IoT Secure Appliances
Purpose-built hardware and cloud deployments for exposure management
IoT Secure appliances run the full platform—device discovery, telemetry collection, traffic analysis, segmentation, and enforcement—in the form factor that fits your environment. From a matchbox-sized sensor for branch offices to a rack-mounted enterprise engine and cloud marketplace options for Azure and AWS.
Passive Discovery
Every appliance passively identifies every device on your network—no agents, no TAP/SPAN setup, no network reconfiguration required.
Built-In Enforcement
Segment and block in real time. Policy is applied at the appliance level—no separate enforcement hardware or firewall changes needed.
Cloud-Managed
All appliances—hardware or virtual—connect to the IoT Secure cloud platform and are managed through a single unified console.
Any Environment
Choose hardware for on-premises sites, a virtual image for your data center, or cloud marketplace options to cover Azure and AWS environments.
IoT-mini™
Full platform coverage in a device the size of a matchbox.
The IoT-mini™ is a compact, fanless appliance that delivers complete IoT Secure platform capabilities through a single Ethernet connection. Plug it into any port on your network switch and it begins discovering devices immediately—no configuration, no agents, no disruption to existing infrastructure.
Designed for environments where space, simplicity, and speed of deployment matter most. Whether you're running a quick evaluation, protecting a school or clinic, or rolling out coverage across distributed branch offices, the IoT-mini™ delivers enterprise-grade visibility and enforcement in under five minutes.
- Passive device discovery — every device seen on the network segment, automatically
- Real-time device inventory with manufacturer, type, OS, and risk classification
- Traffic flow analysis, DNS monitoring, and behavioral telemetry
- Built-in segmentation and enforcement through IoT Secure policy engine
- PoE-powered — no separate power adapter required
- Completely silent — passive cooling, no moving parts
- Cloud-managed — centrally visible and controlled through the IoT Secure platform
Tech Specs
- Dimensions
- 48 × 49 × 11 mm (about the size of a matchbox)
- CPU
- Single-core, 650 MHz
- Memory
- 64 MB RAM
- Storage
- 16 MB flash
- Ethernet
- 1× 10/100 Mbps port
- Power
- PoE 802.3af/at (10–60V) or micro-USB 5V; max 3.5W
- Cooling
- Passive — completely silent, no moving parts
- Temp range
- −30°C to 70°C (−22°F to 158°F)
- MTBF
- ~100,000 hours at 25°C
- Certifications
- CE, FCC, IC, RoHS
- Best for
- Branch offices, SMB, education, healthcare, proof of concept
IoT-max™
Enterprise-grade exposure management at rack scale.
The IoT-max™ is a 1U rack appliance purpose-built for large enterprise environments, data centers, healthcare systems, and industrial facilities where network scale, reliability, and throughput are non-negotiable. With a 9-core processor and seven independent Gigabit Ethernet ports—each with a direct CPU connection—the IoT-max™ sustains full inspection across high-traffic segments without bottlenecks.
Dual redundant AC power supplies, active cooling, and a hardware MTBF exceeding 200,000 hours make the IoT-max™ suitable for environments requiring carrier-grade uptime. SFP+ fiber support enables integration into high-speed data center backbones, while the RS-232 console port and LCD panel provide local operations visibility without remote access dependency.
- 9-core processor with each core independently connected to network ports—no shared backplane bottleneck
- 7× Gigabit Ethernet ports plus 1× Combo (SFP or GbE) and 1× SFP+ 10G fiber uplink
- Dual redundant AC power supplies (100–240V, 50/60Hz) — no single point of power failure
- Full IoT Secure platform: discovery, telemetry, DLP, NetFlow analysis, VPN termination, and enforcement
- Support for millions of simultaneous device observations
- LCD status panel for local health monitoring without SSH or console access
- RS-232 serial console port for out-of-band management and recovery
- Cloud-managed and locally autonomous — continues enforcing policy even when cloud connectivity is interrupted
Tech Specs
- Form factor
- 1U rack — 443 × 175 × 44 mm
- CPU
- 9-core, 1.2 GHz (each core with dedicated port connection)
- Memory
- 2 GB RAM
- Storage
- 128 MB NAND flash + microSD expansion slot
- Ethernet
- 7× Gigabit + 1× Combo (SFP/GbE) + 1× SFP+ (10G)
- Power
- Dual AC 100–240V, 50–60 Hz; max 39W
- Cooling
- Active — dual redundant cooling fans
- Temp range
- −20°C to 60°C (−4°F to 140°F)
- MTBF
- ~200,000 hours at 25°C
- Console
- RS-232 serial console + LCD status panel
- Certifications
- CE, EAC, RoHS
- Best for
- Enterprise, data center, healthcare systems, large campus, industrial
IoT-max™ Virtual
The complete IoT-max™ platform on your own hypervisor.
IoT-max™ Virtual runs the full IoT Secure platform as a virtual machine on your existing private infrastructure. Install it on VMware vSphere, Microsoft Hyper-V, Proxmox VE, or any KVM-based hypervisor—then connect it to the network segments you need to monitor, exactly as you would a physical appliance.
All platform capabilities are identical to the hardware IoT-max™: passive device discovery, traffic analysis, NetFlow telemetry, segmentation, enforcement, VPN termination, and cloud-managed policy. There is no capability gap—the software is the same; only the underlying hardware changes.
IoT-max™ Virtual is the right choice when your organization standardizes on virtualized infrastructure, requires no additional rack hardware, needs coverage in a disaster recovery site, or wants to run lab and staging environments on existing server capacity.
