Professional Documents
Culture Documents
Network Solutions For Smart Grids KAP - 08 PDF
Network Solutions For Smart Grids KAP - 08 PDF
8.1
Introduction
444
8.2
446
446
447
447
450
452
452
454
8.3
455
8.4
Substation Communication
456
456
460
464
467
469
8.5
470
8.5.1 Introduction
470
471
8.6 IT Security
474
474
475
475
475
475
Services
477
443
8 Communication
Network Solutions for
Smart Grids
8.1 Introduction
A secure, reliable and economic power supply is closely linked to
a fast, efcient and dependable communication infrastructure.
Planning and implementation of communication networks
require the same attention as the installation of the power
supply systems themselves (g. 8.1-1).
Telecommunication for utilities has a long history in the transmission level of the power supply system and Siemens was one
of the rst suppliers of communication systems for power
utilities. Since the early 1930s Siemens has delivered Power Line
Carrier equipment for high-voltage systems. In todays transmission systems, almost all substations are monitored and controlled online by Energy Management Systems (EMS). The main
transmission lines are usually equipped with ber-optic cables,
mostly integrated in the earth (ground) wires (OPGW: Optical
Ground Wire) and the substations are accessible via broadband
communication systems. The two proven and optimal communi-
Vertical SG
solutions
Generation
Grid
Applications
Transmission
Applications
cation technologies for application-specic needs are Synchronous Digital Hierarchy (SDH) and Ethernet. Fiber-optic cables are
used whenever it is cost-efcient. In the remote ends of the
power transmission system, however, where the installation of
ber-optic cables or wireless solutions is not economical, substations are connected via digital high-voltage power line carrier
systems.
The situation in the distribution grid is quite different. Whereas
subtransmission and primary substations are equipped with
digital communication as well, the communication infrastructure at lower distribution levels is very weak. In most countries,
less than 10 % of transformer substations and ring-main units
(RMU) are monitored and controlled from remote.
The rapid increase in distributed energy resources today is
impairing the power quality of the distribution network. That is
Rail
Electrication
Industrial &
Infrastr. Grid
Applications
Distribution
Applications
Microgrid /
DG / VPP
Applications
Demand
Response
Smart
Metering
Horizontal IT
Grid-specic
Enterprise IT
Energy
Mgt. System
Ind. Distribution
Mgt. System
Distribution
Mgt. system
Demand Resp.
Mgmt. System
Meter Data
Management
Automation
Field
Equipment
Electr./Gas/Water/Heat
Solutions incl.
Primary
equipment
Service
Fig. 8.1-1: Siemens offers complete communication network solutions to build a Smart Grid for power utilities
444
Value-added services
Communications
infrastructure
High voltage
Fiberoptic/
SHD/Ether.
Power Line
Carrier
Microwave
Router/
Switch
Applications
HV substation
Generation
110 kV230 kV
HV substation
Medium voltage
MV substation
Public charging
for e-cars
Cold store
HV substation
30 kV132 kV
Wind onshore
MV substation
Virtual Power
Plant
Building
Distribution
Automation
Condition
Monitoring
Demand
Response
Management
System
Marketplace
Asset
Management
6 kV22 kV
Meter Data
Management
RMU with
meter data
concentrator
Low voltage
End-to-end security
Fiberoptic/
N/B PLC,
WiMAX
WIFI Mesh
Cellular
DSL, Rout.
Switch
HV substation
Micro Grid
Controller
Wind offshore
Fiberoptic/
SDH/Ether.
BPLC
WiMAX
WIFI Mesh
Cellular
Router/
Switch
Control Center
(EMS/DMS)
380 kV500 kV
400 V
400 V
RMU
400 V
RMU
400 V
RMU
Billing/Call
Center
E-Car
Operation
Center
Meter
Meter
Meter
Homes
(smart meter with NPLC)
Meter
etc.
