Download as pdf or txt
Download as pdf or txt
You are on page 1of 4

Data Sheet

3180
Compact Service-Aware Industrial Ethernet Switch

 Compact switch with up to 16x10/100 and 2x100/1000 SFP ports


 Optional 8 Multi-Mode or Single Mode ports
Secure Industrial  Optional 4 POE ports
Ethernet Solution  Advanced Ethernet switching and IP routing feature-set
 Application-aware firewall per port
 Integrated VPN agent for inter-site connectivity or remote user access
 RS-232 ports with protocol gateway functionality
 Optional cellular 2G/3G modem with 2 SIM cards for operator redundancy
 Optional SHDSL modem interface
 Optional WiFi interface for user Access point
 Wide range of power input options AC/DC
 Fit to harsh industrial environment
 Combined with the 3300/3700 modular systems for a large-scale network
 Supported by RADiFlow industrial service management tool (iSIM)
3180
Compact Service-aware Industrial Ethernet Switch

The RADiFlow Service-aware Industrial SMART GRID INFRASTRUCTURE UTILITY INFRASTRUCTURE


Ethernet switches combine a ruggedized Smart grid solutions optimize the electricity In the modern era national utility infrastructure
Ethernet platform with a unique application- network by adding distributed mini-generators, operators need to connect their remote
aware processing engine. enhancing the distributed automation of the distributed sites to the SCADA control center.
As an Industrial Ethernet switch the RADiFlow grid and dynamically adjusting the power Such communication between distributed
switches provide a strong packet processing consumption of the consumers. utility sites must be served using highly
feature-set with a special emphasis on the fit Secondary sub-stations have thus evolved into integrated switches for cost and space savings
to the mission-critical industrial environment: intelligent distributed sites keeping online while ensuring a reliable and secure services.
 Fit to the harsh environment conditions communication with the control center. Main benefits:
 Robust system design ensuring high The compact 3180 switch was designed to  Fit to the out-door environmental
reliability of the product optimize the network infrastructure of such conditions
 Support for network resiliency schemes to distributed applications as the smart grid. It is  Compact switch with flexible mix of
ensure end-to-end high-availability a natural fit for installation at the MV/LV Ethernet port types.
Transformation Sites acting as the secure  Shdsl modem integrated, allows p2p
In addition the RADiFlow switches have access point for the Distributed Automation
unique service-aware capabilities that enable Ethernet extension.
control at these remote sites.  Optional serial port for connection of
an integrated handling of application-level Main Benefits:
requirements such as implementation of legacy user equipment
 A compact, industrial design holding a  Optional cellular modem integrated in the
security measures. variety of interfaces including cellular. switch with 2 SIM cards and usage of
Such an integrated solution results in simple  Secure VPN service for remote sites over encrypted tunnels over the public network
network architecture with an optimized fit to the public network.  Distributed firewalls throughout the
the application requirements.  Unique firewall capabilities to maintain network to isolate the various logical
secure networking and validate data functions and to control the traffic that
collection from smart meters and DA. flows between the sites
 RS-232 ports for serial services protocol  VPN agent for secure connection from
gateway for IEC101/IEC 104 and DNP3
remote maintenance

Figure 1. Simple yet secure connection for Smart-Grid secondary sub-stations using the 3180 switch
Data Sheet

RUGGEDIZED COMPACT SYSTEM APPLICATION-AWARE SECURITY MULTI-SERVICE INTERFACES


The 3180 switch is a compact switch with The RADiFlow switch contain an integrated The 3180 switches supports RS-232 serial
8x10/100TX ports and up to 2x10/100/1000 firewall on each port, providing a network- interface with serial data tunneling or service
SFP ports thus suitable for robust aggregation based distributed security solution equivalent gateway to IP-based industrial protocols.
and Ethernet ring with shared link over FO. to the use of personal firewalls on all the Optional SHDSL interface for Ethernet
The switch is designed for installation in harsh industrial systems in the factory. extensions. East/West ports.
industrial applications including DIN-rail The firewall implemented in the switch is
mount, IP30 protection level, -40° to +75° "application-aware", meaning that it inspects The 3180 can offer an integrated cellular
operating temperature range with no fans, the contents of the data packets according to 2G/3G modem for easy connectivity of remote
ATEX class 2 hazardous environment, EMI the rules of the industrial protocol used. This sites. 2 SIM cards are supported by the
immunity according to IEC61850-3, IEEE1613 firewall is operated according to user-defined modem to choose between 2 cellular
and EN50121-4, etc. access-rules for each end-device up to the operators based on the dynamic monitoring of
level of the industrial protocol command their network quality.
NETWORK RESILIENCY parameters.
The RADiFlow switches support Ethernet rings The switch also contains a VPN gateway with Wi-Fi interface is optionally available as
according to the ITU-T G.8032 standard. This 2 operation modes: Inter-site connectivity Access Point for user wireless connection to
standard-based ring protection is the preferred using IPSec tunnels and remote user access the switch services.
method of data-path resiliency ensuring fast using SSH.
failure detection and switchover regardless of For the inter-site VPN the switch uses SERVICE MANAGEMENT TOOL
the scale of the network. GRE tunnels over an IPSec encrypted link. The RADiFlow switches are best utilized when
Traditional resiliency protocols such as RSTP The usage of IPSec encryption ensures the operating their network-wide features using
and MSTP are also supported for tree-based privacy of the link while the usage of GRE the iSIM central management tool without
networks. tunneling enables the transparent connection requiring in-depth IT know-how.
In order to use a unified Ethernet network of the Ethernet networks sites. The iSIM presents the network topology in a
across the factory but still isolate the traffic For remote access the switch uses a SSH- graphical map view enabling the provisioning
between different groups of devices, service encrypted tunnel, with user authentication and of service connections between the industrial
groups are created using Ethernet VLANs. specific access authorizations. Over the SSH end-devices with detailed security rules. The
Such network setup enables the enforcement tunnel any protocol can be redirected in the user comfortably configures application-aware
of quality-of-service and security measures on remote host and the gateway will implement a security rules for each pair of end-devices
each service group regardless of the scale of proxy to securely transfer this protocol to the starting from the protocol level and up to the
the network. target device. specific parameters of the industrial protocols.
The iSIM allows easy operation and
monitoring of the network including: Network
alarms log, Security violations log and link
utilization statistics.

