TXOne Networks
Hero background

Inline Protection Without the Production Risk

Transparent intrusion prevention with under half a millisecond of delay. Deploy inline to block threats, or offline on a SPAN port to watch first. No IP changes or network redesign. Fail-safe bypass ensures network continuity.

End the Standoff Between Security and Operations

Your security team wants inline protection. Your operations team wants zero production risk. EdgeIPS delivers both, and now does more of the work itself: an AI engine builds and tunes security policy automatically, and the same protection architecture runs on physical appliances or the new vEdgeIPS Pro virtual appliance.

AI-Powered Policy Generation

An AI engine builds, aggregates, and tunes your policy automatically, cutting deployment effort by more than 90%.

Physical or Virtual

vEdgeIPS Pro brings the same inline, fail-safe protection to virtualized OT infrastructure, with no IP reconfiguration or network topology redesign required.

Four AI Pillars, One Closed Loop

AI-powered Asset Intelligence, Policy Automation, Threat Alert Visibility, and OT Integration.

Per-Segment Hardware Bypass

Gen3 hardware bypass on every port pair ensures production continuity during any event.

Hybrid Protocol Filtering

Granular OT protocol inspection without firmware upgrades, new protocols added dynamically.

Gbps maximum throughput
K
Policy enforcement rules
Models for every environment
<
Microseconds average latency

Inline Asset Protection

Compact 1-to-1 IPS appliances for individual critical assets

EdgeIPS 102 Gen2

EdgeIPS 102 Gen2

DIN-Rail Mount

Compact protection for a single critical device.

200Mbps
Threat prevention speed
1
Protected segment
30K
Simultaneous connections
-40 to 75°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
Standard copper ports
Two RJ-45 ports connect with the cables you already use.
Rugged and fanless
Mounts directly on a DIN rail. Rugged design with no fans or moving parts.
Power: 12/24/48 VDC via terminal block, or 12V DC via barrel jack
EdgeIPS 103

EdgeIPS 103

DIN-Rail Mount

Fast, compact protection for a single critical device.

850Mbps
Threat prevention speed
1
Protected segment
30K
Simultaneous connections
-40 to 75°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
Standard copper ports
Two RJ-45 ports connect with the cables you already use.
Rugged and fanless
Mounts directly on a DIN rail. Rugged design with no fans or moving parts.
Power: 12/24/48 VDC via terminal block, or 12V DC via barrel jack
EdgeIPS 103F

EdgeIPS 103F

DIN-Rail Mount

Fiber connections for a single critical link.

850Mbps
Threat prevention speed
1
Protected segment
30K
Simultaneous connections
0 to 40°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
Gigabit fiber ports
Two fiber ports. Choose a multi-mode model for short runs or a single-mode model for long distances.
Rugged and fanless
Mounts directly on a DIN rail. Rugged design with no fans or moving parts.
Power: 12/24/48 VDC via terminal block, or 12V DC via barrel jack
EdgeIPS LE 102

EdgeIPS LE 102

DIN-Rail Mount

Compact next-gen IPS for cost-sensitive environments

100Mbps
Throughput (IMIX)
1
Hardware Segment
512
Policy Rules
30K
Concurrent Connections
2 GbE Ports
Auto-sensing 10/100/1000 Mbps copper connectivity
Hardware Bypass
Fail-open for uninterrupted production
Ultra-Compact
110 x 109 x 26 mm DIN-rail mount
Cost-Effective
Purpose-built for high-volume deployments
12–48 VDC•Dual-type input (3-pin terminal block + DC-IN 12V)

Multi-Segment Protection

Multi-port appliances protecting multiple network segments from a single device

EdgeIPS Pro 212F

EdgeIPS Pro 212F

DIN-Rail Mount

Multi-segment protection for copper and fiber links.

1.8Gbps+
Threat prevention speed
6
Protected segments
200K
Simultaneous connections
-40 to 75°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity, including during uplink disconnection.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
Copper and fiber together
Two copper segments and four multi-mode fiber segments in one device.
Flexible mounting
Mounts on a DIN rail, in a rack, or on a wall.
Power: 12/24/48 VDC via terminal block, plus 12V DC via barrel jack (dual redundant inputs)
EdgeIPS Pro 216

EdgeIPS Pro 216

DIN-Rail Mount

Eight-segment protection in two versions: Commercial for temperature-controlled sites, or Rugged for harsh environments.

