PLCs, DCSs & Controllers


Connecting to the PLC from a remote location

January 2008 PLCs, DCSs & Controllers

Internet access process control

Industrial automation is no longer limited by the walls of a production facility. More and more automation is being handled via remote communication, whether it is from the office or from the comfort of your own home. Today's PLCs give you the ability to access your control system to handle such tasks as monitoring via a website to determine the condition of a machine or check other statistics. With the latest PLC technology, almost anything that can be accomplished next to the machine can be accomplished wherever there is an Internet connection.

Remote connection to the PLC

The latest generation of PLCs have an integrated Ethernet port on the controller for two main operations. The first is controlling remote (Input/Output) I/O on Ethernet-based protocols like EtherNet/IP, Profinet, or Modbus/TCP. The second is to program and/or debug the internal program of the controller. With these features, and utilising the Ethernet's other services such as a web and FTP server, remote administration of a control process becomes possible.

The first step in connecting remotely is to set up the controller to handle communication from both the local network as well as handle messages from a wider network such as the Internet. This is accomplished by adding a gateway address to the Ethernet communication settings on the controller. Thereby, allowing the controller to send and receive IP messages that are not established inside the local network.

This gateway address is usually assigned to an Ethernet router. Routers provide a way of directing IP traffic to the correct Ethernet device inside the LAN (local area network). Routers come in all shapes and sizes; from a computer (with two NIC cards and routing software) to an off-the-shelf broadband router, both handle the communication traffic pretty much the same way. The most common way of routing network traffic between a LAN and wide area network (WAN) is to use a network address translation (NAT). NAT provides a way of taking a single IP address, supplied by the Internet service provider (ISP), and allowing multiple devices to share the same Internet connection.

Unfortunately, the NAT does not provide a true end-to-end connection. This means, by default, that a TCP connection established outside the local network may not be able to connect with the destination device - due to the fact the IP address of the destination device is hidden behind the router. In order for this type of communication to occur, the process of port forwarding must be used. Port forwarding occurs when communication from outside the network sends a message to the router's IP address; the router determines where to send the packet based on the port number. NAT lack of end-to-end connectivity may be considered a problem in some circumstances but it also provides a simple means of network protection.

Protection

By attaching a programmable logic controller to a network with Internet access, the device will be exposed to all of the same possible security threats as a computer.

One of the best security measures is to select a controller that utilises an embedded operating system not popularly used by the consumer public. This helps keep the PLC from being vulnerable to attackers using known exploits to the operating system because the knowledge base is much smaller. 'Security through obscurity' is the phrase coined by this type of security measure.

In addition, a properly configured router can provide effective protection for the control network from potential attacks. Utilising the lack of end-to-end connectivity prevents most unsolicited requests for communication outside the local area network. When setting up a router, be sure to limit the amount of open ports. For example, an open FTP port can lead to a possible exploit by uploading a program to override the operation of the controller. The best rule of thumb is never keep a port open that is not being used regularly.

For increased protection, a virtual private network (VPN) can be set up to increase the security by encrypting the data transmission when travelling over a public network - such as the Internet. Instead of opening all the ports that are needed to handle communication to the control network, one single authenticated network port passes the encrypted communication so the user can have all of the access as if they were inside the local area network.

Summary

By applying these simple techniques to modern day control networks, new options are available for the control design. Data collection over great distances is one of the best uses for this technology. Control systems can be more easily integrated within a business network for coupling the supply chain management to the factory floor.

For more information contact Paul Bouwer, Shorrock Automation, +27 (0)12 345 4449, [email protected], www.shorrock.co.za





Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

ABB updates distributed control system
ABB South Africa PLCs, DCSs & Controllers
Leveraging 30 years of continuous innovation and reliability, ABB’s updated Freelance 2024 distributed control system (DCS) offers greater plant adaptability, faster and more reliable device communication, improved system security, and seamless data exchange.

Read more...
Four ways modern operations control can boost sustainability and efficiency
PLCs, DCSs & Controllers
With the growing importance of digital transformation, HMIs and scada have evolved from control panels to vast operational hubs. Next-gen HMI/scada can bring together data, personalisation, and advanced insights to successfully achieve organisational goals, it is important to think about HMI/scada holistically within the operations ecosystem.

Read more...
The convergence of intelligence: DCS, SCADA and TLC
Schneider Electric South Africa PLCs, DCSs & Controllers
In the early days of industrialisation, control systems were primarily mechanical, and relied on manual intervention and simple feedback loops to manage processes. Now, in the 21st century, industrial process automation systems are mind-blowingly intelligent, and provide almost unparalleled control and monitoring capabilities, making them integral to modern industrial systems.

Read more...
PC-based control for advanced hydrogen storage technology
Beckhoff Automation Editor's Choice PLCs, DCSs & Controllers
The proportion of renewable energies from solar, wind and water is rising continuously. However, sufficient storage options are of the essence to use these energies as efficiently as possible. GKN Hydrogen offers a particularly compact and safe option, low-pressure metal hydride hydrogen storage systems with PC-based control from Beckhoff.

Read more...
ABB modernises key board mill
ABB South Africa PLCs, DCSs & Controllers
ABB has secured a landmark contract to modernise Smurfit Kappa’s Paper Machine 5 at its corrugated cardboard mill near Mexico City. ABB will provide Smurfit Kappa with DCS, accompanied by a comprehensive paper machine drives system, encompassing some of the market’s most advanced drives and motors meticulously designed to optimise PM5’s performance.

Read more...
The synapses of the distributed control system
Schneider Electric South Africa PLCs, DCSs & Controllers
Industrial operations require a distributed control system (DCS) to coordinate and control their process subsystems in real time. Like the brain, a DCS is a multitasking maestro, controlling and coordinating complex processes in a myriad of industrial setting such as large manufacturing plants, providing valuable top-down control.

Read more...
Modular assembly platform for clean manufacturing
Beckhoff Automation PLCs, DCSs & Controllers
JR Automation delivers custom automated solutions for numerous industries. It has done this through its scalable, modular automation platform, FlexChassis, which speeds up time to market while cutting costs. The company chose the XTS linear transport system from Beckhoff because of its speed, and modular design that allows for multiple configurations.

Read more...
Selecting the best remote access solution for your application
PLCs, DCSs & Controllers
In today’s Internet of Things (IoT) world, remote mobile access is a necessity for many industrial applications. There are several ways of implementing this connectivity with routers and virtual private networks.

Read more...
PLCs and PACs simplify data acquisition
PLCs, DCSs & Controllers
Data acquisition, data logging and data analysis are required functions for most modern industrial control systems. The simplest and lowest cost way to provide these functions is often by using the same platform providing real-time control, namely the PLC or the PAC.

Read more...
Small-scale custom development in the information age
H3iSquared PLCs, DCSs & Controllers
In the twenty-first century, the ability to put together custom electronic devices has become much more accessible to smaller companies, and even the private user. With the open nature of these platforms, potential developers can start learning systems easily, and do not need a massive capital output to do so.

Read more...