, NULL flags, FIN scan attacks)
-
VLAN
Port and tag-based VLAN separation
-
Mobile quota control
Mobile data limit, customizable period, start time, warning limit, phone number
-
WEB filter
Blacklist for blocking out unwanted websites, Whitelist for specifying allowed sites only
-
Access control
Flexible access control of SSH, Web interface, CLI and Telnet
VPN
-
OpenVPN
Multiple clients and a server can run simultaneously, 27 encryption methods
-
OpenVPN Encryption
DES-CBC 64, RC2-CBC 128, DES-EDE-CBC 128, DES-EDE3-CBC 192, DESX-CBC 192,
BF-CBC 128, RC2-40-CBC 40, CAST5-CBC 128, RC2-64-CBC 64, AES-128-CBC 128, AES-128-CFB 128, AES-128-CFB1 128, AES-128-CFB8 128, AES-128-OFB 128, AES-128-GCM 128, AES-192-CFB 192, AES-192-CFB1 192, AES-192-CFB8 192, AES-192-OFB 192, AES-192-CBC 192, AES-192-GCM 192, AES-256-GCM 256, AES-256-CFB 256, AES-256-CFB1 256, AES-256-CFB8 256, AES-256-OFB 256, AES-256-CBC 256
-
IPsec
IKEv1, IKEv2, with 14 encryption methods for IPsec (3DES, DES, AES128, AES192, AES256, AES128GCM8, AES192GCM8, AES256GCM8, AES128GCM12, AES192GCM12, AES256GCM12, AES128GCM16, AES192GCM16, AES256GCM16)
-
GRE
GRE tunnel, GRE tunnel over IPsec support
-
PPTP, L2TP
Client/Server instances can run simultaneously, L2TPv3, L2TP over IPsec support
-
Stunnel
Proxy designed to add TLS encryption functionality to existing clients and servers without any changes in the program’s code
-
DMVPN
Method of building scalable IPsec VPNs
-
SSTP
SSTP client instance support
-
ZeroTier
ZeroTier VPN client support
-
WireGuard
WireGuard VPN client and server support
-
Tinc
Tinc offers encryption, authentication and compression in it's tunnels. Client and server support.
MODBUS TCP SLAVE
-
ID range
Respond to one ID in range [1;255] or any
-
Allow Remote Access
Allow access through WAN
-
Custom registers
MODBUS TCP custom register block requests, which read/write to a file inside the router, and can be used to extend MODBUS TCP Slave functionality
MODBUS TCP MASTER
-
Supported functions
01, 02, 03, 04, 05, 06, 15, 16
-
Supported data formats
8-bit: INT, UINT; 16-bit: INT, UINT (MSB or LSB first); 32-bit: float, INT, UINT (ABCD (big-endian), DCBA (little-endian), CDAB, BADC)
DATA TO SERVER
-
Protocol
HTTP(S), MQTT, Azure MQTT, Kinesis
-
Data to server
Extract parameters from multiple sources and different protocols, and send them all to a single server
MQTT GATEWAY
-
MQTT Gateway
Allows sending commands and receiving data from MODBUS Master through MQTT broker
DNP3
-
Supported modes
TCP Master, DNP3 Outstation
DLMS
-
DLMS Support
DLMS - standard protocol for utility meter data exchange
MONITORING & MANAGEMENT
-
WEB UI
HTTP/HTTPS, status, configuration, FW update, CLI, troubleshoot, event log, system log, kernel log
-
FOTA
Firmware update from server, automatic notification
-
SSH
SSH (v1, v2)
-
SMS
SMS status, SMS configuration, send/read SMS via HTTP POST/GET
-
Call
Reboot, Status, Mobile data on/off, Output on/off, answer/hang-up with a timer, Wi-Fi on/off
-
TR-069
OpenACS, EasyCwmp, ACSLite, tGem, LibreACS, GenieACS, FreeACS, LibCWMP, Friendly tech, AVSystem
-
MQTT
MQTT Broker, MQTT publisher
-
SNMP
SNMP (v1, v2, v3), SNMP Trap
-
JSON-RPC
Management API over HTTP/HTTPS
-
MODBUS
MODBUS TCP status/control
-
RMS
Teltonika Remote Management System (RMS)
IOT PLATFORMS
-
Cloud of Things
Allows monitoring of: Device data, Mobile data, Network info, Availability
-
ThingWorx
Allows monitoring of: WAN Type, WAN IP, Mobile Operator Name, Mobile Signal Strength, Mobile Network Type
-
Cumulocity
Allows monitoring of: Device Model, Revision and Serial Number, WAN Type and IP, Mobile Cell ID, ICCID, IMEI, Connection Type, Operator, Signal Strength
-
Azure IoT Hub
Can send device IP, Number of bytes send/received, Temperature, PIN count to Azure IoT Hub server, Mobile connection state, Network link state, IMEI, ICCID, Model, Manufacturer, Serial, Revision, IMSI, SIM State, PIN state, GSM signal, WCDMA RSCP, WCDMA EC/IO, LTE RSRP, LTE SINR, LTE RSRQ, CELL ID, Operator, Operator number, Connection type
SYSTEM CHARACTERISTICS
-
CPU
Atheros Wasp, MIPS 74Kc, 550 MHz
-
RAM
128 MB, DDR2
-
FLASH storage
16 MB, SPI Flash
FIRMWARE / CONFIGURATION
-
WEB UI
Update FW from file, check FW on server, configuration profiles, configuration backup
-
FOTA
Update FW
-
RMS
Update FW/configuration for multiple devices at once
-
Keep settings
Update FW without losing current configuration
FIRMWARE CUSTOMISATION
-
Operating system
RutOS (OpenWrt based Linux OS)
-
Supported languages
Busybox shell, Lua, C, C++
-
Development tools
SDK package with build environment provided
-
GPL customization
You can now create your own custom firmware and web page application, with some examples to make the creation process easier; and brand our firmware by changing colours, logos, and so on to fit your or your clients’ needs.
