Skip to main content
Products

Industrial Switches

LAVENDER-244X-L3-I
LAVENDER-84X-L3-I
CORNUS-84P(V5)-I
Home > Products > Industrial Switches
MRO‑TEK Managed Industrial Switch

Industrial L3 Managed Switches

Fanless L3 managed switches, -20°C to +70°C, static routing, G.8032 ERPS ring protection. PoE available as an ordering option.

Explore models
MRO‑TEK CORNUS Industrial L2 Managed Switch

Industrial L2 Managed PoE Switches

Fanless L2 managed PoE++ switches, -20°C to +70°C, G.8032 ERPS ring protection.

Explore models
Industrial Switches
Industrial L3 Managed Switches
LAVENDER-244X-L3-I and LAVENDER-84X-L3-I — fanless, -20°C to +70°C, with static routing, G.8032 ERPS ring protection, and PoE available as an ordering option.

Wide Temp Range

Fanless -20°C to +70°C operation for uncooled cabinets and outdoor enclosures.

L3 Routing

Static routing on both models, plus RIP, OSPF, BGP, and PIM-SM for full inter-VLAN routing without a separate router.

ERPS Ring Protection

ITU-T G.8031/G.8032 Ethernet ring protection switching for fast failover in ring topologies.

Port Security

IEEE 802.3af/at PoE and PoE+ on every access port (up to 380W on the 244X-L3-I, 240W on the 84X-L3-I) for cameras, APs, and IP phones, secured with 802.1X authentication, RADIUS/TACACS+, and MAC/IP port binding.

10G LAVENDER-244X-L3-I
LAVENDER-244X-L3-I
24× 1GE + 4× 1G/10G (Industrial) · 128 Gbps · 95.3 Mpps
10G LAVENDER-84X-L3-I
LAVENDER-84X-L3-I
8× 1GE + 4× 1G/10G (Industrial) · 96 Gbps · 71.4 Mpps
Industrial Switches
Industrial L2 Managed PoE Switches
Cornus Family is a EN50121-4 approved Industrial Ethernet Switch with management are designed to meet Industrial applications, where environmental conditions exceed commercial product specifications. Gigabit Managed Switches provides a reliable infrastructure for your industrial automation applications supports 802.3af/at/bt Power over Ethernet (PoE/PoE+/PoE++).

Wide Temp Range

Fanless -20°C to +70°C operation for uncooled cabinets and outdoor enclosures.

Management & Monitoring

Console, Telnet, SSH v2, and Web GUI, plus SNMP v1/v2c/v3 with RMON, dual firmware images, and centralized control via OmniEye NMS/EMS.

ERPS Ring Protection

ITU-T G.8031/G.8032 Ethernet ring protection switching for fast failover in ring topologies.

Port Security

802.3af/at PoE+ on every access port, secured with 802.1X authentication, RADIUS/TACACS+, MAC/IP port binding, and storm control.