1.8Gbps+
Threat prevention speed
8
Protected segments
200K
Simultaneous connections
-40 to 75°C
Operating temperature (Rugged) Commercial: 0 to 40°C
Hardware bypass
Fail-safe bypass ensures network continuity, including during uplink disconnection.
16 GbE Ports
High-density copper connectivity for production floors
16 copper ports
16 RJ-45 ports protect up to 8 network links.
Flexible mounting
Mounts on a DIN rail, in a rack, or on a wall.
Power: 12/24/48 VDC via terminal block, plus 12V DC via barrel jack (dual redundant inputs)

Production & Data Center Scale

High-performance rack-mounted appliances for large-scale OT network protection

EdgeIPS Pro 732

EdgeIPS Pro 732

1U Rackmount

High-capacity protection for large production sites.

7.2Gbps
Threat prevention speed
16
Protected segments
2M
Simultaneous connections
0 to 40°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity, including during uplink disconnection.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
32 copper ports
32 RJ-45 ports protect up to 16 network links.
Standard 1U rack size
Fits a 1U rack. Rack ears and sliding rails are supported.
Power: 90 to 264 VAC via two C14 inlets (redundant 800W hot-swappable power supplies)
EdgeIPS Pro 1048 Gen2

EdgeIPS Pro 1048 Gen2

1U Rackmount

Modular 48-port IPS for large-scale network segmentation

10Gbps
Throughput (IMIX)
48
Max Ports
24
Bypass Segments
2M
Concurrent Connections
Up to 48 Ports
Modular card-based expansion for flexible deployment
24 Segment Bypass
Gen3 hardware bypass for copper and fiber modules
Hot-Swap PSU
Redundant 800W active-active power supplies
2M Connections
Enterprise-scale concurrent session handling
90–264 VAC•Redundant 800W PSU (1+1 AC, active-active, hot-swappable)
EdgeIPS Pro 2096 Gen2

EdgeIPS Pro 2096 Gen2

2U Rackmount

Maximum port density for the largest networks.

20Gbps
Threat prevention speed
Up to 48
Protected segments
4M
Simultaneous connections
0 to 40 °C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity, including during uplink disconnection.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
Add ports as you grow
Add copper or fiber cards to reach up to 96 ports.
Very low delay
Adds under half a millisecond of delay on average, so production timing is not affected.
Power: 90 to 264 VAC via two C14 inlets (redundant 800W hot-swappable power supplies)
EdgeIPS Pro 4016F

EdgeIPS Pro 4016F

1U Rackmount

The fastest EdgeIPS, built for high-speed fiber networks.

40Gbps
Threat prevention speed
8
Protected segments
4M
Simultaneous connections
0 to 40°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity, including during uplink disconnection.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
16 fiber ports, 10 gigabit
Order multi-mode for short runs or single-mode for long distances.
Fastest in the EdgeIPS family
40 Gbps is the highest threat prevention speed of any EdgeIPS.
Power: 90 to 264 VAC via two C14 inlets (redundant 800W hot-swappable power supplies)
EdgeIPS Pro 2016F

EdgeIPS Pro 2016F

1U Rackmount

High-speed fiber protection for demanding networks.

20Gbps
Threat prevention speed
8
Protected segments
4M
Simultaneous connections
0 to 40°C
Operating temperature
Hardware bypass
Fail-safe bypass ensures network continuity, including during uplink disconnection.
Inline or offline deployment
Sits directly in the network path, or connects to a SPAN (mirror) port to watch traffic offline.
16 fiber ports, 10 gigabit
Order multi-mode for short runs or single-mode for long distances.
Very low delay
Adds under half a millisecond of delay on average, so production timing is not affected.
Power: 90 to 264 VAC via two C14 inlets (redundant 800W hot-swappable power supplies)
vEdgeIPS Pro

vEdgeIPS Pro

Virtual Appliance

The same OT protection, delivered as a virtual appliance.

Up to 2.5Gbps
Threat prevention speed
Up to 4
Protected segments
Up to 200K
Simultaneous connections
3
Appliance sizes
Same protection as hardware
Uses the same threat inspection and policies as the hardware models.
Works with your platforms
Runs on VMware ESX and Workstation, KVM, and Hyper-V.
Pick the right size
Choose 2, 4, or 8 CPU cores for 500 Mbps, 1.5 Gbps, or 2.5 Gbps.
Managed with your other Edge devices
Manage virtual and hardware appliances together in EdgeOne.
Runs on: Your own servers. Needs 8 to 16 GB of memory and at least 70 GB of storage.
Challenges

OT Security Challenges

Critical challenges that EdgeIPS Family is purpose-built to solve

Traditional deployments take 6-12 months vs. days with transparent architecture

Network Redesign Required

IT security appliances require IP address changes and network architecture modifications.