- Full IoT-max™ platform parity — same discovery, telemetry, and enforcement as hardware
- Compatible with VMware vSphere, Microsoft Hyper-V, Proxmox VE, and KVM-based hypervisors
- Deploy in minutes from a downloadable VM image — no physical hardware required
- Assign virtual network interfaces to the segments you want to monitor and protect
- Scales with your VM host — allocate more vCPUs and memory as the environment grows
- Managed through the same IoT Secure cloud console as hardware appliances
- Ideal for DR sites, lab environments, and virtual-first infrastructure strategies
Tech Specs
- Deployment
- VM image (OVA / ISO) — self-hosted on private hypervisor
- Hypervisors
- VMware vSphere, Hyper-V, Proxmox VE, KVM
- Min vCPU
- 4 vCPUs recommended
- Min memory
- 4 GB RAM recommended
- Min storage
- 32 GB virtual disk
- Networking
- Virtual NICs mapped to monitored network segments
- Capabilities
- Full IoT-max™ platform feature parity
- Best for
- Virtualized data centers, DR sites, private cloud, labs
IoT-max™ for Azure
Exposure management running natively in your Azure tenancy.
IoT-max™ for Azure is a pre-configured virtual machine image published through Azure Marketplace. Organizations deploy it directly into their Azure subscription—choosing the region, virtual network, and resource group that match their existing cloud architecture. From that point forward, IoT Secure manages the instance exactly like a hardware or virtual appliance: same platform, same console, same policy engine.
This deployment model follows the same pattern used by leading security vendors who publish network security appliances to Azure Marketplace. The appliance VM integrates with your Azure Virtual Network (VNet), receives traffic from monitored network interfaces, and reports telemetry back to the IoT Secure cloud platform. Procurement is handled entirely through standard Azure billing and your existing Azure agreement—including Microsoft Azure Consumption Commitment (MACC) eligibility where applicable.
IoT-max™ for Azure is particularly well-suited for organizations running Azure-connected facilities, OT networks tunneled into Azure, healthcare workloads under Azure for healthcare compliance, or any hybrid environment where Azure is the primary cloud control plane.
- Deploy directly from Azure Marketplace — available in your Azure subscription within minutes
- Runs in your Azure tenancy — data stays within your Azure environment and chosen region
- Connects to Azure Virtual Networks (VNet) and monitored subnets via standard Azure networking
- Supports Azure RBAC for access control and Azure Monitor for infrastructure observability
- Managed through IoT Secure platform alongside hardware and virtual appliances
- Eligible for Azure billing, MACC commitments, and enterprise Azure agreements
- Recommended for Azure-connected OT/IoT sites, healthcare, and hybrid enterprise networks
Tech Specs
- Deployment
- Azure Marketplace VM image
- Cloud
- Microsoft Azure
- Networking
- Azure VNet, subnet attachment, and NSG integration
- Billing
- Azure subscription — MACC-eligible where available
- IAM
- Azure RBAC and managed identity support
- Regions
- Available in all supported Azure commercial regions
- Best for
- Azure-first enterprises, hybrid networks, OT/IoT in Azure
IoT-max™ for AWS
Exposure management running natively in your AWS environment.
IoT-max™ for AWS is a pre-configured Amazon Machine Image (AMI) published through AWS Marketplace. Organizations subscribe and launch the instance directly from the AWS console, placing it inside their VPC alongside existing compute, network, and security infrastructure. The appliance integrates with AWS networking constructs—VPC subnets, security groups, and VPC Traffic Mirroring—to observe the traffic it needs to analyze.
This is the same approach taken by enterprise security vendors who publish virtual network appliances to AWS Marketplace: a hardened, pre-configured image that launches as an EC2 instance, connects to your internal network topology, and is managed centrally through the security vendor's platform. IoT-max™ for AWS follows this model precisely, with full reporting to the IoT Secure cloud console and no difference in platform capabilities relative to hardware deployments.
IoT-max™ for AWS supports AWS GovCloud regions, making it suitable for federal agencies, government contractors, and regulated industries operating under FedRAMP, CMMC, or ITAR requirements who already rely on AWS as their cloud platform of record.
- Launch directly from AWS Marketplace — available as an EC2 AMI in your AWS account
- Runs inside your VPC — network traffic stays within your AWS environment
- Integrates with VPC subnets, security groups, and VPC Traffic Mirroring for traffic analysis
- Supports AWS IAM roles for least-privilege access and credential management
- Managed through the IoT Secure platform alongside hardware and Azure deployments
- AWS GovCloud support for federal, DoD, and regulated-industry customers
- Billed through your existing AWS account — supports AWS Marketplace private offers and EDPs
Tech Specs
- Deployment
- AWS Marketplace AMI — EC2 instance launch
- Cloud
- Amazon Web Services
- Networking
- VPC subnet, security groups, VPC Traffic Mirroring
- Billing
- AWS subscription — supports EDP and private offers
- IAM
- AWS IAM roles and instance profile support
- Regions
- Available in AWS commercial and GovCloud regions
- Best for
- AWS-first enterprises, federal/GovCloud, hybrid networks
Not sure which appliance fits?
Our team will help you choose the right form factor
Whether you need a hardware appliance for an on-site deployment, a virtual image for your data center, or a cloud marketplace option for Azure or AWS—we can walk you through the right choice for your environment, scale, and procurement requirements.