S7-Firewall

Safe from Stuxnet, Emotet and Co. networks: with the firewall for every SIMATIC S7.

S7-Firewall product image
Based on the compact TeleR4 network router with integrated switch and top-hat rail mounting, the router with integrated firewall connects up to four participants to the IIoT easily, quickly and securely. Equipped with a 10-30 V power supply, the Ethernet router connects OT level networks with the IT level regardless of whether the participants come from the Ethernet or the ProfiNet. Once powered, it can be operated as a switch, bridge, gateway or router including firewall with deep packet inspection.

How to use

With the S7-Firewall, the popular communication via ISO-on-TCP (RFC 1006) and S7-TCP/IP with PUT/GET becomes secure again for all OP and PG devices including HMI! The adaptive and thus smart firewall connects up to four participants quickly and securely with each other. Unpack. Connect. Connect. Secure. While the participants are securely connected to each other externally and internally thanks to the integrated firewall, they can also be moved to their own virtual private network (VPN).

Product image of the S7-Firewall.

The scalable "PLC firewall" controls access not only via IP and MAC addresses, but also automatically detects the direction of installation between PLC and operating or programming level. Depending on the possible connection, the desired data areas of the PLC can then be restricted and configured.

Network diagram of a network with S7-Firewall

Advantages

  • Simple and fast networking
  • Configuration via browser
  • Industrial assembly
  • Qualified support
  • Comprehensive documentation

The greatest advantage of the S7-Firewall is the combination of the TeleR4 with the deep packet inspection of the firewall. Supplemented by the integrated OpenVPN client and server, the communication is additionally isolated into a virtual private network (VPN) and a secure connection between the participants is always ensured. In addition, further restrictions for the connections can be made via the web interface in order to set up a secure Industrial Ethernet of Things.

Configuration view of the OpenVPN of the TeleR4.

Features

  • Operating modes

    Switch, Bridge, Gateway, Router

  • Ethernet Services

    OpenVPN Client & Server, DynDNS Client, DHCP Client & Server, NTP Client & Server

  • LAN Ethernet connections

    3 x RJ45 Ethernet with 10/100 MBit/s with autonegotiation

  • WAN Ethernet connections

    1 x RJ45 Ethernet with 10/100 MBit/s with autonegotiation

  • Power supply input

    1 x 10-30V DC via 2-pin RS-485 connector (POW)

  • Power supply output

    1 x 10-30V DC via 3-pole RS-485 connection (OUT)

  • Commissioning

    Mounting on top-hat rail via DIN-rail retaining clip

  • Optional functions

    VPN user control, IP-Address-Changer, user route, S7-Firewall, ProfiNet router, HMI message module

  • Further interfaces

    USB 2.0 port for function extensions (e.g. USB modem)

  • Further features

    Options S7-Firewall and IP-Address-Changer included