The intelligent protocol converter
Many IT security concepts require a media disruption from Ethernet network/LAN to serial interfaces in order to prevent potential attacks resulting from a physical decoupling. Other applications need a transformation from IEC 60870-5-101 to a -104-series protocol because the devices to be coupled simply do not provide this.
FW-5-GATE as protocol converter
For such scenarios, an FW-5-GATE offers a tailor-made solution in the “Protocol converter” mode since – unlike a telecontrol station – no process data let alone specific information about the signals being transmitted need to be configured. The converter is happy with the declaration of the connected stations and the addressing of them.
It converts the protocols in both directions thereby providing the stringent IT security standard of series 5 technology. In spite of a serial linking on the one hand, for example, an end-to-end VPN tunnel can be set up for one or more control centres via IEC 60870-5-104. Converting an unprotected IEC 60870-5-104 protocol into as VPN-protected tunnel is also possible – using setIT in the customarily simple and intuitive way.
Communication can be controlled in so-called whitelists in which the common addresses of the authorised stations and their type identifications can be released. Familiar diagnostics functions such as the interface monitor or Wireshark logs remain available as before.