Backed by more than 35 years of experience in industrial automation and networking, Moxa stands among the pioneering companies worldwide to earn both IEC 62443-4-1 certification for its Secure Development Lifecycle (SDL) processes and IEC 62443-4-2 certification for selected industrial networking products. These internationally recognized certifications demonstrate Moxa’s dedication to delivering robust cybersecurity, operational reliability, and industry-leading network protection.
As industrial environments face increasing cyber threats and operational challenges, organizations require solutions that enhance network availability while reducing security vulnerabilities. Moxa’s IEC 62443-certified industrial networking portfolio—including industrial Ethernet switches, secure routers, industrial firewalls, and network management software—helps safeguard critical OT infrastructure against evolving risks. Designed to support secure industrial communications, these solutions enable manufacturers and infrastructure operators to build resilient, compliant, and highly available industrial networks while minimizing downtime and maintaining uninterrupted operations.
Powering OT Security with Moxa’s Secure Networking Solutions
Moxa’s secure networking solutions are designed to protect industrial devices, OT assets, and network infrastructure from cyber threats. Built with advanced security features, they strengthen Authentication, Authorization, and Accounting (AAA) controls, reduce security risks, and support resilient industrial operations. Moxa's approach is built on three core principles that help organizations create secure and reliable industrial networks.
How Moxa Secures Industrial Devices
Built on Trusted Industrial Security
With more than 35 years of experience in industrial networking, Moxa provides robust and secure connectivity solutions for mission-critical OT environments. As cyber threats targeting industrial systems continue to rise, we embed a Secure Development Lifecycle (SDL) across all network device development processes to establish a strong security baseline. Additionally, Moxa's devices are delivered with hardened default settings that strengthen system integrity and help reduce the overall attack surface.
Moxa’s Security Commitment
- Implement Secure Development Lifecycle (SDL) practices with continuous vulnerability management across the entire device lifecycle.
- Enhance system integrity to support secure firmware updates, stable operations, and reliable performance.
- Reduce attack surfaces through a secure-by-design architecture, including enforced HTTPS-only management access.
How Moxa Strengthens Authentication, Authorization, and Accounting (AAA)
Enhancing Operational Control and Network Visibility
In industrial OT environments, multiple users with different roles access network devices, making structured access control essential for maintaining security and operational clarity. Without proper governance, enforcing cybersecurity policies and monitoring activities becomes challenging. Moxa’s IEC 62443-aligned industrial networking solutions ensure that only authorized users can access critical assets while providing full visibility into network operations.
Moxa’s Security Commitment
- Enforce role-based access control to ensure users operate strictly within assigned permissions.
- Record and monitor security events to support compliance requirements and enable faster incident response in OT environments.
How Moxa Reduces OT Network Cybersecurity Threats
Enhancing OT Network Resilience with IEC 62443-Certified Security
As cybersecurity threats become more advanced and compliance requirements more stringent, organizations must strengthen protection across OT network infrastructure. Moxa’s IEC 62443-aligned industrial network security solutions deliver secure communications, intelligent traffic control, and high network availability. Through a layered security approach, these solutions help protect critical operations and maintain continuous industrial performance.
Moxa’s Security Commitment
- Enable secure communication channels to protect credentials, configurations, and sensitive industrial data in OT environments.
- Control data flow using port-based access control, integrated firewall and ACL policies, and segmentation technologies such as VLAN, NAT, and routing.
- Maintain high availability through redundancy and fail-safe mechanisms that ensure uninterrupted industrial operations.
Choose Secure Industrial Network Solutions
Moxa integrates industrial networking and cybersecurity expertise to deliver multi-layered protection for industrial OT environments. Discover how these solutions secure and strengthen your industrial networks.
Secure Routers, Firewalls & NATs
Secure Managed Switches
Simplified OT Network Deployment
Industrial operators can centrally manage Moxa secure routers, firewalls, and managed switches through the MXview One Series. This platform streamlines OT network security management, enabling fast configuration of security policies and real-time monitoring of device health and status.
Built for IEC 62443-aligned industrial cybersecurity environments, it delivers real-time alerts for abnormal behavior and supports centralized firewall policy management. A unified dashboard provides continuous visibility across industrial control and OT networks.
