Cisco Connected Factory Architecture Part of the Cisco Internet of Everything (IoE) Vertical Solutions Portfolio cisco.com/go/connectedfactory Cisco Connected Factory Solutions Cisco Connected Factory is a portfolio of validated, proven architectures, capabilities and market-leading technologies and services for industrial markets. Our solutions include: Cisco Connected Factory Architecture is a validated prescriptive guide for organizations with 100 to 100,000 IP connected plant devices. Factory Wireless Unified wireless for industrial applications and devices to lower costs, speed decision making, and increase factory output. Supports asset tracking, AGV’s, wireless tooling, and mobile controls visibility. Factory Security A defense-in-depth strategy and architecture provides improved security through granular control of plant network access by user, device, and location. Adds plant security for both digital and physical assets. Plant Branch IT Network A joint Cisco and Rockwell Automation architecture Active Directory, Application servers Catalyst Switch Si Guest WLC Anchor Si Internet ISE Primary UCS Rack-mount Servers File Transfer Server Access Switch WAN Router Nexus 2000 Remote Site Catalyst 3750-X ASA 55xx-X (Active) Network Services Application Servers Industrial NTP Server Remote Access Server Remote Access Server Identity Services Engine (ISE) Policy Service Node or Virtual Machines Industrial Zone Internet Routers Voice Routers Wireless LAN Controller Catalyst 6500/4500 Active Directory Server WAAS Access Switches ASA 55xx-X (Standby) Internet WAN Routers AP HMI AP Controller WGB AP Core Switches DMZ Servers Email Security Appliance W ww W ww MPLS WANs VPN WAN Routers Access Switch Stack Guest Wireless LAN Controller Web Security Appliance Catalyst 3750 StackWise Switch Stack Wireless LAN Controller Data Center Firewall DMZ Switch Access Switches VFD RA-VPN Distribution Switches WAN Routers User Access Layers PSTN I/O HMI WGB WGB I/O HMI WAAS VFD I/O Cell/Area #1 Controller Cell/Area #2 Controller Roaming I/O Drive Data Center Firewalls Nexus 5500 Wireless LAN Controllers Distribution Switches Regional Site Communications Managers Internet Edge AV Server Failover UCS Blade Chassis Storage WAAS Central Manager PSTN IDMZ or Virtual Machines UCS Rack-mount Server Enterprise WLC Anchor IDMZ NTP Server Remote Desktop Gateway Server Manufacturing Headquarters Hardware and Software VPN Teleworker/ Mobile Worker Catalyst 3750-X Factory Energy Management Provides real-time visibility into valuable energy use information by enabling intelligent IoE applications, such as analytic engines that communicate with machine sensors, to stream detailed operational data between the plants and higher-level systems. Converged Plantwide Ethernet (CPwE) Data Center Internet Edge Partner Connectivity Gateway cisco.com/go/designzone Enterprise Factory Automation A single network of integrated manufacturing systems – converging sensors, machines, cells and zones. Site of a Supplier or a Distributor WAN Aggregation Cell/Area #3 Plant Office WAAS Remote Site Wireless LAN Controllers Cisco Connected Factory Products: Rugged, Secure, Reliable Wired Security Management Enterprise NetworkLevel 5 Enterprise Zone Site Business Planning and Logistics Network Level 4 Site Manufacturing Operations and Control Level 3 IE4000: Layer 2/3 access DIN-rail mounted switch with REP, IEEE 1588, Ethernet/IP, PROFINET support; 4 x GE uplink ports, and up to 16 GE fiber/copper downlinks. IE2000: Compact, secure, fixed hardened Layer 2 access DIN-rail mounted switch with REP, IEEE 1588, Ethernet/IP, PROFINET support; 2 x GE & 4, 8, or 16 x FE ports, swappable flash memory. NAT PoE and conformal coating available. IE3000: Compact, secure, modular hardened Layer 2/3 access DIN-rail mounted switch with REP, IEEE 1588, Ethernet/IP, PROFINET support; 2 x GE & up to 24 FE ports, swappable flash memory. PoE available. IE3010: 1 RU, fixed, hardened switch with REP support; 2 x GE & up to 24 FE ports (copper) or 16 FE SFP and 8 FE (with PoE), swappable flash memory. IE5000: L2/L3 Hardened Rack Mount Aggregation Switch with 10GE uplink ports, 12 GE SFP fiber and PoE/PoE+, 4 x 10GE SFP+ or 4 GE SFP uplinks. Stratix 5400™: 4 x GE uplink ports with layer 2 switching and layer 3 routing, additional Gigabit (GE) Power over Ethernet (PoE), and GE fiber ports. Premier (CIP) integration with Rockwell Automation Integrated Architecture. Allen-Bradley Stratix 5700™: Industrial Ethernet Switches L2/L3, Modular, DIN rail mounting, with Cisco technology, Premier (CIP) integration with Rockwell Automation Integrated Architecture. Allen-Bradley Stratix 8000™: Industrial Ethernet Switches L2/L3, Modular, DIN rail mounting, with Cisco technology, Premier (CIP) integration with Rockwell Automation Integrated Architecture. Allen Bradley Stratix 5900™: Hardened Security router with Cisco Technology for zone based firewall, including VPN, IPSec, and QoS with web management tool. ArmorStratix 5700™: L2 Ethernet Switch with IP67 protection. Cisco ASA 5515: Provides Firewall protection, combined with industryleading Sourcefire threat and advanced malware protection. Demilitarized Zone Manufacturing Zone Area Supervisory ControlLevel 2 Cell/Area Zone Basic ControlLevel 1 IP67 Rated IE2000: L2 Ethernet Switch with IP67 protection. Identity Services Engine (ISE): Security policy management and control platform. Automates and simplifies access control and provides identity services by user, device, and location. Wireless ProcessLevel 0 Safety Zone Safety-Critical Allen Bradley Stratix 5100™ Wireless Access Point (AP): 802.11n Wi-Fi autonomous access point. 3x4 MIMO technology with three spatial streams. External antennas. Integrated Common Industrial Protocol (CIP) stack. Aironet 3700AP: 802.11ac wave 1 provides rate of up to 1.3 Gbps. 4x4 Multiple Input Multiple Output (MIMO) configuration. Supports three spatial streams (3SS). Aironet IW 3700AP (IP67): Same capabilities as the Aironet 3700 Series Access Point with an internal antenna. 3602E Wireless Access Point: Extended temperature, secure, 802.11a/b/g/n Wi-Fi AP, CleanAir and PoE powered. Cisco Wireless LAN Controller 5508: Support for up to 500 access points, 802.11n and 802.11ac networks, manages 500 access points simultaneously. 819 M2M: Secure, hardened, small form factor Cisco IOS router with Firewall, VPN and 3G, 3G + Wi-Fi or 4G LTE wireless WAN. Rugged Small form-factor Pluggables (SFP): Rugged FE and GE SMF and MMF optical transceiver modules with LC/PC connector and DOM support. © 2015 Cisco and/or its affiliates. All rights reserved. Third party trademarks mentioned are the property of their respective owners. 15CS4752_Connected_Factory_Architecture_Poster-24x36_Final3.indd 1 DEC15CS4752 06/15 6/5/15 3:33 PM