Siemens Version: 1.2 manual Introduction, External network internal network

Page 4

1. Introduction

1 Introduction

The Siemens Scalance S 613 is a security module which protects the communication between automation networks. It provides authentication, data integrity and confidentiality and protects against data theft and data manipulation.

In automation engineering more and more components are being connected. The connection with the Office IT world offers possibilities to use known technologies from the office field for automation networks which arises threats by attacks from the external network. The protection of the automation networks is necessary in order to be resistant against malicious attacks from the external network. Figure 1 clarifies this circumstance.

Unlike the office-world, where standardized schemes such as SSL, TLS, and IPsec are applied, there are no standards providing data security of automation networks yet. The analyzed security module protects individual components and entire networks against data theft and manipulation by implementing a firewall and a virtual private network (VPN).

Figure 1: External network < -> internal network

19-Aug-05

escrypt GmbH

4

Image 4
Contents Version Date 19-Aug-05 Index VPNExecutive Summary Introduction External network internal networkIntroduction Security Services AssumptionsSystem Firewall2 VPN Firewall function of the security moduleRemovable Media C-Plug VPN-function of the Security-moduleFirmware Update Configuration ManagementUser Management First InitiationLearning Key Management Security Analysis 1 VPNFirewall Operating System Web ServerConfiguration Time Synchronization and LoggingConfiguration Files BridgeSummary References