T01 - Select the Right Stratix Switch for Your Application

Similar documents
T02 - Design Considerations for Robust EtherNet/IP Networking

Industrial Network Trends & Technologies

Under the Hood with PlantPAx CT426

Cisco & Rockwell Automation Alliance. Mr. Gary Bundoc Solutions Architect Rockwell Automation Phil Inc.

Bridging the IT to OT Technology Gap Paul Didier, IoE Verticals Solution Architect Matt Tweedie, DP World PSOIOT-2005

Unlocking the value of IoT data

L31 - Applying EtherNet/IP and Stratix Switches in Real-Time Manufacturing Applications

Connected Factory Architecture Theory and Practice

1756-EN2TP Parallel Redundancy Protocol Module Network Redundancy

Future Trends in Industrial Networking

L01 - Basic Stratix Switch and EtherNet/IP Features in Converged Plantwide Ethernet (CPwE) Architectures

NI11 IT and Plant Floor - Breaking Down the Barriers

KENDALL DATACOMM. INDUSTRIAL NETWORKING Switches, Micro Data Center (MDC), Industrial

Minewide Convergence of Control and Information

TECH SESSION -T9 - GALLERY OVERLOOK B ROCKWELL AUTOMATION SELECT THE RIGHT STRATIX SWITCH FOR YOUR APPLICATION

NI10 EtherNet I/P Best Practices & Topologies

Future Trends in Industrial Networking

T28 - Design Considerations for Robust EtherNet/IP Networking

T22 - Industrial Control System Security

L03 - Introduction to Network Security

White Paper. Physical Infrastructure for a Resilient Converged Plantwide Ethernet Architecture

Stratix Industrial Ethernet Switch. Features and Benefits

Fundamentals of Securing EtherNet/IP Networks & Practical Security Capabilities

W05 High Availability for Today s Process Market

Smart Manufacturing in the Food & Beverage Industry

Applying EtherNet/IP in Real-time Manufacturing. Copyright 2012 Rockwell Automation, Inc. All rights reserved.

TOMORROW Starts Here Cisco and/or its affiliates. All rights reserved. 1

CCNA Industrial Overview. Sudarshan Krishnamurthi Sr.Product Manager Rami Kandah Technical Architect BRKCRT-1901

Realizing the IoE Opportunity with IoT ASEAN Internet of Things Forum

Allen-Bradley Communications Modules Implementing network-based access control for users, devices and networks

Internet of Things for Manufacturing

Applying Plantwide Industrial Wireless Communications for Cost Savings. Copyright 2012 Rockwell Automation, Inc. All rights reserved.

Industrial Automation in Manufacturing Environments - Architecture and Use Cases Connected Factory

GUIDELINES FOR USING DEVICE LEVEL RING (DLR) WITH ETHERNET/IP. PUB00316R ODVA, Inc. Page 1 of 18

HikCentral V.1.1.x for Windows Hardening Guide

Scaling the Plant Network

CPwE Solution Design Manufacturing and Demilitarized Zones

Internetwork Expert s CCNP Bootcamp. Wireless LANs. WLANs replace Physical (layer 1) and Data Link (layer 2) transports with wireless

2013 Cisco and/or its affiliates. All rights reserved. 1

Interoperability guide Phoenix Contact WLAN clients with Cisco Wireless LAN Controllers (WLC) Published:

Wireless Client Isolation. Overview. Bridge Mode Client Isolation. Configuration

Deploying Cisco Wireless Enterprise Networks

Reference Architectures for Industrial Automation and Control systems

HikCentral V1.3 for Windows Hardening Guide

Integrated Architecture Midrange System

TestOut Network Pro - English 4.1.x COURSE OUTLINE. Modified

Scalability-The Best Approach to Change

Cisco Connected Factory Accelerator Bundles

Workgroup Bridges. Cisco WGBs. Information About Cisco Workgroup Bridges. Cisco WGBs, page 1 Third-Party WGBs and Client VMs, page 9

T14 - Network, Storage and Virtualization Technologies for Industrial Automation. Copyright 2012 Rockwell Automation, Inc. All rights reserved.

