Tel.: +49 7121 539 550|
B2B Shop

VT AIR 300 Industrial Router

All-in-One: Router/Firewall/Modem/VPN

4 x RJ45 / 2 x SFP+
Optional: 2 x DSL (VDSL or SHDSL) / 1 x LTE / 3G

Contact us. We are happy to help.

 1.099,00 ( 1.307,81 incl. VAT)

Plus 19% VAT
Delivery Time: On Request
SKU: VTAIR-300 Categories: , Brand:

Proruct Description

VT AIR 300 Industrial Router

The Advanced Industrial Router VT AIR 300 is a German technology product that was specially developed for a demanding industrial environment and its requirements. Due to its modern technology (SHDSL, VDSL, LTE) and its numerous innovative solutions, the VT AIR 300 is the next generation of industrial routers.

The Advanced Industrial Router VT AIR 300 is tailor-made for critical infrastructures and complex industrial environments that have to be renewed or even completely repositioned due to the digital change. In network technology, the intelligent router marks the logical step into the digital age of Industry 4.0 and 5G technology – and thus the beginning of modern network technology.

Modern, highly developed societies rely on a smoothly functioning infrastructure. It forms their backbone. With intelligent IT, critical infrastructures can be protected more effectively.

4x RJ45 (1000/100/10 Mbit/s)
2x SFP+ (10000/1000 Mbit/s)
2x DSL (VDSL or SHDSL) Optional
24V Phoenix Connector
DIN Rail Connector
LTE/3G Optional

Key Facts


  • Modular Hardware – Exactly for your needs

  • Security – Always state of the art Technology

  • VT AIR Software – Feature Rich Firewall

Best For

  • Energy Grid Operator

  • Energy Supplier and Public Utility Companies

  • Smart City Backend

  • Wind Power Operator

  • Industrial Network Operator

  • Industrial Edge Computing

VT AIR – DSL and VPN for fast and secure networks

Critical infrastructures require modern as well as innovative network technologies in order to be up to date within the context of the digital transformation and meet the increasing security requirements. The VT AIR 300 not only offers SHDSL, VDSL, SFP and LTE, but also provides high level encryption technology. The innovative firewall technology can also be retrofitted at any time and, thanks to over-the-air updates, is always up to date with the latest security standards.

VT AIR – modular and retrofittable for the highest requirements

Wind energy is an important part of the renewable energy transition that is developing steadily and quickly. Particularly in such an environment, it is important to use innovative network technologies that not only meet the highest security requirements, but also have a modular structure and can be retrofitted at any time. This is guaranteed with the VT AIR 300. Thanks to the modular software structure, individual components can be updated, and any security vulnerabilities closed immediately. The Docker applications also allow you to use your own applications and control software.

VT AIR – modern encryption algorithms for better security

Cities keep changing their characteristics. Many cities will transform themselves into smart cities in the coming years and will therefore be completely networked. As a result, operators will be dependent on the most modern network technology, if they want to secure the associated and presumably rapidly increasing data transfers. VT AIR stands for high encryption, security and offers hardware that can be used in complex environments with high temperatures and consequently forms the backend of modern cities.

VT AIR – central management for intelligent networking

The digital transformation is causing a change in building construction. The future belongs to smart buildings that are intelligently designed and continuously networked. Elevators, heating or lighting - all areas will be intelligent in the future and require innovative network technology with central management, state-of-the-art software tools and fast connections to manage, maintain and control intelligent systems. VT AIR offers operators of smart buildings precisely these advantages and also robust technology.

VT AIR - backend networking for intelligent machines

Industry is undergoing the greatest upheaval in its history - it is the fourth industrial revolution that gives machines intelligence. In order for the communication between the machines and the control center to function properly, a backend is required that operates securely and stable in the background. Only with these requirements in place, intelligent networking of machines can be used in a secure and reliable way. Thanks to its state-of-the-art software technology, VT AIR enables a strong backbone that grows with the demands of digital change.

Modular Hardware – Exactly for your needs

vtair300-nodsl-nolte-600x600.jpegno DSL + no LTE
vtair300-2dsl-lte-600x600.jpeg2x DSL + LTE

The VT AIR 300 Industrial Router is extremely flexible.
The VT AIR 300 optionally offers up to 2x DSL (SHDSL or VDSL) and LTE/3G.
The highlight: the VT AIR 300 can be retrofitted at any time.

