Products

Smart security: Defence in depth

Security is more than just encryption. It’s about ensuring that the entire SCADA network is protected and that all vulnerabilities are secured against attack, whether accidental or malicious.

An in-depth approach to security is incorporated throughout the Aprisa SR to protect against passive eavesdropping, active denial of service, ‘man-in-the-middle’ attacks and attacks at a management level. The Aprisa SR security includes all of the following:

  • AES-256 encryption as standard: ensuring the confidentiality of all transmitted information
  • Proprietary wireless protocol: based on 802.15.4 MAC and a proprietary PHY. This combines a standardised and extensively tested protocol with selected proprietary features to avoid over the air interception and manipulation of data
  • Segregated traffic flow: allowing operators to isolate radio nodes and SCADA equipment
  • Licensed radio spectrum: ensuring that you are the only authorised user of the spectrum, avoiding interference from others using the same band
  • Management interface protection including authentication, secure web interface, encrypted firmware upgrades and ICMP and UDP/TCP port blocking
  • Address filtering, to ensure that the traffic across the network originates from an authorised source and only packets that have the correct address details are passed on
  • Distributed L3 firewall, providing the highest level of security to important remote nodes
  • Data authentication using CCM-based authenticated encryption algorithm, to protect integrity of information and mitigate replay attack and ‘man-in-the-middle’ attacks

Smart security: smart SCADA

Get smart and contact us to find out more about how you could benefit from the Aprisa SR.