Agonist • OT / Industrial Cyber Security PlatformOT/Endüstriyel Siber Güvenlik Platformu

Test your defenses.
Prove them.

Savunmanızı sınayın.
Kanıtlayın.

Agonist proves whether your OT security actually works — and makes every device on your industrial (OT) network visible. It safely puts your defenses to the test, so protection becomes something you can show, not just assume. All without stopping production.

Agonist, OT güvenliğinizin gerçekten çalışıp çalışmadığını kanıtlar — ve endüstriyel (OT) ağınızdaki her cihazı görünür kılar. Savunmanızı güvenle sınar; böylece güvenlik bir varsayım değil, gösterebildiğiniz bir gerçek olur. Hepsi üretimi durdurmadan.

Discover — what's on the network? Simulate — protocol behavior & command sets Prove — do the controls actually work?
Keşfet — ağda ne var? Simüle et — protokol davranışı ve komut setleri Kanıtla — kontroller gerçekten çalışıyor mu?
21protocol families & command domainsprotokol ailesi ve komut alanı
600+OT command sets & test actionsOT komut seti ve test aksiyonu
580+threat-scenario signaturestehdit senaryosu imzası
Needs it solvesÇözdüğü ihtiyaçlar

Three hard questions in OT securityOT güvenliğinin üç zor sorusu

Industrial (OT) networks differ from IT: they can't tolerate downtime, devices are fragile, and classic security tools don't fit. Three problems organizations get stuck on:Üretim ağları (OT), BT'den farklıdır: kesintiye tahammülü yoktur, cihazlar kırılgandır, klasik güvenlik araçları buraya uymaz. Kurumların takıldığı üç temel sorun:

ContinuitySüreklilik
“I want to test — but I can't stop production.”“Test etmek istiyorum ama üretimi durduramam.”
Conventional tests can disrupt the process or damage hardware, so most OT networks go untested. Agonist tests safely — without stopping anything.Alışılmış testler süreci aksatabilir ya da donanıma zarar verebilir; çoğu OT ağı hiç sınanmaz. Agonist güvenle sınar — hiçbir şeyi durdurmadan.
ProofKanıt
“Do my security controls actually work?”“Güvenlik kontrollerim işe yarıyor mu?”
You've bought firewalls, IPS, SIEM and honeypots — but does a PLC-stop actually raise an alarm? Proof beats assumption.Güvenlik duvarı, IPS, SIEM, honeypot aldınız — ama bir PLC durdurma gerçekten alarm üretiyor mu? Kanıt, varsayımı yener.
VisibilityGörünürlük
“What exactly is on my network?”“Ağımda tam olarak ne var?”
Hand-kept lists go stale. Most teams don't fully know which PLCs, HMIs and RTUs are running — and you can't protect what you can't see.Elle tutulan listeler eskir. Çoğu ekip hangi PLC, HMI, RTU'nun çalıştığını tam bilmez — göremediğinizi koruyamazsınız.
Agonist solves all three: it discovers, tests safely, and produces evidence — controlled and without disrupting production.Agonist bu üçünü birden çözer: keşfeder, güvenle test eder, kanıt üretir — kontrollü ve üretimi bozmadan.
Coverage result
Example output — which attacks were caught, which slipped through.Örnek çıktı — hangi saldırı yakalandı, hangisi kaçtı.
CapabilitiesYetenekler

Six things it doesYaptığı altı şey

One platform, one console — see them in action further down.Tek platform, tek panel — aşağıda iş başında görün.

Protocol SimulationProtokol Simülasyonu

Safely reproduce realistic OT protocol behavior and command sets against a test target.Gerçekçi OT protokol davranışını ve komut setlerini güvenle bir test hedefinde canlandırın.

Control ValidationKontrol Doğrulama

See whether your SIEM / IPS actually catches them.SIEM / IPS'iniz gerçekten yakalıyor mu, görün.

Tabletop ExerciseMasabaşı Tatbikatı

Rehearse an incident end to end with your team.Bir olayı ekibinizle baştan sona prova edin.

VisibilityGörünürlük

Auto-discover every device — a live inventory.Her cihazı otomatik keşfedin — canlı envanter.

Vulnerability DetectionAçık Tespiti

Match known CVEs and rank them by urgency.Bilinen CVE'leri eşleştirin, aciliyete göre sıralayın.