CORNUS-84P(V5)-I
CORNUS-84P(V5)-I
8× GbE + 4× 1G · 12 Gbps · 28.928 Mpps
CORNUS-82P(V5)-I
CORNUS-82P(V5)-I
8× GbE + 2× 1G · 20 Gbps · 14.88 Mpps
Models
LAVENDER-244X-L3-I view 1
LAVENDER-244X-L3-I view 2
LAVENDER-244X-L3-I view 3
10G LAVENDER-244X-L3-I
LAVENDER-244X-L3-I
Overview
L3 managed Ethernet switch for harsh-environment campus, aggregation, and core deployments. 24× 1GE + 4× 1G/10G (Industrial). Delivers 128 Gbps non-blocking switching capacity with 95.3 Mpps forwarding rate. Runs MRO‑TEK NOS v3 with static/dynamic routing, VLAN, QoS, and ring protection. TEC and TTP approved. Rated for -20°C to 70°C operation.
24× 1GE + 4× 1G/10G (Industrial)
Ports
128 Gbps
Switching
95.3 Mpps
Forwarding
L3 Static/OSPF
Routing
Request Datasheet
Specifications
  • 24× GE + 4× 1G/10G ports
  • Power options: AC, 48VDC, PoE (option, up to 380W)
  • 1× RJ-45 console port
  • Industrial-grade, 1U rack-mountable form factor
  • Static Routing, RIP, OSPF, BGP, multiple OSPF processes
  • URPF, ECMP, BFD
  • PIM-SM, static multicast route
  • Multicast receive control, illegal multicast source detection
  • ARP Guard, local ARP proxy, proxy ARP, ARP binding
  • Gratuitous ARP, ARP limit
  • Anti ARP/NDP cheat, anti ARP/NDP scan
  • DNS client, DNS relay
  • ICMPv6, ND, DNSv6, VRRP
  • MLD snooping, multicast VLAN
  • MLD v1/v2, PIM-SM/DM, Anycast RP, ACL, QoS
  • DHCP server/client, DHCP relay/option 82, DHCP snooping
  • Port loopback detection, LLDP and LLDP-MED, UDLD
  • IEEE 802.3ad LACP — up to 128 trunk groups, max 8 ports per trunk, LACP load balancing
  • IGMP v1/v2/v3 snooping with L2 query, IGMP proxy, ND snooping, MLD v1/v2 snooping
  • Flow control: HOL, IEEE 802.3x, bandwidth control
  • MAC VLAN, voice VLAN, PVLAN, protocol VLAN, multicast VLAN, QinQ, selective QinQ, flexible QinQ
  • 802.1D (STP), 802.1W (RSTP), 802.1S (MSTP), root guard, BPDU guard
  • 802.1x AAA, port-based and MAC-based authentication
  • Guest VLAN and auto VLAN
  • RADIUS, TACACS+
  • IP ACL, MAC ACL, IP-MAC ACL
  • Standard and expanded ACL based on source/destination IP or MAC, IP protocol, TCP/UDP port, DSCP, ToS, IP precedence, VLAN, tag/untag, CoS
  • Redirect and accounting-based ACL
  • Rules configurable to port or VLAN
  • Time-ranged ACL
  • 8 queues — SWRR, SP, WRR, WDRR, SWDRR scheduling
  • Traffic classification based on 802.1p CoS, ToS, DiffServ DSCP, ACL, port number
  • Traffic policing, priority mark/remark
  • CLI, Web, Telnet, HTTPS/SSL, SSH v1/v2
  • SNMP v1/v2c/v3, SNMP MIB, SNMP trap
  • RMON groups 1, 2, 3, and 9
  • Syslog and external syslog server
  • FTP, NTP, RADIUS, TACACS
  • 24× GE + 4× 1G/10G ports
  • Power options: AC, 48VDC, PoE (option, up to 380W)
  • 1× RJ-45 console port
  • Industrial-grade, 1U rack-mountable form factor
  • Static Routing, RIP, OSPF, BGP, multiple OSPF processes
  • URPF, ECMP, BFD
  • PIM-SM, static multicast route
  • Multicast receive control, illegal multicast source detection
  • ARP Guard, local ARP proxy, proxy ARP, ARP binding
  • Gratuitous ARP, ARP limit
  • Anti ARP/NDP cheat, anti ARP/NDP scan
  • DNS client, DNS relay
  • ICMPv6, ND, DNSv6, VRRP
  • MLD snooping, multicast VLAN
  • MLD v1/v2, PIM-SM/DM, Anycast RP, ACL, QoS
  • DHCP server/client, DHCP relay/option 82, DHCP snooping
  • Port loopback detection, LLDP and LLDP-MED, UDLD
  • IEEE 802.3ad LACP — up to 128 trunk groups, max 8 ports per trunk, LACP load balancing
  • IGMP v1/v2/v3 snooping with L2 query, IGMP proxy, ND snooping, MLD v1/v2 snooping