Meter
Distributed
energy resources
445
Benets at a glance
tHigh availability
tVery short delay times in protection signal transmission
tFor both legacy and packet-based applications/systems
tSupports IEC 61850 standard
tFull-spectrum network management system
OPGW
OPGW
8
Substation
Substation
NG
SDH
NMS
NG
SDH
Router
Access
MUX
IEC 61850
substation ring
Phone
RTU
IEC 61850
substation ring
Fig. 8.2-1: Typical Next Generation SDH solution for transmission grids
446
Control
center
Access
MUX
Phone
RTU
An access multiplexer can be employed to create exible networks which can react rapidly to changes in network requirements. The modular design enables channel units to be combined as required for telephone, data and ISDN signal
transmission. The multiplexer allows free assignment of user
interfaces to the channels in the 2-Mbit/s signal and rapid
conguration. Fig. 8.2-2 shows an overview of the interfaces
provided by an typical access multiplexer.
Subscriber Side
Voice interfaces
POTS, Subscriber Side, 2-wire
POTS, Exchange Side, 2-wire
2-wire, Local battery
2-wire VF and 2xE&M
4-wire VF and 2xE&M
2/4-wire VF
ISDN interfaces:
So-Interface
Uko-Interface, 2B1Q
Uko-Interface, 4B3T
Access
Multiplexer
2 Mbps G.
703 / CAS
NG
SDH
Data Interfaces
64 kbps, G.703 codirectional
V.24 / V.28, Subrates up to 64 kbps
V.35, Subrates up to 64 kbps or n x 64 kbps
V.36, Subrates up to 64 kbps or n x 64 kbps
X.21 / V.11, Subrates up to 64 kbps or
n x 64 kbps 10/100 BaseT
n x 64 kbps, G.703
64 kbps, G.703 centralized clock
Fractional E1, n x 64 kbps, 2 Mbps G.703
447
Bridge to IP
IP functionality is best suited for the migration from TDM to
packet-switched networks. PowerLink offers electrical and
optical Ethernet interfaces, including an integrated L2 switch,
extending the IP network to remote substations with a bit rate
up to 320 kbps.
Application
Variable bandwidth
Integrated TCP/IP interface
Voice compression
Versatile multiplexer
Integrated teleprotection systems
Cross-functional management system for all integrated services
Maximum efciency:
The integrated, versatile multiplexer (vMUX)
A large number of conventional communication interfaces
today (e.g., a/b telephone, V.24, X.21, etc.) and in the foreseeable future must be operated in a switching station. For this
purpose, PowerLink uses an integrated versatile multiplexer that
8
Substation
Substation
NMS
PowerLink
with integrated
SWT 3000
PowerLink
with integrated
SWT 3000
Phone
Distance
protection
RTU
Router
448
Phone
Router
Control
center
Distance
protection
RTU
Features
Voice compression
Voice compression is indispensable for the efcient utilization
of networks. Naturally, quality must not suffer, which is why
PowerLink offers comprehensive options for adapting the data
rate to individual requirements. PowerLink offers different
compression stages between 5.3 and 8 kbit/s. To prevent any
impairment of voice quality, the compressed voice band is
routed transparently to PowerLink stations connected in line,
without any further compression or decompression.
Digital interface
Digital
PLC
system
Analog
PLC
system
p
p
p
p
p
p
p
p
p
p
p
Analog interface
VF (VFM, VFO, VFS), max. 8 channels for voice,
data, and protection signal
p
p
p
p
p
p
p
p
p
p
p
p
p
Single-purpose or multipurpose/alternate
multipurpose mode
p
p
p
p
p
p
p
p
p
p
449
12
Fiber-optic connections
between SWT 3000 and PowerLink
A short-distance connection between an SWT 3000
and Siemenss PowerLink PLC terminal can be realized
via an integrated ber-optic modem. In this
case, an SWT 3000 stand-alone system provides
the same advanced functionality as the version
integrated into PowerLink. Each PowerLink can be
connected to two SWT 3000 devices via optical bers.
