Hirschmann

9 bookmarks
Custom sorting
#firewalllearningmode #industrialdpi #industrialnetworking #otnetworking… | Josh Varghese | 17 comments
#firewalllearningmode #industrialdpi #industrialnetworking #otnetworking… | Josh Varghese | 17 comments
I was a big fan of the @belden/Hirschmann Eagle ONE, particularly its firewall learning mode. IMO it did a FANTASTIC job of helping customers get their rules configured. I was a big fan of the first gen Tofino as my introduction to industrial protocol Deep Packet Inspection - for example, the ability to allow only Modbus reads, even only to specific registers. When looking at the multi port Eagle20/30, the newer gen Tofino, and the Eagle 40-03 and -07s, despite such a wide offering, I often itched for just ONE more option. I wanted at least 3 gig interfaces, #firewalllearningmode, the ability to do transparent or routed firewalling, and the option for #industrialDPI, but in a significantly smaller footprint and if I could get it, a lower price point. I absolutely LOVE it when a vendor says “Hold my beer 🍺” Say hello to the Eagle 40-4F that comes in two main variants. The -ROUTER model comes with all the goodies I was accustomed to with the Eagle ONE but with FOUR gigabit interfaces and the -SECURITY model adds on industrial DPI. We just got one of these for the lab (thanks Alex Helt for the awesome support!), and I can’t wait to check it out 👏🏽👏🏽👏🏽 #industrialnetworking #otnetworking #otsecurity | 17 comments on LinkedIn
·linkedin.com·
#firewalllearningmode #industrialdpi #industrialnetworking #otnetworking… | Josh Varghese | 17 comments
#industrialnetworking #otnetworking #redundancy | Josh Varghese | 25 comments
#industrialnetworking #otnetworking #redundancy | Josh Varghese | 25 comments
Mike Mahana will soon be configuring all of the Belden Inc./Hirschmann Bobcats and MSPs on this wall 😍🤓😎 The project will include: -Layer 2 Redundancy with MRP rings -Layer 3 Redundancy with HiVRRP -Network Management with HiVision (including working with the SI to integrate data into Inductive Automation Ignition) and a first for us, an even more hardcore L2 redundancy- PRP! The redundant CLX and RIOs on this project are all PRP capable and will be configured as such, but as they are PRP Dual Attached Nodes and there aren’t any Single Attached Nodes we need to provide PRP Redboxes or explicitly capable switches for, we’re just providing PRP “infrastructure” switches. This raised an interesting technical question. Do PRP infrastructure switches need to be PRP “capable” or PRP “aware” in any way? Turns out the answer was…sort of… While they won’t be performing any of the heavy PRP lifting duplicating or deduplicating frames, they will be processing PRP frames sent by the PLCs and RIOs. As such they will potentially see frames larger than the 1514/1518 byte max standard frame size because these frames include an additional 6 byte trailer. Big shoutout to Arnau Vásquez Sierra for highlighting this to us and helping us ensure all models selected could meet this requirement 🙌🏽 #industrialnetworking #otnetworking #redundancy | 25 comments on LinkedIn
·linkedin.com·
#industrialnetworking #otnetworking #redundancy | Josh Varghese | 25 comments
#industrialnetworking #otnetworking #configurationrollback | Josh Varghese | 73 comments
#industrialnetworking #otnetworking #configurationrollback | Josh Varghese | 73 comments
Have you ever made a switch configuration change mistake such as a port VLAN modification or other that cut off your access to that very switch? What follows is often hanging your head in shame after you realize what you did or even worse, the sad acknowledgement the change was made remotely so you are in for a walk, drive, etc. to resolve? Oof, I know I have. Let’s take a minute then to shout out one of the best, but not often available, managed switch features out there, in this case as exemplified by Belden Inc./Hirschmann’s “Undo configuration modifications” in the screenshot. Per the Hirschmann HiOS manual: Using the function, the device continuously checks if it can still be reached from the IP address of your PC. If the connection is lost, after a specified time period the device loads the “Selected” configuration profile from the nonvolatile memory (NVM). Afterwards, the device can be accessed again. I wish every networking device had a similar capability but I've only ever seen it in Belden/Hirschmann and in Cisco. I'll share a previous post where I discussed the Cisco version in the comments. How about you? Has such a feature ever saved your bacon and have you seen it in any other OT networking makes/models? #industrialnetworking #otnetworking #configurationrollback | 73 comments on LinkedIn
·linkedin.com·
#industrialnetworking #otnetworking #configurationrollback | Josh Varghese | 73 comments