Protection TestKoruma Testi

Check whether your device protections really hold.Cihaz korumalarınız gerçekten tutuyor mu, sınayın.
Easy to followKolay anlatım

How a test works — in four stepsBir test nasıl çalışır — dört adımda

No deep OT expertise needed. Every test follows the same simple flow.Derin OT uzmanlığı gerekmez. Her test aynı basit akışı izler.

1

Choose a targetHedef seçin

A device on your network, or the safe Lab simulator — you decide.Ağınızdaki bir cihaz ya da güvenli Lab simülatörü — siz seçersiniz.

2

Run a protocol simulationProtokol simülasyonu çalıştırın

A realistic OT protocol behavior or command set, run in a controlled and harmless way.Gerçekçi bir OT protokol davranışı ya da komut seti, kontrollü ve zararsız biçimde çalışır.

3

Did your defenses catch it?Savunmanız yakaladı mı?

See whether your SIEM/IPS raised an alarm — or the attack passed silently.SIEM/IPS'iniz alarm üretti mi, yoksa saldırı sessizce mi geçti — görün.

4

Get evidence & reportKanıt ve rapor alın

A clear pass/fail record — ready for audit and for hardening what failed.Net bir geçti/kaldı kaydı — denetime ve eksiği sertleştirmeye hazır.

Product tourÜrün turu

A look at what it doesNe yaptığına yakından bakış

Real views from the product, next to a plain-language explanation. Click any image to enlarge.Üründen gerçek görünümler ve yanında sade anlatım. Büyütmek için bir görsele tıklayın.

OverviewGenel bakış

Everything on one screenHer şey tek ekranda

The dashboard shows your whole OT security posture at a glance — how many devices, how many vulnerabilities, whether your agents are online, and recent test activity.Panel, OT güvenlik durumunuzu tek bakışta gösterir — kaç cihaz, kaç zafiyet, agent'lar çevrimiçi mi ve son test etkinliği.

  • Live device and vulnerability countsCanlı cihaz ve zafiyet sayıları
  • Agent health and master–slave topologyAgent sağlığı ve master–slave topolojisi
  • Recent test runs and detection rateSon test çalışmaları ve tespit oranı
Dashboard
VisibilityGörünürlük

Know every deviceHer cihazı tanıyın

Agonist automatically finds every industrial device and builds a live inventory — vendor, model, protocols and zone — so nothing hides on your network.Agonist her endüstriyel cihazı otomatik bulur ve canlı bir envanter çıkarır — üretici, model, protokol ve bölge — ağınızda hiçbir şey saklanamaz.

  • Multi-vendor: Schneider, Siemens, Rockwell and moreÇok üretici: Schneider, Siemens, Rockwell ve dahası
  • Flags fake / decoy devices (honeypots)Sahte / tuzak cihazları (honeypot) işaretler
  • Known vulnerabilities matched per deviceCihaz başına bilinen zafiyet eşleştirmesi
Honeypot detection
Close-up: fake / decoy devices flagged automaticallyYakın plan: sahte / tuzak cihazlar otomatik işaretlenir
Device Inventory
Protocol SimulationProtokol Simülasyonu

Safely simulate real OT techniquesGerçek OT tekniklerini güvenle canlandırın

Choose a target and run real OT attack techniques in a controlled, harmless way. Point them at the safe Lab simulator or, when you're ready, a real device you own.Bir hedef seçin ve gerçek OT saldırı tekniklerini kontrollü, zararsız biçimde çalıştırın. Güvenli Lab simülatörüne ya da hazır olduğunuzda sahip olduğunuz gerçek bir cihaza yöneltin.

  • Hundreds of attack vectors — mapped to CVEs & MITRE ATT&CKYüzlerce saldırı vektörü — CVE & MITRE ATT&CK eşlemeli
  • Lab Agent target — zero riskLab Agent hedefi — sıfır risk
  • Clear vulnerable / protected result per deviceCihaz başına net açık / korunaklı sonucu
Target selection
Close-up: aim at the safe Lab simulator — or a real device you ownYakın plan: güvenli Lab simülatörüne — ya da sahip olduğunuz gerçek cihaza
Protocol Simulation
Control ValidationKontrol Doğrulama

Proof your controls workKontrollerinizin çalıştığının kanıtı

After the tests, see exactly which attacks your defenses caught and which slipped through — the evidence auditors and management ask for.Testlerden sonra, savunmanızın hangi saldırıları yakaladığını, hangilerinin kaçtığını tam görün — denetçilerin ve yönetimin istediği kanıt.