11
MUX PDH/SDH
Binary I/O
Fiber optic
11 12
14
SWT 3000
SWT 3000
GOOSE I/O
IEC 61850
Command
interfaces
Line interfaces
(Analog and Digital)
8
9
Pilot Cable
GOOSE I/O
IEC 61850
Command
interfaces
Binary I/O
10
12
Application
Transmission of protection signals to quickly identify, isolate and
resolve problems in the transmission network of a utility
Advantages
Keeps downtimes to an absolute minimum
Supports IEC 61850 interfaces as well as conventional binary interfaces
Flexible integration into various customer communication networks
Path protection via two different transmission routes for increased
reliability
13 14
450
PowerLink
IFC
DLE
CLE
PDH
EN 100
SDH
FOBox
FO
MUX
Analog transmission
1
SWT 3000
EN 100
IFC
SWT 3000
CLE
CLE
CLE
CLE
SWT 3000
EN 100
IFC
IFC
PowerLink
CLE
SWT 3000
EN 100
IFC
PowerLink
CSP
CSP
PowerLink
FO
FO
CSP
FO
EN 100
EN 100
IFC
SWT 3000
FO
2-wire link
IFC
SWT 3000
CLE
PowerLink
CSP
EN 100
4-wire link
IFC
SWT 3000
SWT 3000
EN 100
EN 100
IFC
Power line
via optical bers
Digital transmission
5
10
SWT 3000
EN 100
IFC
SWT 3000
EN 100
IFC
SWT 3000
SDH/PDH
DLE
DLE
DLE
EN 100
SWT 3000
FO
FP
EN 100
DLE
DLE
EN 100
IFC
SDH/PDH
IFC
SWT 3000
IFC
SWT 3000
FO
FO
SWT 3000
EN 100
IFC
DLE
DLE
EN 100
SWT 3000
FO
FO
SWT 3000
EN 100
FOBox
IFC DLE FO
SWT 3000
DLE
EN 100
FO
IFC
MUX
SDH/PDH
MUX
MUX
SDH/PDH
MUX
FO DLE EN 100
FOBox
Digital network
IFC
SWT 3000
SDH/PDH
DLE
EN 100
IFC
IFC
DLE
SWT 3000
FO
EN 100
DLE
SWT 3000
CLE
EN 100
FO
SWT 3000
IFC
Two routes
via digital network
One path via ber-optic
cable; second path via
digital network
Fiber-optic modem
integrated
One path via integrated
optical bers; second via
ber-optic box, MUX, and
digital network
Through digital network
via MUX and ber-optic
C37.94
SWT 3000
DLE
EN 100
IFC
CLE
SWT 3000
FO
SDH/PDH
PowerLink
12
EN 100
IFC DLE FO
FO
PowerLink
CSP
FOBox
IFC
CSP
MUX
SDH/PDH
MUX
FO
FOBox
FO DLE EN 100
IFC
14
PowerLink
PowerLink
EN 100
EN 100
IFC
PowerLink
EN 100
IFC
PowerLink
DLE
DLE
EN 100
Power line
IFC
IFC
SDH/PDH
451
Analoge interface
Codec
G.711
64 kbit/s
87.2 kbit/s
G.726
32 kbit/s
55.2 kbit/s
G.728
16 kbit/s
31.5 kbit/s
G.729
8 kbit/s
31.2 kbit/s
G.723.1
5.3 kbit/s
20.8 kbit/s
a/b
Analog connection
of single phones
PowerLink
Analoge interface
PABX
E&M
Analog connection
of PABXs
PowerLink
Digital interface
PABX
fE1
Digital connection
of PABXs
PowerLink
TCP/IP interface
PABX
Connection of phones
or PABXs via TCP/IP
TCP/IP
Router
452
PowerLink
Analog connection
The telephone system is connected to the PowerLink via the
analog E&M interface. A telephone system or an individual
analog telephone can also participate in a PowerLink system at a
different location. The bandwidth requirement can be reduced
to about 6 kbit/s (including overhead) per voice link by means of
voice compression in the PowerLink.