4x RJ45, 2x SFP+ and 

2x SHDSL + no LTE2x VDSL + no LTE1x SHDSL + 1x VDSL + no LTEno DSL + no LTE2x SHDSL + LTE2x VDSL + LTE1x SHDSL + 1x VDSL + LTELTE + no DSL1x SHDSL + no LTE1x VDSL + no LTE1x SHDSL + LTE1x VDSL + LTE

Security – Always state of the art Technology


Thanks to our modular software structure, individual components of the system can be updated individually.
Voleatech updates security holes immediately!
A local update server can be used.


OpenVPN and IPSec

With the latest encryption algorithms so that your data are transmitted securely.

AES 128/192/256AES-GCM 128/192/256SHA 512/384/256/1DH Gruppe 1-31


VT AIR offers you users and groups with individual rights.

Users can be authenticated via LDAP, so that you can operate a central user management server.

Optionally, you can activate the 2 factor authentication for individual users so that your critical infrastructure is secure.

VT AIR – Feature Rich

VT AIR not only combines the advantages of two worlds, it is also particularly feature rich and takes the interaction of the firewall to a new level.

The diverse features of VT AIR are unique in the market.
With VT AIR, companies are securely positioned, flexible and have state-of-the-art software for their firewall at all times – without license costs.

Ultimately, VT AIR is future-proof in a dynamic business and industrial world.

Advanced Threat Protection2020-10-27T12:05:40+01:00

VT AIR offers a variety of advanced threat protection mechanisms.

Blocking unwanted and unsafe websites via DNS sinkholing technology and advanced web filters with virus scanners and content filtering.

Various intrusion detection and protection rules are also available.

Application Control2020-11-28T12:24:44+01:00

Application Control allows you to create firewall rules on the application level.

Traditional firewalls, which only identify ports, protocols and IP addresses, cannot identify and control applications, but a next generation firewall can. VT AIR Next Generation Firewall allows you to create firewall rules based on applications.

Intrusion Detection and Protection2020-08-25T11:36:28+02:00

The Intrusion Detection and Prevention System (IDS / IPS) of the VT AIR Firewall significantly improves network security by providing complete and comprehensive real-time network protection against a wide range of network threats, vulnerabilities, exploits and threats in operating systems and applications.

VT AIR scans network traffic using powerful and comprehensive rules and signature language to detect complex threats with the Surricata program.

Suricata is an open source based intrusion detection system and intrusion prevention system

Automatic signature updates are provided regularly to ensure that the VT AIR Firewall is always up to date.

Network Flow Fastpath2020-08-25T11:39:23+02:00

VT AIR supports the acceleration of TCP and UDP connections using Network Flow Fastpath.

For this purpose, the NFTables flow table offload technology is used, which accelerates network traffic by a factor of 2-3, all with the usual network security.

With Flowtables you can accelerate packet forwarding in software with the help of a state that no longer runs through the entire network stack after a connection has been established.

Multi Factor Authentication2020-08-25T11:38:47+02:00

Multi-factor authentication (MFA) has become the standard to prevent unauthorized access to business-critical information.

VT AIR supports multi-factor authentication with the TOTP standard for the web interface and OpenVPN to protect your infrastructure in the best possible way.

Stateful Deep Package Inspection2020-08-25T11:37:59+02:00

VT AIR is a stateful firewall. A stateful firewall is a network firewall that tracks the operational status and characteristics of network connections that pass through them. The firewall is configured to distinguish between legitimate network packets for different connection types.

Packets are analyzed with NFTables (Deep Package Inspection) and allowed or blocked on the basis of firewall rules in order to ensure optimal protection of the network traffic.

Web Control/Web Protection2020-08-25T11:37:26+02:00

Advanced Web Protection combines advanced analysis functions, blacklists and ACLs to optimally protect your web traffic.

With the built-in virus scanner, you can optimally protect your web traffic.

VT AIR uses the Squid program, which is characterized by its diverse functions and security.

The web filter can be set up as a proxy, but also as a transparent HTTP / HTTPS proxy.


With XDP, network functions (eBPF) can be executed as soon as a packet reaches the network card and before it is moved up into the kernel’s network subsystem, which leads to a significant increase in packet processing speed. This technology allows us to achieve significantly faster firewall speeds.

In general, all of our VT AIR appliances are already prepared for XDP / eBPF.

This technology will be available in VT AIR in 2021.

