Cisco & Rockwell Automation Alliance. Mr. Loo Hun Leng Solutions Architect Integrated Architecture Sg and Pakistan Rockwell Automation

Size: px
Start display at page:

Download "Cisco & Rockwell Automation Alliance. Mr. Loo Hun Leng Solutions Architect Integrated Architecture Sg and Pakistan Rockwell Automation"

Transcription

1 Cisco & Rockwell Automation Alliance Mr Loo Hun Leng Solutions Architect Integrated Architecture Sg and Pakistan Rockwell Automation

2 An Alliance that provides Seamless Solutions Network Infrastructure Remote Access Wireless Security Unified Communications TelePresence Data Center Enterprise Manufacturing / Industrial Integrated Architectures Software Controllers I/O Drives HMI Services

3 Addressing Converged Communications: Reference Architectures Design guidance Methodology built on Industry Standards Best practices and recommendations Documented configuration settings Tested with Industrial Applications Cisco Validated network design Future-ready network foundation CIP Safety, CIP Sync, CIP Motion Voice, Video Windows 2003 Servers Remote desktop connection VPN FactoryTalk Application Servers View Historian AssetCentre Transaction Manager FactoryTalk Services Platform Directory Security Data Servers Level 0 2 Drive Controller HMI Distributed Cell/Area #1 I/O (Redundant Star Topology) Gbps Link for Failover Detection Firewall (Active) Layer 3 Router Layer 3 Switch Stack Layer 2 Switch Controller HMI Drive Cell/Area #2 (Ring Topology) Firewall (Standby ) HMI Enterprise Zone Levels 4 and 5 Demilitarized Zone (DMZ) Demilitarized Zone (DMZ) Manufacturing Zone Level 3 Network Services DNS, DHCP, syslog server Network and security management Cell/Area Zone Controller Drive Distributed I/O Cell/Area #3 (Bus/Star Topology)

4 Joint Product Collaboration: Allen-Bradley Stratix 8000 / 8300 / 5700 Best of Cisco Cisco IOS TM Catalyst TM switch architecture and feature set CLI and Device Manager Secure integration with enterprise network + Best of Rockwell Automation Common Industrial Protocol (CIP) interface to Rockwell Automation Integrated Architecture TM RSLogix 5000 TM for configuration via Add-on Profile (AOP) Predefined Logic tags for diagnostics FactoryTalk TM View Faceplates = Best for the Plant Floor Compact Flash for zero-config replacement Industrial environmental ratings Default configurations for Industrial Automation +

5 RA Network & Security Services at a Glance ASSESS Assess the current state of the security program, design, policy Assess the current state of the network design, implementation DESIGN/PLAN Design and plan a network infrastructure Design and plan security program, policy, infrastructure, business continuity plan IMPLEMENT Installation and configuration of a network Implementation of a security program, infrastructure design, policy training AUDIT Audit current architecture compared to governing body (ODVA, IEEE, ANSI/ TIA) Audit security program compared to governing body (NERC CIP, ISA -99, NIST , NIST MANAGE/MONITOR Manage, maintain and monitor uptime and issues on the network Managed Security Services (Incident response, disaster recovery, monitoring) Rockwell Automation is a Cisco Solution Technology Integrator (STI) partner

6 Integrated Architecture Midrange System Mr Loo Hun Leng Solutions Architect Integrated Architecture Sg and Pakistan Rockwell Automation

7 Midrange Architecture System

8 Integrated Architecture The Convergence of Control and Information Plantwide Optimization Machine Builder Performance Sustainable Production Multiple Disciplines EtherNet/IP Scalable Dimensions Real time information Knowledge Integration 8

9 Integrated Architecture Industry Needs Scalability Simplification One Network Sustainability Standardize on a single, scalable control platform 9

10 Integrated Architecture Industry Needs Performance Safety Security Globalization Right-sized control for machine performance 10

11 Midrange Architecture System Lowest Total Cost to Design, Develop and Deliver Machines 11

12 Midrange Architecture System Evolution Sustainable Platform 7-10X system performance 50% smaller footprint 30% reduction in Bill of Materials Differentiation 50% reduction in integration costs 10% higher machine OEE 15% savings in safety systems Productivity 40% less develop time 25% more diagnostics 25% shorter start up time 2006 Intro 2008 Wave Wave Wave Wave Wave 5

13 Midrange Architecture System Wave 1 PanelView Plus Kinetix6000 CompactLogix L4 ViewPoint Stratix8000 PowerFlex7 Class Scaled Logix architecture Premier integration SERCOS integrated motion Network convergence Remote visualization Design productivity 13 Copyright 2011 Rockwell Automation, Inc All rights reserved

14 Midrange Architecture System Wave 2 CompactLogix L4S PanelView Plus Compact POINT I/O Kinetix300 VantagePoint Stratix6000 Scaled system view Integrated Safety Control Network Safety I/O Embedded Safe-off Device Level Ring Low axis motion 14 Copyright 2011 Rockwell Automation, Inc All rights reserved

15 Midrange Architecture System Wave 3 CompactLogix5370 L3, L2, L1 Kinetix350 PanelView 5000 FactoryTalk Suite Motion Analyzer 6 Stratix5700 Smallest Logix System EtherNet/IP integrated motion Real time information Integrated visualization Information software suite Simplified mechatronics 15 Copyright 2011 Rockwell Automation, Inc All rights reserved

16 Design, Develop and Deliver a Better Machine Increased Scalability Faster Time to Market Improved Machine Performance 16

17 Increased Scalability Simplified network architecture Line integration provides modular programming Future ready Deliver Improved Machine Performance 17

18 Increased Scalability Simplified network architecture Line integration provides modular programming Future ready Common programming & configuration tools Add value with third party devices Deliver Improved Machine Performance 18

19 Increased Scalability Simplified network architecture Line integration provides modular programming Future ready Common programming & configuration tools Add value with third party devices Deliver Improved Machine Performance Seamlessly scale your motion control application on EtherNet/IP One development environment for all machines High performance servo system for smaller machine 19

20 Faster Time to Market Mitigate risks with a common control platform Enhance machine performance Deliver Improved Machine Performance 20

21 Faster Time to Market Mitigate risks with a common control platform Enhance machine performance Deliver Reduce the time to design, develop and configure Simplify plant-wide integration Open access to real-time information Improved Machine Performance 21

22 Faster Time to Market Mitigate risks with a common control platform Enhance machine performance Deliver Improved Machine Performance Reduce the time to design, develop and configure Simplify plant-wide integration Open access to real-time information Improve machine design using mechatronic modeling & simulation tools Reduce design and start-up time with accelerators 22

23 Increased Machine Performance Performance needed in a compact design Built on proven technology Deliver Improved Machine Performance 23

24 Increased Machine Performance Performance needed in a compact design Built on proven technology Deliver Improved Machine Performance Improve machine reliability with linear products Greater machine availability with safe torque-off Optimize machine design and sustainability with mechanical and electrical integration 24

25 Increased Machine Performance Performance needed in a compact design Built on proven technology Deliver Improved Machine Performance Improve machine reliability with linear products Greater machine availability with safe torque-off Optimize machine design and sustainability with mechanical and electrical integration Accuracy needed for the most demanding applications Real time information enables better decision making 25

26 Midrange System Product Portfolio Network Wave 1 Wave 2 Wave 3 Stratix8000 Stratix6000 Stratix5700 Visualization PanelView Plus PanelView Plus Compact PanelView 5000 Information ViewPoint VantagePoint FactoryTalk Suite Control CompactLogix L4 CompactLogix L4S CompactLogix L3,2,1 Power Kinetix6000 Kinetix300 Kinetix350 Design PowerFlex7 Class POINT I/O Motion Analyzer 6

27 C I SCO MODE SYST RPS STAT DUPLX SPEED PoE C I SCO MODE SYST RPS STAT DUPLX SPEED PoE 1X 2X 1X 2X POWER OVER ETHERNET POWER OVER ETHERNET 11X 12X 13X 14X 11X 12X 13X 14X 23X 24X Catalyst 2960 Series PoE X 24X Catalyst 2960 Series PoE SYST RPS MASTR STAT DUPLX SPEED STACK MODE SYST RPS MASTR STAT DUPLX SPEED STACK MODE POWER STATUS ACTIVE VPN FLASH X 2X X 2X 11X 12X 11X 12X CISCO ASA 5510 SERIES Adaptive Security Appliance X 14X X 14X 23X 24X 23X 24X Catalyst 3750 SERIES Catalyst 3750 SERIES POWER STATUS ACTIVE VPN FLASH CISCO ASA 5510 SERIES Adaptive Security Appliance LINK SERVICE ACT CONSOLE STATUS ALARM PS1 PS2 LINK ACT LINK ACT UTILITY 1 2 Cisco 4400 Series WIRELESS LAN CONTROLLER MODEL AP 2 G 4 A H Rx - Tx GHzANTENNA z ANTENNA Tx - Rx A 2 4 ETHERNET 2 C G 4 Rx - Tx GHzANTENNA Tx - Rx C 2 4 CI S C O H STATUS z ANTENNA RADIO 2 G 4 A H Rx - Tx GHzANTENNA z ANTENNA Tx - Rx A B H G 4 Rx - Tx GHzANTENNA z ANTENNA Tx - Rx B 2 4 ETHERNET 2 C G 4 Rx - Tx GHzANTENNA Tx - Rx C 2 4 CI S C O H STATUS z ANTENNA RADIO 2 B H G 4 Rx - Tx GHzANTENNA z ANTENNA Tx - Rx B 2 4 Representative Configurations Enterprise Zone ERP, , Wide Area Network (WAN) Network Enterprise Cisco Adaptive Security Appliance (ASA) 5520 Firewall DMZ Patch Management Terminal Services Application Mirror AV Server Cisco 3750G Stackwise Layer 3 Distribution Switch Manufacturing Zone Stratix 8000Managed Layer 2 Switch FactoryTalk Applications and Services Cisco 2960 Layer 2 Access Switch Ring Topology Cisco 4402 Wireless LAN Controller (WLC) Cisco 1252G 80211n Dual Band Access point Lightweight AP (LWAP) Mobile User AP as Workgroup Bridge (WGB) Embedded Layer 2 Switch Ring Topology Embedded Layer 2 Switch Linear Topology Cell/Area Zone #1 Cell/Area Zone #2 Cell/Area Zone #3 Cell/Area Zone #4

28 Converged Plantwide Ethernet Architectures Logical framework Industrial and IT network convergence Hierarchical segmentation Scalability Resiliency Traffic management Policy enforcement ERP, , Wide Area Network (WAN) Patch Management Terminal Services Application Mirror AV Server FactoryTalk Application Servers View Historian AssetCentre Transaction Manager FactoryTalk Services Platform Directory Security/Audit Data Servers Levels 0 2 Remote Access Server Gbps Link for Failover Detection Firewall (Active) Catalyst 6500/4500 Catalyst 3750 StackWise Switch Stack Firewall (Standby) Cisco ASA 5500 Enterprise Zone Levels 4 and 5 Demilitarized Zone (DMZ) Demilitarized Zone (DMZ) Manufacturing Zone Site Manufacturing Operations and Control Level 3 Cisco Catalyst Switch Network Services DNS, DHCP, syslog server Network and security mgmt Cell/Area Zones Security policies Defense in depth Secure remote access Drive Controller HMI DIO Cell/Area #1 (Redundant Star Topology) (Flex Links Resiliency) DIO Rockwell Automation Stratix 8000 Layer 2 Access Switch DIO HMI Drive Controller Cell/Area #2 (Ring Topology) (Resilient Ethernet Protocol - REP) HMI DIO Cell/Area #3 (Bus/Star Topology) Controller Drive 28

29 Summary Converged Plantwide Ethernet Architectures Establish an open dialog between Manufacturing and IT Understand your network protocols/devices, IP addressing, VLANs, QoS, Security Defense-in Depth Security: no single methodology nor technology fully secures industrial networks Utilize standards, reference models and reference architectures Foundation for success when deploying the latest, innovative technologies Documented - less trial and error reduced equipment costs and commissioning time risk mitigation Robust and secure network infrastructure providing low latency & jitter delivery and high availability Work with Rockwell Automation and Cisco Network and Security Services 29

30 A New Compact Machine Control Platform that has it all Copyright 2011 Rockwell Automation, Inc All rights 30 High Performance Scalability reserved Integration Single network

31 Multimedia Resources Network & Communications - Rockwell Automation & Cisco Systems Cisco Systems Building Manufacturing & IT Network Architecture & Products to Address Network Convergence Rockwell Automation & Cisco Systems Alliance Profile Convergence Plantwide Ethernet (CPwE) Design and Implementation Guide Achieving Secure, Remote Access to Plant floor Applications and Data 10 Recommendations for Plantwide EtherNet/IP Deployments Aberdeen Group - Building the Case for Industrial Ethernet 31

32 Multimedia Resources uring/mfg_remote_access_demohtml 32

33 Questions? Thank You

34 TOMORROW starts here

Choosing the correct Time Synchronization Protocol and incorporating the 1756-TIME module into your Application

Choosing the correct Time Synchronization Protocol and incorporating the 1756-TIME module into your Application Choosing the correct Time Synchronization Protocol and incorporating the 1756-TIME module into your Application By: Josh Matson Various Time Synchronization Protocols From the earliest days of networked

More information

Secure Remote Access Solutions Balancing security and remote access Bob Hicks, Rockwell Automation

Secure Remote Access Solutions Balancing security and remote access Bob Hicks, Rockwell Automation Secure Remote Access Solutions Balancing security and remote access Bob Hicks, Rockwell Automation Rev 5058-CO900C Agenda Control System Network Security Defence in Depth Secure Remote Access Examples

More information

PR03. High Availability

PR03. High Availability PR03 High Availability Related Topics NI10 Ethernet/IP Best Practices NI15 Enterprise Data Collection Options NI16 Thin Client Overview Solution Area 4 (Process) Agenda Overview Controllers & I/O Software

More information

T46 - Integrated Architecture Tools for Securing Your Control System

T46 - Integrated Architecture Tools for Securing Your Control System T46 - Integrated Architecture Tools for Securing Your Control System PUBLIC PUBLIC - 5058-CO900G Copyright 2014 Rockwell Automation, Inc. All Rights Reserved. The Connected Enterprise PUBLIC Copyright

More information

The Internet of Things (IoT) and Industrial Networks. Guy Denis gudenis@cisco.com Rockwell Automation Alliance Manager Europe 2015

The Internet of Things (IoT) and Industrial Networks. Guy Denis gudenis@cisco.com Rockwell Automation Alliance Manager Europe 2015 The Internet of Things (IoT) and Industrial Networks Guy Denis gudenis@cisco.com Rockwell Automation Alliance Manager Europe 2015 Increasingly Everything will be interconnected 50 Billion Smart Objects

More information

Securing The Connected Enterprise

Securing The Connected Enterprise Securing The Connected Enterprise Pack Expo 2015 Las Vegas Chelsea An Business Development Lead, Network & Security PUBLIC Copyright 2015 Rockwell Automation, Inc. All Rights Reserved. 8 Connected Enterprise

More information

REFERENCE ARCHITECTURES FOR MANUFACTURING

REFERENCE ARCHITECTURES FOR MANUFACTURING Synopsis Industry adoption of EtherNet/IP TM for control and information resulted in the wide deployment of standard Ethernet in manufacturing. This deployment acts as the technology enabler for the convergence

More information

ControlLogix and CompactLogix 5370 Segmentation Methods for Plant-wide/ Site-wide Networks with OEM Convergence-ready Solutions

ControlLogix and CompactLogix 5370 Segmentation Methods for Plant-wide/ Site-wide Networks with OEM Convergence-ready Solutions Network Segmentation Methodology Application Guide ControlLogix and CompactLogix 5370 Segmentation Methods for Plant-wide/ Site-wide Networks with OEM Convergence-ready Solutions By Josh Matson and Gregory

More information

Production Software Within Manufacturing Reference Architectures

Production Software Within Manufacturing Reference Architectures Production Software Within Manufacturing Reference Architectures Synopsis Industry adoption of EtherNet/IP for control and information has driven the wide deployment of standard Ethernet for manufacturing

More information

Network Security Trends & Fundamentals of Securing EtherNet/IP Networks

Network Security Trends & Fundamentals of Securing EtherNet/IP Networks Network Security Trends & Fundamentals of Securing EtherNet/IP Networks Presented by Rockwell Automation Industrial Network Security Trends Security Quips "Good enough" security now, is better than "perfect"

More information

Industrial Security Solutions

Industrial Security Solutions Industrial Security Solutions Building More Secure Environments From Enterprise to End Devices You have assets to protect. Control systems, networks and software can all help defend against security threats

More information

Stratix Switches Within Integrated Architecture. Dave VanGompel, Principal Application Engineer

Stratix Switches Within Integrated Architecture. Dave VanGompel, Principal Application Engineer Written By: Mark Devonshire, Product Manager Dave VanGompel, Principal Application Engineer Synopsis Industry adoption of EtherNet/IP for control and information has driven the wide deployment of standard