Key Features

Key Features

Discover how EdgeIPS Family protects your OT environment

AI-Powered Policy Generation

An AI engine watches traffic per asset, builds a baseline allowlist, then aggregates and tunes the rule set automatically, compressing policy deployment from weeks to hours and cutting manual rule-writing by more than 90%.

Key Capabilities

Automated baseline learning per asset
Automatic rule aggregation, from aggressive to conservative strategies
Per-asset policy customization
Continuous refinement as traffic evolves
Use Cases

Real-World Applications

See how organizations deploy EdgeIPS Family in production environments

Critical Legacy Asset Protection

EdgeIPS 102 Gen2, 103, or LE 102 - One unit in front of a single asset you cannot patch, replace, or take offline, such as a production tool worth millions that the line depends on. One-to-one inline protection at a fraction of the cost of an outage.

For Operations Teams

For Operations Teams

Deploy inline network security, on hardware or virtualized infrastructure, without touching a single IP address. An AI engine builds the security policy for you, and bypass technology provides production continuity assurance, even during maintenance or failures.

  • Zero network changes required
  • AI-generated policy in hours, not weeks
  • Bypass on every segment, physical or virtual
  • Physical or virtual appliances

Technology

Technologies powering EdgeIPS Family

CPSDR Networking Technology

Predictive Threat Detection for Industrial Networks

EdgeIPS uses CPSDR to identify and predict anomalous network behaviors at the earliest stages. Combined with deep OT protocol understanding, it provides proactive defense against sophisticated threats targeting industrial control systems.

  • Predictive anomaly detection across network segments
  • Proactive threat blocking before production impact
  • Asset-aware behavioral analysis
  • Continuous network posture assessment

Designed for inline deployment without production disruption

The Impossible Choice: Protection vs. Production

Your security team knows inline protection is the standard. Your operations team knows any inline device can become a single point of failure. A single false positive or device failure could halt production lines worth millions per hour.

Deployment Method

IT-Centric Approach

Requires IP address changes and network architecture modifications, causing months of downtime and risk

TXOne Solution

Transparent deployment with no IP changes; production runs throughout installation

Failover Protection

IT-Centric Approach

No hardware bypass; device failure stops production

TXOne Solution

Gen3 hardware bypass on all segments with sub-microsecond switchover

Protocol Support

IT-Centric Approach

Cannot inspect Modbus, SECS/GEM, or S7Comm; industrial attacks are invisible

TXOne Solution

Deep inspection for 180+ industrial protocols with CPSDR predictive detection

EdgeIPS Pro eliminates the impossible choice. Your security team gets inline prevention. Your operations team gets the hardware bypass guarantee.

Deploy EdgeIPS Family in 4 Steps

A streamlined implementation process designed for OT environments with zero disruption to operations.

01

Week 1: Technical assessment identifying deployment priorities

02

Week 2-3: Pilot deployment with transparent installation on hardware or virtual appliances

03

Month 1-2: Expand coverage with AI-powered policy generation

04

Ongoing: EdgeOne integration for centralized visibility

Operational & Protected

Technical Specifications

Intrusion PreventionYes (CPSDR-Networking)
Policy Rules100,000
Hardware BypassGen3 on all physical segments
Universal BypassYes
Signature-Based AntivirusYes
ICS Protocol Profiles256

Seamless Integration with EdgeIPS Family

Designed to integrate into existing OT infrastructure without disrupting operations.

One protection architecture across physical EdgeIPS appliances and vEdgeIPS Pro virtual appliances
Transparent deployment maintaining existing network architecture
Bypass technology providing production continuity assurance during any event
EdgeOne centralized management for multi-device deployments
Cyber-Physical Systems Detection and Response (CPSDR) coordination with Stellar endpoint protection via Sennin
Virtual patching extending legacy system protection at network layer

What Our Customers Say

Ansaldo

“Within this context, TXOne Networks emerged as the ideal technology partner, capable of responding precisely to Ansaldo Energia’s requirements.”

Diego Lusso
Cyber Security OT Manager, Ansaldo
Carlsberg Group

“Thanks to OT security solution Stellar, TXOne Networks helps us mitigate risks that we couldn't address yesterday without making significant financial investments.”

Chris Thompson
Director of Brewery OT Security, Carlsberg Group

Ready for Inline Protection Without Production Risk?

See bypass technology and transparent deployment in action, on hardware or virtual appliances. Request a technical assessment for your network environment.