  • Flow control: HOL, IEEE 802.3x, bandwidth control
  • MAC VLAN, voice VLAN, PVLAN, protocol VLAN, multicast VLAN, QinQ, selective QinQ, flexible QinQ
  • 802.1D (STP), 802.1W (RSTP), 802.1S (MSTP), root guard, BPDU guard
  • 802.1x AAA, port-based and MAC-based authentication
  • Guest VLAN and auto VLAN
  • RADIUS, TACACS+
  • IP ACL, MAC ACL, IP-MAC ACL
  • Standard and expanded ACL based on source/destination IP or MAC, IP protocol, TCP/UDP port, DSCP, ToS, IP precedence, VLAN, tag/untag, CoS
  • Redirect and accounting-based ACL
  • Rules configurable to port or VLAN
  • Time-ranged ACL
  • 8 queues — SWRR, SP, WRR, WDRR, SWDRR scheduling
  • Traffic classification based on 802.1p CoS, ToS, DiffServ DSCP, ACL, port number
  • Traffic policing, priority mark/remark
  • CLI, Web, Telnet, HTTPS/SSL, SSH v1/v2
  • SNMP v1/v2c/v3, SNMP MIB, SNMP trap
  • RMON groups 1, 2, 3, and 9
  • Syslog and external syslog server
  • FTP, NTP, RADIUS, TACACS
Certifications TEC TTP CE FCC RoHS RDSO
LAVENDER-84X-L3-I view 1
LAVENDER-84X-L3-I view 2
10G LAVENDER-84X-L3-I
LAVENDER-84X-L3-I
Overview
Compact L3 managed Ethernet switch for harsh-environment edge and aggregation deployments. 8× 1GE + 4× 1G/10G (Industrial). Delivers 96 Gbps non-blocking switching capacity with 71.4 Mpps forwarding rate. Runs MRO‑TEK NOS v3 with static/dynamic routing, VLAN, QoS, and ring protection. TEC and TTP approved. Rated for -20°C to 70°C operation.
8× 1GE + 4× 1G/10G (Industrial)
Ports
96 Gbps
Switching
71.4 Mpps
Forwarding
L3 Static/OSPF
Routing
Request Datasheet
Specifications
  • 8× GE + 4× 1G/10G ports
  • Power options: 48VDC, PoE (option, up to 240W)
  • 1× RJ-45 console port
  • Industrial-grade, 1U rack-mountable form factor
  • Static Routing, RIP, OSPF, BGP, multiple OSPF processes
  • URPF, ECMP, BFD
  • PIM-SM, static multicast route
  • Multicast receive control, illegal multicast source detection
  • ARP Guard, local ARP proxy, proxy ARP, ARP binding
  • Gratuitous ARP, ARP limit
  • Anti ARP/NDP cheat, anti ARP/NDP scan
  • DNS client, DNS relay
  • ICMPv6, ND, DNSv6, VRRP
  • MLD snooping, multicast VLAN
  • MLD v1/v2, PIM-SM/DM, Anycast RP, ACL, QoS
  • DHCP server/client, DHCP relay/option 82, DHCP snooping
  • Port loopback detection, LLDP and LLDP-MED, UDLD
  • IEEE 802.3ad LACP — up to 32 trunk groups, max 8 ports per trunk, LACP load balancing
  • IGMP v1/v2/v3 snooping with L2 query, IGMP proxy, ND snooping, MLD v1/v2 snooping
  • Flow control: HOL, IEEE 802.3x, bandwidth control
  • MAC VLAN, voice VLAN, PVLAN, protocol VLAN, multicast VLAN, QinQ, selective QinQ, flexible QinQ
  • 802.1D (STP), 802.1W (RSTP), 802.1S (MSTP), root guard, BPDU guard
  • 802.1x AAA, port-based and MAC-based authentication
  • Guest VLAN and auto VLAN
  • RADIUS, TACACS+
  • IP ACL, MAC ACL, IP-MAC ACL
  • Standard and expanded ACL based on source/destination IP or MAC, IP protocol, TCP/UDP port, DSCP, ToS, IP precedence, VLAN, tag/untag, CoS
  • Redirect and accounting-based ACL
  • Rules configurable to port or VLAN
  • Time-ranged ACL
  • 8 queues — SWRR, SP, WRR, WDRR, SWDRR scheduling
  • Traffic classification based on 802.1p CoS, ToS, DiffServ DSCP, ACL, port number
  • Traffic policing, priority mark/remark
  • CLI, Web, Telnet, HTTPS/SSL, SSH v1/v2
  • SNMP v1/v2c/v3, SNMP MIB, SNMP trap
  • RMON groups 1, 2, 3, and 9
  • Syslog and external syslog server
  • FTP, NTP, RADIUS, TACACS
