MANAGE Your DIGITAL Assets like a boss

Why should managing your digital OT infrastructure be more difficult than using social media? The simple reason is, because you are using  inappropriate tools. The solution is not a better spreadsheet. It’s something entirely different.

Experience the OT-BASE difference

OT-BASE is an asset management system for companies in manufacturing, energy, water, chemical and similar industries who are dissatisfied with using Excel to inventory and manage their digital infrastructure.

Without OT-BASE:
Tool-centric workflow

Excel, Visio & wiring diagrams… because you didn’t have anything better

Without OT Base
Configuration details of control networks, PLCs, software versions etc. are scattered across dispersed files. Stored in different folders, on different servers, and locked in silos. Data acquisition is manual, resulting in incomplete and outdated information. Workflow automation is completely missing. It’s like being stuck in the Nineties.

User-centric Workflow

Designed for the way control system engineers & admins want to work

Automatic discovery of the identity and configuration of your digital OT assets and networks. Consolidation of OT configuration details in a central portal, accessible by web browser. System details are no longer known to individual engineers only, but are instantly available to every team member, turning everyone into an expert.
The most powerful tools are the ones you love to use

Building and maintaining the digital backbone of industrial production is no small feat. It takes skilled engineers and admins who are passionate about their job. Being left in the dark and slowed down by obsolete tools will not only result in frustration. It will also require excess labor and headcount to get the job done. Not an appealing prospect when you’re planning to vastly increase digital complexity in the pursuit of the IIoT.

Make sure your system experts deliver peak performance by giving them a tool that they actually love to use.

Hardware Inventory

Get a listing of all OT devices, both bare metal and virtualized, that can be filtered by location, device category, IP address and more. Get a listing of all devices of a specific make and model.

Software Inventory

Get a listing of operating systems, software applications, and firmware along with exact version numbers. Get a listing of all software installations for a specific product and version, along with license keys. Identify all devices where a specific software, firmware, OS version is installed within seconds.

Vulnerability Management

See vulnerabilities published in NIST’s National Vulnerability Database that affect your installed base, associated with the software & hardware products you are using, and with individual devices.

Configuration Management

Plan and monitor configuration change with a straightforward workflow. Check configuration change, no matter if planned or unauthorized, by using a change history that is automatically maintained for every device. Use baselines to define and audit reference configurations.

Network Topology

Get accurate and complete interactive network diagrams which allow you to drill down into device configurations and subnets. Focus on layer 2 or layer 3 information by selectively enabling or disabling certain types of metadata.

Data Flow Mapping

Get a realistic picture of the de-facto data flow in your mission-critical networks. Validate protocols and endpoints for actually intended vs. unauthorized traffic. Get alerts on unauthorized data flow. Automatically visualize data flow in interactive UML diagrams.

Location Mapping

Get context information about the location where OT components are installed, be it photos, Google Maps depiction, street address, or Webcam feeds.

Access Control

Allow access to the asset management system for various user roles and third parties such as contractors, vendors, and consultants with user-definable roles and scopes. Assure that users can only see those parts of your OT infrastructure that they are entitled to.
OT/ICS asset discovery using engineering methodology:
Access all the configuration data already stored in your devices

Unlike the first generation of ICS asset discovery tools that use passive scanning, OT-BASE Asset Discovery selectively probes endpoints and network gear using legitimate and safe protocols which were intended just for this purpose. This way, OT-BASE can tell you the full story: About your network topology, software products and versions, security patches not installed, firmware versions, and much more. Even better, OT-BASE Asset Discovery is so resource friendly that it can co-exist with other applications on existing hardware.

agentless asset discovery

OT-BASE Asset Discovery is a software-only product (native Windows or Docker container) that discovers your network topology, device identity, hardware and software configuration, and data flow.

small footprint

Hardware requirements for OT-BASE Asset Discovery are low because no realtime processing of network traffic is performed. Install on an existing Windows / Linux / VM platform, or on dedicated Intel NUC.

Selective Probing

Unlike dumb port scanning, selective probing is only done for preselected IP addresses and address ranges and uses legitimate standard interfaces such as SNMP and WMI. It sees configuration data that passive scanning can’t see.

Continous monitoring

Through periodic probing, OT-BASE can alert you about any unauthorized configuration change, catching well-intended silent installs as well as sophisticated cyber attacks.
Hosting option for OT-BASE Asset Discovery nodes if dedicated hosting is preferred over hosting on existing hardware: Intel NUC (Next Unit of Computing)

Need to inventory IT devices and software as well? OT-BASE can do that for you, too

If you don’t maintain an asset inventory for your IT systems already, there’s no need to purchase an additional, IT-centric solution. OT-BASE can inventory your IT systems just as well. Added benefit: You get the full picture in one solution, and you can integrate overlapping functions such as vulnerability management, thereby boosting efficiency.

Priced around Customer value

OT-BASE is licensed based on volume. You pay for your number of digital devices, regardless of the number of users, number of networks, number of sites. Devices are: Computers (bare metal or virtualized), network switches, PLCs, RTUs etc. Devices are not: Interface cards, I/O modules, keyboards etc.

License fee per device degrades with the number of devices. The more devices you manage with OT-BASE, the lower the cost per device. Best of all, if you manage multiple sites with OT-BASE, license fees are calculated based on the cummulative number of devices, not based on the number of devices per site.

Why we invented the world’s first full-fledged OT asset management system

For twenty years we did little else but help asset owners in multiple industries to protect their plants against sophisticated cyber-physical attacks. The fundamental problem we encountered over and over again was a blatant lack of appropriate digital system documentation. As a result, assessment projects took much longer than needed, and always turned up serious vulnerabilities in system design that could have been avoided if appropriate documentation had been available.

We spent several years working on the concepts of an asset management system purpose-built for digital operations technology which would fix all these issues. Based on a system model that is built from metadata rather than from content. Then, we turned concepts into reality, making sure that control system engineers and IT experts alike would actually love the resulting product:

The OT-BASE asset management system.