MOBILE
|
|
Mobile module
|
4G (LTE) – Cat 4 up to 150 Mbps, 3G – Up to 42 Mbps, 2G – Up to 236.8 kbps |
Status
|
Signal strength (RSSI), SINR, RSRP, RSRQ, EC/IO, RSCP, Bytes sent/received, connected band, IMSI, ICCID |
SMS
|
SMS status, SMS configuration, send/read SMS via HTTP POST/GET, EMAIL to SMS, SMS to EMAIL, SMS to HTTP, SMS to SMS, scheduled SMS, SMS autoreply, SMPP |
Black/White list
|
Operator black/white list |
Band management
|
Band lock, Used band status display |
APN
|
Auto APN |
Bridge
|
Direct connection (bridge) between mobile ISP and device on LAN |
Passthrough
|
Router assigns its mobile WAN IP address to another device on LAN |
Multiple PDN (optional)
|
Possibility to use different PDNs for multiple network access and services (not available in standard FW) |
WIRELESS
|
|
Wireless mode
|
IEEE 802.11b/g/n, Access Point (AP), Station (STA) |
WiFi security
|
WPA2-Enterprise - PEAP, WPA2-PSK, WEP, WPA-EAP, WPA-PSK; AES-CCMP, TKIP, Auto Cipher modes, client separation |
SSID
|
SSID stealth mode and access control based on MAC address |
WiFi users
|
Up to 50 simultaneous connections |
Wireless Hotspot
|
Captive portal (Hotspot), internal/external Radius server, built in customizable landing page |
ETHERNET
|
|
WAN
|
1 x WAN port (can be configured to LAN) 10/100 Mbps, compliance with IEEE 802.3, IEEE 802.3u standards, supports auto MDI/MDIX |
LAN
|
1 x LAN port, 10/100 Mbps, compliance with IEEE 802.3, IEEE 802.3u standards, supports auto MDI/MDIX |
NETWORK
|
|
Routing
|
Static routing, Dynamic routing (BGP, OSPF v2, RIP v1/v2, RIPng, OSPF6) |
Network protocols
|
TCP, UDP, IPv4, IPv6, ICMP, NTP, DNS, HTTP, HTTPS, FTP, SMTP, SSL v3, TLS, ARP, VRRP, PPP, PPPoE, UPnP, SSH, DHCP, Telnet client, SNMP, MQTT, Wake On Lan (WOL) |
VoIP passthrough support
|
H.323 and SIP-alg protocol NAT helpers, allowing proper routing of VoIP packets |
Connection monitoring
|
Ping Reboot, Wget Reboot, Periodic Reboot, LCP and ICMP for link inspection |
Firewall
|
Port forward, traffic rules, custom rules |
DHCP
|
Static and dynamic IP allocation, DHCP Relay, Relayd |
QoS / Smart Queue Management (SQM)
|
Traffic priority queuing by source/destination, service, protocol or port, traffic priority queuing by source/destination, service, protocol or port, WMM, 802.11e |
DDNS
|
Supported >25 service providers, others can be configured manually |
Network backup
|
VRRP, Mobile, Wired and WiFi WAN options, each of which can be used as backup, using automatic Failover |
Load balancing
|
Balance your internet traffic over multiple WAN connections |
SSHFS (optional)
|
Possibility to mount remote file system via SSH protocol (not available in standard FW) |
SECURITY
|
|
Authentication
|
Pre-shared key, digital certificates, X.509 certificates |
Firewall
|
Pre-configured firewall rules can be enabled via WebUI, unlimited firewall configuration via CLI; DMZ; NAT; NAT-T |
Attack prevention
|
DDOS prevention (SYN flood protection, SSH attack prevention, HTTP/HTTPS attack prevention), port scan prevention (SYN-FIN, SYN-RST, X-mas, NULL flags, FIN scan attacks) |
VLAN
|
Port and tag based VLAN separation |
Mobile quota control
|
Set up custom data limits for the SIM card |
WEB filter
|
Blacklist for blocking out unwanted websites, whitelist for specifying allowed sites only |
Access control
|
Flexible access control of TCP, UDP, ICMP packets, MAC address filter |
VPN
|
|
OpenVPN
|
Multiple clients and server can be running simultaneously, 12 encryption methods |
OpenVPN Encryption
|
DES-CBC, RC2-CBC, DES-EDE-CBC, DES-EDE3-CBC, DESX-CBC, BF-CBC, RC2-40-CBC, CAST5-CBC, RC2-64-CBC, AES-128-CBC, AES-192-CBC, AES-256-CBC |
IPsec
|
IKEv1, IKEv2, supports up to 4 x VPN IPsec tunnels (instances), with 5 encryption methods (DES, 3DES, AES128, AES192, AES256) |
GRE
|
GRE tunnel |
PPTP, L2TP
|
Client/Server services can run simultaneously |
Stunnel
|
Proxy designed to add TLS encryption functionality to existing clients and servers without any changes in the programs' code |
SSTP
|
SSTP client instance support |
ZeroTier
|
ZeroTier VPN |
WireGuard
|
WireGuard VPN client and server support |
MODBUS
|
|
MODBUS TCP SLAVE
|
|
ID filtering
|
Respond to one ID in range [1;255] or any |
Allow Remote Access
|
Allow access through WAN |
Custom registers
|
MODBUS TCP custom register block requests, which read/write to a file inside the router, and can be used to extend MODBUS TCP Slave functionality |
MODBUS TCP MASTER
|
|
Supported functions
|
01, 02, 03, 04, 05, 06, 15, 16 |
Supported data formats
|
8 bit: INT, UINT; 16 bit: INT, UINT (MSB or LSB first); 32 bit: float, INT, UINT (ABCD (big-endian), DCBA (little-endian), CDAB, BADC) |
MODBUS DATA TO SERVER
|
|
Protocol
|
HTTP(S), MQTT, Azure MQTT |
MQTT GATEWAY
|
|
MQTT gateway
|
Allows sending commands and receiving data from MODBUS Master through MQTT broker |