Authenticator 802.1X2020-08-25T11:45:35+02:00

The IEEE 802.1X standard provides a general method for authentication and authorization in IEEE 802 networks. At the network access, a physical port in the LAN, a logical IEEE 802.1Q VLAN or a WLAN, a participant is authenticated by the authenticator, who uses an authentication server (RADIUS server) to check the authentication information transmitted by the participant (supplicant) and, if necessary, the Permits or denies access to the services offered by the authenticator (LAN, VLAN or WLAN).

VT AIR has both an 802.1X authenticator and an 802.1X supplicant.


A captive portal is a facility that is usually used in public, wireless networks in order to link the access of end devices such as laptops or smartphones to the underlying network or the Internet to the user’s consent to certain usage rules. In addition, the network provider can link access to a specific user account. VT AIR allows you to set up a captive portal for each interface with its own HTML page for authentication.


VT AIR comes with a built-in IPv4 and IPv6 Kea DHCP server.

Whether static or dynamic DHCP addresses and multiple networks, you can supply your clients with addresses without any problems.

The Kea DHCP server is also capable of high availability and can form an automatic failover with several VT AIRs.


VT AIR comes with the well-known Unbound DNS Server, which allows it to run as a stand-alone or as a forwarding DNS server. Unbound allows you to define any host overrides and domain forwarding. For security reasons, VT AIR uses different DNS block lists with categories. Encrypted DNS and DNSSEC are also not a problem.


Docker is a range of platform-as-a-service products that use virtualization at the operating system level to deliver software in packages. These are known as containers. Containers are isolated from each other and bundle their own software, libraries and configuration files. They can communicate with each other via precisely defined channels. VT AIR has support and management via the WebGUI for Docker.


HAProxy is free, open source software that provides a highly available load balancer and proxy server for TCP and HTTP-based applications that distribute requests across multiple servers. VT AIR has full support for setting up and operating a HAProxy via the web interface.


ntopng is a software for monitoring data traffic on a computer network. It was developed as a powerful and resource-effective replacement for ntop. With ntopng on VT AIR you can analyze and monitor your network traffic per interface, host or network segment.


Network Time Protocol is the most common method of synchronizing a system’s software clock with Internet time servers. It is designed to mitigate the effects of variable network latency and can typically limit the time over the public Internet to ten milliseconds. The accuracy in local networks is even better with up to a millisecond. VT AIR comes with an NTP server for the network clients.


The Simple Network Management Protocol is a standard Internet protocol used to collect and organize information about managed devices on IP networks and modify that information to change device behavior. VT AIR supports SNMPv1 / v2 and the encrypted SNMPv3 for high security. Read all the attributes of the firewall with SNMP, with the special VT AIR SNMP mibs you have full control over your monitoring.


FRR is used for dynamic routing, which allows BGP and OSPF (v4 or v6).

Firewall Performance2020-08-25T12:02:48+02:00

VT AIR offers high firewall performance with NFTables, Flowtable Offload Technology and, in the future, XDP / eBPF.

High Availability2020-08-25T12:02:31+02:00

VT AIR comes fully equipped with high availability functionality. Use virtual IPs (VRRP) between multiple VT AIRs to enable failover without interruptions. The VT AIR configuration is automatically transferred from the master to the slaves and DHCP can also be used in HA operation to compensate for a failure. High availability is a must for critical installations and VT AIR enables smooth operation.


VT AIR offers a multitude of options for using and configuring interfaces. Real Interface, VLAN, QinQ, Bond, Bridge, PPP, PPTP, GRE, IPIP, SIT SHDSL, VDSL and MacVLAN are supported. In addition, various settings can be made IPv4 / IPv6, Static IP, DHCP Client, SLAAC, Mac, MTU, MSS, Link Mode, 802.1x (Suplicant) … and much more.


VT AIR offers static and dynamic routes. Gateways can be monitored using ping and intelligently interconnected in routing tables, either in failover or load balancing mode. A policy routing can also be set using firewall rules or a routing table can be assigned to clients. FRR is used for dynamic routing, which allows for BGP and OSPF (v4 or v6).


QoS is implemented with the Linux tool Traffic Control (TC) and allows incoming (ingress) or outgoing (egress) traffic to be classified according to categories and rules. QoS can easily be assigned to clients via firewall rules.


Internet Protocol Security (IPsec) is a protocol suite that enables secure communication over potentially insecure IP networks such as the Internet. VT AIR offers full support for IPSec with Strongswan. Whether tunnel or transport mode, with or without an interface, with VT AIR you can connect your locations conveniently and securely.


