You are on page 1of 1

Cisco Connected Factory Architecture

Part of the Cisco Internet of Everything (IoE) Vertical Solutions Portfolio cisco.com/go/connectedfactory

Cisco Connected Factory Solutions Cisco Connected Factory Architecture is a validated prescriptive guide Site of a Supplier or a Distributor

for organizations with 100 to 100,000 IP connected plant devices. Internet Edge
Partner Connectivity Gateway
Data Center

Cisco Connected Factory is a portfolio of validated,


proven architectures, capabilities and market-leading cisco.com/go/designzone
technologies and services for industrial markets. Our
solutions include: Plant Branch IT Network Manufacturing Headquarters
Hardware
Enterprise and Software
VPN
Factory Automation Catalyst Switch Active Directory,
Application servers
Internet Teleworker/
Mobile Worker
UCS Rack-mount
Servers
UCS Rack-mount UCS Blade
A single network of integrated manufacturing systems – converging Guest WLC Anchor
Si Si ISE Primary
Enterprise WLC Anchor
Server Chassis

sensors, machines, cells and zones. Catalyst 3750-X PSTN


WAAS Storage
Central Manager
IDMZ Access WAN
IDMZ NTP Server Nexus
Factory Wireless File Transfer Server Switch Router
2000 Communications
Remote Desktop Gateway Server Catalyst 3750-X Remote Site
Managers
Internet Edge
Unified wireless for industrial applications and devices to lower AV Server
WAAS
costs, speed decision making, and increase factory output. or Virtual Machines Internet
Failover Access Routers Data Center
Switches Firewalls
ASA 55xx-X (Active) ASA 55xx-X (Standby) Nexus 5500
Supports asset tracking, AGV’s, wireless tooling, and mobile Wireless LAN
Controllers
Voice Data Center
controls visibility.
Network Wireless LAN
Application Servers Services Routers
Controller
Industrial NTP Server Internet
Catalyst RA-VPN Firewall
Active Directory Server Remote Distribution
6500/4500 Access
Factory Security
Switches Guest Wireless
Remote Access Server Server DMZ
Identity Services LAN Controller
Engine (ISE) Switch

A defense-in-depth strategy and architecture provides improved or Virtual Machines Policy Service Node
WAN Web
Core
Switches

security through granular control of plant network access by Industrial Zone Access
Switches
Routers Security
Appliance
DMZ
Servers

user, device, and location. Adds plant security for both digital and Catalyst 3750 StackWise Switch Stack
Wireless LAN
W ww
W ww
Email Security
Appliance
MPLS
physical assets. Regional Site Controller
WANs

VFD AP VPN Distribution


WAN
Factory Energy Management HMI Access
Switch
Routers
Switches

WGB WAN
Provides real-time visibility into valuable energy use information by Controller
AP AP Stack
PSTN
Routers User
Access
I/O
enabling intelligent IoE applications, such as analytic engines that HMI
Layers

WGB WGB I/O HMI


communicate with machine sensors, to stream detailed operational VFD WAAS

data between the plants and higher-level systems. I/O


Cell/Area #1 Controller Cell/Area #2 Controller Roaming I/O Drive Cell/Area #3 WAN
Aggregation
Remote Site Wireless
LAN Controllers
Plant Office
WAAS

Converged Plantwide Ethernet (CPwE) Cisco Connected Factory Products: Rugged, Secure, Reliable
A joint Cisco and Rockwell Automation architecture
Wired Security Management

Enterprise Network Level 5

Enterprise Zone IE4000: Layer 2/3 access DIN-rail mounted IE2000: Compact, secure, fixed hardened Layer 2 access IE3000: Compact, secure, modular hardened Layer IE3010: 1 RU, fixed, hardened switch with IE5000: L2/L3 Hardened Rack Mount Aggregation Switch Cisco ASA 5515: Provides Firewall
switch with REP, IEEE 1588, Ethernet/IP, DIN-rail mounted switch with REP, IEEE 1588, Ethernet/IP, 2/3 access DIN-rail mounted switch with REP, IEEE REP support; 2 x GE & up to 24 FE ports with 10GE uplink ports, 12 GE SFP fiber and PoE/PoE+, protection, combined with industry-
Site Business Planning and Logistics Network Level 4 PROFINET support; 4 x GE uplink ports, and up PROFINET support; 2 x GE & 4, 8, or 16 x FE ports, swappable 1588, Ethernet/IP, PROFINET support; 2 x GE & up to (copper) or 16 FE SFP and 8 FE (with PoE), 4 x 10GE SFP+ or 4 GE SFP uplinks. leading Sourcefire threat and advanced
to 16 GE fiber/copper downlinks. flash memory. NAT PoE and conformal coating available. 24 FE ports, swappable flash memory. PoE available. swappable flash memory. malware protection.

Demilitarized Zone

Manufacturing Stratix 5400™: 4 x GE uplink ports with Allen-Bradley Stratix 5700™: Industrial Ethernet Switches Allen-Bradley Stratix 8000™: Industrial Ethernet Allen Bradley Stratix 5900™: Hardened ArmorStratix 5700™: IP67 Rated IE2000: Identity Services Engine (ISE): Security
Site Manufacturing Operations and Control Level 3 layer 2 switching and layer 3 routing, additional L2/L3, Modular, DIN rail mounting, with Cisco technology, Switches L2/L3, Modular, DIN rail mounting, with Cisco Security router with Cisco Technology for L2 Ethernet Switch with L2 Ethernet Switch policy management and control platform.
Zone
Gigabit (GE) Power over Ethernet (PoE), and Premier (CIP) integration with Rockwell Automation technology, Premier (CIP) integration with Rockwell zone based firewall, including VPN, IPSec, IP67 protection. with IP67 protection. Automates and simplifies access control
GE fiber ports. Premier (CIP) integration with Integrated Architecture. Automation Integrated Architecture. and QoS with web management tool. and provides identity services by user,
Rockwell Automation Integrated Architecture. device, and location.
Area Supervisory Control Level 2

Cell/Area Zone Basic Control Level 1


Wireless
Process Level 0

Allen Bradley Stratix 5100™ Wireless Access Aironet 3700AP: 802.11ac wave Aironet IW 3700AP (IP67): 3602E Wireless Access Point: Extended Cisco Wireless LAN Controller 5508: Support 819 M2M: Secure, hardened, small Rugged Small form-factor Pluggables (SFP):
Safety Zone Safety-Critical Point (AP): 802.11n Wi-Fi autonomous 1 provides rate of up to 1.3 Gbps. Same capabilities as the temperature, secure, 802.11a/b/g/n for up to 500 access points, 802.11n and form factor Cisco IOS router with Rugged FE and GE SMF and MMF optical transceiver
access point. 3x4 MIMO technology with three 4x4 Multiple Input Multiple Output Aironet 3700 Series Access Wi-Fi AP, CleanAir and PoE powered. 802.11ac networks, manages 500 access points Firewall, VPN and 3G, 3G + Wi-Fi modules with LC/PC connector and DOM support.
spatial streams. External antennas. Integrated (MIMO) configuration. Supports Point with an internal antenna. simultaneously. or 4G LTE wireless WAN.
Common Industrial Protocol (CIP) stack. three spatial streams (3SS).

© 2015 Cisco and/or its affiliates. All rights reserved. Third party trademarks mentioned are the property of their respective owners. DEC15CS4752 06/15

15CS4752_Connected_Factory_Architecture_Poster-24x36_Final3.indd 1 6/5/15 3:33 PM

You might also like