Drives and Control Solutions

Motors, Control Solutions, Power Transmission and Advanced Motion Technology                                                                 

Mica data transmission 400

April 30, 2019

By Thomas Holthöfer, Regional Digital Marketing Manager, HARTING Deutschland

The large variety of machines and plants that has mushroomed over many years is increasingly being networked for monitoring and maintenance purposes. The threat posed by cyber-attacks is highly problematic in the face of old systems and their data connections which lack their own protection mechanisms. This is where HARTING comes in with its MICA® Edge Computer.

HARTING’s MICA® Edge Computer enables machines and systems of any kind to be integrated into an IIoT system. As a result, services such as condition monitoring, predictive maintenance and determining KPIs such as OEE (Overall Equipment Effectiveness) are now possible for existing plants and equipment as well. Depending on the application, suitable interfaces and the appropriate software are combined with the MICA® to form a solution package.

When integrating existing systems into a network, besides the availability of plant interfaces the security of connections and data poses the greatest challenge. Given this, HARTING has developed special protection mechanisms for the MICA® mini-computer and enhanced it with security solutions developed in its MICA partner network.

Major cyber risks for machinery and facilities

A variety of recent studies confirms the growing number of cyber-attacks. Know-how at medium-sized production companies is an especially attractive target. According to the VDMA study "Cyber Risks in Mechanical and Plant Engineering", the majority of companies are not adequately prepared for attacks. The protection that is in place is inadequate and outdated, and consequently there are threats in the form of business interruption and the loss of confidential company data.

This is where the MICA® and the enhancements developed in the MICA partner network come in. The MICA® enables medium-sized businesses without large IT departments to securely connect machines and systems. Protection comprises five core elements:                                                            

  • MICA®-provided protection due to a secure operating systemHolthofer mica 400
  • Protection of applications in the MICA®
  • The use of secure protocols
  • End-to-end encrypted data transfer
  • Protection of applications

One MICA network partner is Berlin-based Infotecs, a leading international IT security provider and specialist in software-based VPN solutions. Combining the MICA® and Infotecs’ security solutions permits e.g. the remote control of wind farms, video transmission of final quality inspection in remote production facilities, the management of remote maintenance access, and early scheduling of maintenance work. With Infotecs’ solution, data transmission between the MICA® and a remote peer is protected by a bug-proof and tamper-proof VPN connection (Virtual Private Network) and encrypted end-to-end. "The starting point for our security solution is the MICA. The MICA is particularly robust and secure for the industrial environment," explains Josef Waclaw, CEO of Infotecs.                                                  (Thomas Holthöfer)

Securing the MICA® against attacks

The MICA® is a mini-computer with network connection. The computer has a Linux-based operating system and virtualised application environment consisting of Linux containers. The MICA® operating system is designed to be very slim and contains only the software elements required to operate the MICA®. This in itself eliminates numerous potential attack vectors. For example, the MICA base system does not include package managers, e-mail clients or other services that are often attacked by hackers. The MICA® base system is also inaccessible to users and administrators and cannot be modified by them.

The applications on the MICA® run in separate, virtualised Linux containers. They are designed so that processes or applications cannot gain access to another container or to the operating system. While the MICA® operating system is provided by HARTING, containers can also be developed by third parties, e.g. in order to provide security applications.

End-to-end protection of data transmission from applications

ViPNet software from Infotecs was developed as a MICA container and acts as a virtual security gateway for the MICA’s other application containers. When the applications send data, the latter are picked up by ViPNet, encrypted and sent to the equally protected peer. This can be another machine at the same location as well as a remote peer in a remote network, for processing of the process data.                                                                                                             (Infotecs CEO Josef Waclaw)

CEO mica

Infotecs CEO Josef Waclaw emphasises that additional safety requirements should be considered in industrial applications. Standard networking applications typically work with web servers vulnerable to cyberattacks. Waclaw cites problems with buffer overflow, insecure protocols and man-in-the-middle attacks. Consequently, ViPNet software does not use web server technologies. Another difference mentioned by Waclaw is that standard VPN solutions with asymmetric encryption have been developed for office environments. The keys and certificates are first exchanged in the network and a secure connection is then made to the complete network.

"However, for the security of an industrial production environment it's important to establish a connection solely to a single machine, rather than immediate access to the entire network. We achieve this through a direct connection that is symmetrically encrypted end-to-end," the Infotecs CEO said. The remote peers are also equipped with symmetrical keys, and only those data packets where the key fits are opened. This procedure does away with the necessity of exchanging keys via the network and the subsequent verification of certificates. This is advantageous e.g. for connections via mobile communications, since no additional delays are caused by renewed exchange of keys in the face of more frequent disconnections. "The solution, in combination with the MICA, protects sensitive equipment and industrial applications. The software is set up once, and no in-depth IT skills are required," Waclaw summarises the concept.

Security solutions for industrial applications

With the MICA.network, HARTING has set up a user organisation around the MICA® Open Computing Platform. A partner network has emerged here that provides solutions for e.g. factory automation, logistics, ERP connectivity, IoT and embedded systems, predictive maintenance and a wide range of security solutions. Berlin-based Infotecs is one of these partners. Perfact and krumedia are among other partners with solutions in the area of data protection.

