Device Management ยท Fleet Operations
Commission and manage. Secure at scale.
Commission, run and secure VWAN device fleets from one place. A portal for operators, a field app for engineers, same platform, same data model, same security boundary.
One platform. Two perspectives.
The portal gives operators fleet-wide visibility. The field app puts the same platform in the engineer's pocket. Deploy it white-label, or integrate it into your existing operations stack.
Multi-tenant with role-based access control, operators, suppliers and third-party partners see only the devices and data in their domain.
Operations Portal
Real-time fleet management for operators, with device inventory, configuration, analytics and third-party data sharing in a single multi-tenant dashboard.
- Device inventory with real-time status across the fleet
- Firmware OTA with staged rollouts and automatic rollback
- Instrumentation and performance analytics
- MQTT console with live traffic inspection
- Third-party data sharing with consent enforcement
- Security alerts with severity classification
Field Service App
Every tool an engineer needs for on-site commissioning: scan, pair, diagnose and capture consent without calling back to the office.
- QR and barcode scanning for device identification
- Guided 12-step VWAN commissioning workflow
- ZigBee RSSI/LQI and WiFi signal diagnostics
- Real-time debug console for protocol troubleshooting
- On-site DAPF consent capture with audit trail
- Job management with assigned work orders
Fleet intelligence at a glance.
Device inventory: real-time fleet status, firmware versions, last communication and bulk management operations.
Remote hardware lifecycle management.
Manage the full hardware catalogue: device types, manufacturers, firmware images and lifecycle states. Over-the-air firmware updates are deployed per device type with staged rollouts and automatic rollback on failure.
Fleet-wide visibility, single pane.
Real-time performance metrics and operational intelligence across the fleet. Identify issues before they become incidents, track trends over time, and drill into individual device telemetry.
Prometheus-compatible metrics. No agent required.
Full operational picture, one screen.
Every registered device exposes identity, HAN telemetry, alerts, USP parameters and a full audit log in a single screen. No switching between systems.
- Device Identity : serial number, MAC address, firmware version, manufacturer and lifecycle state
- HAN & Smart Meter Data : Zigbee SEP association, ESME/GSME reads, signal quality and Comms Hub status
- Alerts & Events : security incidents, connectivity changes, firmware events and operational warnings
- USP Device Data : TR-369 data model parameters, configuration state and remote management status
- Device Logs : full audit trail of actions, configuration changes, firmware updates and commissioning history
Twelve-step VWAN protocol. Fully automated.
From barcode scan to MQTT handshake, the platform orchestrates every step. Certificate-based authentication (CBKE) ensures cryptographic device identity from first contact.
Scan
QR/barcode capture of ONT, Hub and VWAN devices. One scan populates all identifiers.
Pair
Inter-PAN Join, ZigBee association, CBKE key establishment and network key distribution.
Register
Device registration, MQTT topic creation, credentials provisioning and health check.
Verify
Telemetry verification, signal diagnostics and MQTT handshake confirmation.
Built for the install.
The field app puts the full commissioning platform in the engineer's pocket. Secure login, barcode scanning, guided pairing, signal diagnostics and on-site consent capture. Everything needed to commission a device without calling back to the office.
When an engineer completes a pairing in the field, the portal updates in real time. When an operator flags a device issue, it appears on the engineer's job list. Same data, same security model, no sync delay.
Federated data sharing. Consent at the broker.
Third-party data sharing runs over federated MQTT with mutual TLS. Every partner has its own data categories, rate limits and configuration. Consent is enforced at the broker, not in application code.
Consumer consent. DAPF built in.
The Data Access and Privacy Framework (DAPF) is built into every layer: commissioning, data sharing, third-party access and telemetry. Consumers grant or withdraw consent per data category, and enforcement happens straight away.
Defence in depth. Cryptographic enforcement.
TLS 1.3 Enforced
All data in transit encrypted with TLS 1.3. HTTPS-only with HSTS headers and Content Security Policy.
mTLS Device Auth
Mutual TLS for every device connection. Certificate-based identity verification, not shared secrets.
X.509 Certificates
ECDSA secp256r1 elliptic curves, expiry alerts, automatic renewal and OCSP stapling support.
RBAC Access Control
Role-based permissions with multi-tenant isolation. Each partner sees only their domain.
CBKE Authentication
Certificate-Based Key Establishment for cryptographic device identity during VWAN pairing.
Complete Audit Trail
Every action logged: commissioning, configuration, data access, security events and consent.
Standards & Specifications
Built on open standards throughout. Device management, telemetry, security and consent all use published specifications.