TXOne Networks
Hero background

Every Endpoint Protected. No Production Disrupted.

Endpoint Protection

Your legacy Windows systems power critical production, but IT security vendors abandoned them years ago. Your most vulnerable assets are the ones they refuse to protect. TXOne Stellar covers Windows 2000 through Windows 11 with one-minute visibility and zero-disruption prevention, without touching the systems your operations depend on.

IT-adapted EDR solutions crash legacy systems, generate false positives on legitimate OT processes, and demand resources constrained endpoints cannot provide. TXOne Stellar delivers endpoint security designed for OT realities in two editions. Stellar Discover installs in one minute with no drivers and no kernel access, giving your security team device-level visibility that co-exists with any IT EDR already running. Stellar Protect delivers full prevention across Windows 2000 through Windows 11 with automated per-device baselines, 70,000+ OT applications recognized automatically, and Cyber-Physical Systems Detection and Response (CPSDR) that blocks unauthorized changes before they impact production. If you have already invested in IT endpoint security, Stellar adds the OT coverage IT EDR was never built to deliver. StellarOne forwards telemetry to Splunk, Microsoft Sentinel, and QRadar, and maps to IEC 62443 and NIST CSF requirements.

Challenges

Legacy System Security Challenges

Industrial endpoints running legacy systems face cybersecurity challenges that traditional IT security solutions were never designed to address.

100% of manufacturing environments run legacy Windows systems without adequate protection

Unsupported Systems, Unprotected Operations

Windows XP, Windows 7, and Server 2008 remain essential to production, yet IT security vendors abandoned support years ago. Your most critical and legacy assets run without protection because upgrading means replacing millions in functional equipment.

Capabilities

Endpoint Protection Framework

Three-pillar approach to operations-first endpoint security

Visibility-First Deployment

Stellar Discover installs in one minute per endpoint with no drivers, no kernel access, and no reboot. Runs entirely in user space, at the same privilege level as Windows Notepad, so it cannot destabilize the systems it monitors. Co-exists with any IT EDR already deployed.

Key Capabilities

1-minute install with no drivers or reboot
User-space architecture with no kernel access
Co-exists with existing IT EPP/EDR deployments
Active malware, USB activity, and vulnerability telemetry
Features

Operations-First Endpoint Security

TXOne Stellar provides comprehensive endpoint protection designed specifically for legacy industrial systems, delivering full security without operational compromise.

Prevent threats before execution, not after detection

CPSDR Technology

Cyber-Physical Systems Detection and Response fingerprints each endpoint and blocks unauthorized changes the moment they occur, before they impact operations. Prevention happens before execution. No waiting on detection, analysis, or signature updates.

Real-time change detection and prevention
Protection for configurations, files, and processes
Meets government regulatory requirements
No waiting for threat identification and analysis
StellarOne

StellarOne

Unified Management Console

Single-pane management for every Windows endpoint, from legacy to modern

StellarOne manages the entire Stellar estate from one console: Stellar Discover sensors for visibility with Windows and Stellar Protect agents for prevention, across Windows 2000 through Windows 11 and Linux. Role-based access, centralized policy, and automated baseline generation for every endpoint in your OT environment.

  • Single console for Stellar Discover and Stellar Protect agents
  • Coverage from Windows 2000 SP4 through Windows 11 plus major Linux distributions
  • One-click remote upgrade from Discover to Protect via StellarOne
  • Role-based access control for multi-site and multi-team operations
  • SIEM integration with Splunk, Microsoft Sentinel, and QRadar
  • Air-gap operation with USB-based pattern distribution for constrained environments

Technical Specifications

Managed Agent Support

Stellar Discover AgentWindows only, StellarOne-managed, requires continuous connection to StellarOne
Stellar Protect Agent for WindowsWindows 2000 SP4 through Server 2025 and Windows 11
Stellar Protect Agent for LinuxUbuntu, CentOS, RHEL, Rocky, Debian, Oracle, openSUSE, AlmaLinux Miracle
Mixed-edition fleet managementSupported on a single StellarOne instance

Scale and Sizing

Recommended fleet sizeUp to 30,000 endpoints per StellarOne instance
Multi-site supportCentral management with site-level policy groups
Role-based access controlYes
Audit trailEvery policy and upgrade change attributed to the user who made it

Integration and API

SIEM integrationForwards events to SIEM; SIEM triggers actions via API
Log forwardingSyslog and CEF
REST APIYes, for automation and orchestration
SenninOne integrationTelemetry feed for VSAR vulnerability prioritization

Deployment Characteristics

Deployment form factorVirtual appliance (VMware, Hyper-V, KVM, Nutanix) or Cloud (AWS, Azure)
Air-gap supportYes, with USB pattern updates
Internet requirementOptional
High availabilityRequires VM's Active-Standby capability

What Our Customers Say

Ansaldo

Within this context, TXOne Networks emerged as the ideal technology partner, capable of responding precisely to Ansaldo Energia’s requirements.

Diego Lusso
Cyber Security OT Manager, Ansaldo
Carlsberg Group

Thanks to OT security solution Stellar, TXOne Networks helps us mitigate risks that we couldn't address yesterday without making significant financial investments.

Chris Thompson
Director of Brewery OT Security, Carlsberg Group

Protect Your Legacy Systems Today

Extend the secure operational life of your critical legacy systems by 7 to 10 years. One lightweight agent covers Windows 2000 through Windows 11, avoiding $2-5M in replacement costs per system.