Q-Balancer Range FAQ The Q-Balance LB Series General Sales FAQ

Deployment Scenarios

GUIDELINES FOR INDUSTRIAL ETHERNET INFRASTRUCTURE IMPLEMENTATION: A CONTROL ENGINEER S GUIDE

Enterasys K-Series. Benefits. Product Overview. There is nothing more important than our customers. DATASHEET. Operational Efficiency.

CISCO EXAM QUESTIONS & ANSWERS

TM01 - Developing Machines for the Fourth Industrial Revolution

CCNP SWITCH (22 Hours)

Ethernet: Convergence, Choices, Complexities

NETWORKING &SECURITY SOLUTIONSPORTFOLIO

CCNA. Murlisona App. Hiralal Lane, Ravivar Karanja, Near Pethe High-School, ,

Cisco SP Wi-Fi Solution Support, Optimize, Assurance, and Operate Services

Network Visibility and Segmentation

Production Software Within Manufacturing Reference Architectures

TD01 - Enabling Digital Transformation Through The Connected Enterprise

Integrated Architecture The Convergence of Control and Information

Stratix Industrial Networks Infrastructure At-A-Glance

T28 Introduction to GuardLogix Integrated Safety Systems

Cisco Self Defending Network

Cato Cloud. Software-defined and cloud-based secure enterprise network. Solution Brief

Cisco Certified Network Associate ( )

Deployments and Network Topologies

Phoenix Digital Corporation

Meraki Z-Series Cloud Managed Teleworker Gateway

Exam Code: Exam Code: Exam Name: Advanced Borderless Network Architecture Systems Engineer test.

CCNA Routing and Switching (NI )

TestOut Network Pro - English 5.0.x COURSE OUTLINE. Modified

TEXTBOOK MAPPING CISCO COMPANION GUIDES

Cisco Virtual Networking Solution for OpenStack

Using Cisco Workgroup Bridges

Cisco Unified Wireless Network Solution Overview

Configuring DHCP. Restrictions for Configuring DHCP for WLANs. Information About the Dynamic Host Configuration Protocol. Internal DHCP Servers

Reference Manual. Embedded Switch Technology Reference Architectures

1- and 2-Port Fast Ethernet High-Speed WIC for Cisco Integrated Services Routers

CISCO EXAM QUESTIONS & ANSWERS

High Availability (AP SSO) Deployment Guide

Configure Devices Using Converged Access Deployment Templates for Campus and Branch Networks

SOLUTION OVERVIEW THE ARUBA MOBILE FIRST ARCHITECTURE

Converged Plantwide Ethernet Overview

Upgrading From a Successful Emergency Control System to a Complete WAMPAC System for Georgian State Energy System

High Availability and Redundant Operation

Designing a Reliable Industrial Ethernet Network

Navpreet Singh INTRODUCTION TO COMPUTER NETWORKS. Computer Centre Indian Institute of Technology Kanpur Kanpur INDIA

A Unified Threat Defense: The Need for Security Convergence

T103 PlantPAx System Fundamentals

Cisco 5921 Embedded Services Router

Introduction. H.323 Basics CHAPTER

The Misconfigured Network

CISCO QUAD Cisco CCENT/CCNA/CCDA/CCNA Security (QUAD)

Vendor: Cisco. Exam Code: Exam Name: Cisco Sales Expert. Version: Demo

Experion LX Fault Tolerant Ethernet Overview and Implementation Guide

Transcription:

T01 - Select the Right Stratix Switch for Your Application PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 1

Key Customer Challenges Customer Challenge Selection Criteria Customer Impacts Network Availability needs not met Network Performance needs not met Actionable Diagnostic data across multiple teams and disciplines Risk Mitigation, help protect network availability and performance Resiliency Criteria Performance Criteria Diagnostic Criteria Security Criteria Unplanned downtime costs manufacturers $20 B a year 220,000 new engineers being hired every year through 2022 to connect the unconnected Actionable information shows mean time to repair reductions of up to 75% Average cost of a data breach is $4M PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 3