OpenVPN is free software for setting up a virtual private network (VPN) via an encrypted TLS connection. VT AIR supports OpenVPN as a client or as a server and enables you to set up a VPN for your employees quickly and easily.


WireGuard is free software for setting up a virtual private network (VPN) via an encrypted connection. WireGuard enables a very fast and modern VPN. VT AIR supports WireGuard natively, whether for clients, site to site or mesh.


WebVPN allows you to access an RDP / VNC / SSH or Telnet server via a WebVPN portal via the browser. VT AIR allows your users to access the devices with the browser without a client.


The modern, easily understandable and dynamic web interface, which is created in numerous languages, allows you to make all settings conveniently and easily – in the interests of the user.

REST API2020-08-25T12:08:13+02:00

VT AIR comes with a modern REST API interface, via which all settings can be made conveniently and easily. Regardless of whether you have 1 or 1000 devices, with the REST API, the settings on all devices can be changed in seconds.

Central Management Portal2020-11-20T12:21:02+01:00

VT AIR offers a central management portal where you can see all devices in one place and thus easily access them. With our secure and innovative connector, you can directly access the web interface or the command line in the portal or run updates directly.

Technical Data




4 Core ARM64 (Marvell ARMADA 8040)




16 GB eMMC


USB Console


2x SFP+/SFP (10000/1000 Mbit/s)

4x RJ45 (1000/100/10 Mbit/s)


2x USB 2.0


12/24 Volt:

1x 2,5mm Barrel Connector with turning Connector

1x Phoenix Power Connector

Power Consumption

Normal: 10 Watt
1x DSL: 12 Watt
2x DSL: 14 Watt
Maximum: 24 Watt

Optional Extension


1x LTE

1x mSATA


1 Channel Mode
annex A/B
TCPAM Auto/4/8/16/32/64/128
Bitrate Auto/32/64/128/256/512/1024/2048/4096/8192/16384 kbit/s
ETSI SDSL, ETSI SDSL.bis, IEEE EFM, ITU G.shdsl, ITU G.shdsl.bis, ITU G.hs, ITU
Emergency Freeze
Modes: Point to Point-, Star–, Line-, and Ring (2 Modems required)


ADSL ITU-T G.992.1/3/5
VDSL2 ITU-T G.993.2 (Profiles 8, 12, 17, 30 MHz)
TR-048/067, TR-100, TR-114, ITU-T G.inp, ITU-T G.vector
Annex B/J or A/I
ADSL2+ up to 24 Mbps, VDSL2 up to 200 Mbps


LTE: B1 (2100), B2 (1900), B3 (1800), B4 (AWS), B7 (2600), B12 (700ac), B13 (700c), B20 (800DD), B5 (850), B25 (1900), B26 (US 850 Ext), B29 (US 700de Lower), B41 (TDD 2500), B30 (2300 WCS)
3G/UMTS: B1 (2100), B2 (1900), B8 (900), B4 (AWS), B3 (1800), B5 (850)
300Mbit/s Download, 50Mbit/s Upload


-20C – 50C (VDSL)

-20C – 50C (SHDSL)

-40C – 60C


L: 180 mm W: 125 mm H: 38 mm
DIN Rail Mount


DIN RAIL, Phoenix Connector



Industrial EMC:
Electromagnetic Immunity: EN 55024, EN61000-4-2, EN61000- 4-3, EN61000-4-4, EN61000-4-
5, EN61000-4-6, EN61000-4-8, EN61000-4-11, EN 61000-6-2, EN 61326-1, IEC 61131-2
Electromagnetic Emission: FCC Class B, EN 55032, EN 61000-3-2, EN 61000-3-3, EN 61000-6-4
Safety: EN 60950-1


12 Months

VT AIR OS is our specially developed, Linux based, operating system. The intuitively usable OS is at the core of the VT AIR Software. Based upon the “Debian Linux Distribution” it gives us flexibility, access to a fast amount of precompiled software packages and stable software.

VT AIR packages are installed on top of the debian packages and allow you to manage and use all the features of a great network firewall and router.

Read more in the VT AIR Documentation.




Modern and dynamic Webgui

All settings can easily be done in the Webgui

Dynamic Dashboard with widgets

Languages: German, English, Spanish


Webgui (Copyright Voleatech GmbH)
Contains Open Source Software


Real Interface, VLAN, QinQ, Bond, Bridge, PPP, PPTP, GRE, GRETAP, IPIP, SIT SHDSL, VDSL, MacVLAN

Interface Settings

IPv4/IPv6, Static IP, DHCP Client, SLAAC, Mac, MTU, MSS, Link Mode, and so on.


