








RUT140
The RUT140 is a compact industrial Ethernet router, enhancing security through network isolation for end devices. Equipped with two Ethernet ports, DIN rail bracket, and an industrial 3-pin connector, it ensures seamless connectivity and easy installation. The router comes with RutOS, Wi-Fi 4, and supports industrial protocols such as Modbus, DLMS, DNP3, and OPC UA, and is compatible with RMS for efficient remote and on-site management.
WIRELESS MODULE
The device supports 802.11b/g/n (Wi-Fi 4) in Access Point (AP) and Station (STA) modes.
WI-FI SECURITY
Supports WPA2-Enterprise (PEAP), WPA2-PSK, WPA-EAP, WPA-PSK, WPA3-SAE, WPA3-EAP, and OWE. Includes AES-CCMP, TKIP, auto-cipher modes, client separation, EAP-TLS with PKCS#12 certificates, disable auto-reconnect, and 802.11w Protected Management Frames (PMF).
SSID/ESSID
Supports SSID stealth mode and access control based on MAC address.
WI-FI USERS
Supports up to 50 simultaneous connections.
WIRELESS CONNECTIVITY FEATURES
Includes wireless mesh (802.11s), fast roaming (802.11r), Relayd, BSS transition management (802.11v), and radio resource measurement (802.11k).
WIRELESS MAC FILTER
Supports allowlist and blocklist options.
WIRELESS QR CODE GENERATOR
Generates QR codes for instant Wi-Fi login without requiring manual credentials.
TRAVELMATE
Forwards Wi-Fi hotspot landing pages to subsequently connected devices.
ETHERNET
WAN
1 x WAN port, 10/100 Mbps, compliant with IEEE 802.3, IEEE 802.3u, and 802.3az standards. Supports auto MDI/MDIX crossover.
LAN
1 x LAN port, 10/100 Mbps, compliant with IEEE 802.3, IEEE 802.3u, and 802.3az standards. Supports auto MDI/MDIX crossover.
NETWORK
ROUTING
Supports static routing and dynamic routing (BGP, OSPF v2, RIP v1/v2, EIGRP, NHRP). Policy-based routing is supported.
NETWORK PROTOCOLS
Supports TCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, SFTP, FTP, SMTP, SSL/TLS, ARP, VRRP, PPP, PPPoE, UPnP, SSH, DHCP, Telnet, SMPP, SNMP, MQTT, Wake On LAN (WOL), and VXLAN.
VOIP PASSTHROUGH SUPPORT
Supports H.323 and SIP-ALG NAT helpers for proper routing of VoIP packets.
CONNECTION MONITORING
Includes ping reboot, wget reboot, periodic reboot, LCP, and ICMP link inspection.
FIREWALL
Supports port forwarding, traffic rules, custom rules, and TTL target customization.
FIREWALL STATUS PAGE
View all firewall statistics, rules, and counters.
PORT MANAGEMENT
Enables viewing, enabling, disabling, auto-configuration, and transmission speed control for device ports.
NETWORK TOPOLOGY
Provides a visual representation of the network, showing connected devices.
DHCP
Supports static and dynamic IP allocation, DHCP relay, server configuration, status monitoring, and static leases with MAC wildcards.
QOS / SMART QUEUE MANAGEMENT (SQM)
Provides traffic prioritization by source/destination, service, protocol, or port. Supports WMM and 802.11e.
DDNS
Supports over 77 service providers, with manual configuration for others.
DNS OVER HTTPS
Enables secure DNS resolution via HTTPS proxy.
NETWORK BACKUP
Supports Wi-Fi WAN, VRRP, and wired options for automatic failover.
LOAD BALANCING
Balances Internet traffic across multiple WAN connections.
HOTSPOT
Captive portal with internal/external Radius server, Radius MAC authentication, SMS authorization, SSO authentication, customizable landing pages, walled garden, user scripts, URL parameters, user groups, and user management. Supports 9 default customizable themes and optional custom theme uploads.
SSHFS
Supports mounting remote file systems via SSH protocol.
TRAFFIC MANAGEMENT
Provides real-time monitoring, wireless signal charts, and traffic usage history.