Is Your Network Infrastructure Providing the Availability You Need? Use of Unmanaged vs. Managed Network Switches appear to cost less, but our experience has shown this to be untrue this is validated in the first time you are challenged with resolving connectivity issues in your operations that are causing unplanned downtime Managed Switches provide key functionality that makes them more cost-effective in the long term PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 4

Scenarios PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 5

Is Your Network Infrastructure Meeting Your Availability Needs? Availability Scenario #1 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 6

Is Your Network Infrastructure Meeting Your Availability Needs? Challenge Cables are not always clearly marked Plugging cable in created an unmanaged Loop Broadcast messages get repeated in an infinite loop Network will crash as the broadcast storm grows Downtime and lost visibility to locate cause will result Resolution Loop Prevention to stop this before it happens Diagnostics can be used to locate the cabling error Both Available on our Lightly, Fully, and High-Performance Managed Switches Stratix 2500, Stratix 5700, Stratix 8000, Stratix 5400, and Stratix 5410 industrial Ethernet switches PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 7

Is Your Network Infrastructure Meeting Your Availability Needs? Availability Scenario #2 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 8

Is Your Network Infrastructure Meeting Your Availability Needs? Challenge Need to perform Infrastructure Maintenance Cannot impact real-time communications during runtime Network availability required even during planned downtime to support connectivity required for line maintenance and changeover tasks Resolution Multiple Communication paths, localize impact of Infrastructure Maintenance Resilient communications will find alternative path with no user intervention High-Speed Resiliency options like Integrated DLR and REP recover connectivity quickly to help prevent data loss Available on Fully and High-performance Managed Switches Stratix 5700, Stratix 5400 and Stratix 5410 industrial Ethernet switches PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 9

Is Your Network Infrastructure Meeting Your Availability Needs? Availability Scenario #3 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 10

Is Your Network Infrastructure Meeting Your Availability Needs? Challenge Need to perform infrastructure Maintenance Must not impact communications to critical systems Continuous operations = no downtime window for updates Resolution Fully redundant LAN networks preserve availability. High-Speed Redundant Network options like PRP and redundant rings Support for multiple Infrastructure devices being removed/restored. Available with the High performance Managed Switch portfolio Stratix 5400 and Stratix 5410 industrial Ethernet switches PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 11

Is Your Network Infrastructure Meeting Your Performance Needs? Unmanaged vs. Managed Network Switches appear to have common performance characteristics at a port level, but our experience has shown that this is not the whole story This is validated the first time you are challenged with adding capacity or migrating legacy equipment to a common network Infrastructure in your operations resulting in unplanned downtime and project deployment risk <14% of manufacturers have tied their machines to the enterprise network SOURCE: Industry Week Nearly 3/4 of U.S. plants are more than 20 years old 220,000 New engineers every year until 2022 to connect the unconnected The World Bank Studies VALUE TO CONNECT SYSTEMS AT STAKE Increased Production uptime Oil and Gas Industry Shared Infrastructure reduced maintenance costs- Chemical Industry Man-Hours saved in manual generation of reports - Wastewater PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 12

Is Your Network Infrastructure Ready for Your Future Needs? You do not want your data flow to look like this. Careful planning is required, not only for today s needs, but the needs of the future as more devices begin to integrate into your operations networks Connect and Enable Improved Operations with the right switching solution for your application PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 13

Are You Considering Network Performance Needs for the Conditions Other Than Runtime? Performance Scenario #1 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 14

Is Your Network Infrastructure Meeting Your Performance Needs? Challenge Web camera on the network required additional performance The switch became overwhelmed with communication demands causing delays Devices on production lines did not get expected packets Communication timeouts can cause a fault to occur Resolution Critical traffic can be prioritized to mitigate these risks Control devices can be virtually separated from others on the network Available on Lightly, Fully, and High performance-managed offerings Stratix 2500, Stratix 5700, Stratix 8000, Stratix 5400 and Stratix 5410 industrial Ethernet switches PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 15