  • Coverage by protocol, MITRE technique and behaviorProtokol, MITRE tekniği ve davranışa göre kapsam
  • Vulnerable vs. protected, at a glanceAçık mı korunaklı mı, tek bakışta
  • Export to CSV / reportCSV / rapora aktarım
Detection coverage numbers
Close-up: 123 protocols · 134 signatures · 635 exploits coveredYakın plan: 123 protokol · 134 imza · 635 exploit kapsanır
Detection Coverage
Safe by designTasarımdan güvenli

You decide the riskRiski siz belirlersiniz

Pick how gentle the scan is: fully passive (no packets), safe discovery (the production default), or detailed — only when you enable it.Taramanın ne kadar nazik olacağını seçin: tamamen pasif (paket yok), güvenli keşif (üretim varsayılanı) ya da detaylı — yalnız siz açtığınızda.

  • Passive / Safe / Detailed profilesPasif / Güvenli / Detaylı profiller
  • Designed for fragile production networksKırılgan üretim ağları için tasarlandı
  • Run from the server or a field agentSunucudan ya da saha agent'ından çalıştırın
Safe Scanning
The biggest differenceEn büyük fark

Without stopping productionÜretimi durdurmadan

In production networks the real issue isn't "being able to test" — it's testing without causing harm. With Agonist you choose the method to fit your need: on the most sensitive network you can listen fully passively — sending no packets at all — and go more detailed when needed. The default is the safest method, designed for production.Üretim ağlarında asıl mesele "test edebilmek" değil, zarar vermeden test edebilmektir. Agonist'te yöntemi ihtiyacınıza göre seçersiniz: en hassas ağda tamamen pasif — hiç paket göndermeden — dinleyebilir, gerektiğinde daha detaylı inceleyebilirsiniz. Varsayılan, üretim için tasarlanmış en güvenli yöntemdir.

Passive listeningPasif dinleme
Only listens to the network, sends no packets — zero touch to the device.Yalnız ağı dinler, hiçbir paket göndermez — cihaza sıfır dokunuş.
minimum riskminimum risk
Safe discovery (default)Güvenli keşif (varsayılan)
Gentle, cautious inspection — designed for production, minimal touch to the device.Nazik, temkinli inceleme — üretim için tasarlandı, cihaza en az dokunuş.
very lowçok düşük
Detailed (when needed)Detaylı (gerektiğinde)
More thorough inspection — only for non-sensitive / test environments, enabled by you.Daha kapsamlı inceleme — yalnız hassas olmayan / test ortamları için, siz açarsınız.
optionalisteğe bağlı

“First, do no harm.”“Önce zarar verme.”

On a production network the default is the safest, least-touch method; in the most sensitive environments you can run fully passively. Broader inspection only kicks in when you enable it, usually in test environments — the decision is always yours.Üretim ağında varsayılan, cihaza en az dokunan güvenli yöntemdir; en hassas ortamlarda tamamen pasif çalışabilirsiniz. Daha geniş inceleme yalnız siz açtığınızda ve genellikle test ortamlarında devreye girer — karar her zaman sizde.

Scan profiles
In the product — Passive / Safe / Detailed scan profiles.Üründe — Pasif / Güvenli / Detaylı tarama profilleri.
How you get itEdinme modelleri

Own it — or consume it as a serviceSahip olun — ya da hizmet olarak alın

You can deploy Agonist as a permanent product — or consume it as a service from a partner, whether as an ongoing managed service or a short, project-based engagement.Agonist'i kalıcı bir ürün olarak kurabilir — ya da bir iş ortağından hizmet olarak alabilirsiniz: ister sürekli yönetilen hizmet, ister belirli bir ihtiyaç için kısa, proje bazlı.

Ownership · continuousSahiplik · sürekli

Enterprise LicenseKurumsal Lisans

You deploy and operate the product yourself — cloud, on-premise, hybrid or fully offline. Inventory, tests and reports stay with you.Ürünü kendiniz kurar ve sürekli işletirsiniz — bulut, şirket-içi, hibrit veya tam çevrimdışı. Envanter, test ve raporlar sizde kalır.

