Skip to main content
All CollectionsAdvanced 5G LAN Features
“Airgap” between IT & OT traffic
“Airgap” between IT & OT traffic

Ensure policy-based physical separation of IT and OT traffic on Celona 5G LAN

P
Written by Prince Jose
Updated over a week ago

Air gapping IT and OT traffic is crucial for Industry 4.0, particularly in manufacturing. It ensures physical separation and segmentation of private 5G network traffic, while upstream traffic routing further separates IT and OT networks, enabling secure and efficient network segmentation.

The Celona Edge segments IT and OT traffic securely using VLANs and separate physical ports. In this example, RJ45 Port 1 routes OT traffic (video surveillance) to the OT network, while RJ45 Port 2 handles IT traffic (IT tablet) to the enterprise network, ensuring efficient management and security.

Sample configuration for OT traffic (RJ45 Port 1):

Sample configuration for IT traffic (RJ45 Port 2):

Edge Express port mappings for RJ45 Port 1 and 2:

Edge Enterprise port mappings for RJ45 Port 1 and 2:

Conclusion

Both the Video Surveillance and IT-Tablet domains show physical traffic separation on the Celona 5G LAN. The Celona Edge appliance routes IT and OT traffic through different physical interfaces: RJ45 Port 1 for the OT network (managed by OT teams) and RJ45 Port 2 for the enterprise IT network. Any VLAN or set of VLANs can be mapped to a physical port for segmentation, carrying traffic separately through the physical connection. This setup enhances security, prevents interference, and enables physical traffic segmentation, creating an airgap between IT and OT traffic.

Did this answer your question?