  • 8× GE + 4× 1G/10G ports
  • Power options: 48VDC, PoE (option, up to 240W)
  • 1× RJ-45 console port
  • Industrial-grade, 1U rack-mountable form factor
  • Static Routing, RIP, OSPF, BGP, multiple OSPF processes
  • URPF, ECMP, BFD
  • PIM-SM, static multicast route
  • Multicast receive control, illegal multicast source detection
  • ARP Guard, local ARP proxy, proxy ARP, ARP binding
  • Gratuitous ARP, ARP limit
  • Anti ARP/NDP cheat, anti ARP/NDP scan
  • DNS client, DNS relay
  • ICMPv6, ND, DNSv6, VRRP
  • MLD snooping, multicast VLAN
  • MLD v1/v2, PIM-SM/DM, Anycast RP, ACL, QoS
  • DHCP server/client, DHCP relay/option 82, DHCP snooping
  • Port loopback detection, LLDP and LLDP-MED, UDLD
  • IEEE 802.3ad LACP — up to 32 trunk groups, max 8 ports per trunk, LACP load balancing
  • IGMP v1/v2/v3 snooping with L2 query, IGMP proxy, ND snooping, MLD v1/v2 snooping
  • Flow control: HOL, IEEE 802.3x, bandwidth control
  • MAC VLAN, voice VLAN, PVLAN, protocol VLAN, multicast VLAN, QinQ, selective QinQ, flexible QinQ
  • 802.1D (STP), 802.1W (RSTP), 802.1S (MSTP), root guard, BPDU guard
  • 802.1x AAA, port-based and MAC-based authentication
  • Guest VLAN and auto VLAN
  • RADIUS, TACACS+
  • IP ACL, MAC ACL, IP-MAC ACL
  • Standard and expanded ACL based on source/destination IP or MAC, IP protocol, TCP/UDP port, DSCP, ToS, IP precedence, VLAN, tag/untag, CoS
  • Redirect and accounting-based ACL
  • Rules configurable to port or VLAN
  • Time-ranged ACL
  • 8 queues — SWRR, SP, WRR, WDRR, SWDRR scheduling
  • Traffic classification based on 802.1p CoS, ToS, DiffServ DSCP, ACL, port number
  • Traffic policing, priority mark/remark
  • CLI, Web, Telnet, HTTPS/SSL, SSH v1/v2
  • SNMP v1/v2c/v3, SNMP MIB, SNMP trap
  • RMON groups 1, 2, 3, and 9
  • Syslog and external syslog server
  • FTP, NTP, RADIUS, TACACS
Certifications TEC TTP CE FCC RoHS RDSO
CORNUS-84P(V5)-I view 1
CORNUS-84P(V5)-I view 2
CORNUS-84P(V5)-I view 3
CORNUS-84P(V5)-I
CORNUS-84P(V5)-I
Overview
Industrial-grade Layer 2 fully managed Ethernet switch with 8 GbE PoE++ access ports (up to 90W per port) and 4× 1G fibre uplinks. Delivers 12 Gbps switching capacity with 28.928 Mpps forwarding rate, 8K MAC table with MAC address VLAN binding, LACP link aggregation, and ITU-T G.8031/G.8032 ERPS ring protection. DC-powered industrial variant with extra uplink density for ring backhaul, -20°C to 70°C. TTP listed.
8× GbE + 4× 1G
Ports
12 Gbps
Switching
28.928 Mpps
Forwarding
up to 90W/port
PoE Budget
Request Datasheet
Specifications
  • 8× 10/100/1000M RJ45 PoE+/PoE++ Ethernet ports (IEEE 802.3af/at/bt)
  • 4× 1G fibre uplink ports
  • 1× RJ-45 console port
  • Desktop form factor
  • DC power input via terminal block, dual power supply support
  • Surge protection — 4kV to 6kV per LAN port
  • Fanless design for panel/cabinet installation
  • 12 Gbps non-blocking switching capacity
  • 28.928 Mpps forwarding rate
  • 8K MAC address table (static and dynamic) with MAC address VLAN binding
  • IEEE 802.1Q VLAN — up to 4094 VLANs
  • Store-and-forward switching
  • Static route support for network connectivity
  • IEEE 802.1Q VLAN, GVRP, QinQ (802.1ad), private VLAN
  • IEEE 802.3af/at/bt PoE/PoE+/PoE++ on all access ports, up to 90W per port
  • IEEE 802.3ad LACP link aggregation with port mirroring
  • Spanning Tree: STP (802.1D), RSTP (802.1w), MSTP (802.1s) with BPDU guard and root guard
  • IGMP v1/v2/v3 snooping with fast leave, MLD snooping, MVR multicast VLAN registration
