As a manufacturer or service provider you want to offer your customers convenient monitoring and remote maintenance services for their plants or IT systems? Or are you on the other side, using several remote maintenance services as a system operator and must allow those services to access your network?
These key requirements apply in both cases: The remote maintenance solution should guarantee reliable IT security, record all service activities in accordance with auditing requirements, offer flexible integration in different environments and be easy to use.
- Remote access, VPN and firewalling in one solution
- Can be centrally administrated with full control at all times of maintenance action, access time, target and accessing instance
- Greater operational security; establishment of connections always confirmed from within
- Simple and uniform operation of a number of services and integration of third-party solutions possible
- Virus scanning of the files sent by the remote service prior to execution on the target system
- Compliant with the NIST recommendation (National Institute of Standards and Technology/USA)
- Security level can be adapted, "open" and continuous access up to full control
- Sophisticated corporate-ready rights and role system for up to 100 remote maintenance providers worldwide
- Maximum security and control through port-specific access to the target system, which is isolated from the rest of the system, as well as rendezvous point in the DMZ
- Video recording function and logging
- Also available as industrial hardware with appropriate temperature range and shape factor as well as comfort features such as key switch and two-factor authentication
Basic information on the remote maintenance solution for companies that use remote services
Basic information about the remote maintenance solution for manufacturers and service providers that offer remote services
genubox can provide you with extremely secure remote maintenance access just about anywhere.
As a rugged appliance, genubox can be installed, for example, on industrial robots, wind turbines or simply in server rooms – all locations where manufacturers or service providers monitor and provide support by remote access. The genubox ensures security in the event that maintenance should be required: It establishes an encrypted connection for data transfer and uses its firewall function to restrict external access exclusively to the system being maintained – as a result, other sensitive network areas at the customer cannot be accessed via the maintenance access.
Companies with a larger number of machines on the one hand, and providers of remote maintenance on the other, are faced with the need to set up a constantly increasing number of remote maintenance connections. One must bear in mind here that the machines are usually integrated in local area networks (LANs). If unauthorized persons or malicious code manages to penetrate into the LAN via this maintenance access, there can be serious consequences – not least of all for the relationship between the remote maintenance provider and the customer. A remote maintenance solution must be used here that ensures a high level of security. Other requirements on remote maintenance solutions include convenient operation and administration as well as simple integration.
genua offers a remote maintenance solution that meets high reuqirements: high level of security, convenient operation and administration as well as simple integration. Our concept: One way access by the remote maintenance service into customer networks is not permitted. Instead, all remote maintenance connections run via a rendezvous server that is installed in a demilitarized zone (DMZ) next to the firewall – at the service provider or at the customer.
Both the maintenance provider and the system operator connect to this server at an agreed upon time. A direct maintenance connection is created only once the rendezvous has been established on the server. Via this connection, the remote maintenance provider can now access the machine plant or the IT system in the customer network. The rendezvous solution thereby ensures that system operators retains full control of maintenance access in their networks. The ability to connect a virus scanner to the rendezvous server allows the data sent by the remote service provider to be checked for malicious code. This option offers additional protection against attacks and ensures plant availability.
In addition to the connection control, our solution offers extensive monitoring: This allows system operators to follow and, if required, record on video all remote maintenance service activities live via the operating interface for tamper-proof documentation.
System operators thereby always have an eye on the remote access and can easily ascertain afterwards who did what in their network and when they did it. Should critical events occur, the causes, persons responsible and, if applicable, the recourse claims can be clarified with this documentation.
genuview Archives Video Recordings
With genuview, genua offers an access and storage management solution for remote desktop recordings.
After remote maintenance service activities, the video recording in raw format is forwarded uncompressed to a genuview server and archived there in a memory-saving manner. Access to the recordings can be conveniently organized via a central rights management system.
The encryption and authentication processes used by the German manufacturer genua cannot be defeated with current technology. This ensures that only authorized users are granted access to the server and that data communication can be neither intercepted nor tampered with.
For the system being managed in the customer’s network, just one Remote Maintenance Appliance genubox needs to be installed. The compact appliance serves as a remote peer for the encrypted connection and, with its integrated firewall, shields the managed system from the remainder of the customer’s network should servicing be required. The connection thus leads only to the maintenance object; other systems in the customer network cannot be accessed. These measures guarantee a very high level of security.
Our remote maintenance solution is operated via a convenient Windows app:
at the click of a mouse, the service employee initiates the maintenance connection. If the customer now creates his part of the maintenance connection to the rendezvous server, the service can directly access the managed machine or the IT system. The Windows app for the service employee can be installed on any current Windows system – no administrator rights are necessary here. The remote maintenance solution is administrated via a central management station. This is also suitable for operating larger installations with many maintenance connections, making it easy for you to operate a uniform solution over which all remote maintenance solutions run.
Flexible operation is possible thanks to cross-platform functionality and deployment in the cloud, on premise, on rack hardware or as a rugged industrial appliance.
For the maintained system, genubox must be installed as remote peer. To ensure that no work arises here for the operator, the preconfigured solution simply needs to be connected to the network. Because firewalls generally permit outgoing connections, the rendezvous server can now be accessed from the network – and with that the remote maintenance solution is set up.
Fast commissioning in maintenance cycles, security updates, central administration, and mass configuration ensure efficiency.
As a collaborative learning company, it is our mission to continuously improve and share our knowledge of IT Security with you. In our Knowledge Base we offer you articles, white papers, analyst reports, research results, videos and more in the field of IT security.
genuview's user interface simplifies the overview, administration and archiving of the recordings. In addition, genuview can easily be scaled to handle large quantities of data and many permanent connections.
The genuview access- and storage-management solution is connected directly to the remote maintenance solution. The service boxes on the target systems transfer the data of the video recordings to external genuview servers, e.g., on a customer server, where it is stored and archived.