Networks and Security Infrastructure Product Portfolio PUBLIC Copyright
Networks and Security Infrastructure Product Portfolio PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 1
Integrated Architecture x A HIGH PERFORMANCE ARCHITECTURE Smart. Productive. Secure. Automation system with intelligence that just works. Simple integrated development resulting in improved real-time operations and expedited maintenance. End-to-end security. PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 2
Network & Security Portfolio Stratix® Stratix 1756 Linking Devices Managed Switches • Access switches & Unmanaged Lightly Managed • Low-cost, Wireless Technology • Connect hard-to-reach Security Appliances • Secure real-time control & Embedded Switches • Connects control and remote areas • Mobile access to equipment and key business systems • Minimizes hardware and wiring communication • Intrusion prevention using Deep Packet Inspection capabilities • Routing and firewall capabilities • Access control lists Communication Modules • Communication links • • distribution switches High-Performance switching up to 10 GB Integrated Network Address Translation Integrated DLR with three ring support IT and OT configuration and support tools PUBLIC compact solutions • Automatically negotiates speed and duplex settings • No configuration required, or can be configured to support security, resiliency and bandwidth optimization between devices and Control. Logix® controller • Can use Ether. Net/IP, Control. Net, and Device. Net network protocols • Supports real-time I/O & exchange messaging networks to device level networks • Leverages existing network structures for migrations Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 3
Unmanaged & Lightly Managed Switches Stratix® 2000 Unmanaged Switch • No configuration required • Expanded portfolio contains support for up to 16 ports • Multiple combinations of fast Ethernet gigabit copper and small form factor pluggable (SFP) ports Low-cost, compact solutions Stratix 2500 Lightly Managed Switch Automatically negotiates speed and duplex settings • Addresses network uptime challenges where unmanaged switches lack the ability to detect network loops, enhance traffic performance, and enhance your security posture • VLANs allow for logical segmentation in a single switch, reducing the risk of packet storms that can bring down your network • Gain critical diagnostic information and enable port security to disable ports or control end device connectivity, within your Integrated Architecture® system PUBLIC No, or minimal, configuration required Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 4
Stratix 2000 Unmanaged Switches Networking Capabilities • Multiple combinations of fast Ethernet gigabit copper and small form factor pluggable (SFP) ports • Increased transmission wavelength, distance, and speed across the network Efficient Design • • Compact solution Expanded portfolio contains support for up to 16 ports Dual power input for increased reliability Minimizes cabling and wiring Simplified Setup & Maintenance • Auto-negotiates speed and duplex settings • No configuration required PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 5
Stratix 2500 Lightly Managed Switches Networking Capabilities • Cable diagnostics, including broken wire detection, helps minimize downtime • SNMPv 3, Syslog uncovers errors before the network stops • VLAN provides logical segmentation • IGMP enables multicast for data traffic control • Topology discovery (LLDP) • STP, RSTP and MSTP – Loop prevention Security Features • Port security helps disable ports, or control end device connectivity based on MAC address • SSH and HTTPS for secure connectivity Optimized Integration • Add-on Profile (AOP) for configuration via Studio 5000® and Factory. Talk® View Faceplate PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 6
Managed Switches Stratix® 5400 and Stratix 5410 • All gig port options for high-performance resilient network requirements • Layer 3 routing capability for segmented network and plant to enterprise integration • Rack mount and DIN rail mount options • Integrated Device Level Ring (DLR) connectivity optimizes the network architecture Premier integration into Integrated Architecture Stratix 5700 & Armor. Stratix™ 5700 • Power over Ethernet (Po. E and Po. E+) delivers power over a single Ethernet cable • Network Address Translation (NAT) reduces commissioning time • Integrated Device Level Ring (DLR) connectivity optimizes the network architecture Embedded Cisco technology • IP 67 -rated options for wash down protection Stratix 8000 & Stratix 8300 • Layer 2 switch using VLANs with trunking from plant cell to cell • Layer 3 routing providing connection from the plant to enterprise IT and OT configuration and support tools • Po. E, SFP and additional port options available for up to 26 ports PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 7
Stratix 5410 Distribution Switches Advanced Networking Capabilities • All gig port options for high-performance resilient network requirements • Layer 3 routing capability for segmented network • High-performance capabilities with Four 10 Gigabit (GE) uplink ports and 24 Gigabit downlink ports • Power over Ethernet (Po. E/Po. E+) support for up to 12 ports • Network Address Translation (NAT) support for up to eight ports simultaneously • Enhanced security options Efficient Design • • 19" rack mount for increased port density Front, rear and wall mounting options for ease of access Rugged design to help withstand harsh environmental conditions Fiber support for applications where longer distance connectivity is required Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined Logix 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 8
Stratix 5400 Managed Switches Advanced Networking Capabilities • • • All gig port options for high-performance resilient network requirements Layer 3 routing capability for segmented network Power over Ethernet (Po. E) for simplified end device wiring Network Address Translation (NAT) reduces commissioning time Enhanced security options Simplified Setup & Maintenance • • Common configuration and support tools Default automation configurations Optimized “Smartport“ configurations DHCP per port device IP addressing Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined Logix 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 9