More information

Designing Innovative Machines with Rockwell Automation Mid-Range Architecture System

Designing Innovative Machines with Rockwell Automation Mid-Range Architecture System Designing Innovative Machines with Rockwell Automation Mid-Range Architecture System Prakash Balaguru Solution Architect - South 11 th Feb 2015 Agenda Critical Business Issues Midrange Portfolio Mechatronics

More information

AUP28. Implementing Security In Integrated Architecture Practical security solutions for Industrial Control System (ICS)

AUP28. Implementing Security In Integrated Architecture Practical security solutions for Industrial Control System (ICS) AUP28 Implementing Security In Integrated Architecture Practical security solutions for Industrial Control System (ICS) Clive Barwise, Rockwell Automation European Product Manager Networks and Security

More information

AUP28 - Implementing Security and IP Protection

AUP28 - Implementing Security and IP Protection AUP28 - Implementing Security and IP Protection Features in the Integrated Architecture Mads Laier DK Commercial Engineer Logix & Networks Rev 5058-CO900E Agenda Why IACS Security Now! Defense in depth

More information

PlantPAx op weg naar Connected Enterprise.

PlantPAx op weg naar Connected Enterprise. AUP 46 PlantPAx op weg naar Connected Enterprise. Wim van der Heide Solution Architect Copyright 2015 Rockwell Automation, Inc. All rights reserved. 2 Agenda 1. Waarom zou u moeten migreren? 1. Connected

More information

Plant-wide Network Infrastructure. Copyright 2012 Rockwell Automation, Inc. All rights reserved.

Plant-wide Network Infrastructure. Copyright 2012 Rockwell Automation, Inc. All rights reserved. Plant-wide Network Infrastructure Agenda Additional On-site Information EtherNet/IP Considerations Logical Design Considerations Physical Layer Design Consideration Testing Considerations Plant-Floor and

More information

Stratix Industrial Networks Infrastructure At-A-Glance

Stratix Industrial Networks Infrastructure At-A-Glance Stratix ing and Routing Services Router Wireless Distribution Services Router Hardware Features Ports Per Module 2 5 to 16 4 and 9 port 6, 10, 18 and 20 port 8, 10, 16, 18, 24 port 6 and 10 port base switches

More information

Network & Security Services (NSS) Because Infrastructure Matters

Network & Security Services (NSS) Because Infrastructure Matters Network & Security Services (NSS) Because Infrastructure Matters Andrew Ballard Commercial Director Services & Support - EMEA Rev 5058-CO900E THE CONNECTED ENTERPRISE Headquarters Optimized for Rapid Value

More information

Physical Infrastructure for a Resilient Converged Plantwide Ethernet Architecture

Physical Infrastructure for a Resilient Converged Plantwide Ethernet Architecture Physical Infrastructure for a Resilient Converged Plantwide Ethernet Architecture Industrial Ethernet networking is advancing technology applications throughout the plant. These applications are rapidly

More information

Scalable Secure Remote Access Solutions

Scalable Secure Remote Access Solutions Scalable Secure Remote Access Solutions Jason Dely, CISSP Principal Security Consultant jdely@ra.rockwell.com Scott Friberg Solutions Architect Cisco Systems, Inc. sfriberg@cisco.com Jeffrey A. Shearer,

More information

Network & Security Services Rockwell Automation s Specialist team of Network & Security Specialists

Network & Security Services Rockwell Automation s Specialist team of Network & Security Specialists Network & Security Services Rockwell Automation s Specialist team of Network & Security Specialists Sonny Kailola Customer Support & Maintenance (CSM) Rev 5058-CO900D Copyright 2015 Rockwell Automation,

More information

Simplifying the Transition to Virtualization TS17

Simplifying the Transition to Virtualization TS17 Simplifying the Transition to Virtualization TS17 Name Sandeep Redkar Title Manager Process Solutions Date 11 th February 2015 Agenda Overview & Drivers Virtualization for Production Rockwell Automation

More information

Integrated Architecture Design and Configuration Tools

Integrated Architecture Design and Configuration Tools Electrical Lighting Automation DataComm Integrated Architecture Design and Configuration Tools -PRESENTED BY Thomas House and Dennis Ward Rockwell Automation Experience the Difference! IA Tools Website

More information

Securing Manufacturing Computing and Controller Assets

Securing Manufacturing Computing and Controller Assets Securing Manufacturing Computing and Controller Assets Rockwell Automation and Cisco Four Key Initiatives: Common Technology View: A single system architecture, using open, industry standard networking

More information

Network & Security Services. Because Infrastructure Matters

Network & Security Services. Because Infrastructure Matters Network & Security Services Because Infrastructure Matters Network & Security Services Manufacturing Convergence merging IT and manufacturing systems has created the need for coexistence and interoperability

More information

IP Telephony Management

IP Telephony Management IP Telephony Management How Cisco IT Manages Global IP Telephony A Cisco on Cisco Case Study: Inside Cisco IT 1 Overview Challenge Design, implement, and maintain a highly available, reliable, and resilient

More information

Industrial Security in the Connected Enterprise

Industrial Security in the Connected Enterprise Industrial Security in the Connected Enterprise Presented by Rockwell Automation 2008 Cisco Systems, Inc. and Rockwell Automation, Inc. All rights reserved. THE CONNECTED ENTERPRISE Optimized for Rapid

More information

Securing Manufacturing Control Networks. Alan J. Raveling, CISSP November 2 nd 5 th Pack Expo 2014

Securing Manufacturing Control Networks. Alan J. Raveling, CISSP November 2 nd 5 th Pack Expo 2014 Securing Manufacturing Control Networks Alan J. Raveling, CISSP November 2 nd 5 th Pack Expo 2014 As Internet-enabled technologies such as cloud and mobility grow, the need to understand the potential

