L1NE — Connect CNC machines securely without conversion | Logiphys
L1NE · Legacy integration for CNC machines

Your machine works.
Only the connection is missing.

Why replace it when L1NE closes exactly that gap? Secure data connectivity for legacy machines — no conversion, no replacement, no loss of control.

How it works ↓ Request a demo
Logiphys Datensysteme GmbH Made in Göppingen
L1NE Appliance
L1NE ONLINE · SMB3 ACTIVE
SMB1SMB3 NFSv2NFSv4 KVM isolation Default-deny firewall Signed updates Auto rollback USB-Bridging Decentralised · resilient
01 Fundamentals

Why replacement is the wrong answer

Your machine constantly exchanges files with the company network — programs or job data, for example. Older machines do this using an outdated, insecure “language”. The machine is not the problem — it runs perfectly. The problem is purely the data connection. That is exactly what L1NE solves — nothing changes in how your machine is operated.

No replacement needed — a technically sound machine should not go just because it can no longer exchange data.
No conversion or retrofit project — just a short, planned stop; no open-ended outcome, no warranty questions on the machine itself.
No loss of control — nothing is changed on the proven machine you have relied on for years.

“L1NE sits between machine and corporate network like a digital bodyguard.”

02 Outcome

Continuity instead of changeover

Your machine runs exactly as before — no relearning for operators
Files & programs are transferred automatically in the background and securely
No training effort, no change process in day-to-day operations
The investment in the machine is preserved — with no follow-up project
Your benefit

One device, one point of contact

Logiphys supplies and installs L1NE — no separate IT project, just one short planned stop. Ongoing support and updates can be added optionally.

Talk to us ↓

“IT switched off the old protocols. We found a solution: we simply put a little black box in between — and everything runs again.”

Voice from the shop floor
03 Architecture

Legacy protocols safely isolated

Standard industrial hardware instead of a black box — audit-friendly, no proprietary firmware dependency. Each device sits decentralised right at its machine — no central single point of failure, no cloud dependency in daily operation.

CNC machine

SMB1 · NFS v2
insecure legacy zone

L1NE Gateway

Industrial hardware · isolated legacy environment
Separated network zones

Company network

SMB3 · NFSv4 (encrypted)
modern, secure zone
04 Core features

Everything centrally in the browser

No proprietary Windows tool required — WebConfig runs on Mac, Linux, Windows and mobile.

/01

Protocol gateway

SMB1/2/3 and NFS v2–v4 — configurable separately on the legacy and the modern side.

/02

WebConfig

Browser-based, platform-independent — not a Windows-only tool.

/03

Data Sync

Bidirectional sync between host and legacy VM, configurable interval.

/04

SMB-Bridges

External shares (NAS, Windows servers) mirrored automatically with zone separation.

/05

Trash Browser

30-day retention of overwritten or deleted files.

/06

USB-Bridging

Network down? Plug in a USB stick — the machine keeps working directly with the data on it.

/07

Vendor-independent

Works with controls from any manufacturer that has a network interface — no vendor lock-in.

WebConfig Anmeldung
WebConfig — sign in via browser, no extra software
Dashboard
Dashboard — host, VM, sync and network status at a glance
05 Security architecture

Real isolation. Decentralised and resilient.

Isolation

KVM virtualisation

Host (SMB3/NFSv4) and legacy VM (SMB1/2, NFSv2/v3) are separated by real process, kernel, file-system and network isolation.

Network

Default-deny firewall

No routing between the machine network and the intranet — every cross-zone access runs exclusively through defined, controlled paths.

Updates

Signed firmware & OS bundles

No phone-home to vendor servers; firmware and OS updates exclusively via signed, verified bundles.

Key advantage

Decentralised = resilient

Every L1NE is an autonomous appliance right at its machine. If one device fails it affects only that machine — never the whole production line.

06 How is L1NE updated?

Controlled — and with a safety net

1
Step 1

Upload

Upload the firmware tarball — via WebConfig or USB stick; the type is detected automatically.

2
Step 2

Verification

The upload check must pass before the update can be started.

3
Step 3

Update running

The worker shows phase, progress and log live.

4
Step 4

Auto rollback

On error: automatic restore of the last snapshot.

OS
OS patch bundles — signed Ubuntu security updates, installable independently of the firmware release.
USB
Updates even without a network — firmware and OS bundles can equally be installed from a USB stick.
SNAP
Snapshot before every update — ready for use immediately after “completed”, usually without a restart.
07 Roadmap · growth path

From a single gateway to a centrally managed platform

The L1NE appliance is the entry point — security and legacy connectivity are built in from the start, not optional. A clear growth path builds on it, as needed — available individually or combined.

Subscription

Update plan

Security patches always included. Feature updates can be added flexibly — the most affordable step beyond the appliance itself.

Cloud / Hub

L1NE Cloud / L1NE Hub

Central configuration, log & backup management, licence management and automated update distribution for the entire fleet — as SaaS or on-prem.

Add-on module

Modern Connect

Modern machine protocols (cloud or local MQTT, OPC UA) plus SharePoint/OneDrive connectivity — as an extension of Cloud or Hub.

Subscription

Security plan

Requires an internet connection: SOC/EDR connectivity straight from the device — available independently of Cloud/Hub, full visibility combined with fleet management.

Subscription

Support plan

Defined SLA response times, priority support access and an annual service allowance for remote maintenance — available independently of Cloud/Hub.

Vision

Modern reporting

Contemporary dashboards & reporting instead of a pure configuration interface.

In development — planned for Q4 2026 / Q1 2027. Packages and pricing being finalised.

08 How rollout works

Three steps. Not a project.

Step 1

Enquiry & alignment

A brief conversation: which machines are affected, what does your network look like? Logiphys handles the rest.

Step 2

Installation

L1NE is placed between machine and network — one small adjustment, minimal downtime.

Step 3

Operation

Runs in the background — operators notice nothing. Support and updates can be added optionally.

09 Frequently asked questions

FAQ

How does the protocol switch work with L1NE?+

The L1NE gateway converts insecure connections such as SMB1 or NFSv2 into encrypted, modern standards (SMB3, NFSv4). The upgrade is transparent and requires no changes to the machine control.

Which machines and controls are supported?+

L1NE works with controls from any manufacturer that has a network interface — no vendor lock-in on the machine side.

Is installation complex?+

No. L1NE is placed between machine and network; only the IP and share are adjusted on the machine — no retrofit, no conversion. The machine stops only briefly.

Can L1NE be integrated into existing IT security concepts?+

Yes. The gateway is Linux-based, EDR-capable and offers monitoring interfaces — seamless integration into your existing security concept.

Questions? Let’s talk.

Enquire without obligation — after a short conversation you will know whether L1NE fits your machines.

Logiphys Datensysteme GmbH
Göppingen
Phone
Email
Web