Digital connection
With digital connection, the telephone system is connected to
PowerLink via the digital E1 interface. Because of the restricted
bandwidth, up to 8 of the 30 voice channels (Fractional E1) can
be used. This alternative is only suitable for communication
between telephone systems. Individual telephones must be
connected locally to the particular telephone system. The bandwidth requirement is made up of the user data per voice channel
(e.g., 5.3 kbit/s) and the D-channel overhead for the entire E1
link (approximately 2.4 kbits/s), (i.e., for a voice channel less
than 10 kbit/s).
TCP/IP connection
The telephone system, voice terminals and the PowerLink system
are connected directly to the TCP/IP network. Voice communication is conducted directly between the terminals. Only control
information is transmitted to the telephone system. Use of the
TCP/IP protocol results in a broadband requirement per voice
channel of at least 21 kbit/s (5.3 kbit/s voice plus TCP/IP overhead).
Telephone systems
To ensure the operation along high-voltage transmission lines or
pipelines and power plants, voice communication is an important part of the entire solution. The Siemens Enterprise Communication portfolio addresses all the different requirements of utilities, and can be deployed in various scenarios.
The limited bandwidth availability of Power Line Carrier systems
in the high-voltage area will ensure an important role for conventional telephone systems (e.g., HiPath 4000) with analog
interfaces in this segment in the future as well (g. 8.2-7).
HiPath 4000
Analog
TDM
PSTN
IPDA
Built-in reliability
Scalable architecture
DECT
Easy migration
Great migration investment protection
Open interfaces
SoftGate
HiPath 4000
VolP Phones
453
Transmission substations
Backbone communication
via OPGW
OPGW
2nd OPGW
Splice Box
Splice box
OFTB
Fibrer-optic
termination box
454
OFTB
OFTB
Fibrer-optic
termination box
NG
SDH
Automation
processes
Dark bre
leasing
Corporate network
backbone
Transparent
Ethernet channels
for 3rd parties
Corporate network
backbone
Transparent
Ethernet channels
for 3rd parties
OFTB
ODF
ODF
Dark bre
leasing
Substation
The Siemens Live Line Installation process can be used for the
following purposes:
tTo replace the ground wire with an optical ground wire, in
order to provide broadband communication even to smaller
substations
tAdditional installation of a second optical ground wire below
the top of the tower, on especially communication-intensive
segments
tTo replace an obsolete or defective optical ground wire.
NG
SDH
Automation
processes
Substation
OPC is based on OLE/COM and DCOM technology. OPC UA (Unied Architecture) is a continuation and further innovation of
OPC. OPC UA is based on native TCP/IP and is available for multiple operating system platforms, including embedded devices.
Communication between control centers
The communication between control centers is provided via the
communication protocols ICCP or ELCOM, and is based on TCP/IP.
CFE
Firewall
Internet/
Ofce LAN
Different
telecontrol
protocols via
serial interface
RTUs
Web
user interface
OPC
IEC 60870 protocol
family (101, 104, DNP3)
IEC 61850, etc. via serial
interface or TCP/IP
Telecontrol
devices:
Ofce
communication
SICAM PAS,
SICAM RTU
ICCP
ELCOM
Automation protocols
(SIMATIC NET via TCP/IP for
long distances, Probus
only for short distances)
Industrial
automation,
3rd party applications
Inter control
center
communication
via TCP/IP
Control center
Utility substation
Fig. 8.3-1: Typical communication interfaces and communication partners of a control center using the example of Spectrum Power
455
456
DIGSI
PC, remotely
located
Analog/
ISDN/
Ethernet
Modem/
Ethernet
modem
Ofce
DIGSI
PC, centrally
located in the
substation
(option)
Mini
star-coupler
7XV5450
Modem
optionally
with
call-back
fuction
RS485 Bus
opt.
