Industry
Reach the plant without exposing it.
Operational systems must be reachable by the engineers who maintain them and by nobody else. Inlinea reaches them through routing devices that dial out, recorded Secure Sessions with managed credentials, and rules that name people and systems, not subnets.
Context
What this sector has to answer for
Operational technology lives behind strict segmentation for good reason. Access to it should be per system, per person, time-bound and recorded, and it should never require opening a port at the site.
National cybersecurity controls and sector operational-technology guidance ask for segregation, privileged access management and monitoring. Each is a control in the platform, visible in one console.
Field sites and plants have unreliable links. Routing devices with failover and tunnels that open only on demand keep connectivity light and resilient.
Scenarios
The access problems this sector runs every day
- An engineer on a plant HMIThe HMI server is a Secure Session card for the Plant Engineering group, with a managed credential and a recording.
- A vendor during a shutdownThe vendor's access exists for the shutdown window only; the session is recorded and can be ended from the Control Center.
- Remote sitesEach site has a routing device, two where the link matters; routes are granted by rule.
- Who can reach the safety system?Access Diagnostics answers from the real rules, and simulates a change before anyone makes it.
Deployment
Where it should run
- On-premisesThe platform inside the operator's own perimeter, run by its team.
- Inlinea Cloud, in your regionSingle-tenant, for corporate and engineering access.
- Dedicated sovereign environmentA dedicated environment in a named city for operators across borders.
Control mapping
The controls auditors ask about, and where they live
| Requirement | Inlinea control | Where to see it |
|---|---|---|
| Segregation of operational systems | Per-resource access; routing devices that dial out; nothing listens inbound | Private Network, Access Control |
| Privileged access to OT | Secure Sessions with managed credentials, time limits, Session Evidence | Secure Sessions |
| Vendor access | Time-bound rules, recorded sessions, end session | Secure Sessions, Access Control |
| Monitoring | Traffic Logs per site, ZERA Access Logs, Event Forwarding | Insights |
| Device posture | Trust Checks on operating system, agent version, process and network | Access Control |
Framework alignment status is published honestly in the Trust Center; controls are described here, not certifications.