More information

How the Internet of Things Will Transform the Manufacturing Industry

How the Internet of Things Will Transform the Manufacturing Industry How the Internet of Things Will Transform the Manufacturing Industry Dinesh Malkani President, Cisco India & SAARC February 26, 2015 By 2018, Video will be 62% of India's mobile data traffic India Is Ready

More information

Computer System Security Updates

Computer System Security Updates Why patch? If you have already deployed a network architecture, such as the one recommended by Rockwell Automation and Cisco in the Converged Plantwide Ethernet Design and Implementation Guide (http://www.ab.com/networks/architectures.html),

More information

Aluminium Smelter Benefits from New Approach to Networking

Aluminium Smelter Benefits from New Approach to Networking Aluminium Smelter Benefits from New Approach to Networking Customer Case Study One of world s largest aluminium smelters uses Ethernet-to-the-Factory to improve manufacturing efficiency. EXECUTIVE SUMMARY

More information

Scalable Secure Remote Access Solutions for OEMs

Scalable Secure Remote Access Solutions for OEMs Scalable Secure Remote Access Solutions for OEMs Introduction Secure remote access to production assets, data, and applications, along with the latest collaboration tools, provides manufacturers with the

More information

Achieving Secure, Remote Access to Plant-Floor Applications and Data

Achieving Secure, Remote Access to Plant-Floor Applications and Data Achieving Secure, Remote Access to Plant-Floor Applications and Data Abstract To increase the flexibility and efficiency of production operations, manufacturers are adopting open networking standards for

More information

Securing Process Control Systems

Securing Process Control Systems Securing Process Control Systems Bradford H. Hegrat, CISSP, CISM Sr. Principal Security Consultant Network & Security Services Rockwell Automation Process Solutions User Group (PSUG) November 14-15, 2011

More information

CompactLogix 5370 L1 Programmable Automation Controllers

CompactLogix 5370 L1 Programmable Automation Controllers Insert Photo Here CompactLogix 5370 L1 Programmable Automation Controllers Copyright 2013 Rockwell Automation, Inc. All rights reserved. Copyright 2013 Rockwell Automation, Inc. All rights reserved. 2

More information

Manufacturing and the Internet of Everything

Manufacturing and the Internet of Everything Manufacturing and the Internet of Everything Johan Arens, CISCO (joarens@cisco.com) Business relevance of the Internet of everything Manufacturing trends Business imperatives and outcomes A vision of the

More information

Design Considerations for Securing Industrial Automation and Control System Networks

Design Considerations for Securing Industrial Automation and Control System Networks Design Considerations for Securing Industrial Automation and Control System Networks Synopsis Rockwell Automation and Cisco Four Key Initiatives: Common Technology View: A single system architecture, using

More information

RuggedCom Solutions for

RuggedCom Solutions for RuggedCom Solutions for NERC CIP Compliance Rev 20080401 Copyright RuggedCom Inc. 1 RuggedCom Solutions Hardware Ethernet Switches Routers Serial Server Media Converters Wireless Embedded Software Application

More information

CONTROL LEVEL NETWORK RESILIENCY USING RING TOPOLOGIES. Joseph C. Lee, Product Manager Jessica Forguites, Product Specialist

CONTROL LEVEL NETWORK RESILIENCY USING RING TOPOLOGIES. Joseph C. Lee, Product Manager Jessica Forguites, Product Specialist CONTROL LEVEL NETWORK RESILIENCY Written by: Joseph C. Lee, Product Manager Jessica Forguites, Product Specialist DANGER 65 65 65 65 65 65 65 65 EtherNet/IP 1 3 4 5 6 LINK 1 LINK MOD NET 15 14 13 1 11

More information

White Paper A Manufacturing Network Fabric Maturity Model

White Paper A Manufacturing Network Fabric Maturity Model White Paper October 2015 WP-24 A Manufacturing Network Fabric Maturity Model Simplify planning for an IoT information enabled manufacturing environment Introduction The Internet of Things (IoT) is expected

More information

AUD20 - Industrial Network Security

AUD20 - Industrial Network Security AUD20 - Industrial Network Security Lesley Van Loo EMEA Senior Commercial engineer - Rockwell Automation Rev 5058-CO900B Copyright 2012 Rockwell Automation, Inc. All rights reserved. 2 Agenda Connected

More information

Scalable, Secure Remote Monitoring Solutions Stay a step ahead by remotely monitoring your critical assets

Scalable, Secure Remote Monitoring Solutions Stay a step ahead by remotely monitoring your critical assets Scalable, Secure Remote Monitoring Solutions Stay a step ahead by remotely monitoring your critical assets PUBLIC PUBLIC - 5058-CO900G Why Is This Important? What s Driving This Need? Customer Impact It

More information

Das sollte jeder ITSpezialist über. Automations- und Produktionsnetzwerke wissen

Das sollte jeder ITSpezialist über. Automations- und Produktionsnetzwerke wissen Das sollte jeder ITSpezialist über Automations- und Produktionsnetzwerke wissen Frank Schirra, Rockwell Automation Solution Architect Edi Truttmann, Cisco Systems Network Solution Sales Specialist 2012

More information

Cisco and VMware Virtualization Planning and Design Service

Cisco and VMware Virtualization Planning and Design Service Cisco and VMware Virtualization Planning and Design Service Create an End-to-End Virtualization Strategy with Combined Services from Cisco and VMware Service Overview A Collaborative Approach to Virtualization

More information

Huawei One Net Campus Network Solution

Huawei One Net Campus Network Solution Huawei One Net Campus Network Solution 2 引 言 3 园 区 网 面 临 的 挑 战 4 华 为 园 区 网 解 决 方 案 介 绍 6 华 为 园 区 网 解 决 方 案 对 应 产 品 组 合 6 结 束 语 Introduction campus network is an internal network of an enterprise or organization,

