• IIANews微官网
    扫描二维码 进入微官网
    IIANews微信
    扫描二维码 关注微信
    移动客户端
  • English
IMS2024中国智能制造发展论坛线下报名
行业资讯

MTL Instruments releases Tofino Modbus SCADA security solution

  2008年10月30日  

October 29, 2008 -- Byres Security and MTL Instruments are introducing the Tofino Modbus TCP Enforcer Loadable Security Module (LSM), which performs detailed analysis and filtering of all Modbus TCP messages, and is certified by Modbus-IDA. It allows owners of control and SCADA systems to regulate Modbus network traffic to a level of detail that has never before been possible, thereby increasing network security, reliability and performance of critical systems.

“Deep packet” or “content” inspection for web email or traffic has been offered in IT firewalls for several years, but nothing has been available for the process control or SCADA world. Modbus traffic could either be allowed or blocked by a standard firewall, but fine-grained control was impossible. And since the smooth flow of Modbus TCP traffic is critical to the average industrial facility, engineers usually opted to let everything pass and take their chances with security. Industry experts have been urgently calling for better control of SCADA protocols. This spring a major US Government agency warned major energy companies:

“A vulnerability has been identified and verified within the firmware upgrade process used in control systems deployed in Critical Infrastructure and Key Resources (CIKR)… development of a mitigation plan is required to protect the installed customer base and the CIKR of the nation. Firmware Vulnerability Mitigation Steps [includes] blocking network firmware upgrades with appropriate firewall rules.”

Two global energy companies and a major transportation company have trialled the Tofino ModbusTCP Enforcer LSM and have been very excited with how it allows them to follow the government’s guidance and enhance both the security and stability of their systems. They have been able to restrict Modbus functions in numerous ways:

  • Blocking all firmware upgrades, while allowing normal HMI traffic.
  • Tailoring appropriate Modbus access permissions to PLCs for different stations, such as read-only for monitoring panels, read/write for HMIs, and full programming and diagnostics access for PLC engineering workstations
  • Restricting Modbus access permissions to specific memory locations in a controller
  • Providing enhanced security and protection for any Modbus TCP device, including filtering of invalid traffic that could cause denial of service or system failures
  • Enforcing read-only access to Safety Instrumented Systems for enhanced isolation and safety


    “The ability to filter individual MODBUS commands has tremendous potential to improve the security of our control networks” stated Daniel Lacroix, Corporate Information Security Officer for The Saint Lawrence Seaway Management Corporation (SLSMC). The SLSMC operates over 30 locks and bridges on the Canadian side of the Saint Lawrence Seaway, a major marine transportation system that carried over 43 million tonnes of cargo in 2007.

    “The ModbusTCP Enforcer is another key step in our Tofino Zone Level Security strategy”, notes Eric Byres, CTO at Byres Security Inc. “Tofino provides tailored protection for groups of PLCs, DCSs RTUs and HMIs and does it in a way that is simple to implement for control engineers. Security is taken care of, and focus can be maintained on keeping processes running safely and efficiently.”

    Pricing and Availability
    The Tofino Modbus TCP Enforcer LSM is available worldwide as of Oct 14, 2008 from MTL Instruments. The retail price of the product is $500 USD.

    About MTL
    MTL Instruments, a division of Cooper Crouse-Hinds, is a world leader in the development and supply of electronic instrumentation and protection equipment for the process control and telecommunications industries. Many of the world's most critical processes are monitored, controlled or protected by MTL equipment and the Group is distinguished by the quality and reliability of its products, its global network of sales-and-support centres and its acknowledged position as a thought-leader in this high technology marketplace. With 36 dedicated sales centres in 13 countries and a further 137 MTL representatives in 64 countries, MTL's expertise in Intrinsic Safety, Industrial Networks, Surge Protection and Operator Displays/HMI is unsurpassed.


  • 最新视频
    再临 AUTOMATE,仙工智能明星产品齐上分   
    为自动化未来而生:魏德米勒SNAP IN鼠笼式联接技术   
    魏德米勒30周年
    剑维软件-重构传统人机界面(HMI)
    《边缘计算助推IT/OT融合,加速共享数字计划》白皮书
    施耐德电气:中压配电和电网自动化
    大族机器人
    专题报道
    第三届EESA储能展
    第三届EESA储能展为加快适应储能规模化发展的步伐,促进储能行业进一步良性发展,共促新能源产业的融合,第三届EESA储能展将于2024年9月2-4日在国家会展中心(上海)举办。
    企业通讯
    图尔克智能数据解决方案
    图尔克智能数据解决方案

    资源保护、可持续发展和工业数字化转型是机器和设备制造商以及像图尔克这样的自动化专家和解决方案提供商同样关注的三大趋势。在

    魏德米勒开放式自动化平台u-OS
    魏德米勒开放式自动化平台u-OS

    作为工业物联网领域的重要供应商,魏德米勒持续为客户提供专业的数字化解决方案,产品广泛应用于各种行业,满足工业环境下的各种

    在线会议
    热门标签
    HMI

    社区

    ABB 菲尼克斯电气 威图 三菱电机社区 西门子社区 罗克韦尔自动化社区 恩德斯豪斯自动化
    施耐德电气 图尔克 伊玛 欧姆龙 巴鲁夫 魏德米勒 唯恩电气
    西克 堡盟 ifm 纳博特斯克 万可 凯本隆 山洋电气
    施迈赛 皮尔磁 菲力尔 浩亭 劳易测 伦茨 英威腾
    海格电气 威琅电气 VEGA 康耐视 item 仙工智能 KUKA
    ODU 雄克社区 天机机器人 倍福 MiR 海康机器人 优傲机器人
    SRT软体机器人 灵动科技 科尔摩根 快仓智能 ATI 艾利特机器人 安歌科技
    大族机器人 奥托尼克斯 研祥金码 雷尼绍 Nidec CT FDT 威强电
    霍尼韦尔 迦智科技 Basler社区 史陶比尔连接器 湾测 节卡机器人 研祥智能
    Baidu
    map