RS485
Signal
converter
7XV5650
7SJ60 7RW60
7SD60
7**6
7**6
SICAM
Station unit
Ethernet cable
Switch
Switch
Switch
Serial Ethernet
E converter
serial hub
S
IEC 60870-103
protocol
max. 6 relays
per switch
457
are the most economical solution in small distribution substations (only medium voltage), Ethernet in compliance with
IEC 61850 is normally used for important high-voltage and
extra-high-voltage substations. In addition there are a number of
different physical designs, based on the local situation as
regards cable runs and distances, and on the requirements in
terms of availability and EMC inuences.
Control center
Control center
IEC 60870-5-101 or -104
SICAM
SICAM
Converter
RS 485/232
Starcoupler
SIPROTEC
SIPROTEC
Fig. 8.4-4: Star wiring in accordance with RS 232 or
per ber-optic cable
8
SICAM
Switch
Switch
Switch
Switch
458
Switch
Switch
The congurations with Ethernet are similar, with star and ring
versions available. Variants with redundancy complete these
congurations. The star conguration is especially recommended for central arrangements with short distances for the
cable routes (g. 8.4-5).
A ber-optic ring can be made up of individual switches. That is
especially advisable if several devices are to be connected in
each feeder (g. 8.4-6).
A more economical solution is the ber-optic ring with SIPROTEC
relays because these devices have a switch directly integrated
SICAM
Switch
8
Switch
Switch
Switch
EHV
Switch
Switch
Switch
Switch
HV
Switch
Switch
MV
Switch
459
460
461
Examples
Redundancies to substation automation systems
t2 redundant substation automation systems
t2 different substation automation systems.
Example 1: Two redundant substation automation systems
Fig. 8.4-15 show shows a serial optical network which connects
the serial protocol interfaces of the device to one master, respectively. Transmission is accomplished in multipoint-star conguration and with interference-free isolation via optical ber.
For the IEC 60870-5-103 protocol, the device supports special
redundancy procedures. For instance, a primary master can be
congured that is preferred to the second master in control
direction. The current process image is transmitted to both
masters.
The g. 8.4-16 describes a fully redundant solution based on
IEC 61850. 2 Ethernet communication modules are plugged into
each SIPROTEC 5 device. 2 redundant ber-optic rings are set up
by means of the switches integrated in the module and connected to the redundant clients (substation automation systems). Alternatively, the redundant IEC 61850 communication
could also be accomplished via a common optical ring.
IEC 60870-5-103/
DNP3
Master
IEC 60870-5-103/
DNP3
Master
Serial connections
Star coupler
Star coupler
SIPROTEC 5
Device 1
Device 2
Device n
IEC 61850,
DNP3 TCP
Client
Switch
IEC 61850,
DNP3 TCP
Client
Switch
Switch
Switch
SIPROTEC 5
Device 1
Device 2
Device n
462
Substation controller
IEC 61850 Client
Switch
DIGSI 5
DIGSI
Ethernet
switch
Substation controller
IEC 60870-5-103 Master
Star coupler
Serial optical
USART
module
Switch
Redundant substation control connection
Switch
Client-Server communication
via the integrated Ethernet
interface
Reporting/control
Switch
Ethernet ring
Substation controller
DNP3 TCP Slave
DIGSI 5
DIGSI
SIPROTEC 5
Substation controller
DNP3 Master
GOOSE
Fig. 8.4-19: Separate buses for reporting and GOOSE communication
Switch
Ethernet
switch
Star coupler
Serial optical
USART
module
Client-Server communication
via the integrated Ethernet
interface
Fig. 8.4-18: Communication to DNP3 TCP slave and serial connection
to an DNP3 master
463
Switch
Switch
Switch
SIPROTEC 5
SIPROTEC 5
SIPROTEC 5
SIPROTEC 5
Switch
Redundant substation control connection
Switch
Switch
Ethernet ring
SIPROTEC 5
464
Ring structure
Switch 1
Switch 2
Optical ring
FastEthernet
RSTP
FastEthernet
RSTP
RSTPSwitch
Non
RSTP IED
Switch
PRP-B
Switch
Switch
PRP-B
Switch
Switch
Switch
Switch
Switch
Switch
Switch
Switch
B
Switch
Switch
Switch
Switch
Switch
Redbox
Switch
Switch
Switch
PRP-B
Switch
Switch
Switch
Switch
Switch
Switch
PRP-B
B
RB
RB
RB
RB
Switch
Redbox
Switch
RB
RB
Switch
RB = Redbox
465
PRP-A
Switch
PRP-B
Switch
B
up to 50 devices on the ring
RB
RB
RB
RB
RB
RB
Switch
Switch
Redbox
RB = Redbox
Summary
tSiemens offers redundancy solutions
Dual link redundancy
RSTP
PRP (seamless)
HSR (seamless)
tDual link and RSTP: Field proven established technology
tPRP: High level redundancy through double network solution
tHSR: High level redundancy through cost effective ring
network structure. Combinable with PRP network.