Are You Considering Network Performance Needs for the Conditions Other Than Runtime? Performance Scenario #2 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 16

Is Your Network Infrastructure Meeting Your Performance Needs? Challenge Communication dependencies between the systems in question are not obvious Chokepoints in the network are not visible Common network infrastructure to support different communication types Different application performance requirements Resolution Quality of Service (QoS) optimized for multi-disciplined networks required PTP participation to optimize performance for high precision Available in our Fully and High-Performance Managed Switches Stratix 5700, Stratix 8000, Stratix 5400, and Stratix 5410 industrial Ethernet switches PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 17

Are You Considering Network Performance Needs for the Conditions Other Than Runtime? Performance Scenario #3 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 18

Is Your Network Infrastructure Meeting Your Performance Needs? Challenge Open Interfaces were not fast enough for new equipment IP addresses on new equipment were already in use Resolution All Gigabit options offer greater flexibility for Interface usage High-Performance Managed Switches support those options Stratix 5400 and Stratix 5410 NAT Features allow IP addresses to be reused Available on Fully and High-Performance Managed Switches Stratix 5700, Stratix 5400 and Stratix 5410 industrial Ethernet switches PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 19

What Is Your Network Saying and Who Can Help? Operations today suffer downtime from unknown causes If your network goes down, actionable diagnostic information from your Network Infrastructure, can help resolve faster than a person without data PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 20

Are You Hearing and Understanding What Your Network is Saying to You? Diagnostic Scenario #1 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 21

Is Your Network Infrastructure Providing You the Visibility You Need? Challenge Unmanaged Switches do not have any port diagnostics No visibility or counters that could be leveraged Nuisance faults occur intermittently No indications that cables are becoming marginal until failure occurs Resolution Port Diagnostics are available for visibility Lightly, Fully, and High Performance Managed Switch options available Features enabling visibility on the operator terminal FactoryTalk View Faceplate provides actionable information Stratix 2500, 5700, 8000, 5400, and 5410 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 22

Are You Hearing and Understanding What Your Network is Saying to You? Diagnostic Scenario #2 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 23

Is Your Network Infrastructure Providing You the Visibility You Need? Challenge No visibility to tools typically used in IT roles Escalation path for communications issues using other diagnostic tools Operations do not manage switches higher in the architecture Coordination of shared Infrastructure changes Resolution Cisco IOS help confirm compatibility with common IT tools Facilitates collaboration with remote expertise to solve communications issues impacting operations Available on Fully and High-Performance Managed Switches Stratix 5700, 8000, 5400 and 5410 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 24

Is Your Network Infrastructure Providing You the Defense You Need? Use of Unmanaged vs. Managed Network Switches appear to cost less, but our experience has shown that this to be untrue... This is validated in the first time you are challenged with a security event resulting in unplanned downtime Managed switches provide key security benefits that make them the cheaper option in the long term PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 25

Is Your Network Infrastructure Mitigating Risk? Risk Mitigation Scenario #1 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 26

Is Your Network Infrastructure Providing You the Risk Mitigation That You Need? Challenge No ability to verify that an open port is being used. No ability to lock unused ports No ability to isolate devices that were accessible via the network No ability to centrally manage user access Resolution Port Security can be used to detect new connection Unused ports can be locked to help prevent unauthorized access Devices can be segmented in groups with VLAN features to limit access Features available on Lightly, Fully and High Performance Managed switches Stratix 2500, Stratix 5700, Stratix 8000, Stratix 5400, and Stratix 5410 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 27

Is Your Network Infrastructure Mitigating Risk? Risk Mitigation Scenario #2 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 28