More information

Security in IT & Automatisierung

Security in IT & Automatisierung Security in IT & Automatisierung Welten wachsen zusammen und ermöglichen Industrie 4.0 Manfred Bauer manbauer@cisco.com April 2015 Informations Technologie Automatisierung Menschen Maschinen Sicherheit

More information

Securing the Connected Enterprise

Securing the Connected Enterprise Securing the Connected Enterprise ABID ALI, Network and Security Consultant. Why Infrastructure Matters Rapidly Growing Markets Global Network Infrastructure and Security Markets 13.7% CAGR over the next

More information

Cisco Medical-Grade Network: Build a Secure Network for HIPAA Compliance

Cisco Medical-Grade Network: Build a Secure Network for HIPAA Compliance White Paper Cisco Medical-Grade Network: Build a Secure Network for HIPAA Compliance What You Will Learn The Cisco Medical-Grade Network (MGN) 1 provides a network foundation that enables reliable, transparent,

More information

Course Contents CCNP (CISco certified network professional)

Course Contents CCNP (CISco certified network professional) Course Contents CCNP (CISco certified network professional) CCNP Route (642-902) EIGRP Chapter: EIGRP Overview and Neighbor Relationships EIGRP Neighborships Neighborship over WANs EIGRP Topology, Routes,

More information

CISCO SMB CLASS MOBILITY AND WIRELESS SOLUTIONS: THE RESPONSIVE WORKFORCE

CISCO SMB CLASS MOBILITY AND WIRELESS SOLUTIONS: THE RESPONSIVE WORKFORCE CISCO SMB CLASS MOBILITY AND WIRELESS SOLUTIONS: THE RESPONSIVE WORKFORCE BLUEPRINT Cisco Small and Medium Business Class Solutions Cisco offers small and medium-sized business customers a suite of intelligent

More information

T20 - Rockwell Software Studio 5000 : The Automation Engineering and Design Environment

T20 - Rockwell Software Studio 5000 : The Automation Engineering and Design Environment T20 - Rockwell Software Studio 5000 : The Automation Engineering and Design Environment PUBLIC INFORMATION Rev 5058-CO900E Copyright 2014 Rockwell Automation, Inc. All Rights Reserved. Studio 5000 Overview/Vision

More information

Allen-Bradley Stratix 5700 Network Address Translation (NAT)

Allen-Bradley Stratix 5700 Network Address Translation (NAT) 00:00:BC:66:0F:C7 DANGER SINK\ SOURCE SOURCE 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 00 08 01 09 02 10 03 11 04 12 05 13 06 14 07 15 COM COM 0 1 NC NC +V +V 00 08 01

More information

IT Security and OT Security. Understanding the Challenges

IT Security and OT Security. Understanding the Challenges IT Security and OT Security Understanding the Challenges Security Maturity Evolution in Industrial Control 1950s 5/4/2012 # 2 Technology Sophistication Security Maturity Evolution in Industrial Control

More information

Secure Remote Support

Secure Remote Support Secure Remote Support - Monitor, Manage, Configure remote assets - Cloud Based Data Collection Tom Peshek Program Manager Remote Services and Support - 5058-CO900G Remote Monitoring and Diagnostics Value

More information

Fiber Optic Infrastructure Application Guide

Fiber Optic Infrastructure Application Guide Fiber Optic Infrastructure Application Guide Deploying a Fiber Optic Physical Infrastructure to Support Converged Plantwide EtherNet/IP November 2011 Publlication ENET-TD003A-EN-E: About PANDUIT PANDUIT

More information

T101 - Migrating your HMI System

T101 - Migrating your HMI System T101 - Migrating your HMI System PUBLIC PUBLIC - 5058-CO900G 2 Agenda Why Migrate to Integrated Architecture How to Migrate What s New in HMI Software RSView32 to FactoryTalk View SE migrations FactoryTalk

More information

644-068. Cisco - 644-068 Advanced Routing and Switching for Field Engineers - ARSFE

644-068. Cisco - 644-068 Advanced Routing and Switching for Field Engineers - ARSFE Cisco - 644-068 Advanced Routing and Switching for Field Engineers - ARSFE 1 QUESTION: 1 Which three of the following are major trends that fuel the demand for routing and switching? (Choose three.) A.

More information

Data Center Networking Designing Today s Data Center

Data Center Networking Designing Today s Data Center Data Center Networking Designing Today s Data Center There is nothing more important than our customers. Data Center Networking Designing Today s Data Center Executive Summary Demand for application availability

More information

PlantPAx Process Automation System. A Modern Distributed Control System

PlantPAx Process Automation System. A Modern Distributed Control System PlantPAx Process Automation System A Modern Distributed Control System Utilize Your Process Automation System to Address Key Market Challenges As technology continues to drive innovations, the production

More information

Designing for Cisco Internetwork Solutions

Designing for Cisco Internetwork Solutions Designing for Cisco Internetwork Solutions Course DESGN v2.1; 5 Days, Instructor-led Course Description: Designing for Cisco Internetwork Solutions (DESGN) v2.1 is an instructor-led course presented by

More information

Deploying the ShoreTel IP Telephony Solution with a Meru Networks Wireless LAN

Deploying the ShoreTel IP Telephony Solution with a Meru Networks Wireless LAN Deploying the ShoreTel IP Telephony Solution with a Meru Networks Wireless LAN Copyright 2005, Meru Networks, Inc. This document is an unpublished work protected by the United States copyright laws and

More information

Industrial Security for Process Automation

Industrial Security for Process Automation Industrial Security for Process Automation SPACe 2012 Siemens Process Automation Conference Why is Industrial Security so important? Industrial security is all about protecting automation systems and critical

More information

Reference Manual. Ethernet Design Considerations

Reference Manual. Ethernet Design Considerations Reference Manual Ethernet Design Considerations Important User Information Solid-state equipment has operational characteristics differing from those of electromechanical equipment. Safety Guidelines for