tSiemens Seamless Ethernet Media Redundancy Suite:
SICAM PAS, SIPROTEC and Redbox
tSIPROTEC with integrated RSTP/PRP/HSR switches
> Siemens solutions produce signicant user advantage
in terms of functionality.
466
Single-mode FO 9/125 mm
Module 3: 24 km LC connectors
Module 4: 60 km LC connectors
Module 4: 100 km LC connectors
7SD610
7SA6
7SD610
7SA6
820 nm
max.
1.5 km
7SD610
7SA6
X21
G703.1
Communication
converter
Digital
communication
network
Communication
converter
7SD610
7SA6
467
Protection topology
52
PI 1
PI 2
PI 1
Multiplexer
52
PI 2
52
PI
SIPROTEC 5
SIPROTEC 5
C37.94
SIPROTEC 5
52
PI 1
PI 1
52
SIPROTEC 5
PI
X21
G703.1
Communication
network
Communication converter
Module type:
USART-AD-1FO
USART-AE-2FO
52
52
5 kV x
52
9 m/125 m
single-mode
optical ber
up to 170 km
PI
SIPROTEC 5
Module type:
USART-AD-1FO/ST
USART-AE-2FO/ST
52
SIPROTEC 5
Communication converter
PI
USART-AD-1FO
USART-AE-2FO
SIPROTEC 5
SIPROTEC 5
PI
PI
SIPROTEC 5
Module type:
USART-AD-1FO/ST
USART-AE-2FO/ST
468
SIPROTEC 5
Repeater
52
SIPROTEC 5
PI
2 Mbits/s
PI
SIPROTEC 5
2 Mbits/s
52
C37.94
Module type:
USART-AD-1FO/ST
USART-AE-2FO/ST
Communication
network
52
SIPROTEC 5
FO direct connection
PI
SIPROTEC 5
Module type:
Single module USART-AF-1LDFO/4 km/duplex LC
Double module USART-AW-2LDFO/4 km/2 x duplex LC
Single module USART-AG-1LDFO/60 km/duplex LC
Double module USART-AU-2LDFO/60 km/2 x duplex LC
Single module USART-AK-1LDFO/100 km/duplex LC
Double module USART-AV-2LDFO/100 km/2 x duplex LC
52
PI
FO direct connection
SIPROTEC 5
52
PI
SIPROTEC 5
469
8.5.1 Introduction
In the past, electricity was mainly produced by bulk generation
at central locations, and distributed to consumers via the distribution systems. Energy peaks (e.g., at midday) were well known
and balanced out by reserve capacity of central power plants. It
was therefore usually not necessary to specially control the
lower-level distribution networks, or even to integrate the
consumers into the grid monitoring system.
Communications
infrastructure
Applications
Wind onshore
Medium voltage
(Backhaul)
MV substation
Fiber optics/
SHD/Ethernet
BPLC
WiMAX
Wireless mesh
GSM/UMTS/LTE
Router, switch
Cold store
Low voltage
(Access)
MV substation
Public charging
Building
for e-cars
6 kV22 kV
Marketplace
Demand Response
Management System
RMU with
meter data
concentrator
Asset Management
Meter Data
Management
400 V
Fiber optics
NPLC, BPLC, WiMAX
Wireless mesh
GSM/UMTS/LTE
DSL, router, switch
Control Center
(EMS/DMS)
Meter
Meter
Meter
Homes
(smart meter with NPLC)
400 V
Meter
RMU
400 V
RMU
400 V
RMU
Billing/Call Center
E-Car Operation Center
etc.
