OT/ICS Session Manager Connection
OT/ICS Session Manager sessions are typically established using an SSH tunnel. This creates a secure "pipe" from the operator's local machine to the Kron PAM server, which then forwards the traffic to the target device.
Example Command:
ssh -N -L [Local_Port]:[Target_IP]:[Target_Port] [PAM_User]@[PAM_IP] -p [PAM_SSH_Port]
· Local Port: The port on the user's machine used to access the application.
· Target IP/Port: The destination address in the OT/IT environment.
· PAM Gateway: The Kron PAM server acting as the proxy.
Once the tunnel is authenticated, the user connects their application to localhost:[Local_Port].