Raymon Industrial Security Platform
Control industrial operations—not just network connections.
Connect authenticated users and sessions to the equipment, commands, values, and operational sequences they use—then record, allow, or block each activity with evidence that operations, engineering, and OT security teams can understand.
Identity-aware access · Protocol-aware enforcement · Industrial microsegmentation · Stateful protection · Operational evidence
Start with the path that fits your role¶
You do not need to read this catalog from beginning to end. Plant leadership can begin with outcomes and solutions; operations can follow remote work and evidence; engineers can follow equipment, policy, and protection; evaluators can go directly to capability status and acceptance criteria.
Read the Executive Summary Choose a Reading Path
Control the industrial operation—not only the connection¶
Traditional network controls can allow or deny an IP address and port. Industrial operations need more context: Which protocol function was requested? Which RTU, PLC, point, register, or control target was involved? Was the operation expected at this stage of the process?
L2Proxy connects authenticated access, industrial protocol inspection, equipment knowledge, explainable policy, and operational evidence. It can determine who introduced an operation, which asset and point were involved, whether the action was permitted, and why the resulting decision was made.
The platform can:
- record an observation without interrupting production;
- allow an explicitly permitted operation;
- block traffic that violates an approved policy.
Stateful protection can also correlate events across multiple messages. This enables DNP3 Select-Before-Operate validation, command-to-status verification, controlled maintenance authorization, restart recovery tracking, alarm lifecycle monitoring, and replay-resistant one-time transitions.
Two complementary enforcement choices¶
┌─ L2Proxy Connect
Approved industrial policy ──────┤ Inside the authenticated session path
│
└─ Standalone L2Proxy Service
At an independent industrial boundary
L2Proxy Connect provides user- and session-aware enforcement for authenticated remote industrial access. Standalone L2Proxy Service protects transparent, routed, or isolated industrial paths under an independent service lifecycle. Both use the same industrial inspection, policy, stateful protection, and evidence capabilities and can operate together at one site.
Together they support North-South access control and East-West enforcement wherever traffic crosses a managed L2Proxy path. See Industrial Segmentation and Microsegmentation.
A practical remote-maintenance outcome¶
An authenticated transformer-service engineer connects during an approved maintenance period. L2Proxy Connect associates the user and session with each industrial operation, permits approved diagnostic reads, evaluates an OLTC request against the assigned equipment policy, blocks an out-of-range or incorrectly sequenced command, and retains the complete decision trail for operations and investigation.
A staged OT adoption model¶
- Observe — establish protocol and asset visibility using passive or offline traffic.
- Normalize — translate protocol detail into device, asset, operation, and severity context.
- Model — describe permitted sequences, timing, identities, and process prerequisites.
- Validate — replay representative PCAPs and test normal, abnormal, timeout, and replay paths.
- Enforce — enable narrowly scoped blocking policies after operational approval.
- Audit — retain structured evidence for operations, engineering, and incident response.
Explore the platform¶
| Catalog area | Start here |
|---|---|
| Overview | Industrial Security Platform and Industrial Outcomes |
| Solutions | Industrial Solution Portfolio |
| Secure Access | Secure Industrial Access, L2Proxy Connect, and Industrial Segmentation |
| Policy Engineering | Industrial Policy Engineering |
| Protection & Evidence | Industrial Protection and Evidence |
| Deployment & Assurance | Deployment and Assurance |
A control platform, not a replacement for process safety
L2Proxy evaluates network-carried industrial activity. It does not replace a safety instrumented system, PLC interlocks, engineering procedures, or endpoint authorization. Network loss, asymmetric capture, local operation, encryption, and incomplete protocol parsing must be considered when a policy is designed.