Presentation is loading. Please wait.

Presentation is loading. Please wait.

Network Security For The 21 st Century DYMEC is a Registered Trademark of K-USA, LLC DYMEC - American Industrial SCADA Control * Traffic Control * Security.

Similar presentations


Presentation on theme: "Network Security For The 21 st Century DYMEC is a Registered Trademark of K-USA, LLC DYMEC - American Industrial SCADA Control * Traffic Control * Security."— Presentation transcript:

1 Network Security For The 21 st Century DYMEC is a Registered Trademark of K-USA, LLC DYMEC - American Industrial SCADA Control * Traffic Control * Security and Surveillance * Building Automation * ITS * Railway * Power Utility Welcome KUS A

2 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. DYMEC Sales Representatives: Terry Shelton atlshelton@earthlink.net (303) 229-7068 Ray Renaud rrenaud@dymec.com (919) 280-0420 atlshelton@earthlink.net rrenaud@dymec.com

3 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. **Rebranding Notice DYMEC™ & K-USA Rebranding in 2016 Our Corporate name will remain the same: K-USA, LLC The branding of our products will be unified under the DYMEC name The DYMEC signature line is “American Industrial” All Part Numbers and Specifications will remain the same *DYMEC™ is a Registered Trademark of K-USA,LLC Our web site is now DYMEC.com

4 Copyright ©2014-15 DYMEC / K-USA All rights reserved. Traffic & Public Safety Network Architecture for Intelligent Traffic Systems Network Security for the 21 st Century

5 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved.

6 Introducing New Layer 3 Switch Router: KY-9000RSP  Core networking for Transparent High Security Ethernet Transport – High-density / 28 GbE Ports – 4 X10 Gigabit & 28 X1 Gigabit Pipes – High availability L2 & L3 / MODULAR – MPLS / BGP / OSPF / Multicast  Switch Clustering – creates a virtual core – simplifies configuration & deployment – extends availability end-to-end – reduces equipment costs  Enables 99.999% reliability – Deterministic millisecond failover – IEEE 1588v2  High-performance resiliency  MPLS / BGP / OSPF / Multicast  Simpler design options  Integrated QoS & security  Interoperable for end-to-end service delivery  4 X 10 Gigabit Trunks

7 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. KY-9000RGSP: Layer 3 / MPLS / 28 Port / 10 Gigabit Routing & IEEE1588v2 Precision Timing Managed Layer 3, 28 Port Traffic Ethernet Switch / Router (<10ns Accuracy) A. Hardware Features  3 Personality Module Slots & One 4 X10 Gigabit Slot  Automatic Denial of Service (DOS / DDOS)  FILTERED Power, Dual Power Supply Option  Built with SMART CHIP EMBEDDED Intelligence  Cyber Secure Video / Clean Code Technology  Automatically Prevents DOS / DDOS attacks  Wire Speed Routing & Access Control Lists (ACL’s) B. Industrial Conformance  AC 110/220 Volts ac 50/60 Hz or 24 or 48 Volts dc: – Port & Power Supply Spike Protection. Dual Power Option  -40 ~ 85 Degree C // -40 ~ 185 Degree F  Rack Mount / IP-40 Aluminum case / Fan-less  Automatic Event Notification – Email / Text / Alarm  EMI: FCC Class A, CE EN6100-4-2, CE EN6100-4-3, – CE EN6100-4-4, CE EN6100-4-5 and CE EN6100-4-6  Safety: UL, CUL, CE/EN60950, NEMA TS-2  Stability testing with IEC60068-2-32 (Free fall), – IEC60068-2-27 (Shock) and IEC60068-2-6 (Vibration), NEMA Rack Mount / 10 Gigabit / IEEE 1588v2 / 28 Ports / IEEE 802.3az / MRP // Stackable Switch Traffic Layer 3 Ethernet Switch Router IP Device Binding High Security VLANS with CYBERLOCK IEEE 1588v2 Precision Timing MRP Clean Code & Cyber- Secure Video Technology MAC Black List Q in Q IEEE 802.3az Certified Cisco Replacement

