N-Dimension n-platform 340S Unified Threat Management System

Similar documents
Cisco MCS 7815-I1 Unified CallManager Appliance

Merge physical security and cybersecurity for field operations.

Networks with Cisco NAC Appliance primarily benefit from:

Gigabit SSL VPN Security Router

Cisco MCS 7815-I2 Unified CallManager Appliance

Symantec Network Security 7100 Series

Fidelis Network Sensor Appliances QUICK START GUIDE

Cisco MCS 7825-I1 Unified CallManager Appliance

Cisco MCS 7845-H1 Unified CallManager Appliance

Unified Threat Management

Datasheet. 8-Port 10G SFP+ Router. Model: ER-8-XG. 80 Gbps Aggregate Throughput. 10G Ethernet SFP+ Ports. Hot-Swappable Modular Power Supplies

Cisco SR 520-T1 Secure Router

Datasheet. Gigabit Routers with SFP. Models: ER-4, ER-6P. Sophisticated Routing Features. Next-Generation Price/Performance Value

Datasheet. Enterprise Gateway Router with Gigabit Ethernet. Models: USG, USG-PRO-4. Advanced Security, Monitoring, and Management

SteelGate Overview. Manage perimeter security and network traffic to ensure operational efficiency, and optimal Quality of Service (QoS)

Datasheet. Gigabit Router with SFP. Models: ER-4. Sophisticated Routing Features. Next-Generation Price/Performance Value. SFP Port for Fiber Uplink

ASA5525-FPWR-K9 Datasheet. Overview. Check its price: Click Here. Quick Specs

Fidelis Network Sensor Appliances QUICK START GUIDE

Advanced Network Routers. Datasheet. Model: ERPro-8, ER-8, ERPoe-5, ERLite-3. Sophisticated Routing Features

CR4250 Spec Sheet. Cradlepoint. All Rights Reserved cradlepoint.com

TestOut Network Pro - English 4.1.x COURSE OUTLINE. Modified

Next-Generation Firewall Series Datasheet

Real-Time Automation Controller (RTAC) Powerful, reliable, and secure multifunction controller

Copyright Huawei Technologies Co., Ltd All rights reserved. Trademark Notice General Disclaimer

IC32E - Pre-Instructional Survey

FWA-6280A User Manual 1. FWA-6280A User Manual

Clean wireless. High-performance clean wireless solutions

Cisco NAC Network Module for Integrated Services Routers

TZ 170 Quick Start Guide

DATASHEET. Advanced 6-Port Gigabit VPN Network Router. Model: ER-6. Sophisticated Routing Features. Advanced Security, Monitoring, and Management

Cisco MCS 7835-H2 Unified Communications Manager Appliance

TABLE OF CONTENTS. Section Description Page

Cisco ASA 5500 Series IPS Solution

The SonicWALL PRO Series

QUICK START GUIDE. Fidelis Network K2 Appliances. Rev-I K2 (HP DL360-G10) Platforms.

CITADEL Series - Security and VPN Appliances

Cisco 3900 Series Router Datasheet

Cisco MCS 7815-I2. Serviceable SATA Disk Drives

CISCO MEDIA CONVERGENCE SERVER 7815-I1

The Importance of Cybersecurity Threat Detection for Utilities

SEL-3620 ETHERNET SECURITY GATEWAY

Fidelis Network High Capacity Collector QUICK START GUIDE. Rev-I Collector Controller Appliances Based on HP DL360-G9 and DL380-G9 Platforms

Consultant Scanner Personal Edition. User Guide

HP AllianceONE Services zl Module for Avaya Aura Session Border Controller powered by Acme Packet

UTM Content Security Gateway CS-2001

ABSOLUTE REAL-TIME PROTECTION SERIES

Seqrite TERMINATOR (UTM) Unified Threat Management Solution.

