OT / Industrial · Trust-Boundary Pattern
Industrial DMZ Reference Architecture
A governed integration layer separating enterprise and operational systems while hosting controlled transfer, access, inspection and support services.
SECUREPLANE REFERENCE MODELIndustrial DMZ Reference Architecture
No implicit transitive trust
01ENTERPRISEusers · apps
02EDGE FWdeny · inspect
03IDMZbroker · proxy · jump
04OT FWallow · monitor
05OPERATIONSSCADA · historian
Service ownership · logging · recovery · change control
Which services belong at the enterprise–OT boundary, and how should every permitted flow be owned and observed?
Representative outputs
Artifacts that make the decision usable
No diagram is a deployable design until it is adapted to the environment, evidence, owners, and operating constraints.
IDMZ logical architectureConduit matrixBoundary service catalogFirewall policy modelOperational validation plan