Stratix 5700 Managed Switches Advanced Networking Capabilities • Power over Ethernet (Po. E and Po. E+) delivers power over a single Ethernet cable • Network Address Translation (NAT) reduces commissioning time • Integrated Device Level Ring (DLR) connectivity helps optimize the network architecture and provide consolidated network diagnostics Simplified Setup & Maintenance • • Common configuration and support tools Default automation configurations Optimized “Smartport“ configurations DHCP per port device IP addressing Enhanced Security Options • Application/project based port access for machine protection • Encrypted administrative traffic and advanced security features such as centralized authentication for plant protection Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined Logix 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 10
Armor. Stratix 5700 Managed Switches Advanced Switching • Using virtual LAN (VLAN) with trunking from plant cell to cell • Quality of Service (Qo. S) • Power over Ethernet (Po. E) delivers 48 V DC or 54 V DC of power over the same copper cable as Ethernet • Network Address Translation (NAT) reduces commissioning time Efficient Design • • IP 67 -rated for dust and washdown protection Rugged M 12 (D-coded) Ethernet connectors for extreme environments Built-in SD card enables easier setup and simplified device replacement Gigabit ports (X-coded) for high performance Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined LOGIX 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 11
Stratix 8000/Stratix 8300 Modular Managed Switches Advanced Networking Capabilities • Stratix 8000 / Stratix 8300, Layer 2 switch using virtual LAN (VLAN) with trunking from plant cell to cell • Stratix 8300, Layer 3 routing providing connection from the plant to enterprise • Quality of Service (Qo. S) • Provides storm control with alarming Enhanced Scalability with Expansion Modules • Multiple configuration options for increased distance, speed and transmission wavelength • Po. E, SFP and additional port options available for up to 26 ports Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined Logix 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 12
Embedded Switch Technology & Linking Devices 1783 -NATR • Simple 1: 1 Network Address Translation (NAT) to map IP addresses on the machine subnet to IP addresses on the control network • Supports both Linear and Device Level Ring (DLR) topologies Supports multiple network topologies • Can be configured via a web page or Electronic Data Sheet Add-on Profile • Provide simplified device backup and restore via SD card On-machine linking device options 1788 -EN 2 DNR & 1788 -EN 2 DNROM • Allow the ability to add Device. Net™ connectivity to a new or existing system seamlessly • Enhance versatility to control Device. Net I/O on Ether. Net/IP networks • Option for IP 67 rating for dust and washdown protection • Provide the ability to remotely control, configure, and troubleshoot devices on Device. Net PUBLIC Minimized installation and configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 13
Network Address Translation Router Networking Capabilities • Low-cost switch for smaller machines supporting Linear, Star or Device Level Ring topologies • Power over Ethernet (Po. E) for simplified end device wiring • Network Address Translation (NAT) reduces commissioning time • Enhanced security options Simplified Setup & Maintenance • Web-based network diagnostics and NAT mapping • Configuration on the public Ethernet port and the private Ethernet port • Easier initial configuration and simplified device replacement with SD card PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 14
Security Appliances Stratix® 5900 Services Router • Routing and firewall capabilities • Gain secure remote access via provision of Site-to-Site VPN capability • Access control lists Secure real-time control communication • LAN ports connect Ether. Net/IP-enabled devices to a local area network • WAN ports transport information to and from the enterprise Routing and firewall capabilities Stratix 5950 Security Appliance • Deep Packet Inspection technology provides the visibility and controls needed for implementing policies around access, applications and protocols on the plant floor • Cisco ASA firewall and Fire. POWER technology provide prevention services to identify, log or block potentially malicious traffic Access control lists • SFP slots enable flexibility by allowing multiple options for fiber connectivity • DIN Rail mount offers increased design flexibility PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 15
Stratix 5900 Services Router Enhanced Network Security Capabilities • • Secure real-time control communication Routing and firewall capabilities to provide access control Intrusion protection to help detect potential threats Access control lists to identify who has access to specific data Efficient Design • LAN ports connect Ether. Net/IP-enabled devices to a local area network • WAN ports transport information to and from the enterprise • Power Toggle Switch helps prevent accidental power switching Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined Logix 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 16
Stratix 5950 Security Appliances Enhanced Network Security Capabilities • Deep Packet Inspection technology provides the visibility and controls needed for implementing policies around access, applications and protocols on the plant floor • Acts as a firewall to provide enhanced access control and threat detection • Uses Intrusion Prevention System (IPS) to detect and control applicationlevel network communications and potentially malicious traffic communicating through the network Flexible Design • SFP slots enable flexibility by allowing multiple options for fiber connectivity • DIN Rail mount offers increased design flexibility • Industrially hardened for high temperature demands (-40– 60°C) Optimized Integration • Cisco ASA firewall and Fire. POWER technology provide prevention services to identify, log or block potentially malicious traffic • Maintain your protection against threats and control your assets with subscription-based licensing PUBLIC Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 17
Stratix 5100 Wireless Access Point/ Workgroup Bridge Wireless Technology • • Configure as a wireless access point or workgroup bridge Connect hard-to-reach and remote areas Mobile access to equipment and key business systems Power over Ethernet (Po. E) helps minimize power connections Efficient Design • Four external dual-band dipole antennas • Supports 3 x 4 multiple input/ multiple-output (MIMO) features with three spatial streams • Minimizes hardware and wiring Optimized Integration • • PUBLIC Factory. Talk® View faceplates for status monitoring and alarming Embedded Cisco Technology Predefined Logix 5000™ tags for monitoring and alarming Studio 5000® Add-on Profiles for configuration Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 18
Networks and Security Infrastructure Product Portfolio PUBLIC www. rockwellautomation. com Copyright © 2017 Rockwell Automation, Inc. All Rights Reserved. 19
- Slides: 19