Edge Network Fabric (ENF) Secure Overlay Network for IoT
Xaptum’s ENF router card with Wi-Fi provides a secure networking solution for remote IoT devices
Xaptum’s ENF router card with Wi-Fi enables secure data exchange between dispersed IoT devices and back-end cloud applications over the ENF, a secure software-defined overlay network that enables seamless security and scalability for IoT deployments.
The ENF adds significant security and manageability advantages over simply connecting IoT devices directly to the public internet. The simplified architecture hides IoT devices from the public internet to protect against threats like zero-day exploits and accidental misconfiguration. It enables IoT deployments at scale by providing full visibility, tracking, and control of IoT assets with foundational security, zero-touch identity provisioning, flexible traffic orchestration, and support for any application protocol.
The ENF router card with Wi-Fi connects an IoT device or gateway to the ENF over any Wi-Fi network. The mini PCI-e module is a drop-in replacement for a normal Wi-Fi card. The device receives an IP address from the ENF instead of the local Wi-Fi network, and its traffic is securely tunneled to the ENF backbone over the local network. The plug-n-play router card does not require software changes on the device and enables remote management of the Wi-Fi configuration (SSIDs, passphrases, and more).
ENF Features
- /48 IPv6 address block assignment for overlay network
- /64 IPv6 address block sub-netting for macro-segmentation
- Permanent static IPv6 addresses for all endpoints
- Configurable stateless firewall for micro-segmentation
- Scalable zero-touch and zero root-of-trust identity provisioning
- Cryptographic tunnel orchestration management
- Direct cloud routing (AWS, Azure, and more)
- Identity and access management (IAM)
- Audit logs and network metrics export
- Private hosted DNS service
- Fully configurable via REST API
- Command-line interface (CLI) for API
ENF Router Card Features
- Plug-n-play support for Linux hosts
- Replacement for standard Wi-Fi card
- Cryptographic isolation of device from local network and public internet
- Proactive prevention of zero-day exploits and misconfigurations
- Permanent, static IPv6 address for device
- Scalable zero-touch identity provisioning
- Hardware-based security (TPM 2.0)
- Remote configuration of Wi-Fi networks (SSIDs and passphrases)
- Remote monitoring of active network and local IP address
- Automated failover to device interface (e.g., Ethernet) when Wi-Fi is unavailable
- OTA firmware updates with configurable schedules
- DHCP assignment of IPv6 addresses to downstream devices (up to 256 MB)
Applications
- Transportation
- Logistics
- Manufacturing/industry 4.0
- Healthcare
- Smart building/smart facilities
- Oil and gas
- Chemicals
- Utilities
- Precision agro
发布日期: 2020-02-04