Celona AerLoc

The zero-trust security layer of Celona Orion

Designed to address the unique challenges of securing increasingly digitized industrial IT and OT systems, AerLoc provides enhanced security and visibility without sacrificing performance.

Solution Brief Contact us
/ Overview

 

A new security model for converged wireless in the physical AI era

 
/ IT/OT security architecture

Modern SIM-enabled devices authenticate with Celona SIM - ensuring a client-less zero trust security model. 

Older and SIM-less devices continue to use traditional Wi-Fi authentication methods for seamless usage.

Identity

The fabric enforces micro-segmentation per device and keeps IT and OT traffic separated end to end, with no duplicate parallel network to build or maintain.

Segmentation and isolation

Celona’s AerLoc architecture enables the application of existing IT/OT security policies to Private 5G devices through open API and RADIUS integrations. 

AerLoc integrates with industry-leading enterprise security services, including:

  • Network Access Control (NAC)
  • Firewalls
  • Mobile Device Management (MDM)
  • ITSMs (IT service Management )
  • Secure Access Service Edge (SASE)
  • and more.
Integration
/ Key differentiators
Icon platform diff api first platform ink 512

Native integration with your security stack

Apply existing IT/OT policies to wireless

Via open API and RADIUS: NAC, firewalls, MDM, ITSM, and SASE.

Icon platform diff microslicing ink 512

Micro-segmentation in the fabric

Granular, per-device traffic isolation

Per-device traffic isolation without redesigning the network.

Icon security enhanced security ink 512

IT/OT isolation built in

A secure air-gap on one infrastructure

A secure IT/OT air-gap on one unified infrastructure, so you don’t run and pay for duplicate networks.

/ How AerLoc compares

 

Capability Off-the-shelf private 5G Celona Orion with AerLoc
Network visibility Low High
Granular traffic segmentation Low High
Integration into third-party security services No Yes
Air-gapping IT and OT networks No Yes
Clientless identity for every device No Yes (SIM-based)
/ Use cases
Img aerloc usecases itotconvergence networkrack ai 01

IT/OT convergence

Run OT securely on the same infrastructure as IT, with a built-in air-gap.

Img aerloc usecases clientlesszerotrust pipingsensor ai 01

Clientless zero trust

Strong identity for IoT/OT devices that can’t run an agent.

Img aerloc usecases connectedworker minertunnel ai 01

The connected worker

One identity and one secure experience as people and devices move across the site.

Img warehousing usecases roboticsamrs workercharging real 01

Warehousing and logistics

Secure connectivity for scanners, AMRs, and automation.

Img aerloc usecases regulatedaccess keypaddoor ai 01

Regulated, high-security environments

Full visibility and segmentation where it’s required.

/ Related

Compliance and privacy

How Celona handles security, compliance and data privacy across the platform.

/ Get started

Talk to us about securing your converged wireless