Design the network once. The Site Generator stamps that template into solar, metering, EV and heat sites in minutes. Fiber or 4G/5G, encrypted end to end, from 20 to 2,000+ stations on one design.
The energy transition is building networks fast: hundreds of distributed sites, each one needing the same secure connection. Hand-configuring a snowflake at every station, and proving it's secure, doesn't scale.
One OT Connect design covers every use case, often several at the same site, cleanly segmented, centrally secured, operated as one.
Control systems, sensors and actuators at producers, storage and transfer stations across a growing heat grid.
Meter infrastructure, head-end systems and data collection. Connectivity for thousands of measurement points.
Distributed solar plants, inverters and monitoring. Remote sites that have to reach the control centre reliably.
Charging infrastructure, backend connectivity and billing. A use case that has to stay isolated from the rest.
A proven template, a generator that stamps it into sites, and one encrypted network to run.
The network doesn't run blind. Every site and link OT Connect deploys shows up in narrowin Explorer's topology, and site syslog flows to narrowin Log Analytics. Connectivity, visibility and observability on one foundation.
A repeatable process that scales: the design is done once, the rest is generated and shipped.
Begin with a reference OT-WAN architecture, customized to your environment: IP plan, VLANs and site profiles.
Monitoring station, heat centre, substation. Define each profile once and reuse it for every location.
The Site Generator builds complete device configs from a site name: router, switch and VPN concentrator.
Hardware ships with a bootstrap config. Zero-touch provisioning brings each site live on first boot.
| Site hardware | Vendor-agnostic: supported routers and switches (MikroTik, Garderos and others); long lifecycle, no lock-in |
|---|---|
| Encryption | WireGuard: modern, high-performance encryption for all transit traffic |
| Uplinks | Fiber and 4G/5G: dual-uplink with health checks and automatic failover |
| Segmentation | Layer 3 separation; VLAN per use case; central east-west policy |
| Site Generator | Full device configs from a site name: router, switch, VPN concentrator |
| Provisioning | Zero-touch: bootstrap config, full config pulled on first boot |
| Management | Central web platform: Site Generator, central policy and logging |
| Scale | Tested to 2,000+ sites, no architecture change as you grow |
| Compliance | Designed to B3S Fernwärme, IKT-Minimalstandard, NIS2, IEC 62443 and ISO 27001 principles |
| Licensing | Site-count tiers, no per-device fees |
| Documentation | /docs/ot-connect (login) → |
Complete device configurations, not snippets. Full router, switch and VPN concentrator configs, IP addressing, WireGuard keys, firewall rules and VLAN assignments, ready to deploy.
No. OT Connect starts from pre-built OT architectures proven in production. You customize the baseline (IP addressing, VLANs, site parameters) rather than designing from zero.
It is vendor-agnostic. The design runs on supported routers and switches such as MikroTik and Garderos, chosen for long lifecycle and low total cost of ownership, with no proprietary lock-in.
Devices ship with a bootstrap configuration that connects to your management hub on first boot. The full config, already generated, is pulled automatically. No on-site expertise required.
Templates per site type, the config generator and central management scale from tens to 2,000+ sites with no architecture change. Licensing is by site-count tier, with no per-device fees.
The architecture implements the core security principles directly: defense in depth, least privilege, the zone trust model, redundancy and segmentation. The network design itself supports the required standards.
Consistent segmentation and central management keep the network secure and manageable. With zero-touch provisioning and the template-based architecture, it scales as the heat networks grow.
OT Connect runs in district-heating and smart-metering networks in Switzerland and Germany, including IBB Brugg and Breitband Lörrach, where the design scales from the first stations toward thousands.

Secure, segmented, encrypted connectivity for the heat transition, from 50 to hundreds of sites.
Read →
Industrial-grade site hardware meets automated network deployment for critical infrastructure.
Read →
A regional energy utility's network, rebuilt around clear zones with a realistic migration path.
Read →
An energy supplier that partnered with narrowin to keep critical-infrastructure networks reliable, then invested in the company.
Read →Planning a new energy network or modernizing one? OT Connect takes you from blueprint to thousands of sites, secure and affordable.
Talk to us about your sites