  • ITU-T G.8031/G.8032 ERPS Ethernet ring protection switching
  • ACL — policy-based control by VLAN ID, source MAC/IP address, IPv4/IPv6, and protocol port
  • Storm control for broadcast, multicast, and unicast traffic
  • Port isolation and port security with MAC address binding
  • IP Source Guard and IP-MAC port binding
  • IEEE 802.1x port-based authentication
  • RADIUS and TACACS+ authentication
  • Flow classification based on L2/L3/L4 protocols
  • IEEE 802.1p / IP DSCP-based strict priority (SP) queuing
  • WRR and SP+WRR scheduling
  • Congestion avoidance with tail-drop and WRED
  • Console, Telnet, SSH v2.0, Ethernet OAM Web GUI management
  • SNMP v1/v2/v3 with RMON, TFTP
  • Dual firmware image for resilient upgrades
  • Managed via OmniEye NMS/EMS
  • 8× 10/100/1000M RJ45 PoE+/PoE++ Ethernet ports (IEEE 802.3af/at/bt)
  • 4× 1G fibre uplink ports
  • 1× RJ-45 console port
  • Desktop form factor
  • DC power input via terminal block, dual power supply support
  • Surge protection — 4kV to 6kV per LAN port
  • Fanless design for panel/cabinet installation
  • 12 Gbps non-blocking switching capacity
  • 28.928 Mpps forwarding rate
  • 8K MAC address table (static and dynamic) with MAC address VLAN binding
  • IEEE 802.1Q VLAN — up to 4094 VLANs
  • Store-and-forward switching
  • Static route support for network connectivity
  • IEEE 802.1Q VLAN, GVRP, QinQ (802.1ad), private VLAN
  • IEEE 802.3af/at/bt PoE/PoE+/PoE++ on all access ports, up to 90W per port
  • IEEE 802.3ad LACP link aggregation with port mirroring
  • Spanning Tree: STP (802.1D), RSTP (802.1w), MSTP (802.1s) with BPDU guard and root guard
  • IGMP v1/v2/v3 snooping with fast leave, MLD snooping, MVR multicast VLAN registration
  • ITU-T G.8031/G.8032 ERPS Ethernet ring protection switching
  • ACL — policy-based control by VLAN ID, source MAC/IP address, IPv4/IPv6, and protocol port
  • Storm control for broadcast, multicast, and unicast traffic
  • Port isolation and port security with MAC address binding
  • IP Source Guard and IP-MAC port binding
  • IEEE 802.1x port-based authentication
  • RADIUS and TACACS+ authentication
  • Flow classification based on L2/L3/L4 protocols
  • IEEE 802.1p / IP DSCP-based strict priority (SP) queuing
  • WRR and SP+WRR scheduling
  • Congestion avoidance with tail-drop and WRED
  • Console, Telnet, SSH v2.0, Ethernet OAM Web GUI management
  • SNMP v1/v2/v3 with RMON, TFTP
  • Dual firmware image for resilient upgrades
  • Managed via OmniEye NMS/EMS
Ordering Information
  • CORNUS-42P(V5)-I — Industrial L2 Managed PoE++ Switch, 4× GbE PoE++ + 4× 1G, 12 Gbps
Certifications TTP CE FCC RoHS EN50121-4 RDSO
CORNUS-82P(V5)-I view 1
CORNUS-82P(V5)-I view 2
CORNUS-82P(V5)-I view 3
CORNUS-82P(V5)-I
CORNUS-82P(V5)-I
Overview
Industrial-grade Layer 2 fully managed Ethernet switch with 8 GbE PoE++ access ports (up to 90W per port) and 2× 1G fibre uplinks. Delivers 20 Gbps switching capacity with 14.88 Mpps forwarding rate, 8K MAC table with MAC address VLAN binding, LACP link aggregation, and ITU-T G.8031/G.8032 ERPS ring protection. Industrial Grade DC-powered ordering variant of CORNUS-82P for harsh environments, -20°C to 70°C. TTP listed.
8× GbE + 2× 1G
Ports
20 Gbps
Switching
14.88 Mpps
Forwarding
up to 90W/port
PoE Budget
Request Datasheet
Specifications
  • 8× 10/100/1000M RJ45 PoE+/PoE++ Ethernet ports (IEEE 802.3af/at/bt)
  • 2× 1G fibre uplink ports
