Sample OT network connectivity models
This article provides sample network models for Microsoft Defender for IoT sensor connections.
Sample: Ring topology
The following diagram shows an example of a ring network topology, in which each switch or node connects to exactly two other switches, forming a single continuous pathway for the traffic.
Sample: Linear bus and star topology
In a star network, every host is connected to a central hub. In its simplest form, one central hub acts as a conduit to transmit messages. In the following example, lower switches aren't monitored, and traffic that remains local to these switches won't be seen. Devices might be identified based on ARP messages, but connection information will be missing.
Sample: Multi-layer, multi-tenant network
The following diagram is a general abstraction of a multilayer, multitenant network, with an expansive cybersecurity ecosystem typically operated by an SOC and MSSP.
Typically, NTA sensors are deployed in layers 0 to 3 of the OSI model.
Next steps
After you've understood your own network's OT architecture and planned out your deployment, learn more about methods for traffic mirroring and passive or active monitoring.
For more information, see:
Feedback
Submit and view feedback for