For: Organizations that want continuous OT visibility and testing, with their own team.Kimin için: Sürekli OT görünürlüğü ve testi isteyen, kendi ekibi olan kurumlar.
Managed / project-basedYönetilen / proje bazlı

As a ServiceHizmet Olarak

A service provider or partner runs Agonist for you — you just receive the results and reports. It can be continuous (a managed subscription, multiple sites from one console) or short-term for a specific need: a tabletop exercise, a vulnerability assessment or an attack simulation. The partner works with a license from the vendor; you don't own the product.Bir hizmet sağlayıcı ya da iş ortağı Agonist'i sizin için işletir — siz yalnız sonuçları ve raporları alırsınız. Sürekli (yönetilen abonelik, tek panelden çok saha) olabilir ya da belirli bir ihtiyaç için kısa süreli: masabaşı tatbikatı, zafiyet analizi veya saldırı simülasyonu. İş ortağı üreticiden aldığı lisansla çalışır; ürüne siz sahip olmazsınız.

For: Organizations that don't want to build their own team, or that need a specific exercise/assessment outcome without a permanent tool — and partners who deliver it as a service.Kimin için: Kendi ekibini kurmak istemeyen ya da kalıcı araç edinmeden belirli bir tatbikat/analiz sonucu isteyen kurumlar — ve bunu hizmet olarak sunan iş ortakları.
Technical detailsTeknik detaylar

Architecture, topology & deploymentMimari, topoloji & kurulum

For IT / security teams: how it's built and where it runs. Click to expand.BT / güvenlik ekipleri için: nasıl kurulu ve nerede çalışır. Açmak için tıklayın.

How it worksNasıl çalışır

Two components, one intelligence engineİki bileşen, bir istihbarat motoru

Your organization deploys only two things: the Central Server that runs the management console, and the Field Agent on the industrial network. Both are fed by continuously updated OT threat intelligence in the background.Kurumunuzun kurduğu yalnızca iki şey vardır: yönetim panelini çalıştıran Merkez Sunucu ve endüstriyel ağdaki Saha Agent'ı. İkisini de, arka planda sürekli güncellenen bir OT tehdit istihbaratı besler.

  • Central Server. Management console: scanning, discovery, scenarios, reporting. Deployed to the cloud or your own infrastructure.Merkez Sunucu. Yönetim paneli: tarama, keşif, senaryo, raporlama. Buluta ya da sizin altyapınıza kurulur.
  • Field Agent. Runs on the industrial network; discovers and connects to the center over a secure channel. Can be chained master–slave for isolated OT.Saha Agent'ı. Endüstriyel ağda çalışır; keşfeder, güvenli kanalla merkeze bağlanır. İzole OT için master–slave zincirlenebilir.
OT threat intelligence, continuously updated in the background. Agonist is fed by OT threat intelligence that the vendor regularly compiles and signs: new vulnerabilities, attack signatures and device profiles flow in as current content. Internet need is minimal — only to pull this content. In a fully offline (air-gap) architecture no internet is required; you update the content yourself, whenever you want, via portable media.Arka planda sürekli güncellenen OT tehdit istihbaratı. Agonist'i, üreticinin düzenli derleyip imzaladığı bir OT tehdit istihbaratı besler: yeni zafiyetler, saldırı imzaları ve cihaz profilleri güncel içerik olarak akar. İnternet ihtiyacı en azdadır — yalnız bu içeriği çekmek için. Tam çevrimdışı (air‑gap) mimaride hiç internet gerekmez; içeriği taşınabilir medyayla, istediğiniz zaman kendiniz güncellersiniz.
Intelligence Service — signature & contentİstihbarat Servisi — imza & içerik
Your component · CenterSizin bileşeniniz · Merkez
Server — Management ConsoleSunucu — Yönetim Paneli
Interface · scan · reportArayüz · tarama · rapor
Your component · FieldSizin bileşeniniz · Saha
Agent — Industrial NetworkAgent — Endüstriyel Ağ
Discovery · monitoringKeşif · izleme
Network topologyAğ topolojisi

Where it sits in your networkAğınızda nereye oturur

Two components fit into a familiar layout: the Central Server in the management layer (DMZ or IT), the Field Agent on the industrial network. For isolated OT segments that can't be reached directly, agents are chained master–slave — without breaking isolation at all.İki bileşen, tanıdık bir yerleşime oturur: Merkez Sunucu yönetim katmanında (DMZ ya da BT), Saha Agent endüstriyel ağda. Doğrudan erişilemeyen izole OT segmentleri için agent'lar master–slave zincirlenir — izolasyonu hiç bozmadan.