Preconfigured Audio/Video Bridging System

Fidelis Enterprise Collector Cluster QUICK START GUIDE. Rev-I Collector Controller2 (HP DL360-G10) and Collector XA2 (HP DL360-G10) Platforms

Meraki MX Family Cloud Managed Security Appliances

Cisco UCS C200 M2 High-Density Rack-Mount Server

Cisco 3300 Series Mobility Services Engine. Open, Appliance-Based Platform for Delivering Mobility Services

CISCO MEDIA CONVERGENCE SERVER 7825-I1

Cisco MCS 7825-H3. Supported Cisco Applications

Citrix CloudBridge CB User Manual

NX 9500 INTEGRATED SERVICES PLATFORM SERIES FOR THE PRIVATE CLOUD

Unified Threat Management

Multilink. Ethernet Communications for Industrial Automation, Power Utility, and Traffic Control markets. Multilin

Unified Threat Management

Features. HDX WAN optimization. QoS

Meraki MX Family Cloud Managed Security Appliances

Fidelis Network High Capacity Collector QUICK START GUIDE. Rev-H Collector Controller Appliances Based on HP DL360-G9 and DL380-G9 Platforms

TestOut Network Pro - English 5.0.x COURSE OUTLINE. Modified

Integrated Ultra320 Smart Array 6i Redundant Array of Independent Disks (RAID) Controller with 64-MB read cache plus 128-MB batterybacked

Installing the IPS 4345 and IPS 4360

ExtremeWireless WiNG NX 9500

Cisco MCS 7845-I2 Unified Communications Manager Appliance

UTM. (Unified Threat Manager) Support for signatures from Snort VRT and Emerging Threat.

Security-hardened Appliances for Network Infrastructure Identification

No: NRHM/MIS/SERVER/1742/ /14972 Dated 1 st July 2013 CORRIGENDUM NO. 1 AND EXTENSION NOTICE

Substation. Communications. Power Utilities. Application Brochure. Typical users: Transmission & distribution power utilities

Defense-in-Depth Against Malicious Software. Speaker name Title Group Microsoft Corporation

MODEL NUMBER: B IP2

Cisco Exam Questions & Answers

Creating a Dynamic Serial Edge For Integrated Industrial Networks

Next-Generation Firewall Series Datasheet

Key Features. DATA SHEET

Venusense UTM Introduction

WHG711 Wireless LAN Controller

3180 Compact Service-Aware Industrial Ethernet Switch

Future-ready security for small and mid-size enterprises

Wireless 450N Dual-Band Gigabit Router 450 Mbps Wireless a/b/g/n, GHz, 3T3R MIMO, QoS, 4-Port Gigabit LAN Switch Part No.

Cisco MCS 7816-H3. Supported Cisco Applications. Key Features and Benefits

Cisco MCS 7816-H3 Unified Communications Manager Appliance

MODEL NUMBER: B IP4

MODEL NUMBER: B IP2-K

CompTIA Network+ Study Guide Table of Contents

Reviewer s guide. PureMessage for Windows/Exchange Product tour

Catalyst 2960-L Series Switches

Cisco Network Admission Control (NAC) Solution

CPC501. Best solutions to fit your demands! 6U CompactPCI Pentium M SBC.

Wireless 150N ADSL2+ Modem Router For ADSL (Annex A), 150 Mbps Wireless n, QoS, with 4-Port 10/100 Mbps LAN Switch Part No.

QUICK START GUIDE. Fidelis Collector SA. Rev-I Collector SA (HP DL360-G10) Platforms.

QUICKSTART GUIDE FOR BRANCH SRX SERIES SERVICES GATEWAYS

This course prepares candidates for the CompTIA Network+ examination (2018 Objectives) N

Cisco 3300 Series Mobility Services Engine

Cisco Nexus 7000 Switches Second-Generation Supervisor Modules Data Sheet

Easy To Install. Easy To Manage. Always Up-To-Date.

