Description
Teltonika RUTX09 Industrial or Vehicle Gateway Router
The Teltonika RUTX09 Industrial or Vehicle Gateway Router is an LTE-A Cat 6 cellular IoT router with dual-SIM, Carrier Aggregation, and four Gigabit Ethernet interfaces. Designed as a primary or backup internet source, it can offer up to 300 Mbps cellular speeds with high data throughput.
Flexible platform for Industrial IoT or vehicle Fleet Management. The Teltonika RUTX09 Industrial or Vehicle Gateway Router with GPS is a flexible robust platform.
4G LTE CAT 6
Cellular speeds up to 300Mbps with Carrier Aggregation
DUAL SIM
With auto failover, backup WAN and other switching scenarios
GIGABIT ETH
4 x Gigabit Ethernet ports with up to 128 port/tag-based VLANs supported
GNSS
Global Navigation Satellite System for location services and time synchronisation with. GPS, GLONASS, BeiDou, Galileo, QZSS
Standard Package Includes
- Router RUTX09
- 18 W PSU
- 2x Mobile antennas (swivel, SMA male)
- 1x GNSS antenna (adhesive, SMA male, 3 m cable)
- SIM Adapter kit
- Ethernet cable (1.5 m)
- QSG (Quick Start Guide)
- Packaging box
Teltonika RUTX09 Industrial or Vehicle Gateway Router Features:
MOBILE
- Mobile module: 4G (LTE) – Cat 6 up to 300 Mbps, 3G – Up to 42 Mbps
- SIM switch: 2 SIM cards, auto-switch cases: weak signal, data limit, SMS limit, roaming, no network, network denied, data connection fail, SIM idle protection
- Status: IMSI, ICCID, operator, operator state, data connection state, network type, CA indicator, bandwidth, connected band, signal strength (RSSI), SINR, RSRP, RSRQ, EC/IO, RSCP, data sent/received, LAC, TAC, cell ID, ARFCN, UARFCN, EARFCN, MCC, and MNC
- SMS: SMS status, SMS configuration, send/read SMS via HTTP POST/GET, EMAIL to SMS, SMS to EMAIL, SMS to HTTP, SMS to SMS, scheduled SMS, SMS autoreply, SMPP
- USSD: Supports sending and reading Unstructured Supplementary Service Data messages
- Black/White list: Operator black/white list (by country or separate operators)
- Band management: Band lock, Used band status display
- SIM idle protection service: When working with devices with two SIM slots, the one not currently in use will remain idle until the device switches to it, meaning that no data is used on the card until then
- APN: Auto APN
- Bridge Direct: connection (bridge) between mobile ISP and device on LAN
- Passthrough Router: assigns its mobile WAN IP address to another device on LAN
ETHERNET
- WAN 1 x WAN port 10/100/1000 Mbps, compliance with IEEE 802.3, IEEE 802.3u, 802.3az standards, supports auto MDI/MDIX crossover
- LAN 3 x LAN ports, 10/100/1000 Mbps, compliance with IEEE 802.3, IEEE 802.3u, 802.3az standards, supports auto MDI/MDIX crossover
NETWORK
- Routing : Static routing, Dynamic routing (BGP, OSPF v2, RIP v1/v2, EIGRP, NHRP), Policy based routing
- Network protocols : TCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, SFTP, FTP, SMTP, SSL/TLS, ARP, VRRP, PPP, PPPoE, UPNP, SSH, DHCP, Telnet, SMPP, SNMP, MQTT, Wake On Lan (WOL)
- VoIP passthrough support : H.323 and SIP-alg protocol NAT helpers, allowing proper routing of VoIP packets
- Connection monitoring : Ping Reboot, Wget Reboot, Periodic Reboot, LCP and ICMP for link inspection
- Firewall : Port forward, traffic rules, custom rules
- Firewall status page: View all your Firewall statistics, rules, and rule counters
- Ports management: View device ports, enable and disable each of them, turn auto-configuration on or off, change their transmission speed etc
- Network topology: Visual representation of your network, showing which devices are connected to which other devices
- Hotspot : Captive portal (hotspot), internal/external Radius server, Radius MAC authentication, SMS authorisation, internal/external landing page, walled garden, user scripts, URL parameters, user groups, individual user or group limitations, user management, 9 default customisable themes and optionality to upload and download customised hotspot themes
- DHCP: Static and dynamic IP allocation, DHCP relay, DHCP server configuration, status, static leases: MAC with wildcards
- Traffic priority: queuing by source/destination, service, protocol or port, WMM, 802.11e
- DDNS: Supported >25 service providers, others can be configured manually
- Network backup: Wi-Fi WAN, Mobile, VRRP, Wired options, each of which can be used as an automatic Failover
- Load balancing: Balance Internet traffic over multiple WAN connections
- SSHFS: Possibility to mount remote file system via SSH protocol
- VRF support: Initial virtual routing and forwarding (VRF) support
SECURITY
- Authentication: Pre-shared key, digital certificates, X.509 certificates, TACACS+, Radius, IP & login attempts block, time-based login blocking, built-in random password generator
- Firewall: Pre-configured firewall rules can be enabled via WebUI, unlimited firewall configuration via CLI; DMZ; NAT; NAT-T
- Attack prevention: DDOS prevention (SYN flood protection, SSH attack prevention, HTTP/HTTPS attack prevention), port scan prevention (SYN-FIN, SYN-RST, X-mas, NULL flags, FIN scan attacks)
- VLAN: Port and tag-based VLAN separation
- Mobile quota control: Mobile data limit, customizable period, start time, warning limit, phone number
- WEB filter: Blacklist for blocking out unwanted websites, Whitelist for specifying allowed sites only
- Access control: Flexible access control of SSH, Web interface, CLI and Telnet
VPN
- OpenVPN: Multiple clients and a server can run simultaneously, 27 encryption methods
- OpenVPN Encryption: DES-CBC 64, RC2-CBC 128, DES-EDE-CBC 128, DES-EDE3-CBC 192, DESX-CBC 192, BF-CBC 128, RC2-40-CBC 40, CAST5-CBC 128, RC2-64-CBC 64, AES-128-CBC 128, AES-128-CFB 128, AES-128-CFB1 128, AES-128-CFB8 128, AES-128-OFB 128, AES-128-GCM 128, AES-192-CFB 192, AES-192-CFB1 192, AES-192-CFB8 192, AES-192-OFB 192, AES-192-CBC 192, AES-192-GCM 192, AES-256-GCM 256, AES-256-CFB 256, AES-256-CFB1 256, AES-256-CFB8 256, AES-256-OFB 256, AES-256-CBC 256
- IPsec: IKEv1, IKEv2, with 14 encryption methods for IPsec (3DES, DES, AES128, AES192, AES256, AES128GCM8, AES192GCM8, AES256GCM8, AES128GCM12, AES192GCM12, AES256GCM12, AES128GCM16, AES192GCM16, AES256GCM16)
- GRE: GRE tunnel, GRE tunnel over IPsec support
- PPTP, L2TP: Client/Server instances can run simultaneously, L2TPv3, L2TP over IPsec support
- Stunnel: Proxy designed to add TLS encryption functionality to existing clients and servers without any changes in the program’s code
- DMVPN: Method of building scalable IPsec VPNs
- SSTP: SSTP client instance support
- ZeroTier: ZeroTier VPN client support
- WireGuard: WireGuard VPN client and server support
- Tinc: Tinc offers encryption, authentication and compression in it’s tunnels. Client and server support.
- Tailscale: Tailscale offers speed, stability, and simplicity over traditional VPNs. Encrypted point-to-point connections using the open source WireGuard protocol