Remote Access · No Exposed Ports · OpenVPN

Secure Industrial Remote Access —without opening a single port

Connect your automation controllers, PLCs, and OT equipment from anywhere via an OpenVPN/IPSec VPN tunnel automatically deployed on your Eziwan Gateway. No incoming ports need to be opened, and no client-side firewall rules are required. Up and running in 5 minutes.

0exposed port
Zero Inbound Port
<5min
Field Deployment
99.97%
Guaranteed Uptime
<8s
Dual SIM Failover
14-Day Free TrialVPN Documentation
The Problem on the Ground

Industrial Remote Access Today:
a source of costs and risks

Without the right solution, field teams waste hours and IT managers lose sleep.

Expensive travel

A technician travels to a site to check an alarm status, read a Modbus register, or restart a piece of equipment. At €250 per trip, across 50 sites, that amounts to €12,500 per year for tasks that would take just 5 minutes to perform remotely.

250 €

average cost per preventable trip

Open ports = attack surface

The "quick" solution is to open RDP, VNC, or HTTP ports on the client firewall. These ports are constantly scanned by malicious bots. A single unsecured access point is enough to compromise the entire production line.

78 %

IT incidents related to insecure remote access

Traditional VPNs: Complexity and Cost

Traditional site-to-site VPNs (Cisco, Fortinet) require client-side equipment, advanced network configuration, and ongoing maintenance. Even the slightest change in service provider or client router can disrupt access for days.

3–5 j

Average resolution time for a typical VPN outage

Fonctionnement

How Does Eziwan Remote Access Work?

4 steps, no port forwarding, no advanced network configuration on the client side.

01

Plug in the Eziwan gateway

Mount the Eziwan Gateway on the DIN rail inside the electrical cabinet. Connect it to the DC power supply and insert the included multi-carrier SIM card. No IP configuration is required on the client side.

35mm DIN railDC 9–36 VSIM card included
02

The VPN tunnel is established automatically

In less than 2 minutes, the gateway connects to the Eziwan cloud via 4G LTE and establishes an encrypted OpenVPN tunnel. No incoming ports are open. The connection is initiated only from the field to the cloud.

OpenVPNZero configuration<2 min
03

Connect your devices

Connect your PLCs, HMIs, SCADA systems, and Modbus meters via Ethernet or RS-485. The gateway automatically bridges the connection. Siemens, Schneider, Modbus RTU/TCP, OPC-UA: everything is compatible.

EthernetRS-485/ModbusPlug & Play
04

Access it from anywhere

Install the OpenVPN/IPSec VPN client on your PC or phone. With just one click, you'll be connected to the industrial site's local network. Use TIA Portal, Step 7, or your SCADA system as if you were on site.

TIA PortalStep 7SCADASmartphone
Compatibility

Compatible Devices

Eziwan is network-transparent. If your equipment communicates via IP, Ethernet, RS-485, or Modbus, it is compatible.

Siemens PLCs
  • S7-300 / S7-400
  • S7-1200 / S7-1500
  • ET200 / DP/PN
  • TIA Portal / Step 7
  • WinCC / WinCC Unified
Direct Access to TIA Portal via a Tunnel
Schneider PLCs
  • Modicon M340 / M580
  • Modicon M221 / M241
  • Premium / Quantum
  • EcoStruxure Machine
  • Unity Pro / EcoStruxure
Compatible with EtherNet/IP and Modbus TCP
HMI & SCADA
  • Siemens KTP / TP / MP
  • Magelis (Schneider)
  • Pro-face GP4000
  • Wonderware / Aveva
  • Ignition / Inductive Automation
Web access and native client supported
Modbus RTU / TCP
  • All RS-485 devices
  • Energy Meters
  • Variable-frequency drives
  • Industrial Sensors
  • Modbus RTU to TCP Bridge
Native RTU/TCP bridge in the gateway
OPC-UA & IP Protocols
  • OPC-UA Servers (port 4840)
  • Local MQTT brokers
  • HMI Web Servers (HTTP/S)
  • Industrial FTPs
  • SNMP Network Equipment
Transparent IP tunnel — no restrictions
Standard Features
  • RS-232: analyzers, printers
  • RS-485 shared bus with multiple drops
  • DNP3 (via IP)
  • BACnet MSTP (via bridge)
  • IEC 101/104 (via tunnel)
RS-232/485 integrated into the gateway
Zero Trust Security

Zero-inbound-port architecture:
No ports exposed to the Internet

Unlike traditional VPNs, which listen on an incoming port, the Eziwan Gateway only establishes connections sortantes to the Eziwan cloud. Your industrial network is invisible from the Internet.

Zero Inbound Port
The gateway always initiates the connection to the cloud. No Internet scanner can detect it.
OpenVPN AES-256-GCM
AES-256-GCM end-to-end encryption, a proven protocol that traverses firewalls via TCP port 443.
Zero Trust OT
Every access attempt is authenticated, logged, and limited to what is strictly necessary. MFA + RBAC per site.
Isolation by Site
Each industrial site is on its own VPN tunnel. A security breach at one site does not affect the others.
Zero Trust Connection Flow
01
PLC (customer site) Eziwan Gateway
Ethernet / RS-485
02
Eziwan Gateway Cloud Eziwan
Outgoing OpenVPN (4G LTE)
03
PC Technician Cloud Eziwan
OpenVPN client (Internet)
04
Cloud Eziwan Site industriel
Encrypted tunnel — access granted
No incoming ports are open on either network
Use Cases

Who uses Eziwan remote access?

From machine builders to multi-site managers, secure industrial remote access meets very specific needs.

Machine manufacturer

You manufacture machines that are sold to your customers. With Eziwan, you can integrate secure remote access into every machine upon delivery. You can diagnose, update, and troubleshoot remotely without relying on your customer’s IT department.

70% reduction in service calls
Remote Customer SupportTIA PortalStep 7Firmware Update
See the use case

Pumping station

A pumping station in a rural area without fiber or a fixed IP address. Eziwan Gateway connects the controllers via 4G LTE with SIM failover. Your operator monitors levels, pressures, and alarms in real time from the office—without having to travel.

24/7 monitoring without on-site duty
4G LTEFiber-free24/7 MonitoringSMS Alerts
See the use case

Production line

A malfunction shuts down the line. Your system integrator is 200 km away. With Eziwan, they can connect in 30 seconds via a VPN tunnel, access the PLC, read the diagnostics, and get the line back up and running in just a few minutes—without having to wait for a technician to arrive on site.

Resolution time: hours → minutes
Real-time diagnosticsRemote RestartSCADA
See the use case

Multi-site operator

Whether you manage 20, 50, or 200 scattered industrial sites, Eziwan centralizes all remote access on a single platform. It features a single dashboard, access organized by site, and complete traceability of all connections.

Up to 200 sites in a single dashboard
Multi-sitesCentralized DashboardRBACAudit log
See the use case
Frequently Asked Questions

Everything you want to know about
industrial remote access

Free Trial · No Credit Card Required

Connect Your First PLC
remotely in less than 5 minutes

Receive your Eziwan Gateway, mount it on the DIN rail, and insert the SIM card. Five minutes later, you can access your PLC from anywhere in the world.

Included: Eziwan Gateway + multi-carrier SIM card + 14 days of free cloud storage · No-commitment cancellation