Concept of factory network with separated secured DMZ zones

Concept of factory network with separated secured DMZ zones

Source publication
Article
Full-text available
The paper presents selected security problems in ICT systems and OT used in industry. In the Industry 4.0 era, the knowledge and competence of the IT staff and the maintenance staff must be linked. Selected problems and their analysis and solutions form the semi-secure network and use of NoSQL databases as a database bridges are presented in the ar...

Contexts in source publication

Context 1
... network brings the risk of breaking the only one point of resistance and opening access to the whole OT infrastructure. It should be assumed that the most critical is connect: PLC controllers (as a data source) with the database server. Every potential hacking into the database server increase the risk of hacking into data sources. As shown in Fig. 2, it is also possible to transfer the database server directly to the OT area and completely separate the SCADA (Supervisory Control And Data Acquisition) production systems from the Internal LAN. This is not compatible with the Industry 4.0 concept. Currently, it is recommended to isolate the DMZ zone for all elements that require ...
Context 2
... it is recommended to isolate the DMZ zone for all elements that require special protection. Figure 2 shows DMZ1 for servers and DMZ2 for OT network parts. In the proposed structure of te network, the WAN router should be a separate hardware device from the firewall solution. ...
Context 3
... and DMZ2 networks blocking network traffic in case of threat detection. For the OT, disable network traffic at the output to other subnets should not be critical, because all OT devices (PLCs, drivers for engines, sensors) execute the programmed action and are usually only a source of data for supervisory systems, eg TPM or SCADA. As shown in fig. 2, the SCADA or TPM system can be located together with a database inside the OT in DMZ2, as one of the possible solutions. The concept of increasing safety by designing DMZ zones can be divided into 4 levels (Webb, 2014): 1. For Level 1 DMZ, all services requiring special security are collect to a separate zone that is accessed by a ...

Similar publications

Chapter
Full-text available
In 2018 a collaborative project between Politecnico di Milano (PoliMI) and Regione Lombardia (RL) was launched to join forces and expertise toward the improvement of the regional transport infrastructures maintenance management. The general goal of the project is the development of a risk-based maintenance prioritization methodology supported by in...

Citations

... Within the legal domain, compliance with data protection and privacy laws stands as a paramount concern (Walters et al., 2019). The burgeoning use of AI in HRM necessitates alignment with regulations such as the General Data Protection Regulation (GDPR) and other regional laws, ensuring that the collection, processing, and storage of employee data adhere to stringent privacy standards (Karpisz et al., 2019). This legal framework not only safeguards individual privacy but also establishes a foundation for responsible AI deployment within HRM (Chang & Ke, 2023). ...
Article
This paper explores the evolution and strategic significance of Artificial Intelligence (AI) in Human Resource Management (HRM). Tracing AI’s journey from rudimentary automation to sophisticated systems, it focuses on the impact of AI, particularly in Natural Language Processing (NLP) for recruitment and AI-driven employee engagement solutions. The study delves into challenges, opportunities, and ethical considerations, aiming to identify gaps in existing knowledge. The research aims to provide a comprehensive understanding of the current state of AI integration in HRM, with key objectives including defining scope, exploring technologies, presenting case studies, and unravelling regulatory and ethical dimensions. This abstract sets the stage for a nuanced exploration of AI-HRM dynamics.