Industrial Cybersecurity

Moxa’s advanced cybersecurity range includes IPS/IDS devices, NextGen firewalls, and the Security Dashboard Console management software, enabling precise monitoring of network traffic and prevention of unwanted actions, such as denial-of-service attacks in industrial networks. Moxa devices use DPI (Deep Packet Inspection) technology to identify and manage traffic based on industrial protocols like Modbus, CIP, Profinet, and S7COMM. The DPI filter helps prevent malicious changes in network traffic, providing maximum security for critical systems.

Moxa IEC-G102-BP series

Moxa IEC-G102-BP devices offer both “Monitor” and “Protect” modes to support various OT scenarios. The Intrusion Detection System (IDS) function monitors and reports unusual traffic to the network administrator without altering network traffic. The Intrusion Prevention System (IPS) function protects devices by blocking network packets based on packet content, similar to how a firewall blocks traffic based on IP addresses.

Utilizing advanced DPI (Deep Packet Inspection) technology, the IEC-G102-BP series is equipped with industrial protocol awareness, allowing control over the traffic of controllers and systems. The DPI filter can be activated to screen the most common industrial control system protocols, such as Modbus, CIP, Profinet, and S7COMM, enabling detection and prevention of changes or unwanted activities in network traffic.

Features:

  • DPI (Deep Packet Inspection) for common industrial protocols
  • Bump-in-the-wire design; no configuration required from other network devices for IPS installation
  • Bypass LAN ensures uninterrupted network traffic in case of a failure
  • Latency: < 500 microseconds
  • 12/24/48 VDC power input
  • Wide temperature range: -40 to +75 °C (T models)

Moxa IEF-G9010 series

The Moxa IEF-G9010 series industrial IPS firewall protects mission-critical resources in industrial networks. The firewall allows for network segmentation, and the IPS function monitors and analyzes network traffic. By enabling the Protect mode (IDS), users can block unauthorized traffic and log it in the device.

The Security Dashboard Console (SDC) management software, used alongside the IEF-G9010 series, enhances protection by providing centralized device listing visibility. Other features include advanced network analysis and automated remediation updates. The device includes 8 GbE RJ45 ports and 2 GbE SFP ports.

Features:

  • Compact industrial IPS firewall for network segmentation
  • Industrial-grade intrusion prevention/detection system (IPS/IDS)
  • Object-based monitoring rules for protocol filtering and traffic control
  • Easy network configuration with Network Address Translation (NAT)
  • Full OT network visibility when used with Security Dashboard Console (SDC)
  • Wide operating temperature range: -40 to 75 °C (-T models)

MOXA SECURITY DASHBOARD CONSOLE (SDC)

The Moxa Security Dashboard Console (SDC) management software is used with the IEF-G9010 and IECC-G102-BP series. It enhances security by providing centralized visibility of critical devices, advanced network analysis, and automated remediation updates. With SDC, administrators or operators can efficiently monitor and block intrusions from a single location, ensuring an easy way to track devices and perform policy, firmware, and template updates.

Features:

  • Centralized cybersecurity view and management dashboard for production network devices
  • Supported hypervisors: VMware ESX 6.X or above / VMware Workstation V14 or above / KVM 2.x or above
  • Hardware disk space requirement: ≤ 256 GB

Do you need help? Contact our experts!

Movetec Antti Laukkanen

Antti Laukkanen

Movetec Markku Seppälä

Markku Seppälä

MOVETEC Felix Rydman

Felix Rydman

Contact our experts