INPUT / OUTPUT
-
Input
1 x Digital Input, 0 - 6 V detected as logic low, 8 - 30 V detected as logic high
-
Output
1 x Digital Output, Open collector output, max output 30 V, 300 mA
-
Events
Email, RMS, SMS
-
I/O juggler
Allows to set certain I/O conditions to initiate event
POWER
-
Connector
4-pin industrial DC power socket
-
Input voltage range
9 – 30 VDC, reverse polarity protection; surge protection >31 VDC 10us max
-
PoE (passive)
Passive PoE over spare pairs. Possibility to power up through LAN1 port, not compatible with IEEE802.3af, 802.3at and 802.3bt standards, Mode B, 9 - 30 VDC
-
Power consumption
< 2 W idle, < 7 W Max
PHYSICAL INTERFACES
-
Ethernet
4 x RJ45 ports, 10/100 Mbps
-
I/O’s
1 x Digital Input, 1 x Digital Output on 4-pin power connector (available from HW revision 1600)
-
Status LEDs
1 x Bi-color connection status, 5 x Mobile connection strength, 4 x ETH status, 1 x Power
-
SIM
2 x SIM slots (Mini SIM - 2FF), 1.8 V/3 V, external SIM holders, eSIM (Optional)
-
Power
1 x 4-pin power connector
-
Antennas
2 x SMA for LTE, 2 x RP-SMA for Wi-Fi antenna connectors
-
Reset
Reboot/User default reset/Factory reset button
PHYSICAL SPECIFICATION
-
Casing material
Aluminium housing, plastic panels
-
Dimensions (W x H x D)
110 x 50 x 100 mm
-
Weight
280 g
-
Mounting options
DIN rail (can be mounted on two sides), flat surface placement
OPERATING ENVIRONMENT
-
Operating temperature
-40 °C to 75 °C
-
Operating humidity
10% to 90% non-condensing
-
Ingress Protection Rating
IP30
REGULATORY & TYPE APPROVALS
-
Regulatory
CE/RED, FCC, IC, PTCRB, RCM, EAC, RoHS, WEEE, IP rating, Anatel, GCF, TRA approval, REACH, DNV GL, Declaration of Software Security, Thailand NBTC, Ukraine UCRF, WiFi Certified, SDPPI (POSTEL)
-
Operator
AT&T, Verizon
EMC EMISSIONS & IMMUNITY
-
Standards
Draft EN 301 489-1 V2.2.0, Draft EN 301 489-17 V3.2.0, Draft EN 301 489-19 V2.1.0, Draft EN 301 489-52 V1.1.0 FCC 47 CFR Part 15B (2018), ANSI C63.4 (2014)
-
ESD
EN 61000-4-2:2009
-
Radiated Immunity
EN 61000-4-3:2006 + A1:2008 + A2:2010
-
EFT
EN 61000-4-4:2012
-
Surge immunity (AC Power Line)
EN 61000-4-5:2006
-
Surge immunity (Ethernet ports)
EN 61000-4-5:2014, clause 7.1 of ITU-T K21
-
Transient and surges
ISO 7637-2:2004
-
CS
EN 61000-4-6:2009
-
DIP
EN 61000-4-11:2004
RF
-
Standards
EN 300 328 V2.1.1, EN 301 511 V12.5.1, EN 301 908-1 V11.1.1, EN 301 908-2 V11.1.1, EN 301 908-13 V11.1.1 AS/CA S042.1:2018, AS/ACIF S042.3:2005, AS/CA S042.4:2018, AS/NZS 4268:2017 FCC 47 CFR Part 15C, FCC 47 CFR Part 22H, FCC 47 CFR Part 24E, FCC 47 CFR Part 27
SAFETY
-
Standards
IEC 60950-1:2005 (Second Edition) + Am 1:2009 + Am 2:2013 AS/NZS 60950.1:2015 EN 50665:2017, EN 62311:2008 FCC 47 CFR Part 1 1.1310
ENVIRONMENTAL
-
Ingress Protect
LST EN 60529:1999+A1+AC:2002
-
Vibration
Class guideline-DNVGL-CG-0339:2016
EN 60068-2-6:2008