Behavior-Based IDS: StealthWatch Overview and Deployment Methodology

RAZBERI RUGGED PROFESSIONAL SERVERSWITCH NETWORK VIDEO RECORDER TECHNICAL SPECIFICATIONS: SECURITY SYSTEM

Transcription:

N-Dimension n-platform 340S Unified Threat Management System Firewall Router Site-to-Site VPN Remote-Access VPN Serial SCADA VPN Proxy Anti-virus SCADA IDS Port Scanner Vulnerability Scanner System & Service Monitor Network Device Control High-Availability Active / Standby Configuration VLAN Support Logging and Reporting NERC-CIP Compliance Reporting All easily managed from a user-friendly graphical user interface The n-platform 340S from N-Dimension Solutions, Inc. is a Unified Threat Management (UTM) appliance that provides a comprehensive suite of network security functionalities in an IEEE-1613 compliant 3U rack-mount form factor that has no moving parts and can withstand harsh environments. The n-platform 340S is the member of N-Dimension s n-platform series of UTM appliances that is ideal for substation deployments. The n-platform 340S, based on the Schweitzer Engineering Laboratories SEL-1102 hardware platform with up to 6 (six) Ethernet ports, facilitates securing environmentally challenging substations or other remote field sites from potential cyber security attacks. This appliance provides a comprehensive portfolio of network and security features that enable critical infrastructure organizations to implement strong security protection for critical control systems and networks, monitor those systems and networks for security vulnerabilities and potential intrusions, collect comprehensive log information about securityrelated actions and events, and generate security reports. Together with N-Dimension s n-central monitoring and reporting appliance, the n-platform 340S can provide a strong foundation for NERC CIP compliance and reporting. The features available in the n-platform 340S are configured via a user-friendly graphical user interface (GUI) or command-line interface (CLI). All rights reserved. 2011 N-Dimension Solutions Inc. Page 1 of 7

All rights reserved. 2011 N-Dimension Solutions Inc. Page 2 of 7

Gateway Mode Gateway mode refers to implementing and protecting connections between networks. The connection between a substation and control center is a critical network interconnection that must be protected in order to defend both substation cyber assets and control center cyber assets. The n-platform 340S gateway functionalities include Routing, Firewall, Anti-Virus, Proxy Filter, Network Device Control, and VPN (including Site-to-Site, Remote-Access, and Serial SCADA). With these features organizations are able to create security zones to protect critical cyber assets and establish electronic security perimeters to control access to these zones. An important feature for field sites like substations is the ability to protect the transmission of data between legacy systems. Many legacy systems in substations communicate with the SCADA control center in clear text format over slow serial links. These communications can be easily tapped into by hackers, and consequently used to manipulate substation systems or even gain access to the SCADA control center. When these communications use slow serial connections, enterprise-grade VPN solutions add too much overhead to be used to protect them. The n-platform s SCADA VPN, based on the emerging IEEE P1711 standard, can encrypt and decrypt this data to ensure integrity and achieve high security standards during the transmission of data between the substations and SCADA control center. The combination of gateway security features that the n-platform 340S provides enables organizations to improve the protection of their critical infrastructure. Protecting the Control Network and Substation Networks from cyber security attacks using Router, Firewall, Proxy, Anti-Virus, Site-to-Site VPN, SCADA VPN, and Network Device Control features. All rights reserved. 2011 N-Dimension Solutions Inc. Page 3 of 7

Monitoring Mode Monitoring mode refers to monitoring network traffic and checking for any abnormalities that may cause instability of the interconnected infrastructure. The n-platform 340S enables organizations to protect their critical assets by monitoring their electronic security perimeters for any indicators of potential cyber security attacks. This is achieved by the combination of SCADA Intrusion Detection System (IDS), Vulnerability Scan, Port Scan, Availability monitor, and Performance Monitor. The 5,000+ IDS sensors in n-platform, including sensors designed for SCADA systems, scan network packets for intrusion signatures. When a match is found, an alert is sent via e-mail and/or e-pager for immediate action. Vulnerability and Port Scans are critical in protecting against cyber security attacks because they help the organization find open backdoors to the network. Availability and performance monitoring can reduce the burden for IT and Operations administrators in recognizing and troubleshooting network and systems performance problems. Monitoring the Substation for potential cyber security attacks using SCADA IDS, Vulnerability Scan, Port Scan, System and Service monitoring features. Other Features The n-platform 340S can be integrated with the organization s SCADA system to report security system status on a SCADA console. VPN access and administrative access can by controlled by LDAP and Microsoft Active Directory. The High-Availability configuration allows n-platforms to operate in an activestandby configuration to ensure reliability for critical functions in the operating environment. The n-platform 340S can be used as a DNS server, DHCP server, and NTP servers. All features provide comprehensive logging capabilities to enable troubleshooting and address compliance reporting. All rights reserved. 2011 N-Dimension Solutions Inc. Page 4 of 7