Is Your Network Infrastructure Providing You the Risk Mitigation That You Need? Challenge Some connectivity needed for the Plant Need to limit web connectivity to reduce risk Web access rules need to be enforced Visibility to network communication flows not possible Resolution Access Control Lists (ACLs) can be used to enforce basic policies Available on Fully Managed Switches Stratix 5700, 8000, 5400, and 5410 Netflow Features can be used to provide better visibility to communication patterns Available on High-Performance Managed Switches Stratix 5400 and 5410 PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 29

Key Customer Challenges Customer Challenge Solution Lightly Managed Fully Managed High Performance Unplanned downtime Network Performance needs for the future and unexpected Collaboration with remote experts on communications issues Risk Mitigation, help protect network availability and performance Loop Prevention High-Speed Resiliency Redundant Networks Port Prioritization / Virtual Segmentation Network Prioritization / Multi-Disciplined Extended Gigabit Visibility in Operations Tools Visibility in IT Tools Port Security / Segmentation Visibility / Netflow PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 30

Network Switch Product Overview Stratix 2000 Stratix 2500 Stratix 6000 Stratix 5700/ ArmorStratrix 5700 Stratix 8000/ Stratix 8300 Stratix 5400 Stratix 5410 UNMANAGED LIGHTLY MANAGED FULLY MANAGED HIGH PERFORMANCE MANAGED FEATURES 100M/1G 100M 100M/1G 1G/10G PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 31

Switch Selection? Industrial IoT & Industrial IT (Bridging OT-IT) Wide Area Network (WAN) Data Center - Virtualized Servers ERP - Business Systems Email, Web Services Security Services - Active Directory (AD), Identity Services (AAA) Network Services DNS, DHCP Call Manager Identity Services Enterprise External DMZ/ Firewall Internet Enterprise Zone Levels 4 5 Information Technology Physical or Virtualized Servers Patch Management AV Server Application Mirror Remote Desktop Gateway Server Plant Firewalls Active/Standby Inter-zone traffic segmentation ACLs, IPS and IDS VPN Services Portal and Remote Desktop Services proxy Industrial Demilitarized zone (IDMZ) Physical or Virtualized Servers FactoryTalk Application Servers and Services Platform Network & Security Services DNS, AD, DHCP, Identity Services (AAA) Storage Array Level 3 - Site Operations (Control Room) Wireless LAN Controller (WLC) Active Standby Identity Services Remote Access Server Core Switches Distribution Switch Stack Distribution Switch Stack Access Switches Cell/Area Zone Levels 0 2 Access Switches Cell/Area Zone Levels 0 2 Industrial Zone Levels 0 3 (Plant-wide Network) Industrial IT LWAP IFW Camera WGB Phone LWAP SSID 5 GHz WGB LWAP SSID 2.4 GHz IFW Rockwell Automation Stratix 5000/8000 Layer 2 Access Switch HMI Soft Starter Instrumentation Safety Controller Safety I/O AP SSID 5 GHz WGB Industrial IoT Operational Technology Controller Controller Controller Drive I/O Servo Drive HMI Robot Safety I/O Cell/Area Zone - Levels 0 2 Redundant Star topology - Flex Links Resiliency Unified Wireless LAN (Lines, Machines, Skids, Equipment) Cell/Area Zone - Levels 0 2 Ring Topology - Resilient Ethernet Protocol (REP) Unified Wireless LAN (Lines, Machines, Skids, Equipment) Cell/Area Zone - Levels 0 2 Linear/Bus/Star Topology Autonomous Wireless LAN (Lines, Machines, Skids, Equipment) PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 32

Additional Material CPwE Architectures - Cisco and Rockwell Automation CPwE website Overview Documents Alliance Profile Top 10 Recommendations for plant-wide EtherNet/IP Deployments Design Considerations for Securing Industrial Automation and Control System Networks Check out our Stratix Reference Guide here! PUBLIC Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 33

Thank You! PUBLIC www.rockwellautomation.com Copyright 2018 Rockwell Automation, Inc. All Rights Reserved. 34