VLAN aware Bridge
untagged and tagged VLANs per Port
Settings for Treeprio, Maxhops, Aging, BPDUFilter, Pathcosts, Restricted Root Port


Modes: Loadbalance Round Robin, Active/Backup, Load Balance with XOR, LAG (802.3ad), Adaptive transmit load balancing, Adaptive Loadbalancing


Aliases, Firewalling, NAT
Filtering in Layer 2, Layer 3 or Layer 4
Extended Filter settings


Cron, DNS, DHCP (v4+v6), DHCP Relay, NTP, SNMP (v2/v3), DynDNS,


Limiter, Traffic Shaping


Static, BGP, OSPF, Multiple Routing Tables, Gateway Groups and Load Balancing


OpenVPN (Certificates, User, Shared Key)
IPSec IKEv1/IKEv2 (Certificates and PSK)


Certificate Management, Virtual IPs


Docker Apps, Individuelle Apps


APC UPS, Avahi, 802.1X Authenticator, CaptivePortal, HAProxy Reverse Proxy, IG- MPProxy, Ntopng, Suricata IDS/IPS, Squid Proxy and Webfilter



Hash: MD5, SHA1, SHA224, SHA256, SHA384, SHA512, ecdsa-with-SHA1, usw.


Webconsole, iftop, ping, tcpdump, traceroute, backups, usw.


ARP & ND, ARPing, Auditlogs, BGP, Bridge, DHCP, Dynamic Routing, Gate- ways, Interfaces, IPSec, Logfiles, Remote Syslog, OpenVPN, OSPF, QoS, Routes, Services, SFP, SHDSL, States, STP


Extensive System Settings

User- and Groupmanagement

SSH Root access

REST API (Automation)

Further functionality


Packages per Second

Test Speed
Maximum ~1.300.000 pps
Max. Connections ~5.000.000


Test Speed
Firewall 16.00 Gb/s
App Control/Intrusion Protection 1.50 Gb/s
IPSec VPN (AES-GCM 256) 1.36 Gb/s
OpenVPN (AES-256 GCM) 320 Mb/s
Wireguard 1.06 Gb/s

IMIX Traffic

Test Speed
Firewall 2.60 Gb/s
App Control/Intrusion Protection 772 Mb/s
IPSec VPN (AES-CBC 256/SHA 256) 520 Mb/s
OpenVPN (AES-256 GCM) 96 Mb/s
Wireguard 424 Mb/s

1. Throughput Data are based on bidirectional traffic

2. Iperf3 Traffic is TCP 1460 Bytes + TCP framing

3. IMIX Traffic is sets of UDP Traffic 7x 64 Byte packets, 4x 594 Byte packets, 1x 1514 Byte packets (Ethernet FCS not counted)

4. App Control/Intrusion Protection is Worst Case Performance


SHDSL is a symmetric DSL transmission technology in digital wide area networks.
SHDSL allows point to point DSL connections between 2 SHDSL modems.

SHDSL 1 Channel Modem

1 Channel Mode
annex A/B
TCPAM Auto/4/8/16/32/64/128
Bitrate Auto/32/64/128/256/512/1024/2048/4096/8192/16384 kbit/s
ETSI SDSL, ETSI SDSL.bis, IEEE EFM, ITU G.shdsl, ITU G.shdsl.bis, ITU G.hs, ITU
Emergency Freeze
Modes: Punkt-zu-Punkt-, Stern–, Linien-, und Ringbetrieb (bei 2 Modems)


Very High Speed Digital Subscriber Line (VDSL) is a DSL technology that allows much higher data rates over common telephone lines.

ADSL ITU-T G.992.1/3/5
VDSL2 ITU-T G.993.2 (Profiles 8, 12, 17, 30 MHz)
TR-048/067, TR-100, TR-114, ITU-T G.inp, ITU-T G.vector
Annex B/J or A/I
ADSL2+ bis 24 Mbps, VDSL2 bis 200 Mbps

LTE Modem

LTE: Band 1/2/3/5/7/8/20/28 (2100/1900/1800/850/2600/900/800/700 MHz)
3G/UMTS: 850/900/1800/1900 MHz
2G/GPRS: 850/900/1800/1900 MHZ
150Mbit/s Download, 50Mbit/s Upload

Flyer VTAIR 300


Datasheet VTAIR 300


User Manual VTAIR 300


Go to Top