8 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. DY-9000RGSP Protocols & Features Layer 3: Protocols – IPv4  RIP v1 & RIP v2  OSPF v2  BGP4+  PIM-SM, PIM-DM, PIM-Bidirectional, DVMRP  VRRP & MRP KY- 9000RGSP Layer 3: Protocols – IPv6  RIP v6  OSPF v3  BGP4+  MLD v1, MLD v2, PIM-SM, PIM-DM, PIM-Bidirectional Layer 3: Protocols  Supports Static Routing for IPv4 & IPv6  Supports Route Redistribution for IPv4 & IPv6  Supports ModBus TCP Protocol  Supports IEEE 1588v2 Precision clock Synchronization

9 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. DY-9000RGSP Protocols & Features Security & Redundancy Features  VRRP (Virtual Redundancy Routing Protocol) – Replaces HSRP  MRP (Media Redundancy Protocol) aka Super Ring  MRP – IEC 62439-2 / MMRP and MVRP  Supports HTTPS / SSH / SSL Protocols for Security  ACL (Access Control Lists) & IEEE 802.1x – User Authentication KY- 9000RGSP Device Binding Security Effectively binds the IP/MAC Address of the device directly connected to the Switch Port. If the IP/MAC Address of the connecting device does not match the switch port binding information, the device will be blocked for security  Keep Alive Check  Stream Check  DOS / DDOS Prevention FEATURES  Supports Multi Level CLI / GUI Security  Supports LLDP & Jumbo Frames  Supports Port Mirroring & Redundant Power  Supports SNMP / RMON / IEEE 802.1Q VLAN / QinQ

10 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved.

11 KY-9000RGSP: 4 X10 Gigabit SFP+ Slot Uplink Module 4 X 10 Gigabit Uplink Module for the KY-9000RGSP Uplink Trunking Module Industrial 4 Port – 10 Gigabit SFP+ Slot Module KY- SWM-O4GP+-A_4 Temperature Hardened / ESD Protected Supports MRP Full Redundancy Ring Protocol

12 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. KY-9000RGSP: Interface Modules Gigabit Link Module’s for the KY-9000RGSP Industrial 8 Port – Gigabit SFP Slot Module Part Number: KY- SWM-08GP-A Temperature Hardened / ESD Protected 8 X 100/1000Base-X Ports Industrial 8 Port – Gigabit TX Slot Module Part Number: KY- SWM-80GT-A Temperature Hardened / ESD Protected 8 X 10/100/1000Base-T(X) Ports

13 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. KY-9000RGSP: Interface Modules Gigabit Link Module’s for the KY-9000RGSP Industrial 8 Port – Gigabit 4 X 4 SFP/TP Module Part Number: KY- SWM-44GTP-A Temperature Hardened / ESD Protected 4 X 100/1000Base-X SFP SLOTS

14 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. KY-1-Button : Data Backup Unit / Configuration Backup for EZ Maintenance A. Hardware Features/  1 Button Operation  Automatic Data Backup for Switch or Router  1 Button Data Backup for Configuration Backup  Easy Maintenance  Built with SMART CHIP EMBEDDED Intelligence B. Industrial Conformance  Powered by Console Port – No Batteries or External Power Required  -40 to 85 Degree C operational temperature  -40 to 185 Degree F operational temperature  Shatterproof Lexan Casing  Crypto-Lock Protection  EMI: FCC Class A, CE EN6100-4-2, CE EN6100-4-3, CE EN6100-4-4, CE EN6100-4-5 and CE EN6100-4-6  Safety: UL, CUL, CE/EN60950, NEMA TS-2  Stability testing with IEC60068-2-32 (Free fall), IEC60068-2-27 (Shock) and IEC60068-2-6 (Vibration), NEMA Works with K-USA Routers and X Series High Security Ethernet Switches Traffic Data Backup 1 Button Operation Shatterproof Clean Code Technology No Batteries

15 Copyright ©2014-15 DYMEC / K-USA All rights reserved. DYMEC Engineering, Service & Ideas Faster Project Deployment / Shorter Sales Cycle Integrates Account Manager to Customers team as “Trusted Advisor” Faster Project Deployment / Shorter Sales Cycle Integrates Account Manager to Customers team as “Trusted Advisor” Off Site Services – Only Available to Traffic Partners LAYER 2: KY-3170EMx / KY-3182RM /KY-3000EM/ KY-4807EMx LAYER 3: KY-2189RG / KY-4809RGP+ LAYER 2: KY-3170EMx / KY-3182RM /KY-3000EM/ KY-4807EMx LAYER 3: KY-2189RG / KY-4809RGP+ Traffic Specific Switching Products Scalable routing to make the most of any city Fiber network and provide security - at an affordable price 10 Gigabit Backbone Routers – Fanless & Temperature Hardened