Find Secure Industrial Networking Solutions for Your Needs
- Secure Managed Switches
- Secure Routers, Firewalls, and NATs
| Secure Managed Switches |
|---|
| Ports |
| Security Features |
| Redundancy Protocols |
| Software Management |
| Industrial Certifications |
| Up to 4 10GbE + 24 GbE | Up to 28 GbE | Up to 6 2.5GbE + 8 GbE | Up to 4 GbE + 24 FE |
| HTTPS, SSL/SSH, ACL, IEEE 802.1X, Port Security, DHCP Snooping, Secure Boot1 | HTTPS, SSL/SSH, ACL, IEEE 802.1X, Port Security, DHCP Snooping, Secure Boot | HTTPS, SSL/SSH, ACL2, IEEE 802.1X | |
| Turbo Ring, Turbo Chain, RSTP/STP, MRP, VRRP (L3 Model) | Turbo Ring, Turbo Chain, RSTP/STP, MRP | ||
| MXview One | |||
| IEC 61850-3, IEEE 1613, EN 50121-4, NEMA TS2, ATEX3, CID23 | IEC 62443-4-2 SL2, IEC 61850-3, IEEE 1613, EN 50121-4, NEMA TS2 | IEC 62443-4-2 SL2, IEC 61850-3, IEEE 1613 (Class 1), DNV4, ABS4, NK4, LR4, EN 50121-4, NEMA TS2, ATEX5, CID25, IECEx5 | IEC 61850-3, IEEE 1613, DNV6, ABS6, NK6, LR6, EN 50121-46, NEMA TS26, ATEX6, CID26 |
- 1. Only available for -4XGS models.
- 2. Only available for 18 and 28 port models.
- 3. Only available for the non-4XGS models.
- 4. Only available for -LV and PoE models.
- 5. Only available for -LV models.
- 6. Only available for 10 and 18 port models.
| Secure Routers, Firewalls, and NATs |
|---|
| Ports |
| NAT |
| Firewalls |
| IPS/IDS |
| DPI |
| VPN |
| Routing Throughput (based on RFC 2544) |
| Redundancy Protocols |
| Software Management |
| Industrial Certifications |
| 2 GbE (Gen3 LAN Bypass) | 2 2.5GbE + 8 GbE1 | Up to 2 2.5GbE + 2 GbE (1/2 DMZ/WAN ports) | 2 GbE + 8 FE1 | 2 FE | 8 FE |
| - | 1-to-1, N-to-1, NAT loopback, Port forwarding, IP Twins Mapping4 | ||||
| DDoS, Ethernet protocols, ICMP, IP address, MAC address, Ports | IP address, MAC address (Device Lockdown), Ports | ||||
| Enabled by default. IPS pattern update functionality requires an additional license. | Requires an additional license | - | - | ||
| DNP3, EtherNet/IP, IEC 60870-5-104, IEC 61850 MMS, Modbus TCP, Modbus UDP, Omron FINS, Siemens S7 Comm., Siemens S7 Comm. Plus, OPC UA, MELSEC communication protocol | - | - | |||
| - | Up to 250 IPsec VPN tunnels | Up to 50 IPsec VPN tunnels | - | - | |
| - | Max. 350K packets per second / 2 Gbps | Max. 50K packets per second / 500 Mbps | Max. 15K packets per second / 100 Mbps | ||
| - | VRRP, Turbo Ring, Turbo Chain, RSTP/STP | VRRP | VRRP, Turbo Ring, Turbo Chain, RSTP/STP | - | - |
| MXview One, MXview Security3, MXsecurity | MXview One | MXview One | |||
| NEMA TS2, EN 50121-4, CID2, ATEX, IECEx, DNV | IEC 62443-4-2 SL2, IEEE 1613, IEC 61850-3 Ed. 2.0, ATEX2, CID22, EN 50121-42, NEMA TS22, DNV2, DNV IEC 61162-460 Edition 3.02, DNV security profile 22, IACS UR E27 Rev.12, IEC 609452 | IEEE 1613, IEC 61850-3 Ed. 2.0, ATEX, CID2, IECEx, EN 50121-4, NEMA TS2, DNV | IEEE 1613, IEC 61850-3 Ed. 2.0, ATEX, CID2, IECEx, EN 50121-4, NEMA TS2, DNV, DNV IEC 61162-460 Edition 3.0, DNV security profile 2, IACS UR E27 Rev.1, IEC 60945 | EN 50121-4, NEMA TS2, ATEX, CID2 | - |
- 1. Supports user-configurable DMZ/WAN ports.
- 2. Only available for -LV models.
- 3. An active MXview One license is required in order to activate the MXview Security add-on license.
- 4. NAT-108 Series only.