Vendor · CloudÜretici · Bulut OT Threat Intelligence — signature · CVE · profileOT Tehdit İstihbaratı — imza · zafiyet · profil minimal internet · content only ↓en az internet · yalnız içerik ↓ Corporate IT · Level 4–5Kurumsal BT · Seviye 4–5 Office network · email · serversOfis ağı · e‑posta · sunucular DMZ / Management · Level 3–3.5DMZ / Yönetim · Seviye 3–3.5 Your component · CenterSizin bileşeniniz · Merkez Server — Management ConsoleSunucu — Yönetim Paneli secure connection · WebSocket ↓güvenli bağlantı · WebSocket ↓ OT / Industrial Network · Level 0–2OT / Endüstriyel Ağ · Seviye 0–2 Your component · FieldSizin bileşeniniz · Saha Agent — discovery · monitoring · testAgent — keşif · izleme · test ↓ industrial devices↓ endüstriyel cihazlar PLC controllerkontrolör RTU field unitsaha ünitesi HMI operator paneloperatör paneli
Standard placement. Server in the management layer, agent on the industrial network; intelligence flows with minimal internet. On flat networks a single agent is enough.Standart yerleşim. Sunucu yönetim katmanında, agent endüstriyel ağda; istihbarat en az internetle akar. Düz ağlarda tek agent yeter.
CenterMerkez Server — Management ConsoleSunucu — Yönetim Paneli WebSocket ↓ Reachable OT · gatewayErişilebilir OT · ağ geçidi Master Agent — concentrator / relayMaster Agent — konsantratör / relay ✕ no direct access — only via the master ↓✕ doğrudan erişim yok — yalnız master üzerinden ↓ Isolated OT cell · microsegmentİzole OT hücresi · mikrosegment Slave Agent — in the isolated segmentSlave Agent — izole segmentte ↓ local industrial devices↓ yerel endüstriyel cihazlar PLC controllerkontrolör PLC controllerkontrolör HMI operator paneloperatör paneli Isolation preserved: one controlled channel out of the cell — only to the master.İzolasyon korunur: hücreden dışarı tek kontrollü kanal — yalnız master'a.
Isolated OT — master → slave. The isolated segment is never reached directly; the slave reaches the center only via the master. Microsegmentation stays intact.İzole OT — master → slave. İzole segmente doğrudan erişilmez; slave yalnız master üzerinden merkeze ulaşır. Mikrosegmentasyon bozulmaz.
Technical detail · DeploymentTeknik detay · Kurulum

…and it's deployed to fit your infrastructure…ve altyapınıza göre kurulur

When you run the product yourself, the capabilities are the same in every scenario. The only thing that changes is where the Central Server runs and where your data sits. Four alternatives based on your cloud policy, critical-infrastructure and data-sovereignty requirements, and network:Ürünü kendiniz işlettiğinizde, yetenekler her senaryoda aynıdır. Değişen tek şey — Merkez Sunucu'nun nerede çalıştığı ve verinizin nerede durduğu. Bulut politikanız, kritik altyapı ve veri egemenliği gereksinimleri ve ağ yapınıza göre dört alternatif:

Cloud-Managed ServiceBulut‑Yönetilen Hizmet

Managed · SaaSYönetilen · SaaS

“You stay in the field — we run the management.”“Siz sahada olun — yönetimi biz üstlenelim.”

  • Set up in minutes — infrastructure, updates and maintenance aren't on you.Kurulum dakikalar içinde — altyapı, güncelleme, bakım sizde değil.
  • Manage multiple sites/customers from one console (MSSP/multi-tenant).Tek panelden birden çok saha/müşteri yönetimi (MSSP/çok‑kiracılı).
  • Always the latest content — automatically.Her zaman en güncel içerik — otomatik.
ForKimin için
Organizations without their own server team who want a fast start, and service providers (MSSP).Kendi sunucu ekibi olmayan, hızlı başlamak isteyen kurumlar ve hizmet sağlayıcılar (MSSP).
Intelligence Service → contentİstihbarat Servisi → içerik
Cloud · managed serviceBulut · yönetilen hizmet
CenterMerkez
Server (cloud)Sunucu (bulut)
Hosted by vendor / MSSPÜretici / MSSP barındırır
Your siteSizin sahanız
FieldSaha
Agent
On the industrial networkEndüstriyel ağda

On-PremiseŞirket‑İçi (On‑Premise)

Your dataVeri sizde

“Your data never leaves the building.”“Veriniz binanızdan çıkmasın.”

