The NI Linux Real-Time controllers do not implement encryption for data at rest or data in transit by default. However, encryption can be enabled through software configuration and the use of supported security protocols.
For data at rest, it is possible to implement Linux Unified Key Setup (LUKS) encryption to protect data stored on the target using the Secured, Network-Attached Controller (SNAC) configuration. For additional information, please follow the steps below:
- Navigate to the NI Linux RT Secure Configuration Guide and NIST 800-171 Documentation
- Download the SNAC guide by clicking on SNAC.pdf under Assets as shown in the image below.

- Refer to the Optional SNAC Configuration Instructions section, which is part of the Chapter 21. Appendix 1: The Secured, Network-Attached Configuration. Note: The SNAC configuration is only compatible with CompactRIO x64 and PXIe x64 devices, that support NI Linux Real-Time System Image 2025 Q2 and later.
For data in transit, consider the following options:
These security mechanisms are not enabled automatically and must be configured as part of the application deployment and system hardening process.