Good points but no proof of a secure solution. Seems like SSL VPN is used, apart from SSL v3 SSL is vulnarable to man in the middle attack. Are public certificates used or self-signed? And even then we have seen CA's can be compromized. If the APP can write back to the PLC I am afraid the conclusion must be that it is not a secure solution.
I am the author of application in this article. The IOS app requires a Username and Password to have access to the information. All transmissions between the IOS device and the server are encrypted and validate the users credentials. Different User Roles provide access to different levels of information. For the roles that provide the ability to write back data to the PLC, the user must re-enter the password for verification each time data is sent. This provides enough security for this particular application.
Security concerns are very importnat and must be taken into account as each application is written. There are many instances where mobile devices with access to PLC-generated data can prove valuable. Security concerns can be addressed so that we do not miss out on this opportunity.
Siemens was unlucky enough to be the first industrial controls company to have their product penetrated bya worm. Hey, someone had to be first.
But then they also had to issue a security warning for their Simatic S7 series controllers (reported by Design news on 7/7/2011: SIMATIC SECURITY WARNING).
I'd rather Siemens concentrate on security first, before seeking new hand-held I-app development.
There's no reason that these apps can't influence plant behavior, depending on how they're constructed. Which is why security is/will be of increasing concern as we see more iOS and Android apps relating to factory automation. Whether you're talking illicit access to data, or gaining control of stuff that's only supposed to be touched by authorized personnel, the danger here is the same as it is everywhere else.
I'm just thinking if I had a plant app on my smartphone and my teenage daughter or son picked up the phone -- heck, the plant could look like a video game. "Hey, what happens if we speed this up?"
Very interesting, Beth. I would guess these apps can observe what is going on with plant activities. I would also guess these apps can't influence the control system.
I've been hearing some talk/interest in using iPads and iOS apps on the factory floor as well. Here's another: Aurora Industrial Automation, a Rockwell Automation system integrator, has developed an iPhone/iPad app that lets users access real-time plant floor info using Rockwell's VantagePoint and FactoryTalk ViewPoint software. They can leverage the tools to access production metrics, to carry out visual inspections, among other use cases.
Here's another one, Alex. Opto 22 introduced the Opto iPAC iOS App last week. It offers access to the company's SNAP PAC System via popular mobile devices including the iPhone, iPod Touch, and iPad. Detailed, real-time, control system information is now accessible to authorized control engineers, maintenance personnel, instrumentation technicians, panel builders, developers, and others through their mobile and tablet devices.
Andrew Morris designed a circuit that could detect a stroke victim's groan and convert the sound into a signal so caregivers would know when help was needed.
New disc magnet motors fit into the design trend of stepping up to closed loop performance while maintaining the cost advantage of stepper motor technology.
At the Design News webinar on June 27, learn all about aluminum extrusion: designing the right shape so it costs the least, is simplest to manufacture, and best fits the application's structural requirements.
On April 21, NASA launched a novel project, putting into orbit three satellites that employ an off-the-shelf commercial smartphone as the control system.
From Dell / Intel® New Paradigms in Design Work Scott Hamilton, vertical market strategist for Dell Precision workstations, 5/2/2013 5
Early in my career, I worked as a draftsman and remember the days of drawing on vellum with numbered pencils and Mylar with plastic lead. This was a fun experience in the sense that I ...
I've been using workstations for more than 10 years and love finding ways to get more performance from my system. With demanding professional applications that require more power each ...
A lasting memory from my first job as an engineer in an auto assembly plant is standing on hard concrete at six in the morning, vending-machine coffee clutched in hand, listening to ...
For industrial control applications, or even a simple assembly line, that machine can go almost 24/7 without a break. But what happens when the task is a little more complex? That’s where the “smart” machine would come in. The smart machine is one that has some simple (or complex in some cases) processing capability to be able to adapt to changing conditions. Such machines are suited for a host of applications, including automotive, aerospace, defense, medical, computers and electronics, telecommunications, consumer goods, and so on. This radio show will show what’s possible with smart machines, and what tradeoffs need to be made to implement such a solution.
To save this item to your list of favorite Design News content so you can find it later in your Profile page, click the "Save It" button next to the item.
If you found this interesting or useful, please use the links to the services below to share it with other readers. You will need a free account with each service to share an item via that service.