Skip to Content

ABD6019-NATFW

Enterprise-grade industrial security appliance with 10 physical network segments for large-scale OT network protection. The Anybus Defender 6019 with NAT/FW license provides essential firewalling, NAT and network segmentation across your entire factory floor — 1x WAN, 8x Gigabit LAN and 1x SFP port for fiber optic or additional RJ45 connectivity, all with VLAN support.

Deny-by-default stateful firewall with versatile NAT configuration, transparent bridging and VLAN support for virtually unlimited logical segmentation. Built-in OT asset discovery identifies every connected device across all segments with make, type, firmware version and patch level. Configuration via intuitive web GUI with use-case wizards, one-click rule creation, RESTful API and CLI access. Optional central management via the Anybus Cybersecurity Console.

Rugged fan-less IP50 metal enclosure with DIN rail mounting. Ideal for large production facilities, multi-zone factory floors and OT backbone infrastructure.

2,610.00 € 2,610.00 € (Tax excluded)
2,610.00 € (Tax excluded)

How it works


1
Install
Mount on DIN rail, connect WAN, up to 8 LAN segments and SFP uplink to your factory backbone or fiber infrastructure
2
Discover
Asset scanner maps every OT device across all 10 segments with firmware and patch level details
3
Configure
Use the web GUI with use-case wizards to set up NAT, firewall rules and whitelists per port — one-click rule creation from logs
4
Protect
Switch to enforcement — only whitelisted traffic gets through on each of the 10 segments. Full factory floor secured from one device



Key use cases


10-segment OT protection1x WAN + 8x Gigabit LAN + 1x SFP — segment an entire factory floor from a single appliance
IP conflict avoidance at scaleVersatile NAT (1:1, 1:many) across 10 segments — connect dozens of identical machines without address conflicts
Multi-zone machine isolationDeny-by-default firewall with VLAN support — each LAN port protects a separate machine cell or production zone
Fiber optic connectivitySFP port for fiber or additional RJ45 — connect to backbone switches, distant buildings or high-EMI environments
Enterprise asset discoveryIdentify every device across all 10 segments — make, type, firmware version, patch level and accuracy score
Transparent bridgingDrop into an existing network at Layer 2 without changing any IP addresses — invisible to connected devices

 

Technical Specs


License typeNAT/FW — Perpetual
Stateful firewallYes — deny by default
NATSimple NAT wizard, 1:1, 1:many
Bridge / transparent modeYes
VLAN supportYes — logical segmentation across all ports
Certificate managementYes
Asset discovery & inventoryYes — OT/ICS specific, with accuracy score
NotificationsEmail, syslog, Telegram Messenger, Pushover
Central managementOptional — Anybus Cybersecurity Console


WAN1x RJ45 Gigabit Ethernet
LAN8x RJ45 Gigabit Ethernet
SFP1x SFP port (RJ45 or fiber optic module)
Total physical segments10
VLANSupported — additional logical segments


Web GUIOn-board web interface with use-case wizards
Rule creationOne-click from firewall logs + floating rules
APIIntegrated RESTful API
CLISSH / Console access
DiagnosticsTraffic diagnostics, debug tools, ARP & bandwidth monitoring


Input voltage24V DC
Current consumption (max)1100 mA
Power consumption (max)26.4W


IP ratingIP50
Housing materialMetal — fan-less
MountingDIN rail (EN 50022)
Dimensions (L x W x H)140.4 x 69.6 x 179.7 mm
Weight1270 g
Operating temperature0°C to +60°C


CEYes
WEEEYes
Country of originUSA


 

Need more? The NAT/FW license covers essential firewalling, NAT, bridging and asset discovery across all 10 ports. For Deep Packet Inspection on industrial protocols (Ethernet/IP, Modbus), virtual patching via IPS, VPN, DHCP server and policy scheduling — upgrade to the DPI/FW license. For advanced routing, traffic shaping, load balancing and high availability — see the PRO/FW license.


Build the perfect configuration

Everything you need to complete your setup!

Your Dynamic Snippet will be displayed here... This message is displayed because you did not provide enough options to retrieve its content.