SECURITY
AUTHENTICATION
Supports pre-shared key, digital certificates, X.509, TACACS+, internal & external RADIUS, IP/login attempt blocking, time-based login restrictions, and built-in random password generator.
FIREWALL (ADVANCED)
Supports preconfigured firewall rules via WebUI and unlimited configuration via CLI. Supports DMZ, NAT, NAT-T, and NAT64.
ATTACK PREVENTION
Includes DDoS protection (SYN flood, SSH, HTTP/HTTPS), port scan prevention (SYN-FIN, SYN-RST, Xmas, NULL flags, FIN scans).
VLAN
Supports port and tag-based VLAN separation.
WEB FILTER
Supports blacklist and whitelist for website access control.
ACCESS CONTROL
Flexible access control of SSH, Web interface, CLI, and Telnet.
CERTIFICATE MANAGER
Allows creation of CA, server, client, Let’s Encrypt, and SCEP certificates.
802.1X
Supports port-based network access control server.
VPN
OPENVPN
Supports multiple clients and server instances simultaneously with 27 encryption methods.
OPENVPN ENCRYPTION
Supports DES-CBC 64, RC2-CBC 128, DES-EDE-CBC 128, DES-EDE3-CBC 192, DESX-CBC 192, BF-CBC 128, RC2-40-CBC 40, RC2-64-CBC 64, AES-128-CBC, AES-128-CFB, AES-128-CFB1, AES-128-CFB8, AES-128-OFB, AES-128-GCM, AES-192-CFB, AES-192-CFB1, AES-192-CFB8, AES-192-OFB, AES-192-CBC, AES-192-GCM, AES-256-GCM, AES-256-CFB, AES-256-CFB1, AES-256-CFB8, AES-256-OFB, AES-256-CBC.
IPSEC
Supports XFRM, IKEv1, IKEv2 with 14 encryption methods (3DES, DES, AES128, AES192, AES256, AES128GCM8, AES192GCM8, AES256GCM8, AES128GCM12, AES192GCM12, AES256GCM12, AES128GCM16, AES192GCM16, AES256GCM16).
GRE
Supports GRE tunnel and GRE tunnel over IPsec.
PPTP / L2TP
Supports simultaneous client/server instances, L2TPv3, and L2TP over IPsec.
STUNNEL
Adds TLS encryption to existing clients and servers without program changes.
DMVPN
Supports scalable IPsec VPNs, Phase 2 & 3, Dual Hub support.
SSTP
Supports SSTP client instance.
ZEROTIER
Supports ZeroTier VPN client.
WIREGUARD
Supports WireGuard VPN client and server.
TINC
Supports client and server with encryption, authentication, and compression.
INDUSTRIAL PROTOCOLS
OPC UA
Supported modes: Client, Server. Connection type: TCP.
MODBUS
Supported modes: Server, Client. Connection type: TCP. Supports custom register blocks with 8/16/32-bit data formats, HEX, and ASCII.
DATA TO SERVER
Protocol: HTTP(S), MQTT, Azure MQTT. Extracts parameters from multiple sources/protocols and sends to a server. Supports custom LUA scripting.
MQTT GATEWAY
Supports Modbus MQTT Gateway for sending commands and receiving data from MODBUS Server.
DNP3
Supported modes: Station, Outstation. Connection type: TCP.
DLMS/COSEM
Supported modes: Client. Connection type: TCP. Supports standard utility meter data exchange.
API
Teltonika Networks Web API (beta) support with configurable endpoints for data retrieval and control.
MONITORING & MANAGEMENT
WEB UI
HTTP/HTTPS access with status, configuration, firmware update, CLI, troubleshooting, event logs, and Internet status.
FOTA
Firmware updates from server with automatic notifications.
SSH
Supports SSH v1/v2.
EMAIL
Email alerts for service statuses.
TR-069
Supports OpenACS, EasyCwmp, ACSLite, tGem, LibreACS, GenieACS, FreeACS, LibCWMP, and Friendly tech.
MQTT
MQTT broker and publisher support.
SNMP
Supports v1/v2/v3, traps, and brute-force protection.
JSON-RPC
Management API over HTTP/HTTPS.
RMS
Compatible with Teltonika Remote Management System.