16 Copyright ©2014-15 DYMEC / K-USA All rights reserved. DYMEC Engineering, Service & Ideas Copper & Fiber Ports. Power Over Ethernet (POE+) 30 Watt 10, 100, 1000, 10000Mbps Speeds / Din Rail or Rack Mount Copper & Fiber Ports. Power Over Ethernet (POE+) 30 Watt 10, 100, 1000, 10000Mbps Speeds / Din Rail or Rack Mount Ethernet Switches: Rack Mount, Wall Mount & Din Rail Wireless Access Point / Client / Hybrid & Bridge. All fully Encrypted and POE powered for low power and fast deployment. High Security Wireless Products – including M12 Connectorized Redundant Gigabit Routing with up to 4 10 Gigabit links for massive bandwidth across a Fiber infrastructure. ROUTERS: 10 Gigabit / Encrypted Backbone Fanless, Temperature Hardened, Dual Power Supply

17 Copyright ©2014-15 DYMEC / K-USA All rights reserved. DYMEC Engineering, Service & Ideas One Button Operation: English to Spanish, Spanish to English Full GUI Translation One Button Operation: English to Spanish, Spanish to English Full GUI Translation Multi-Lingual Ethernet Switches No PC Required / No FTP Knowledge Require. Backup & Restore complete Switch configuration with 1 Button Dongle One Button Backup Dongle 60 WATT POE Injectors POE+ Injectors Traffic Solution: Traffic Partners Only Product

18 Copyright ©2014-15 DYMEC / K-USA All rights reserved. DYMEC Engineering, Service & Ideas Effectively binds the IP/MAC Address of the device directly connected to the Switch Port. If the IP/MAC Address of the connecting device does not match the switch port binding information, the device will be blocked for security Effectively binds the IP/MAC Address of the device directly connected to the Switch Port. If the IP/MAC Address of the connecting device does not match the switch port binding information, the device will be blocked for security Device Binding (High Security Ethernet Feature) aka Source Guard Keep Alive Check Stream Check DoS / DDoS Auto Prevention Device Binding Actively Blocks Hacker Attacks and Ensures that all bound devices are secure and running well Keep Alive Check Stream Check DoS / DDoS Auto Prevention Device Binding Actively Blocks Hacker Attacks and Ensures that all bound devices are secure and running well Additional Benefits of Device Binding

19 Copyright ©2014-15 DYMEC / K-USA All rights reserved. DYMEC Engineering, Service & Ideas Operates at the MAC Layer of the Ethernet Switch Ring Manager is named Media Redundancy Manager (MRM) Ring Clients are named Media Redundancy Clients (MRCs MRM and MRC Ports Support Status types: Disabled, Blocked or Forwarding. Ring Reconfiguration Speed: 200ms over 50 Switches Redundancy Manager continuously sends Watchdog Packets into the network to check communication between ring points Normally No Packets are transmitted over the redundant link When the Redundancy Manager receives no more Watchdog Packets, the redundant path will be activated immediately. When the failed link goes active – the Redundancy Manager switches back to normal operation. MRP Links are self healing and self adjusting. No operator intervention required. Operates at the MAC Layer of the Ethernet Switch Ring Manager is named Media Redundancy Manager (MRM) Ring Clients are named Media Redundancy Clients (MRCs MRM and MRC Ports Support Status types: Disabled, Blocked or Forwarding. Ring Reconfiguration Speed: 200ms over 50 Switches Redundancy Manager continuously sends Watchdog Packets into the network to check communication between ring points Normally No Packets are transmitted over the redundant link When the Redundancy Manager receives no more Watchdog Packets, the redundant path will be activated immediately. When the failed link goes active – the Redundancy Manager switches back to normal operation. MRP Links are self healing and self adjusting. No operator intervention required. Media Redundancy Protocol (MRP) IEC 62439-2

