IT, OT and PCS 7 in Harmony

The balancing act of reconciling the conflicting requirements of the IT and OT worlds was essential for the new construction of a coating plant. When setting up the large networked control technology system, not only IT knowledge but also control technology system knowledge was required. We were able to provide support here.

  • IT/OT-Security

IT, OT and PCS 7 in Harmony

Concept and Realization of a Coating System

KRIKO was commissioned with the detailed design of a "state of the art" IT and control technology system as early as the pre-planning phase. Our customer was planning the new construction of a large and complex coating plant. Especially when setting up a large networked control technology system, not only IT knowledge but also in-depth control technology system knowledge is required in order to be able to take into account the "specialties" that exist in the OT world. It is precisely this balancing act of reconciling the conflicting requirements of the IT and OT worlds that is one of our core competencies. A tailor-made system structure was developed for this system too. 

Requirements for KRIKO

  • Modern architecture and high availability
  • IT / OT security
  • Structured PCS 7 engineering
     

The customer's challenge

  • Balancing conflicting requirements from the IT and OT worlds

     

The solution from KRIKO

Modern architecture and high availability

The computer infrastructure was installed on a virtual environment. It comprises three hosts with a central storage area network (SAN). To increase availability and minimize downtimes, the hardware components were equipped with redundancy. Should a host nevertheless fail, then the affected virtual machines (VMs) are automatically restarted on the remaining hosts. Thanks to the universal structure of the virtual system, it was also possible to use other VMs with applications such as the KRIS process optimization system or the PRTG network monitoring system in addition to the control technology computers.

 

IT /OT Security

Redundant firewalls are used to protect against unauthorized and dangerous access. The protection is based on ATP services (Advanced Threat Protection), which check network traffic for threats such as viruses or malware. Service access for external companies is provided via a jump server in the demilitarized zone (DMZ). It avoids direct access and ensures controlled, monitored and secure access to the target systems. Access rights, passwords and users are managed centrally for the entire network via redundant domain controllers (DC).


Structured PCS 7 engineering

Due to the large number of suppliers involved in a major new-build project, there is a great risk of isolated solutions during programming. To avoid this, KRIKO was not only given overall responsibility for the design and construction of the PCS 7 control technology system, but was also entrusted with the development of universally suitable sample solutions. These tested sample solutions were implemented by KRIKO as Control Module Types (CMT) and bindingly specified to the suppliers. However, as not every system manufacturer is experienced in working with PCS 7, KRIKO was available to the companies involved as a competent contact and consultant throughout the entire duration of the project. This approach resulted in a structured and standardized control system despite the wide variety of suppliers.


Such a complex control technology project in particular shows that a great deal of experience in IT, OT and control technology is required for successful completion. KRIKO is exactly the right partner for these requirements.

Why with KRIKO

Benefits for the Customer

IT/OT Convergence: Thanks to our ability to reconcile the conflicting requirements of the IT and OT worlds, we were able to develop a customized system structure for the plant.

Availability: Increased availability and minimized downtimes thanks to redundant hardware components.

Security: Controlled, monitored and secure access to the target systems through a DMZ.

Overall responsibility: Avoidance of isolated solutions by assuming overall responsibility for the design and development of the PCS 7 control technology system.

Technologies used

  • Computer infrastructure on virtual environment with three hosts with central storage area network
  • Process optimization system KRIS
  • Network monitoring system PRTG
  • Redundant firewalls
  • Siemens PCS 7 with CMT (Control Module Types)
     

Do you need support with your project? Contact us now!
We look forward to your inquiry!


Go to the contact persons