IOT PLATFORMS
CUMULOCITY – CLOUD OF THINGS
Allows monitoring of device model, revision, serial number, WAN type/IP, with reboot and firmware upgrade actions.
AZURE IOT HUB
Supports Data to Server, Direct Method calls, Plug & Play integration, and zero-touch provisioning with Device Provisioning Service.
SYSTEM CHARACTERISTICS
CPU
Mediatek 580 MHz, MIPS 24KEc.
RAM
128 MB DDR2.
FLASH STORAGE
16 MB serial NOR flash.
FIRMWARE / CONFIGURATION
WEB UI
Update firmware from file or server, configuration backup, profiles management.
FOTA
Update firmware automatically.
RMS
Firmware/config updates for multiple devices.
KEEP SETTINGS
Firmware update without losing current configuration.
FACTORY SETTINGS RESET
Full factory reset restores all system settings, including IP address, PIN, and user data.
FIRMWARE CUSTOMISATION
Operating system: RutOS (OpenWrt-based Linux OS). Supports Busybox shell, Lua, C, C++. SDK package provided for development. GPL customization supported. Package manager available for software installation.
POWER
CONNECTOR
3-pos pluggable terminal block.
INPUT VOLTAGE RANGE
9–30 VDC, with reverse polarity and surge protection (>31 VDC, 10 µs max).
POE (PASSIVE)
Passive PoE over spare pairs via LAN1, 9–30 VDC, not IEEE 802.3af/at/bt compatible.
POWER CONSUMPTION
Idle: < 1 W; Max: < 2 W.
PHYSICAL INTERFACES
ETHERNET
2 x RJ45 ports, 10/100 Mbps.
STATUS LEDS
1 x WAN, 1 x LAN, 1 x Power LED.
POWER
1 x 3-pin connector.
ANTENNAS
1 x RP-SMA for Wi-Fi.
RESET
Reboot/User default/Factory reset button.
OTHER
1 x grounding screw.
PHYSICAL SPECIFICATION
CASING MATERIAL
Aluminium housing.
DIMENSIONS (W x H x D)
113.1 × 25 × 68.6 mm.
WEIGHT
142.3 g.
MOUNTING OPTIONS
Integrated DIN rail bracket; wall mount and flat surface (additional kit needed).
OPERATING ENVIRONMENT
Temperature: -40 °C to 75 °C. Humidity: 10%–90% non-condensing.
INGRESS PROTECTION
IP30.
REGULATORY & TYPE APPROVALS
REGULATORY
CE, UKCA, RCM, FCC, IC, CB, WEEE, RoHS, REACH.
EMC EMISSIONS & IMMUNITY
Standards: EN 55032:2015+A11:2020+A1:2020, EN 55035:2017+A11:2020, EN 301 489-1 V2.2.3, EN 301 489-17 V3.2.4.
ESD
EN 61000-4-2:2009.
RADIATED IMMUNITY
EN IEC 61000-4-3:2020.
EFT
EN 61000-4-4:2012.
SURGE IMMUNITY (ETHERNET PORTS)
EN 61000-4-5:2014 + A1:2017.
CS
EN 61000-4-6:2014.
RF
EN 300 328 V2.2.2.
SAFETY
CE: EN 62368-1:2014+A11:2017, EN IEC 62232:2017, EN 50385:2017.
RCM: AS/NZS 62368.1:2018.
CB: IEC 62368-1:2018.
SAFETY (ORDINARY LOCATIONS)
CE: EN IEC 62368-1:2020+A11:2020, EN IEC 62311:2020, EN 50665:2017.
RCM: AS/NZS 62368.1:2022.
CB: IEC 62368-1:2018.
High-Performance Industrial Cellular Routers
Carrier-grade throughput and low-latency routing for enterprise IoT, M2M telematics and critical connectivity.
Industrial-Grade Reliability & Durability
Rugged hardware and tested tolerance to extreme temperature, vibration and electrical noise for continuous operation.
Seamless Failover & Multi-WAN Connectivity
Dual SIM/eSIM, Ethernet redundancy and smart routing ensure uninterrupted service and automatic carrier failover.
Enterprise Security & Managed Network Support
Hardened firmware, VPN/MPLS support and professional managed services to protect data and simplify deployments.