Meter
Distributed
energy resources
Fig. 8.5-1: Typical power distribution network integrating ring-main units, consumers, prosumers, distributed energy resources, etc.
470
The young history of Smart Grids has already shown that utilities
do not implement it as a whole from the scratch. They usually
start with smart metering projects with later extensions of Smart
Grid applications.
Optical bers
The best choice for all communication needs
Optical bers is the best transmission medium for mediumvoltage and low-voltage applications because it is robust and not
susceptible to electromagnetic disturbances or capacity constraints. That is why system operators who choose this technology will be well prepared when their communication needs
multiply in the future.
Benets in detail
tAt the core of a variety of communication systems, from
passive optical networks (PON) to Ethernet and SDH
tDurable, insusceptible to electromagnetic disturbances
tPractically unlimited transmission capacity
Fiber optics
MV substation
6 kV22 kV
Energy line
Cold store
MV substation
Public charging
Building
for e-cars
RMU with
meter data
concentrator
400 V
Meter
Meter
Meter
400 V
Meter
RMU
400 V
RMU
400 V
RMU
Meter
Homes (smart
Homes
(smart meter with NPLC) meter with wireless
connection)
Smart homes
with energy
gateway
Distributed
energy resources
471
WiMAX
For RMU backhaul and prosumers
The main application area for WiMAX is considered to be RMU
backhaul. It also serves to connect scattered consumers or
endpoints with more demanding communication requirements
in other words, prosumers.
Energy line
Energy line with NPLC communication
Energy line with BPLC communication
MV
BPL
MV
BPL
MV
BPL
RMU with
meter data
concentrator
400 V
Public charging
for e-cars
MV
BPL
400 V
RMU
400 V
LV
BPL
Meter
Homes
(smart meter with NPLC)
Meter
6 kV22 kV
MV
BPL
MV
BPL
LV
BPL
LV
BPL
RMU
LV
BPL
RMU with
meter data
concentrator
400 V
400 V 400 V
RMU
LV
BPL
Meter
Smart homes
with energy
gateway
RMU
400 V
RMU
400 V
RMU
LV
BPL
Meter
Homes (smart
meter with
wireless connection)
6 kV22 kV
Service car
Distributed
energy resources
472
MV
substation
MV substation
Cold store
Meter
MV
substation
MV
BPL
MV substation
Meter
Communication
Energy line
Energy line with
NPLC communication
Meter
Meter
Homes
(smart meter with NPLC)
Meter
Meter
Homes (smart
meter with
wireless connection)
Smart homes
with energy
gateway
Distributed
energy resources
The applications for wireless mesh networks stretch from consumer access to RMU backhaul. Wireless mesh networks are
composed of cooperating radio nodes organized in a mesh
topology. The underlying technology for communication from
one hop to another can be standardized (for example, the IEEE
802.11 series [Wi-Fi] or IEEEE 802.15.4 [low-rate wireless personal area network, LoWPAN]) or proprietary (for example, U.S.
900-MHz technologies). The mesh protocols and corresponding
routing mechanisms are, on the other hand, more recent developments and therefore are still predominantly proprietary.
Thanks to their mesh properties along with self-setup and
self-healing mechanisms, mesh networks inherently offer ease
of operation and redundancy for xed applications but performance is limited in terms of either coverage or bandwidth.
