Summary
In this chapter, we outlined the DiD approach. You learned that the goal of a DiD strategy is the achievement of a security posture through the coordinated and combined use of multiple security countermeasures, based on two main concepts – defense in multiple places and layered defenses. We looked at how DiD is based on the integration of three different elements – people, technology, and operating methods. Since firewalls are an important part of securing a CN, we also provided a short description of the different firewall classes. After that, we explored the most common architectures to secure the industrial devices linked to the CN.
Following this, we looked at how to segregate a CN using DMZ and VLAN. We examined the most common security practices currently used in the industrial control environment, and we analyzed the five options to connect the edge to industrial data sources from a cybersecurity point of view. We also looked at how to secure these from...