Figure 2. Distributed firewall configuration


3180
Compact Service-aware Industrial Ethernet Switch

MANAGEMENT TOOLS
SECURITY

Specifications are subject to change without prior notice.  2011 RADiFlow Ltd.
Specifications
NETWORK MANAGEMENT
ACCESS CONTROL
NETWORKING Network elements auto-discovery
Enable/Disable port
End-to-End service groups provisioning
ADVANCED LAYER 2 FEATURE-SET Port access filter per MAC / IP addresses
Network performance & diagnostics tools
Local and remote authentication (radius)
ITU-T G.8032 Ethernet ring (<50mS recovery)
SNMPv3
IEEE 802.1s MSTP, 802.1w RSTP Ordering
IEEE 802.3ad LAG with LACP
SERVICE VALIDATION RF-3180<P><T><C><S><E><R><W><PE>
IEEE 802.1q VLAN tagging
Egress filtering per VLAN P – Input Power
IEEE 802.1p per port queues
Application-aware firewall on each port  24 - 24V DC (range : 18-32v DC)
1588v2 transparent clock
analyzing industrial protocols  48 - 48V DC (range : 36-60v DC)
Jumbo frames supported
 110 – 110V DC (range : 85 -135v DC)
INDUSTRIAL VPN AGENT  220 – 220V DC (range : 170 -270v DC)
LAYER 3 FEATURE-SET
Remote access using SSH tunnel  AC – 110/230V AC (range : 90 – 250v AC)
Static routing T - Temperature range
Layer 2 GRE Transparent Ethernet Bridging
OSPF, RIPv2, VRRP Routing  ST – 0°÷60°C
Layer 3 GRE DM-VPN  ET – -40°÷75°C
MULTICAST IPSec encryption: C – Cellular interface
L2 Multicast with guaranteed QoS User policy for traffic type.  CEL1 – with dual SIM GPRS/UMTS
IGMP Snooping for traffic optimization IKE ,AES or 3DES encryption S – SHDL modem
Dynamic key exchange  S1 – with SHDSL modem
BRIDGING SERIAL STREAMS NAT traversal E – Ethernet interfaces
Transparent tunneling serial streams  ET08 – 0xSFP + 8xRJ45
 ET04 – 0xSFP + 4xRJ45
Protocol Gateway - Serial to Ethernet (Modbus,
IEC101/104, DNP3.0)  ET28 – 2xSFP + 8xRJ45
PHYSICAL DESIGN  ET24 – 2xSFP + 4xRJ45
Terminal Server
DIN rail mounting, optional wall mount  ET016 – 0xSFP + 16xRJ45
Rugged enclosure - IP 30 rated, No fans  ET216 – 2xSFP + 16xRJ45
INTERFACE VARIANTS
Operating temperature: -40 to 75°C  ET28/8MM – 2xSFP + 8xRJ45 +8xFE MM
4, 8 or 16 x 10/100 TX ports
Operating Humidity: 5%-95%  ET28/8SM – 2xSFP + 8xRJ45 +8xFE SM
0 or 8 Multi-Mode / Single Mode ports
PE – POE ports, 30w max per port
0 or 4 POE Tx ports, 30w max per port Dimensions 3180 (HxWxD) 148x72x123[mm]
 PE4 – 4 POE ports (of total RJ45 ports)
Up to 2 x 100/1000 SFP ports Dimensions 3140 (HxWxD) 148x51x123[mm]
R – 4x RS232 ports
Up to 4x RS-232 ports DC 24V/48V power supply with 2 power inputs
W – WiFi Access point
Optional 2G/3G cellular modem IEC 61850-3/IEEE1613 EMI
Optional SHDSL modem EN50121-4 Vibration and Shock resistance RF-3180SL-IPR
IP routing license
Discrete IO for user-defined triggers
Optional WiFi Access Point interface.
RF-3180SL-SEC
Security license
SFPs
Ethernet Optic MM/SM and Copper

4 Hanehoshet Street
Tel Aviv 69710, Israel
E-mail: info@radiflow.com

www.radiflow.com

You might also like