Unidirectional Security Gateways are among the strongest practical security measures for industrial & OT networks, but many practitioners have the mistaken impression that they must give up remote access to enjoy unidirectional protections. In this time of quarantines and travel restrictions, when many sites are being pushed to deploy dangerous software-based remote access technologies, understanding strong unidirectional remote access options has become vitally important.
This webinar begins by surveying attack techniques and residual risks for “secure” VPN, RDP, jump host, two factor and other software-based approaches to OT remote access. We then explore a host of unidirectional remote access designs, including server replication, remote screen view, emergency bypass and control-critical WANs. We show how each of these is significantly stronger than traditional software-based solutions. We then review a couple of “unidirectional” anti-patterns – weak designs that are “unidirectional” in name only.