Communication
Energy line
Energy line with
NPLC communication
MV substation
MV substation
MV substation
Service
car
6 kV22 kV
400 V 400 V
RMU
400 V
RMU
400 V
6 kV22 kV
400 V
RMU
Meter
Meter
MV
substation
RMU with
meter data
concentrator
RMU with
meter data
concentrator
Meter
Communication
Energy line
Energy line with
NPLC communication
Meter
Homes
(smart meter with NPLC)
Meter
Meter
Meter
400 V RMU
Meter
400 V
RMU
400 V
RMU
Meter
Meter
Homes (smart
meter with
wireless connection)
Smart homes
with energy
gateway
Distributed
energy resources
Homes
Homes (smart
(smart meter with NPLC)
meter with
wireless connection)
Smart homes
with energy
gateway
Distributed
energy resources
473
8.6 IT Security
The graphical display of the security network or network blueprint, as it is called, forms the infrastructure and architecture of
a system. It is the basis for a clear segmentation with which the
risk for every link in the automation chain can be analyzed
precisely while still keeping an eye on the impact on the
system as a whole.
The network is therefore divided up into manageable zones
in order to equip them with precisely the IT security that is
necessary and worthwhile in order to protect the data in this
zone, as well as ensuring smooth operation of the system at
the same time (g. 8.6-1).
The zones are protected at network level by a SCADA rewall that
controls data trafc between the zones and blocks dangerous
packets. Suspicious network activities within critical zones themselves, for example, the control center network or eld level can
be detected and signaled by an intrusion detection system.
Control center
SCADA honeypot
SCADA rewall
Secure remote access
Ofce network
Other control center
Network blueprint incorporates:
Sophisticated logging and auditing concept
Regular cyber security assessment
Hardened network infrastructure
(switches, router)
Admin LAN
Transfer
networks
SCADA rewall
Field devices
Substation
SCADA rewall
Secure remote access
SIPROTEC network
SIPROTEC network
Trusted network
Hardened host
Semi-trusted network
VPN tunnel
Untrusted network
Host-based intrusion
prevention system
474
Network-based intrusion
detection system
Web server
Anti virus
Computers exposed to special risks, for example, in the demilitarized zone (DMZ), can also be protected with a host-based
intrusion prevention system. All computer systems are equipped
with virus scanners in order to withstand the permanent threat
due to malware. The remote administration and connection of
other networks is effected by VPN tunnels that guarantee access
protection at the highest level.
The load-carrying network infrastructure itself (routers,
switches) also undergoes system hardening in order to match
up to the consistently high security requirements for the system
as a whole.
475
476
8.7 Services
Business with communication solutions for power supply companies does not only mean to provide state-of-the-art products, but
to offer a complete range of build and professional services.
With more than 75 years of experience and know-how, Siemens
offers a wide range of products for communication solutions,
and a comprehensive portfolio of services tailored to the
demand of our customers (g. 8.7-1).
Consult
Finding the right communication solution in a pre-sales or after
sales phase for the costumers requires planning and analysis.
Siemens consultants offer every support in planning and realization of the best technical and economic solution for communication networks, system conguration, and integration of the new
equipment into the existing network.
Design
Designing a telecommunication network means much more than
just supplying hardware and software. The Siemens experience
makes it possible to create a and prove a communication solution designed exactly for the operators purposes.
Build
The fast implementation of a project depends crucially on
effective management. It ensures that the build-up of a network
will be completed quick and effective.
Maintain/Care
The Siemens hotline, its technical level supports, and repair and
replacement concept for defective modules as part of the aftersales service, gives full support and provides the required hardware and software for updating or upgrading communication
systems already in operation in existing networks.
Educate
Well-trained staff that knows how to bring the communication
network to its optimal use is crucial in obtaining the full benets
from the investments. Siemens therefore focuses not only on
providing custom-made communication network solutions, but
also on sharing its knowledge and experience with its others.
Siemens offers a comprehensive training program for the complete area of communication solutions for power supply companies. Training is always tailored to the area of responsibility, as
well as to the corresponding technology and practice.
Plant operators
Consult
Design
Technical
consulting
Documentation
Build
Care
Educate
Project
management
Hotline
Theoretical
training
Engineering
Installation
supervision
Technical
support
Practical
training
Proof of concept
Site survey
R&R
System integration
Commissioning
Upgrades
477