FRONT PANEL VIEW REAR PANEL VIEW All rights reserved. 2011 N-Dimension Solutions Inc. Page 5 of 7

FRONT PANEL VIEW REAR PANEL VIEW All rights reserved. 2011 N-Dimension Solutions Inc. Page 6 of 7

TECHNICAL SPECIFICATIONS Model Schweitzer Engineering Laboratories SEL-1102 Processors Mobile Intel Pentium M Processor (1.4 GHz, 400 FSB) Cache Memory 1MB Level 2 cache Chipset Intel 855GME Chipset Memory 1GB ECC DDR Network Interface 1 Fast+ 10/100Mbps; Fiber Optic or Copper Network Interface 2 Fast+ 10/100Mbps; Fiber Optic Additional Network Interfaces 2 x 10/100Mbps Copper (Maximum of 2 additional Copper Ethernet Ports allowed) Storage Controllers Intel ICH4-M, UDMA 33/66/100 Fixed Storage 8GB Compact Flash (Primary) + 8GB Compact Flash (Secondary) Interfaces PS2 Keyboard x 1, PS2 Mouse x1, DB15 Video x 1, USB x 4, EIA-232 x 1 Form Factor 19" Industrial Rack-mount or Panel-mount (3U) Power Supply CE Mark Compliant; 24/48 Vdc; 48/125 Vdc or 120 Vac; 125/250 Vdc or 120/240 Vac System Fans None Power Connection Industrial direct wire connection Rack Dimension (H x W x D) - 5.22 x 18.31 x 10.40 in (13.26 x 46.51 x 26.41 cm) Rack Weight 11 lb (5kg) Operating Temperature -40 to 75 C (-40 to 167 F) Operating Humidity 5 to 95% relative humidity (Rh) Hardware Warranty 10 Years Limited Worldwide HARDWARE OPTIONS SOFTWARE OPTIONS Network Interfaces Power Supply Mounting Two (Port 1 & 2); Four (Port 1 to 4); Six (Port 1 to 6) 24/48 Vdc; 48/125 Vdc or 120 Vac; 125/250 Vdc or 120/240 Vac Horizontal Rack Mount; Horizontal Panel Mount Monitoring Option Pack Gateway Option Pack HA Option Pack Software Support SCADA Intrusion Detection, Port Scanner, Vulnerability Scanner, System & Service Monitors, Static Routing, Admin Firewall, NTP Server, SCADA Integration, VLAN Support, Comprehensive Logging & Reporting, Email & Pager Alerting, LDAP & AD User Management All Monitoring options plus Stateful Firewall with NAT, Site-to-Site IPSEC & SSL VPN, Remote Access IPSEC & PPTP VPN, Device Monitoring, Anti-virus, Proxy, DNS & DHCP Server; SCADA VPN in Q2 2011 All Gateway options plus support for high-availability active-standby mode Annual Maintenance Subscription Available in one (1), two (2), or three (3) years Specifications subject to change without notice. Subscription additional. About N-Dimension Solutions Inc. N-Dimension Solutions Inc. is a leader in Cyber Security solutions for the Power & Energy market. N-Dimension develops products and solutions to assist critical infrastructure organizations to protect their Control Systems and Information Systems and to achieve compliance with industry-specific regulatory standards such as the NERC CIP standards. N-Dimension and its industry-leading business partners are actively assisting utilities around the globe with cyber security protection for their portion of the Smart Grid. N-Dimension Solutions Inc. 9030 Leslie St. Unit 300 Richmond Hill, Ontario L4B 1G2 CANADA Telephone: +1.905.707.8884 Toll-Free: +1.866.837.8884 Fax: +1.905.707.0886 Email: sales@n-dimension.com Web: www.n-dimension.com All rights reserved. 2011 N-Dimension Solutions Inc. Page 7 of 7