  • 1× RJ-45 console port
  • Desktop form factor
  • DC power input via terminal block, dual power supply support
  • Surge protection — 4kV to 6kV per LAN port
  • Fanless design for panel/cabinet installation
  • 20 Gbps non-blocking switching capacity
  • 14.88 Mpps forwarding rate
  • 8K MAC address table (static and dynamic) with MAC address VLAN binding
  • IEEE 802.1Q VLAN — up to 4094 VLANs
  • Store-and-forward switching
  • Static route support for network connectivity
  • IEEE 802.1Q VLAN, GVRP, QinQ (802.1ad), private VLAN
  • IEEE 802.3af/at/bt PoE/PoE+/PoE++ on all access ports, up to 90W per port
  • IEEE 802.3ad LACP link aggregation with port mirroring
  • Spanning Tree: STP (802.1D), RSTP (802.1w), MSTP (802.1s) with BPDU guard and root guard
  • IGMP v1/v2/v3 snooping with fast leave, MLD snooping, MVR multicast VLAN registration
  • ITU-T G.8031/G.8032 ERPS Ethernet ring protection switching
  • ACL — policy-based control by VLAN ID, source MAC/IP address, IPv4/IPv6, and protocol port
  • Storm control for broadcast, multicast, and unicast traffic
  • Port isolation and port security with MAC address binding
  • IP Source Guard and IP-MAC port binding
  • IEEE 802.1x port-based authentication
  • RADIUS and TACACS+ authentication
  • Flow classification based on L2/L3/L4 protocols
  • IEEE 802.1p / IP DSCP-based strict priority (SP) queuing
  • WRR and SP+WRR scheduling
  • Congestion avoidance with tail-drop and WRED
  • Console, Telnet, SSH v2.0, Ethernet OAM Web GUI management
  • SNMP v1/v2/v3 with RMON, TFTP
  • Dual firmware image for resilient upgrades
  • Managed via OmniEye NMS/EMS
  • 8× 10/100/1000M RJ45 PoE+/PoE++ Ethernet ports (IEEE 802.3af/at/bt)
  • 2× 1G fibre uplink ports
  • 1× RJ-45 console port
  • Desktop form factor
  • DC power input via terminal block, dual power supply support
  • Surge protection — 4kV to 6kV per LAN port
  • Fanless design for panel/cabinet installation
  • 20 Gbps non-blocking switching capacity
  • 14.88 Mpps forwarding rate
  • 8K MAC address table (static and dynamic) with MAC address VLAN binding
  • IEEE 802.1Q VLAN — up to 4094 VLANs
  • Store-and-forward switching
  • Static route support for network connectivity
  • IEEE 802.1Q VLAN, GVRP, QinQ (802.1ad), private VLAN
  • IEEE 802.3af/at/bt PoE/PoE+/PoE++ on all access ports, up to 90W per port
  • IEEE 802.3ad LACP link aggregation with port mirroring
  • Spanning Tree: STP (802.1D), RSTP (802.1w), MSTP (802.1s) with BPDU guard and root guard
  • IGMP v1/v2/v3 snooping with fast leave, MLD snooping, MVR multicast VLAN registration
  • ITU-T G.8031/G.8032 ERPS Ethernet ring protection switching
  • ACL — policy-based control by VLAN ID, source MAC/IP address, IPv4/IPv6, and protocol port
  • Storm control for broadcast, multicast, and unicast traffic
  • Port isolation and port security with MAC address binding
  • IP Source Guard and IP-MAC port binding
  • IEEE 802.1x port-based authentication
  • RADIUS and TACACS+ authentication
  • Flow classification based on L2/L3/L4 protocols
  • IEEE 802.1p / IP DSCP-based strict priority (SP) queuing
  • WRR and SP+WRR scheduling
  • Congestion avoidance with tail-drop and WRED
  • Console, Telnet, SSH v2.0, Ethernet OAM Web GUI management
  • SNMP v1/v2/v3 with RMON, TFTP
  • Dual firmware image for resilient upgrades
  • Managed via OmniEye NMS/EMS
Certifications TTP CE FCC RoHS EN50121-4 RDSO
Connecting a substation, factory, or railway OT network?