Integrated security functions added to product families boost network hardness

Siemens introduces new Simatic CP and Scalance products with integrated security functions to help protect industrial networks.

05/31/2012


Siemens introduces new Simatic CP and Scalance products with integrated security functions to help protect industrial networks.Siemens Industry Automation has announced new versions of its Simatic NET CP 343-1 Advanced and Simatic NET CP 443-1 components with integrated security functions to enable companies to enhance the security of their networks in process automation and production automation. These advanced communications processors contain a firewall, as well as a VPN (virtual private network) function, which provides secure access to the Simatic S7-300 and S7-400 controller series.

The industrial PCs can also be equipped with a firewall and VPN client by means of the Simatic NET CP 1628 module. The security module Scalance S623 is also new; with an additional DMZ port for service access, as is the UMTS router Scalance M875 for secure access to plant units via a 3G cellular network using UMTS.

Through its integrated security product portfolio, Siemens is offering network components that provide extended security features. The Simatic NET CP 343-1 Advanced and Simatic NET CP 443-1 Advanced communications processors with extended functional scope enable connection to the S7-300 or S7-400 controllers via VPN. It is also possible to define more detailed security settings and access rights via the integrated firewall. Through this function, the communication processors secure access across the entire plant network. The integrated switch also supports secure connection of the lower-level controllers, HMI, and I/O devices.

The new product range includes the Simatic NET CP 1628 module for industrial PCs. It supports secure connection of industrial PCs to the network via a VPN and firewall. Computers equipped with the module can be connected to protected cells. It is also possible to access an industrial PC with an integral CP 1628 using the Softnet Security Client application over the Internet or a company-internal network via remote access.

Two more new products in the security portfolio are the security module Scalance S623 and the UMTS router Scalance M875. With the Scalance S623, the thoroughly revised range of Scalance S modules is supplemented by a variant with a DMZ port. This port opens up a separate and, if required, restricted access point to the network for service access. A DSL modem can be connected to the DMZ port for service work via remote access. In the case of Scalance M875, this is a UMTS router with integrated security functions. The router is ideal for secure communication to and from distributed automation cells via VPN, such as the supply stations of a water utility company or mobile plants that have to be centrally monitored or controlled remotely from a control center.

Due to the increased use of Ethernet connections penetrating the field level, industrial network security issues are gaining importance. For comprehensive plant protection, a variety of different measures must be implemented. These range from the company organization and guidelines regarding protective measures for PC and control systems, to protection of automation cells by segmenting the network. Siemens follows the cell protection concept and offers – with the modules of the Scalance M, the Scalance S and the security communication processors – numerous components for building up protected cells. With the cell protection concept, a plant network is subdivided into protected automation cells, within which all devices are able to communicate with each other securely. The individual cells are connected to the overall network protected by a VPN and firewall. Cell protection is designed to reduce the susceptibility to failure of the entire production plant and increases its availability.

Edited by Peter Welander, pwelander(at)cfemedia.com



No comments
The Engineers' Choice Awards highlight some of the best new control, instrumentation and automation products as chosen by...
Each year, a panel of Control Engineering editors and industry expert judges select the System Integrator of the Year Award winners.
Control Engineering Leaders Under 40 identifies and gives recognition to young engineers who...
Learn more about methods used to ensure that the integration between the safety system and the process control...
Adding industrial toughness and reliability to Ethernet eGuide
Technological advances like multiple-in-multiple-out (MIMO) transmitting and receiving
Virtualization advice: 4 ways splitting servers can help manufacturing; Efficient motion controls; Fill the brain drain; Learn from the HART Plant of the Year
Two sides to process safety: Combining human and technical factors in your program; Preparing HMI graphics for migrations; Mechatronics and safety; Engineers' Choice Awards
Detecting security breaches: Forensic invenstigations depend on knowing your networks inside and out; Wireless workers; Opening robotic control; Product exclusive: Robust encoders
The Ask Control Engineering blog covers all aspects of automation, including motors, drives, sensors, motion control, machine control, and embedded systems.
Join this ongoing discussion of machine guarding topics, including solutions assessments, regulatory compliance, gap analysis...
News and comments from Control Engineering process industries editor, Peter Welander.
IMS Research, recently acquired by IHS Inc., is a leading independent supplier of market research and consultancy to the global electronics industry.
This is a blog from the trenches – written by engineers who are implementing and upgrading control systems every day across every industry.
Anthony Baker is a fictitious aggregation of experts from Callisto Integration, providing manufacturing consulting and systems integration.
Integrator Guide

Integrator Guide

Search the online Automation Integrator Guide
 

Create New Listing

Visit the System Integrators page to view past winners of Control Engineering's System Integrator of the Year Award and learn how to enter the competition. You will also find more information on system integrators and Control System Integrators Association.

Case Study Database

Case Study Database

Get more exposure for your case study by uploading it to the Control Engineering case study database, where end-users can identify relevant solutions and explore what the experts are doing to effectively implement a variety of technology and productivity related projects.

These case studies provide examples of how knowledgeable solution providers have used technology, processes and people to create effective and successful implementations in real-world situations. Case studies can be completed by filling out a simple online form where you can outline the project title, abstract, and full story in 1500 words or less; upload photos, videos and a logo.

Click here to visit the Case Study Database and upload your case study.