20 Copyright ©2014-15 DYMEC / K-USA All rights reserved. DYMEC Engineering, Service & Ideas Complete Data Center and Network Management Tools Full Line of Network Engineering and Maintenance Tools Complete Data Center and Network Management Tools Full Line of Network Engineering and Maintenance Tools SOLARWINDS Network Management Heavy Duty Industrial Surge Protection for POE and Non-POE Devices Surge Protection Devices Any Range, Single-Mode, Multi-Mode, or Copper. Temperature Rated Multi-Mode SFP’s Temperature Rated with diagnostics (DDMI) SFP Fiber Optic Modules

21 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved.

22 Copyright ©2014-15 DYMEC / K-USA All rights reserved. SolarWinds Network Management & Engineering Maintenance Tools  Offers a common look & feel across the network.  Enables navigation to all management applications with single sign-on & centralized authentication  Provides integrated workflows for managing unified networks and different vendor equipment  Decreases the learning curve for Network / IT personnel  Delivers simplified deployment and system administration configuration  Offers deployment flexibility Unified Network & Data Center Management LAN + Wireless LAN + WAN + Security + IP Telephony + Servers, Plus Engineering Maintenance Tools

23 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved.

24 Product Overview Layer 3 Routing Layer 3: 28 Port / MPLS / Routing Switch / Rack Mount / Modular  Outdoor Core Switch for Municipal Backbone & Control Centers  High performance, Layer 3, Fan-less, with 4 X 10 GbE Ports  Ultra-resiliency, scalability & UP to 24 X 1 GbE Ports  Protocols: MPLS, OSPF, RIP, BGP, Multicast KY-4809RGP+ KY-2189RG KY- 9000RGSP Layer 3: 20 Port Routing Switch / Din-Rail  Outdoor Core Switch for Municipal Backbone & Control Centers  High performance, Layer 3, Fan-less, with 12 X 1 SFP GbE Ports  Ultra-resiliency, scalability & 8 X 1 TX GbE Ports  Where there is a need for sophisticated IP Routing, Network Security, High Capacity combined with Virtual Re-Route Layer 3: 12 Port Routing Switch / Din-Rail  Outdoor Core Switch for Municipal Backbone & Control Centers  High performance, Layer 3, Fan-less, with 4 X 1 GbE SFP Ports  Ultra-resiliency, scalability & 8 X 1 GbE TX PSE Ports (30 Watt)  Where there is a need for sophisticated IP Routing, Network Security, High Capacity combined with Virtual Re-Route

25 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. KY-2189RG: Layer 3 / Gigabit Routing & IEEE1588v2 Precision Timing Managed Layer 3, 20 Port Traffic Ethernet Switch / Router (<10ns Accuracy) A. Hardware Features  12 X 100/1000Base(X) SFP Slots & – 8 X 10/100/1000Base(T)X RJ45  Automatic Denial of Service (DOS / DDOS)  FILTERED Power, Dual Power Supply Option  Built with SMART CHIP EMBEDDED Intelligence  Cyber Secure Video / Clean Code Technology  Automatically Prevents DOS / DDOS attacks  Wire Speed Routing & Access Control Lists (ACL’s) B. Industrial Conformance  DC Power: 24 or 48 vdc: – Port & Power Supply Spike Protection. Dual Power Option  -40 ~ 85 Degree C // -40 ~ 185 Degree F  Rack Mount / IP-40 Aluminum case / Fan-less  Automatic Event Notification – Email / Text / Alarm  EMI: FCC Class A, CE EN6100-4-2, CE EN6100-4-3, – CE EN6100-4-4, CE EN6100-4-5 and CE EN6100-4-6  Safety: UL, CUL, CE/EN60950, NEMA TS-2  Stability testing with IEC60068-2-32 (Free fall), – IEC60068-2-27 (Shock) and IEC60068-2-6 (Vibration), NEMA Din Rail Mount / Gigabit / IEEE 1588v2 / 20 Ports / IEEE 802.3az / MRP // Layer 3 Router-Switch Traffic Layer 3 Ethernet Switch Router IP Device Binding High Security VLANS with CYBERLOCK IEEE 1588v2 Precision Timing MRP Clean Code & Cyber-Secure Video Technology MAC Black List Q in Q IEEE 802.3az Certified Cisco Replacement

