금요일, 3월 14, 2025

The next steps in PROFINET Security integration

The next steps in PROFINET Security integration
Signing of the GSD is crucial support for the secure operation of plants. PI has started work on the setup and the operation of a security infrastructure for the signing of GSDs.

Industry 4.0 applications live off of connectivity and the exchange of data between the IT and OT levels. This makes it possible to create new business models and increase productivity, with plant and data security naturally taking center stage. This is one reason why PROFIBUS & PROFINET International (PI) started addressing the topic of security early on. The development of this topic of ever-increasing importance has now taken several steps forward.

Following definition of the concept and coordination with users, where PROFINET Security is defined in three separate security classes and security class 1 has already been finalized in the most recent specification and in guidelines, two additional steps have been carried out.

Signing of the GSD is an important part of implementing class 1. With a signed GSD, it can be ensured that the GSDML – which describes the technical properties of a device in an XML file – has not been changed, either unintentionally or intentionally. For PROFINET users, this is crucial support for the secure operation of their plant. Corresponding infrastructure within PI and, if applicable, of the manufacturers, has to be set up for this. This setup and the subsequent operation of a corresponding security infrastructure for the signing of GSDs have begun.

The second step is comprehensive specification of security classes 2 and 3 as part of the PROFINET specification currently under PI review. Integrity, authentication and confidentiality are possible for both acyclical and cyclical PROFINET communication. At constructive discussions, experts from different companies and research institutes have developed a suitable security solution for the OT field from the extensive possibilities. It was important, here, to select available security standards which meet the requirements of the industrial applications. These definitions are currently being safeguarded for integration possibilities by examining the selected security algorithms on different platforms.

Easy-to-read guidelines and white papers on the use of PROFINET Security are also being created for non-specialists. The mapping of PROFINET Security to IEC 62443 is also considered to be support for the user here.

.
이 기사는 아이씨엔매거진에서 발행되었습니다. 더 많은 기사를 아이씨엔매거진(링크)에서 확인하실 수 있습니다.        

 

ASI
우청 기자
우청 기자http://icnweb.co.kr
아이씨엔 매거진 테크니컬 에디터입니다. 산업용사물인터넷과 디지털전환을 위한 애널리틱스를 모아서 뉴스와 기술기사로 제공합니다.
  • ACHEMA 2027
  • aw2025
  • 파스텍 배너 900
  • hilscher
ASI

Join our Newsletter

Get the latest newsletters on industry innovations.

aw2025
MWC
파스텍 배너 300
embeddedworld 2025
Hannover messe

Related articles

센스톤·앤앤에스피, PLC 보안 강화 솔루션 ‘OTAC Trusted Access Gateway’ 출시

인증 보안 전문기업 센스톤과 CPS 보안 전문 기업 앤앤에스피가 PLC에 별도 수정 없이 고도화된 인증과 접근제어를 제공하는 보안 솔루션 'OTAC Trusted Access Gateway (TAG)'를 출시했다

힐셔, 산업용 싱글페어이더넷(SPE) 미디어 스위치 출시

힐셔는 PROFINET, EtherNet/IP, Modbus 산업용 이더넷 네트워크용 신규 SPE 미디어 스위치를 출시했다

[new] CC-Link 지원 이더넷 멀티 프로토콜 I/O 모듈

터크는 자사의 멀티프로토콜 이더넷 기술이 CC-Link IE Field Basic을 추가로 지원하게 됐다고 밝혔다

기자의 추가 기사

IIoT

파스텍 배너 300
파스텍 배너 300
Hannover messe

추천 기사

mobility