More information

Lab Testing Summary Report

Lab Testing Summary Report Lab Testing Summary Report February 2007 Report 070228 Product Category: SMB IP-PBX Vendor Tested: Cisco Systems Product Tested: Cisco Unified Communications 500 Series Key findings and conclusions: Complete

More information

Secure Access into Industrial Automation and Control Systems Industry Best Practice and Trends. Serhii Konovalov Venkat Pothamsetty Cisco

Secure Access into Industrial Automation and Control Systems Industry Best Practice and Trends. Serhii Konovalov Venkat Pothamsetty Cisco Secure Access into Industrial Automation and Systems Industry Best Practice and Trends Serhii Konovalov Venkat Pothamsetty Cisco Vendor offers a remote firmware update and PLC programming. Contractor asks

More information

Chapter 1 The Principles of Auditing 1

Chapter 1 The Principles of Auditing 1 Chapter 1 The Principles of Auditing 1 Security Fundamentals: The Five Pillars Assessment Prevention Detection Reaction Recovery Building a Security Program Policy Procedures Standards Security Controls

More information

Top-Down Network Design

Top-Down Network Design Top-Down Network Design Chapter Five Designing a Network Topology Copyright 2010 Cisco Press & Priscilla Oppenheimer Topology A map of an internetwork that indicates network segments, interconnection points,

More information

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers SOLUTION BRIEF Enterprise Data Center Interconnectivity Increase Simplicity and Improve Reliability with VPLS on the Routers Challenge As enterprises improve business continuity by enabling resource allocation

More information

Chapter 1 Reading Organizer

Chapter 1 Reading Organizer Chapter 1 Reading Organizer After completion of this chapter, you should be able to: Describe convergence of data, voice and video in the context of switched networks Describe a switched network in a small

More information

- Introduction to PIX/ASA Firewalls -

- Introduction to PIX/ASA Firewalls - 1 Cisco Security Appliances - Introduction to PIX/ASA Firewalls - Both Cisco routers and multilayer switches support the IOS firewall set, which provides security functionality. Additionally, Cisco offers

More information

Recommended IP Telephony Architecture

Recommended IP Telephony Architecture Report Number: I332-009R-2006 Recommended IP Telephony Architecture Systems and Network Attack Center (SNAC) Updated: 1 May 2006 Version 1.0 SNAC.Guides@nsa.gov This Page Intentionally Left Blank ii Warnings

More information

Cisco Virtualized Multiservice Data Center Reference Architecture: Building the Unified Data Center

Cisco Virtualized Multiservice Data Center Reference Architecture: Building the Unified Data Center Solution Overview Cisco Virtualized Multiservice Data Center Reference Architecture: Building the Unified Data Center What You Will Learn The data center infrastructure is critical to the evolution of

More information

L11 - New Techniques to Increase Efficiency with PanelView Plus 6 Applications Wil Mattheis Commercial Engineer

L11 - New Techniques to Increase Efficiency with PanelView Plus 6 Applications Wil Mattheis Commercial Engineer L11 - New Techniques to Increase Efficiency with PanelView Plus 6 Applications Wil Mattheis Commercial Engineer November 2012 Rev 5058-CO900C Agenda Product Overview Device Connectivity Design-time Improvements

More information

Jive Core: Platform, Infrastructure, and Installation

Jive Core: Platform, Infrastructure, and Installation Jive Core: Platform, Infrastructure, and Installation Jive Communications, Inc. 888-850-3009 www.getjive.com 1 Overview Jive hosted services are run on Jive Core, a proprietary, cloud-based platform. Jive

More information

Cisco IOS Advanced Firewall

Cisco IOS Advanced Firewall Cisco IOS Advanced Firewall Integrated Threat Control for Router Security Solutions http://www.cisco.com/go/iosfirewall Presentation_ID 2007 Cisco Systems, Inc. All rights reserved. 1 All-in-One Security

More information

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop White Paper Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop What You Will Learn Cisco Virtualization Experience Infrastructure (VXI) delivers a service-optimized desktop virtualization

More information

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs As a head of the campus network department in the Deanship of Information Technology at King Abdulaziz University for more

More information

Symphony Plus Cyber security for the power and water industries

Symphony Plus Cyber security for the power and water industries Symphony Plus Cyber security for the power and water industries Symphony Plus Cyber Security_3BUS095402_(Oct12)US Letter.indd 1 01/10/12 10:15 Symphony Plus Cyber security for the power and water industries

More information

Ethernet Design Considerations for Control System Networks AN INTRODUCTION

Ethernet Design Considerations for Control System Networks AN INTRODUCTION Ethernet Design Considerations for Control System Networks AN INTRODUCTION PUBLICATION ENET-SO001A-EN-E November 2007 Contact Rockwell Customer Support Telephone 1.440.646.3434 Online Support http://www.rockwellautomation.com/support/

More information

PlantPAx Process Automation System

PlantPAx Process Automation System Reference Manual PlantPAx Process Automation System System Release 3.0 (2014 update) PlantPAx Process Automation System Important User Information Read this document and the documents listed in the additional

More information

IACS Network Security and the Demilitarized Zone

IACS Network Security and the Demilitarized Zone CHAPTER 6 IACS Network Security and the Demilitarized Zone Overview This chapter focuses on network security for the IACS network protecting the systems, applications, infrastructure, and end-devices.