26 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. KY-4809RGP+: Layer 3 / Gigabit Routing, POE+ & IEEE1588v2 Precision Timing Managed, POE+, Layer 3, 12 Port Traffic Ethernet Switch / Router (<10ns Accuracy) A. Hardware Features  4 X 100/1000Base(X) SFP Slots & – 8 X 10/100/1000Base(T)X PSE (30 Watt) RJ45  Automatic Denial of Service (DOS / DDOS)  FILTERED Power, Dual Power Supply Option  Built with SMART CHIP EMBEDDED Intelligence  Cyber Secure Video / Clean Code Technology  Automatically Prevents DOS / DDOS attacks  Wire Speed Routing & Access Control Lists (ACL’s) B. Industrial Conformance  DC Power: 24 or 48 vdc: – Port & Power Supply Spike Protection. Dual Power Option  -40 to 85 Degree C // -40 ~ 185 Degree F  Rack Mount / IP-40 Aluminum case / Fan-less  Automatic Event Notification – Email / Text / Alarm  EMI: FCC Class A, CE EN6100-4-2, CE EN6100-4-3, – CE EN6100-4-4, CE EN6100-4-5 and CE EN6100-4-6  Safety: UL, CUL, CE/EN60950, NEMA TS-2  Stability testing with IEC60068-2-32 (Free fall), – IEC60068-2-27 (Shock) and IEC60068-2-6 (Vibration), NEMA Din Rail Mount / POE+ / Gigabit / IEEE 1588v2 / 20 Ports / IEEE 802.3az / MRP // Layer 3 Router- Switch Traffic Layer 3 Ethernet Switch Router IP Device Binding POE+ High Security VLANS with CYBERLOCK IEEE 1588v2 Precision Timing MRP Clean Code & Cyber- Secure Video Technology MAC Black List Q in Q IEEE 802.3az Certified Cisco Replacement

27 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved.

28 Product Overview KY-TGAP –W712+ Traffic EN50155, Wireless Access Point, IEEE 802.11 a/b/g/n  High Speed Wireless Connectivity  Supports Up to 300 Mbps Link Speeds  IP67 Grade Waterproof Housing  Temperature Hardened (-40 ~ 85 Degree C) KY-TGAP- W712+ High Security Ethernet – Fully Encrypted  WEP / WPA / WPA-PSK / TKIP / AES / WPA2 / WPA2-PSK  IEEE 802.1x / IP – MAC Locking  Cyber-Secure Wireless & HTTPS  Supports Multiple SSID’s (Up to 4) Supports AP / Client / Bridge / AP-Client Modes & X Roaming  Wireless Load Balancing  Event Notification: Email, SNMP Trap, Relay Output & Syslog  1 X 1 GbE TX PD Ports (IEEE 802.3af) <15 Watts  Easy Installation / N-Type Antenna / POE Powered Device

29 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. Wireless Encryption Standards Old Encryption Standards  Wired Equivalent Privacy (WEP) September 1999 // 64, 128 & 256 Bit Encryption  Easily Cracked / Now Superseded  WiFi Protected Access (WPA) September 1999 // 256 Bit Encryption // Has TKIP or AES Additions  TKIP – Temporal Key Integrity Protocol (Easily Exploited)  AES – Advanced Encryption Standard Newer Encryption Standards  WiFi Protected Access 2 (WPA2) Mandates the use of AES only  Introduces CCMP (Counter Cipher Mode with Block Chaining Message Authentication Code  IEEE 802.1x / IP – MAC Locking (Added to Encryption – Best form of Security) Strongest to Weakest Encryption Standards for Implementation  WPA2 plus AES  WPA plus AES  WPA plus TKIP / AES (TKIP used as a fall-back method)  WPA plus TKIP  WEP  OPEN Network (No security at all)

30 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. Questions or Feedback?

31 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. Thank You

32 Copyright - ©2014 DYMEC / K-USA Inc. All rights reserved. 2016 Cutover Completed


Download ppt "Network Security For The 21 st Century DYMEC is a Registered Trademark of K-USA, LLC DYMEC - American Industrial SCADA Control * Traffic Control * Security."

Similar presentations


Ads by Google