
Wireless Intersection System
EDR-810
Wireless
Modem
Modem
Traffic
Signal
Controller
Internet
Traffic Control Center
VPN
VPN
moxa.com/secure_ITS
Extend Cybersecurity
Throughout Your Entire Network
Enhance Security without Raising Costs
Security waits for no one, especially in around-the-clock
industrial automation applications. To protect your mission-
critical networks, Moxa provides a series of Gigabit secure
routers that protect remote access to eld devices through
public networks and facilitate layered defense-in-depth
network security for automation networks.
The EDR series provides up to 150 Mbps VPN throughput
and 500 Mbps rewall throughput for both secure remote
access and critical infrastructure protection. In addition,
Moxa has added layer 2 switching functions to the EDR-810
rewall/NAT/VPN router. Using this router/switch combo
solution, customers can extend pervasive network security
throughout the entire network without raising costs.
Critical Device Protection
The EDR series provides rewall
protection for critical network devices
such as PLCs, RTUs, and DCS, as well
as support for industrial protocols.
Secure Remote Access
Using IPSec and L2TP technologies,
the EDR-810 can set up 10 encrypted
VPN tunnels for secure remote access
between industrial networks and remote
applications, such as water treatment, oil
and gas, power, or ITS networks.
TCP Packet Inspection
All EDR routers come with
PacketGuard™ inspection software to
perform deep Modbus TCP protocol
inspection and automation network data
ltering with a simple click.
EDR-810
Secure Router/
Switch Combo
The EDR-810 is a multiport industrial secure
router with L2 switch functions that reduce
deployment costs and eort. This solution
excels in remote eld monitoring and
maintenance, small-scale control networks,
or control cells partitioned by function.
• 8+2G for 1 WAN and 15 LAN interfaces
• Firewall/NAT/VPN/Switch/Router
• Built-in Modbus TCP deep packet inspection
• Cost-saving with multiport connectivity
Wired and Wireless Collaborated Security
Moxa's 2G/3G cellular devices can be used with the
EDR series secure router to establish reliable VPN
connections and extend secure remote access beyond
wired communication.
ANSI/ISA-99 (IEC 62443) standards lay
out the best practices for industrial control
system (ICS) security. In the ANSI/ISA-
99 model, ICS devices are segmented
into independent function zones that
communicate through rewall-protected
"conduits."
Moxa oers a complete portfolio of
cybersecurity solutions to help you deploy
a defense-in-depth security infrastructure
that expands security coverage on your
automation network at various locations:
• Protect the entire local site and secure
remote data transmissions from the control
centers.
• Protect data transmissions from multiple
device cells and critical devices.
• Protect the data collected from multiple
eld devices, including I/O devices, meters,
and IP cameras.
Model EDR-G903 EDR-G902 EDR-810
Target requirement
Dual WAN redundancy Security between WAN and LAN communication Multiple ports for direct device connections
Interface
2 WANs (Combo); 1 LAN (Combo) 1 WAN (Combo); 1 LAN (RJ45) 1 WAN; 15 LANs (SFP fiber or RJ45)
Throughput
500 Mbps (40,000 fps) 300 Mbps (25,000 fps) 100 Mbps (10,000 fps)
Firewall/NAT
512/256 policies 256/128 policies 256/128 policies
VPN
100 IPSec tunnels 50 IPSec tunnels 10 IPSec tunnels
WAN backup
Dual WANs – –
DMZ
1 – –
Multi-Layer, Defense-in-Depth
Secure Traffic Signal Controls
A municipal trac signal control system
in the US adopted the EDR-810-VPN to
facilitate encrypted network connections
between 115 intersections and the trac
control center.
Solution & Benets
• 8 + 2G ports for Ethernet and VPN
connections
• 20 Mbps VPN bandwidth for remote
communication and centralized control
• Dual power inputs for redundancy
• NEMA TS2 compliance
An ITS Story from the U.S.
Cybersecurity in Factory Automation
A world-leading consumer goods
manufacturer used the EDR-810 to protect
and connect its production networks.
Solution & Benets
• 8 + 2G ports for Ethernet and rewall
connections
• Factory network segmentation and ltering
A Factory Automation Story from the U.S.
• OnCell 5004/5104-HSPA
Industrial ve-band HSPA cellular routers
• OnCell G3110/G3150-HSPA
Industrial ve-band HSPA IP gateways
No.1
Security
Defender
Secure Routers
• Convenient Router/Switch Combo
for Reduced Costs
• VPN Tunnels for Secure Remote
Access
• Firewalls for Critical
Asset Protection
• Built-in Modbus
TCP Packet
Inspection
5 6
Comentários a estes Manuais