Siemens SIMOCODE pro Function Manual page 44

Industrial controls, motor management and control devices, communication
Hide thumbs Also See for SIMOCODE pro:
Table of Contents

Advertisement

Communication
2.2 PROFINET communication
Precautions
The most important precautions against manipulation and loss of data security in an
industrial environment are:
● Filtering and verification of data traffic through virtual private networks (VPN). A virtual
private network is used to exchange private data in a public network (e.g. the Internet).
The most common VPN technology is IPsec. IPsec is a collection of protocols based on
the IP protocol at the network layer.
● Segmentation into protected automation cells. The aim of this concept is to protect
devices in the network through security modules. A group of protected devices forms a
protected automation cell. Only security modules in the same group or the device
protected by you can be interchanged.
● Authentication (identification) of the networked devices. The security modules identify
themselves to each other via a secure (encrypted) channel using authentication
procedures. This prevents access to a protected segment by unauthorized persons from
outside.
● Encryption of the data traffic. The confidentiality of the data is ensured by encrypting the
data traffic. For this purpose, every security module is given a VPN certificate which
includes the encryption key.
Guidelines on information security in industrial automation
VDI guideline
The VDI/VDE Association of German Engineers "Measurement and Automation" has
published with the VDI guideline "VDI/VDE 2182 Sheet 1, IT Security for Industrial
Automation - General Model" a guideline in implementation of a security architecture in the
industrial environment. The guideline is found under "VDI guidelines" on the VDI home page:
VDI guidelines (http://www.vdi.eu/engineering/vdi-standards)
PROFINET Security Guideline
The PROFIBUS & PROFINET user organization supports you with building up safety
standards in your company with the PROFINET Security Guideline. These guidelines are
found under downloads on the home page of the PROFIBUS & PROFINET user
organization: PI - PROFIBUS & PROFINET International Home (http://www.profibus.com)
Security information
See Security information (Page 10).
44
SIMOCODE pro - Communication
Function Manual, 11/2018, A5E40508495002A/RS-AC/003

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents