KNX Secure
Secure and sustainable electrical installation
Digital building technology ensures efficient processes at work and increases convenience for the guests. But growing networking also increases the demands on data security. Everything that can be controlled digitally can in principle also be attacked.
With KNX Secure, JUNG offers reliable data protection against unauthorised access. The basis is modern encryption technology using the AES128 algorithm, which is also used by financial institutions, for example.
Protection for guests, operators and systems
KNX Secure consists of two components:
- KNX IP Secure encrypts all the communication in the IP network and prevents data from being intercepted or manipulated, for example between sensor and control unit. KNX IP Secure is recognised as an international security standard according to EN ISO 22510 and is additionally VDE certified. Additional advantages are the worldwide availability, many devices from different manufacturers and the secure, cross-manufacturer communication.
- KNX Data Secure protects the communication in the system cables or wireless - exactly where many attacks are focussed. Typical attack scenarios such as recording, replay or man-in-the-middle attacks are effectively prevented in this way.
A hotel that relies on a fully encrypted KNXnet/IP network with JUNG KNX Secure creates trust from the guests and protects its business processes effectively from cyber attacks. The security architecture is recognised across manufacturers and is suitable for demanding hotel projects.
You can find further information on components and application possibilities in the JUNG KNX Secure catalogue (https://cms-assets.jung.de/shop/media/23/23715/JUNG_KNX_Secure_Update-2_DE.pdf).
Dangers in the digital environment
- Inadequate security protocols and processes.
- Old software applications and operating systems which are not updated regularly.
- Insufficient segmentation of the industrial data network, which makes the spread of attacks easier.
- Lack of physical and logical access controls allowing unauthorised access.
- Insufficient reporting and monitoring of critical system resources and remote access.
Information Technology (IT) / Operational Technology (OT)
The IT and OT networks are increasingly merging. As soon as there is a connection to the Internet, it is always about the degree of encryption until the next level is reached.
The threat situation for operators of OT infrastructures has intensified dramatically in recent years. Cyber attacks which once largely affected IT systems are increasingly moving to the operational technology.
Complex organisations and organisations in the critical infrastructures and the producing industries are networked with each other through numerous devices, control systems and sensors.
This form of networking also involves numerous security risks, however, and must be monitored, controlled and recorded in accordance with the current data protection regulations.
Extension of facilities

With the use of a line coupler having the secure proxy capability, existing facilities with plain devices can communicate encrypted with secure devices in public or new areas.
The creation of a separate line or a segment within the line is necessary. From the higher level section, the communication is encrypted.