Skip to Content

ABD6024-DPIFW

Industrial security appliance with dual SFP fiber optic connectivity and Deep Packet Inspection. The Anybus Defender 6024 with DPI/FW license combines advanced OT protection with fiber-ready networking — 1x WAN, 3x Gigabit LAN and 2x SFP ports supporting 1Gig LC Fiber (multi-mode or single-mode) or additional RJ45, for a total of 6 physical segments with VLAN support.

Understands industrial protocols like Ethernet/IP CIP and Modbus at the application layer, with auto-learn capabilities that minimize manual rule creation. Integrated Snort and Suricata IPS enable virtual patching of legacy devices. Built-in OT asset discovery identifies every connected device with make, type, firmware version and patch level.

Full VPN support (WireGuard, OpenSSL, IPsec) for secure plant-to-plant connections, RADIUS/LDAP/AD authentication, DHCP server and policy scheduling. LAN ports are individually configurable and can be reconfigured as a 2nd WAN. Configuration via web GUI with use-case wizards, RESTful API and CLI. Optional central management via the Anybus Cybersecurity Console.

Rugged fan-less IP50 metal enclosure with DIN rail mounting. Ideal for OT environments requiring fiber backbone connectivity.

3,190.00 € 3,190.00 € (Tax excluded)
3,190.00 € (Tax excluded)

How it works


1
Install
Mount on DIN rail, connect WAN, up to 3 LAN segments and 2 SFP fiber or RJ45 uplinks
2
Discover
Asset scanner identifies all OT devices across copper and fiber segments with firmware and patch level details
3
Auto-learn
DPI auto-learns industrial traffic patterns on all ports and suggests firewall rules — minimizing manual configuration
4
Enforce
DPI rules and IPS signatures active on all 6 segments — legacy devices virtually patched, VPN tunnels secured



Key use cases


Dual SFP fiber connectivity2x SFP ports for 1Gig LC Fiber (multi-mode or single-mode) or additional RJ45 — connect to fiber backbone or distant buildings
Deep Packet InspectionInspect Ethernet/IP CIP and Modbus at the application layer across all 6 segments — auto-learn capable
Virtual patchingProtect legacy PLCs and HMIs — Snort and Suricata IPS with customizable signatures across fiber and copper segments
6-segment networking1x WAN + 3x Gigabit LAN + 2x SFP — individually configurable ports with VLAN for additional logical segments
Secure plant-to-plant VPNEncrypted OT connections between facilities using WireGuard, OpenSSL or IPsec — over fiber or copper
OT asset discoveryIdentify every device across all 6 segments — make, type, firmware version, patch level and accuracy score

 

Technical Specs


License typeDPI/FW — Perpetual
Stateful firewallYes — deny by default
NATSimple NAT wizard, 1:1, 1:many
Bridge / transparent modeYes
VLAN supportYes — logical segmentation across all ports
Certificate managementYes
Deep Packet InspectionEthernet/IP CIP, Modbus — auto-learn capable
Intrusion Protection (IPS)Snort & Suricata — customizable signatures
Virtual patchingYes — protect unpatched legacy devices
VPNWireGuard, OpenSSL & IPsec
Remote client VPNYes
RADIUS / LDAP / AD authenticationYes
DHCP server & forwardingYes
Rules/policy schedulerYes — by date, time and duration
Asset discovery & inventoryYes — OT/ICS specific, with accuracy score
NotificationsEmail, syslog, Telegram Messenger, Pushover
Central managementOptional — Anybus Cybersecurity Console


WAN1x RJ45 Gigabit Ethernet
LAN3x RJ45 Gigabit Ethernet (individually configurable)
SFP2x SFP — 1Gig LC Fiber (multi-mode or single-mode) or additional RJ45
ReconfigurableLAN ports can be reconfigured as 2nd WAN port
Total physical segments6
VLANSupported — additional logical segments


Web GUIOn-board web interface with use-case wizards
Rule creationOne-click from firewall logs + floating rules
APIIntegrated RESTful API
CLISSH / Console access
DiagnosticsTraffic diagnostics, debug tools, ARP & bandwidth monitoring


Input voltage24V DC
Current consumption (max)1100 mA
Power consumption (max)26.4W


IP ratingIP50
Housing materialMetal — fan-less
MountingDIN rail (EN 50022)
Dimensions (L x W x H)140.4 x 69.6 x 179.7 mm
Weight1270 g
Operating temperature0°C to +50°C
Humidity0–85% non-condensing


CEYes
RoHSYes (2011/65/EU)
WEEEYes
Country of originUSA


 

Why 6024 over 6004? The Defender 6024 replaces one RJ45 LAN with 2x SFP ports — giving you dual fiber optic connectivity (multi-mode or single-mode) for backbone uplinks, long-distance runs or high-EMI environments. Same 6-segment capability, same DPI/FW feature set. For all-copper deployments, see the Defender 6004. For 10 segments with SFP, see the Defender 6019. For advanced routing, traffic shaping and HA, see the PRO/FW license.


Build the perfect configuration

Everything you need to complete your setup!

Your Dynamic Snippet will be displayed here... This message is displayed because you did not provide enough options to retrieve its content.