Description
The RUT140 is a compact industrial Ethernet router, enhancing security through network isolation for end devices. Equipped with two Ethernet ports, DIN rail bracket, and an industrial 3-pin connector, it ensures seamless connectivity and easy installation. The router comes with RutOS, Wi-Fi 4, and supports industrial protocols such as Modbus, DLMS, DNP3, and OPC UA, and is compatible with RMS for efficient remote and on-site management.
Standard package*
- Router RUT140
- 3-pin power connector
- QSG (Quick Start Guide)
- Packaging box
*Standard package contents may differ based on standard order codes.
Features
Wireless
Wireless Mode | - 802.11b/g/n (Wi-Fi 4) |
- Access Point (AP) | |
- Station (STA) | |
Wi-Fi Security | - WPA2-Enterprise: PEAP |
- WPA2-PSK, WPA-EAP, WPA-PSK | |
- WPA3-SAE, WPA3-EAP, OWE | |
- AES-CCMP, TKIP, Auto-cipher modes | |
- Client separation | |
- EAP-TLS with PKCS#12 certificates | |
- Disable auto-reconnect | |
- 802.11w Protected Management Frames (PMF) | |
SSID/ESSID | - ESSID stealth mode |
Wi-Fi Users | - Supports up to 50 simultaneous connections |
Wireless Connectivity Features | - Wireless mesh (802.11s) |
- Fast roaming (802.11r) | |
- Relayd | |
- BSS transition management (802.11v) | |
- Radio resource measurement (802.11k) | |
Wireless MAC Filter | - Allowlist |
- Blocklist | |
Wireless QR Code Generator | - Users can automatically connect to the network by scanning a QR code |
TravelMate | - Forward Wi-Fi hotspot landing page to subsequent connected devices |
Ethernet
WAN | - 1 x WAN port, 10/100 Mbps |
- Compliance with IEEE 802.3, IEEE 802.3u, 802.3az standards | |
- Supports auto MDI/MDIX crossover | |
LAN | - 1 x LAN port, 10/100 Mbps |
- Compliance with IEEE 802.3, IEEE 802.3u, 802.3az standards | |
- Supports auto MDI/MDIX crossover |
Network
Routing | - Static routing |
- Dynamic routing (BGP, OSPF v2, RIP v1/v2, EIGRP, NHRP) | |
- Policy-based routing | |
Network Protocols | TCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, FTP, SMTP, SSL v3, TLS, ARP, VRRP, PPP, PPPoE, UPNP, SSH, DHCP, Telnet, SMPP, SNMP, MQTT, Wake On LAN (WOL), VXLAN |
VoIP Passthrough Support | - H.323 and SIP-ALG protocol NAT helpers |
- Proper routing of VoIP packets | |
Connection Monitoring | - Ping Reboot |
- Wget Reboot | |
- Periodic Reboot | |
- LCP and ICMP for link inspection | |
Firewall | - Port forwarding |
- Traffic rules | |
- Custom rules | |
- TTL target customization | |
- Firewall status page with statistics, rules, and counters | |
Ports Management | - View and manage device ports |
- Enable/disable ports | |
- Adjust transmission speed | |
Network Topology | Visual representation of the network |
Shows device connections | |
DHCP | - Static and dynamic IP allocation |
- DHCP relay | |
- Server configuration | |
- Status and static leases (MAC with wildcards) | |
QoS/SQM | - Traffic priority queuing |
- By source/destination, service, protocol, or port | |
- WMM, 802.11e | |
DDNS | - Support for >25 service providers |
- Manual configuration available | |
DNS over HTTPS | - Secure DNS resolution via DNS over HTTPS proxy |
Network Backup | - Wi-Fi WAN, VRRP, Wired options |
- Automatic failover | |
Load Balancing | - Distribute Internet traffic across multiple WAN connections |
Hotspot | - Captive portal |
- Internal/external Radius server | |
- Radius MAC authentication | |
- SMS authorization | |
- SSO authentication | |
- Internal/external landing pages | |
- Walled garden, user scripts, URL parameters | |
- User groups, individual/group limitations | |
- User management with 9 customizable themes | |
- Option to upload/download custom themes | |
SSHFS | Mount remote file systems via SSH protocol |
Traffic Management | - Real-time monitoring |
- Wireless signal charts | |
- Traffic usage history |
Security
Authentication | Pre-shared key, Digital certificates, X.509 certificates, TACACS+, Internal & External RADIUS users, IP & login attempts block, Time-based login blocking, Built-in random password generator |
Firewall | Preconfigured rules via WebUI, Unlimited configuration via CLI, DMZ, NAT, NAT-T, NAT64 |
Attack Prevention | DDoS prevention (SYN flood, SSH, HTTP/HTTPS attacks), Port scan prevention (SYN-FIN, SYN-RST, X-mas, NULL flags, FIN scan attacks) |
VLAN | Port-based VLAN separation, Tag-based VLAN separation |
Web Filter | Blacklist for blocking unwanted websites, Whitelist for specifying allowed sites |
Access Control | Flexible access control for SSH, Web interface, CLI, and Telnet |
SSL Certificate Generation | Let's Encrypt, SCEP |
802.1x | Port-based network access control server |
VPN
OpenVPN | Multiple clients and a server can run simultaneously, 27 encryption methods |
OpenVPN Encryption | DES-CBC 64, RC2-CBC 128, DES-EDE-CBC 128, DES-EDE3-CBC 192, DESX-CBC 192, BF-CBC 128, RC2-40-CBC 40, CAST5-CBC 128, RC2-64-CBC 64, AES-128-CBC 128, AES-128-CFB 128, AES-128-CFB1 128, AES-128-CFB8 128, AES-128-OFB 128, AES-128-GCM 128, AES-192-CFB 192, AES-192-CFB1 192, AES-192-CFB8 192, AES-192-OFB 192, AES-192-CBC 192, AES-192-GCM 192, AES-256-GCM 256, AES-256-CFB 256, AES-256-CFB1 256, AES-256-CFB8 256, AES-256-OFB 256, AES-256-CBC 256 |
IPsec | XFRM, IKEv1, IKEv2 with 14 encryption methods (3DES, DES, AES128, AES192, AES256, AES128GCM8, AES192GCM8, AES256GCM8, AES128GCM12, AES192GCM12, AES256GCM12, AES128GCM16, AES192GCM16, AES256GCM16) |
GRE | GRE tunnel, GRE tunnel over IPsec support |
PPTP, L2TP | Client/Server instances can run simultaneously, L2TPv3, L2TP over IPsec support |
Stunnel | Proxy designed to add TLS encryption functionality to existing clients and servers |
DMVPN | Scalable IPsec VPNs, Phase 2 and Phase 3 support, Dual Hub support |
SSTP | SSTP client instance support |
ZeroTier | ZeroTier VPN client support |
WireGuard | WireGuard VPN client and server support |
Tinc | Tinc offers encryption, authentication, and compression in its tunnels; client and server support |