Remote maintenance solution with central service portal

PerFact::MPA (Meeting Point Architecture) was specifically designed in-house for efficient and controlled collection and troubleshooting malfunctions via remote maintenance. It enables the secure and easy setup of a remote connection to a machine. If a problem occurs on a machine, with the push of a button the customer connects the machine via the internet and the service technician receives temporary access to the machine’s controls.

Secure data transmission over public networks

krumedia’s SeComBo Suite enables the secure and dynamic networking of individual network subscribers or complete networks via public networks. This is possible even with restrictive security requirements in company-owned infrastructure and data transmission paths. The focus is on ease of use and complete transparency for the devices involved, so that any network subscribers can use these services. Central administration is web-based and requires no additional software.


Editor's Pick: Featured Article


BrakingResistor1When designing a motor control system, it is not always clear if a braking resistor is required and, if it is, how to proceed in selecting a braking resistor. This post is intended to simplify that process so it is clear when and how to select a braking resistor for your application. 

Why are braking resistors necessary?

Braking resistors are introduced into a motor control system in order to prevent hardware damage and/or nuisance faults in a VFD. They are required because in certain operations, the motor controlled by the VFD is acting as a generator and power is flowing back towards the VFD, rather than towards the motor. 

Read More

  

           Partnering For The Next Step                

Siemens CanadaWelcome to the Digital Enterprise Virtual Summit brought to you by Siemens

How quickly can you react to changing conditions and demands in your market? How can you ensure your production will run securely at any time in the future?

Industry’s digital and technological transformation is the answer for meeting today’s and tomorrow’s challenges and market needs.

With the right digitalization and automation solutions, expertise won from practical experience, and a partnership approach that benefits all involved parties.

To explore these possibilities, we’re bringing together top-level speakers, specialists and decision-makers from various industries and experts from Siemens

to the Digital Enterprise Virtual Summit under the motto “Partnering for the next step.”   

READ MORE

 


Motor Feature


S6 VFD for Linear Motor ApplicationsThe Combivert S6 drive is a modern, compact and flexible servo amplifier that can be used across a wide range of applications. The drive controller provides optimum performance in torque, speed, and position control. The S6 has the ability to control AC induction motors, AC PM motors, and lastly linear motors. In this article, we will be focusing on linear motors and how they work, as well as the simplicity of controlling them with the Combivert S6.

 

 

 

 

Product News

  • Prev
Along developing exciting new products, POSITAL continuously updates its established product ...
Endress+Hauser’s new extremely compact Liquiline Mobile CML18 multi-parameter device provides ...
Maplesoft™ announced the release of MapleSim™ Insight, a new software product from Maplesoft that ...
To ensure the safety of lone workers at all times, companies depend on solutions that speed up ...
One of Yaskawa America’s top technical experts shows off the benefits of the company’s new Compass ...
The DURApulse GS20 Series of next generation high-performance vfd drives provides many standard and ...
More fully digital soft starters have been added to the AutomationDirect drives and motor controls ...
Yokogawa Test & Measurement Corporation announces that it has developed the AQ2200-212 sensor ...
The Mach 3 is designed for digitally sensitive applications and comes with added ...
nVent Electric plc, a global provider of electrical connection and protection solutions, recently ...

New Product


Maplesoft™ announced the release of MapleSim™ Insight, a new software product from Maplesoft that gives machine builders powerful, simulation-based debugging and 3-D visualization capabilities that directly connect to their automation tools. As a result, engineers can perform simulation-based testing of their controller easily and efficiently.

Simulation-based testing of machine control strategies is a key element of virtual prototyping and using digital twins for virtual commissioning. However, this step can be cumbersome, as many automation tools provide limited options for machine-level, simulation-based controller testing, and these options often require moving development to an entirely new platform.

Read More


 

Latest News

  • Prev
PC-based control and TwinCAT provide a foundation for advanced Industrie 4.0 and Internet of Things ...
Join ABB for an in-depth look at how variable frequency drives assist in aeration applications for ...
Leading Canadian forest product company, Chantiers Chibougamau, has selected ABB to help overhaul ...
ABB Motion Canada alongside our HVAC Partners nationwide has introduced a special program for our ...
Brock Solutions is pleased to announce the recent award by the Region of Peel of the Clarkson and ...
This webinar (Friday April 17, 2020 at 11:00am - 12:00pm EDT) will review simple and easily ...
ABB is proud to announce it has been selected as one of Canada’s Best Employers by Forbes Magazine ...
Keeping pace with significant advances in motor speed control technologies, the International ...

Rittal & EPLAN Pump out a Powerful Solution for Metro Vancouver

Kerrwil Publications Great Place to Work. Certified December 2019 - December 2020

538 Elizabeth Street, Midland,Ontario, Canada L4R2A3 +1 705 527 7666
©2020 All rights reserved

Use of this Site constitutes acceptance of our Privacy Policy (effective 1.1.2016)
The material on this site may not be reproduced, distributed, transmitted, cached or otherwise used, except with the prior written permission of Kerrwil