Security - Opengear

Security

Out-of-band management, secured by design.

Security for the network management plane.

Opengear out-of-band management keeps network infrastructure reachable and protected, independent of the production network.

How Opengear appliances are secured.

Security is built into the appliance and into how you deploy it.

Hardware root of trust.

Firmware is cryptographically signed and validated at boot, and the configuration is encrypted at rest with keys held in hardware. Built on TPM 2.0.

Controls that reduce exposure.

A default-deny posture tunnels management traffic and reaches remote devices without inbound IP ports.

Failover keeps the cellular interface inactive during normal operation, and firewall controls, brute-force protection, and root-account disabling let you close down the attack surface at each site.

Access on your terms.

Authentication offloads to your existing directories, including RADIUS, TACACS+, and LDAP/Active Directory, with support for SSH public-key authentication.

Remote access runs over encrypted VPN tunnels, including OpenVPN and IPsec.

Certifications and Compliance

SOC 2 Type 2 · ISO 27001 · FIPS 140 validated cryptography · NDAA Section 889 · TAA

Opengear is a Digi International company (NASDAQ: DGII). Compliance documentation, including SOC 2, ISO 27001:2022, and PCI DSS, is maintained at the Digi Security Center and the Opengear Trust Center. Certifications apply to specified products and scopes.

chat

How to report a vulnerability?

Opengear accepts vulnerability reports from researchers and customers. We aim to acknowledge reports we receive and to coordinate disclosure with the reporter. If you believe you found a security vulnerability, please report it here.

➔ Schedule
a Demo