The leader in industrial automation and control solutions

What is a node?

In computer networking, a node is any physical or virtual device that is part of a network. This includes hosts like HMIs and PLCs, as well as devices that help manage network traffic, such as routers, switches, and access points.

What is a host?

A host is any device that connects to a network and can send or receive data. This includes computers, servers, PLCs, HMIs, smartphones, tablets, printers, and much more

What is Class of Service (CoS)?

Class of Service (CoS) is a networking feature that prioritizes data traffic to improve performance and reduce latency. CoS is defined by the IEEE 802.1p standard, which assigns priority levels to network packets and is commonly used in industrial automation, VoIP, and video streaming, where certain data needs higher priority. CoS helps ensure critical traffic, like SCADA commands, is delivered without delays. CoS is implemented at Layer 2 using VLAN tagging to classify and prioritize network traffic.

Example Scenario: Real-Time SCADA Communication with CoS:

In a SCADA system, an HMI sends real-time control commands to a PLC over a managed switch. Without CoS, critical control packets may compete with regular network traffic, causing delays. CoS assigns higher priority to control data, ensuring immediate delivery even during network congestion preventing communication delays between the HMI and PLC, maintaining real-time system responsiveness. As a result, industrial processes run smoothly without interruptions or unsafe conditions.

What is a Jumbo Frame?

Jumbo Frame is an Ethernet frame with a Maximum Transmission Unit (MTU) larger than the standard 1500-byte size, typically supporting 9000 bytes or more. This larger MTU reduces the overhead for data transmission, improving network efficiency. Jumbo Frames are often used in high-performance networks to increase throughput, reduce CPU load, and optimize large data transfers.…

What is Bridge Mode?

Bridge Mode allows a device to function as a network switch, forwarding traffic between LAN ports without modifying packet data. This creates a seamless connection between devices, enabling communication as if they were on the same network. All LAN ports operate as a single network segment, relaying traffic without performing NAT. This mode is useful for extending networks, reducing bottlenecks, and maintaining transparent data flow. Proper configuration of Bridge Mode helps prevent unintended network issues and security risks.

What is Log4j Vulnerability?

“Maple Systems HMIs are not affected by CVE-2021-44228, also known as Log4shell, and related vulnerabilities including CVE-2021-45046 and CVE-2021-45105. Users of Maple Systems HMIs do not have to take any further action.”

Background

Disclosed on December 9, 2021, CVE-2021-44228 is an Apache Log4j vulnerability which may allow remote code execution (RCE) on the target system by an attacker. Apache Log4j is a universally used logging system for Java-based web and server applications, and due to its widespread usage, many systems and applications may be affected by this vulnerability.