  • Scan results, inventory and reports stay entirely with you.Tarama sonuçları, envanter ve raporlar tamamen sizde kalır.
  • Suitable for critical-infrastructure and data-sovereignty requirements (e.g. IEC 62443, air-gap mandates).Kritik altyapı ve veri egemenliği gereksinimlerine uygun (ör. IEC 62443, hava boşluğu zorunlulukları).
  • Only a limited, controlled connection to the vendor for license/updates.Üreticiye yalnızca lisans/güncelleme için sınırlı, kontrollü bağlantı.
ForKimin için
Energy, water, manufacturing, defense — critical infrastructure where data must stay on site.Enerji, su, üretim, savunma — verinin sahada kalması zorunlu olan kritik altyapılar.
Intelligence Service → signed content packageİstihbarat Servisi → imzalı içerik paketi
Your infrastructureSizin altyapınız
CenterMerkez
Server (on-prem)Sunucu (on‑prem)
FieldSaha
Agent

HybridHibrit

BalancedDengeli

“Control is yours, freshness is automatic.”“Kontrol sizde, güncellik otomatik.”

  • On-premise data control + automatic freshness together.On‑premise'in veri kontrolü + otomatik güncellik bir arada.
  • Central monitoring/telemetry can be enabled (optional).Merkezi izleme/telemetri (isteğe bağlı) açılabilir.
  • A remote-support tunnel can be opened and closed — you decide.Uzaktan destek tüneli açılıp kapatılabilir — siz karar verirsiniz.
ForKimin için
Organizations that want to keep data on site but don't want to deal with manual updates.Veriyi sahada tutmak isteyen ama manuel güncellemeyle uğraşmak istemeyen kurumlar.
Intelligence Service ↕ live content streamİstihbarat Servisi ↕ canlı içerik akışı
Your infrastructureSizin altyapınız
CenterMerkez
Server (on-prem)Sunucu (on‑prem)
FieldSaha
Agent

Fully Offline (Air-gapped)Tam Çevrimdışı (Air‑gapped)

Isolatedİzole

“No internet — no problem.”“İnternet yok — sorun değil.”

  • Signed offline license — no internet required.İmzalı çevrimdışı lisans — internet gerektirmez.
  • Content packages are loaded manually via portable media.İçerik paketleri taşınabilir medya ile elle yüklenir.
  • Five-layer anti-tamper stays active even offline.Beş katmanlı kurcalama‑önleme çevrimdışıyken de aktif.
ForKimin için
The highest-security isolated OT networks with no internet access.İnternet erişimi olmayan / olmaması gereken en yüksek güvenlikli izole OT ağları.
Intelligence · hand-carried content packageİstihbarat · elle taşınan içerik paketi
Isolated network · air gapİzole ağ · hava boşluğu
CenterMerkez
Server + offline licenseSunucu + çevrimdışı lisans
FieldSaha
Agent
CriterionKriterCloud-ManagedBulut‑YönetilenOn-PremiseŞirket‑İçiHybridHibritFully OfflineTam Çevrimdışı
OT data stays on siteOT verisi tesisten çıkmaznohayıryesevetyesevetyesevet
Internet connectivity needİnternet bağlantısı ihtiyacıcontinuoussüreklilimitedsınırlıcontinuoussüreklinone (air-gap)yok (air‑gap)
Critical infrastructure / data sovereigntyKritik altyapı / veri egemenliğimediumortahighyüksekhighyüksekhighesten yüksek
Who carries setup & maintenanceKurulum & bakım yükü kimdevendorüreticideorganizationkurumdasharedpaylaşımlıorganizationkurumda
Content freshnessİçerik güncelliğiautomaticotomatikvia packagepaket ileautomaticotomatikmanual · youelle · siz
Multi-site / service-provider mgmtÇok‑tesis / hizmet sağlayıcı yönetimiyesevetsingletekiloptionalisteğe bağlısingletekil
Flat networkDüz ağ

Single AgentTekil Agent

If the OT network is reachable from the center, one agent is enough.OT ağına merkezden ulaşılabiliyorsa tek agent yeter.

Isolated OT · microsegmentİzole OT · mikrosegment

Master → Slave chainMaster → Slave zinciri

If the OT segment can't be reached directly, the master sits at the gateway and the slave in the isolated segment reaches out only via the master — without breaking isolation.OT segmentine doğrudan erişilemiyorsa master ağ geçidinde durur, izole segmentteki slave yalnız master üzerinden ulaşır — izolasyonu bozmadan.

Deployment formKurulum biçimi

Appliance optionsAppliance seçenekleri

Virtual machine (VMware/OVA — zero-touch), Docker, or a locked-down hardware appliance.Sanal makine (VMware/OVA — sıfır‑dokunuş), Docker ya da kilitli donanım cihazı.