More information

Cisco Catalyst 2970 Series Switches

Cisco Catalyst 2970 Series Switches Q&A Cisco Catalyst 2970 Series Switches PRODUCT OVERVIEW Q. What is the Cisco Catalyst 2970 Series? A. The Cisco Catalyst 2970 Series Switches are affordable Gigabit-to-the-desktop Ethernet switches that

More information

Cisco Certified Security Professional (CCSP)

Cisco Certified Security Professional (CCSP) 529 Hahn Ave. Suite 101 Glendale CA 91203-1052 Tel 818.550.0770 Fax 818.550.8293 www.brandcollege.edu Cisco Certified Security Professional (CCSP) Program Summary This instructor- led program with a combination

More information

Information Technology Cluster

Information Technology Cluster Network Systems Pathway Information Technology Cluster Assistant Network Technician -- This major prepares students to install, configure, operate, and connections to remote sites in a wide area network

More information

Wireless Process Control Network Architecture Overview

Wireless Process Control Network Architecture Overview Wireless Process Control Network Architecture Overview Industrial Wireless Networks Gain Acceptance In Plant Floors By: Soroush Amidi, Product Manager and Alex Chernoguzov, Wireless Architect Wireless

More information

Copyright 2011 Rockwell Automation, Inc. All rights reserved. Fundamentals of EtherNet/IP Networking

Copyright 2011 Rockwell Automation, Inc. All rights reserved. Fundamentals of EtherNet/IP Networking Fundamentals of EtherNet/IP Networking What you will learn Trends in Industrial Network Convergence Technology enablers and business drivers Fundamentals of EtherNet/IP What it is, capabilities and features

More information

Cisco EXAM - 500-451. Enterprise Network Unified Access Essentials. Buy Full Product. http://www.examskey.com/500-451.html

Cisco EXAM - 500-451. Enterprise Network Unified Access Essentials. Buy Full Product. http://www.examskey.com/500-451.html Cisco EXAM - 500-451 Enterprise Network Unified Access Essentials Buy Full Product http://www.examskey.com/500-451.html Examskey Cisco 500-451 exam demo product is here for you to test the quality of the

More information

CHAPTER 6 DESIGNING A NETWORK TOPOLOGY

CHAPTER 6 DESIGNING A NETWORK TOPOLOGY CHAPTER 6 DESIGNING A NETWORK TOPOLOGY Expected Outcomes Able to identify terminology that will help student discuss technical goals with customer. Able to introduce a checklist that can be used to determine

More information

INTEGRATING SUBSTATION IT AND OT DEVICE ACCESS AND MANAGEMENT

INTEGRATING SUBSTATION IT AND OT DEVICE ACCESS AND MANAGEMENT Utilities WHITE PAPER May 2013 INTEGRATING SUBSTATION IT AND OT DEVICE ACCESS AND MANAGEMENT Table of Contents Introduction...3 Problem Statement...4 Solution Requirements...5 Components of an Integrated

More information

Securely Architecting the Internal Cloud. Rob Randell, CISSP Senior Security and Compliance Specialist VMware, Inc.

Securely Architecting the Internal Cloud. Rob Randell, CISSP Senior Security and Compliance Specialist VMware, Inc. Securely Architecting the Internal Cloud Rob Randell, CISSP Senior Security and Compliance Specialist VMware, Inc. Securely Building the Internal Cloud Virtualization is the Key How Virtualization Affects

More information

Down to the Wire Building a Resilient Network Infrastructure Andy Banathy, Solution Architect, Panduit March 2015

Down to the Wire Building a Resilient Network Infrastructure Andy Banathy, Solution Architect, Panduit March 2015 Down to the Wire Building a Resilient Network Infrastructure Andy Banathy, Solution Architect, Panduit March 2015 The Internet of Things (IoT) encompasses everyday devices (e.g., smartphones, tablets,

More information

Implementing Cisco IOS Network Security v2.0 (IINS)

Implementing Cisco IOS Network Security v2.0 (IINS) Implementing Cisco IOS Network Security v2.0 (IINS) Course Overview: Implementing Cisco IOS Network Security (IINS) v2.0 is a five-day instructor-led course that is presented by Cisco Learning Partners

More information

Virtualized System Reduces Client s Capital and Maintenance Costs

Virtualized System Reduces Client s Capital and Maintenance Costs Virtualized System Reduces Client s Capital and Maintenance Costs Insert Photo Here Steve Malyszko, P. E. President Steve Schneebeli Lead Systems Engineer Rockwell Automation Process Solutions User Group

More information

Security for. Industrial. Automation. Considering the PROFINET Security Guideline

Security for. Industrial. Automation. Considering the PROFINET Security Guideline Security for Industrial Considering the PROFINET Security Guideline Automation Industrial IT Security 2 Plant Security Physical Security Physical access to facilities and equipment Policies & Procedures

More information

Cisco Advanced Services for Network Security

Cisco Advanced Services for Network Security Data Sheet Cisco Advanced Services for Network Security IP Communications networking the convergence of data, voice, and video onto a single network offers opportunities for reducing communication costs

More information

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network Olga Torstensson SWITCHv6 1 Components of High Availability Redundancy Technology (including hardware and software features)

More information

BYOD Networks for Kommuner

BYOD Networks for Kommuner BYOD Networks for Kommuner Simon Tompson Solutions Architect @MerakiSimon About Meraki The recognized leader in Cloud Networking - Thousands of customer networks in over 100 countries worldwide - World

More information

T46 PlantPAx Physical Infrastructure: Virtualized Micro Data Center Case Study. November 08, 2012

T46 PlantPAx Physical Infrastructure: Virtualized Micro Data Center Case Study. November 08, 2012 T46 PlantPAx Physical Infrastructure: Virtualized Micro Data Center Case Study November 08, 2012 1. Why use virtualization in manufacturing? 2. PlantPAx virtualization 3. Physical Infrastructure: Best

More information

EXINDA NETWORKS. Deployment Topologies

EXINDA NETWORKS. Deployment Topologies EXINDA NETWORKS Deployment Topologies September 2005 :: Award Winning Application Traffic Management Solutions :: :: www.exinda.com :: Exinda Networks :: info@exinda.com :: 2005 Exinda Networks Pty Ltd.

More information