

阿尔伦-布拉德利 Stratix 5700 工业 managed Ethernet 交换机说明书

阿尔伦-布拉德利 Stratix 5700 工业 managed Ethernet 交换机说明书

Stratix 5700Industrial Managed Ethernet SwitchThe wide deployment of EtherNet/IP™ in industrial automation means that there is a growing demand to manage the network properly.Integtrating new machine-level networks into an existing plant network requires convergence.With more devices connected on the same Ethernet network than ever before, an industrial managed switch can help you simplify your network infrastructure. Adding a managed switch to your network architecture can also help make the process of adding new machines easier. The Allen-Bradley® Stratix 5700™ is a compact, scalable Layer 2 managed switch with embedded Cisco technology for use in applications with small isolated, to complex networks. With integration into Studio 5000 Automation Engineering and Design Environment™, you canleverage FactoryTalk® View faceplates and Add-on Profiles for simplified configuration and monitoring.By choosing a switch co-developed by Rockwell Automation and Cisco, your Operations Technology (OT) and Information Technology (IT) professionals leverage tools and technology that are familiar to them. This collaboration can also help to reduce configuration time and cost.Features and Benefits:Advanced Networking Features• Integrated Device Level Ring (DLR) connectivity helps optimize the network architecture and provide consolidated network diagnostics • Integrated Network Address Translation (NAT) provides 1:1 IP address mapping helping to reduce commissioning time • Power over Ethernet (PoE) versions provide power to devices over Ethernet minimizing cabling • Security features, including access control lists, help ensure that only authorized devices, users and traffic can access the network • Secure Digital (SD) card provides simplified device replacementOptimized integration:• Studio 5000® Add-on Profiles (AOPs) enable premier integration into the Rockwell Automation Integrated Architecture® system • Predefined Logix tags for monitoring and port control • FactoryTalk® View faceplates enable status monitoring and alarming • Built-in Cisco® Internet Operating System (IOS) helps provide secure integration with enterprise networkDesigned and Developed for EtherNet/IP Automation ApplicationsNetwork Address TranslationMachine integration onto a plant network architecture can be difficult as machine builder IP-address assignments rarely match the addresses of the end-user network. Also, network IP addresses are often unknown until the machine is being installed. The Stratix 5700 with Network Address Translation (NAT) is a Layer 2 implementation that provides “wire speed” 1:1 translations ideal for automation applications where performance is critical.NAT allows for:• Simplified integration of IP-addressmapping from a set of local,machine-level IP addresses to theend user’s broader plant network• OEMs to deliver standard machinesto end users without programmingunique IP addresses• End users to more simply integratethe machines into the larger network192.168.1.4192.168.1.4MACHINE 1MACHINE 2Private Network Private NetworkSwitch Reference ChartAllen-Bradley Stratix 5700 Industrial Ethernet SwitchSwitch Selection TableFE - Fast Ethernet GE - Gigabit EthernetPublication ENET-PP005F-EN-E – April 2016Copyright ©2016 Rockwell Automation, Inc. All Rights Reserved. Printed in USA.Supersedes Publication ENET-PP005E-EN-E – March 2015EtherNet/IP is a trademark of the ODVA.Cisco is a trademark of Cisco Systems, Inc.Allen-Bradley, CompactLogix, Factory Talk, Integrated Architecture, Kinetix, LISTEN. THINK. SOLVE., Powerflex, Rockwell Automation, Rockwell Software, Stratix 5700, Studio 5000, Studio 5000 Automation Engineering and Design Environment are trademarks of Rockwell Automation, Inc.Glossary of TermsAccess Control Lists allow you to filter network traffic. This can be used to selectively block types of traffic to provide traffic flow control or provide a basic level of security for accessing your network.CIP port control and fault detection allows for port access based on Logix controller program or controller mode (idle/fault). Allows secure access to the network based on machine conditions.CIP SYNC (IEEE1588) is the ODVAimplementation of the IEEE 1588 precision time protocol. This protocol allows very high precision clock synchronization across automation devices. CIP SYNC is an enabling technology for time-critical automation tasks such as accurate alarming for post-event diagnostics, precision motion and high precision first fault detection or sequence of events.Device Level Ring (DLR) allows direct connectivity to a resilient ring network at the device level.DHCP per port allows you to assign a specific IP address to each port, confirming that the device attached to a given port will get the same IP address. This feature allows for device replacement without having to manually configure IP addresses.Encryption provides network security by encrypting administrator traffic during Telnet and SNMP sessions.EtherChannel is a port trunking technology. EtherChannel allows grouping several physical Ethernet ports to create one logical Ethernet port. Should a link fail, the EtherChannel technology will automatically redistribute traffic across the remaining links.Ethernet/IP (CIP) interface enables premier integration to the Integrated Architecture with Studio 5000 AOP , Logix tags and View Faceplates.FlexLinks provides resiliency with a quick recovery time and load balancing on a redundant star network.IGMP Snooping (Internet Group Management Protocol) constrains the flooding of multicast traffic by dynamically configuring switch ports so that multicast traffic is forwarded only to ports associated with a particular IP multicast group.* Separate SW IOS requiredKey Software FeaturesMAC ID Port Security checks the MAC ID of devices connected to the switch to determine if it is authorized. If not the device is blocked and the controller receives a warning message. This provides a method to block unauthorized access to the network.Network Address Translation (NAT) provides 1:1 translations of IP addresses from one subnet to another. Can be used to integrate machines into an existing network architecture.Port Thresholds(Storm control & Traffic Shaping)allows you to set both incoming and outgoing traffic limits. If a threshold is exceeded alarms can be set in the Logix controller to alert an operator. Power over Ethernet (PoE) provides electrical power along with data on a single Ethernet cable to end devices.QoS – Quality of Service (QoS) is the ability to provide different priority to different applications, users, or data flows, to help provide a higher level of determinism on your network.REP (Resilient Ethernet Protocol) – A ring protocol that allows switches to be connected in a ring, ring segment or nested ring segments. REP provides network resiliency across switches with a rapid recovery time ideal for industrial automation applications.Smartports provide a set of configurations to optimize port settings for common devices like automation devices, switches, routers, PCs and wireless devices. Smartports can also be customized for specific needs.SNMP Simple Network Management Protocol (SNMP) is a management protocol typically used by IT to help monitor and configure network-attached devices.Static and InterVLAN Routing bridges the gap between layer 2 and layer 3 routing providing limited static and connected routes across VLANs.STP/RSTP/MST Spanning Tree Protocol, is a feature that provides a resilient path between switches. Used for applications that requires a fault tolerant network.VLANs with Trunking is a feature that allows you to group devices with a common set of requirements into network segments. VLANs can be used to provide scalability, security and management to your network.802.1x Security is an IEEE standard for access control and authentication. It can be used to track access to network resources and helps secure the network infrastructure.。



工业以太网交换机Stratix TM 8000 动手实验目录STRATIX 8000_________________________________________________________________________3关于本动手实验_______________________________________________________________________3实验内容___________________________________________________________________________3实验设备____________________________________________________________________________3硬件______________________________________________________________________________3软件______________________________________________________________________________3恢复交换机的工厂默认设置______________________________________________________________4通过EXPRESS SETUP按钮恢复工厂默认设置_______________________________________________5运行E XPRESS S ETUP____________________________________________________________________6实验二: 理解设备管理器和SMARTPORTS___________________________________________________11获得诊断信息________________________________________________________________________11端口标识___________________________________________________________________________13端口号____________________________________________________________________________13端口状态指示灯不同颜色表示的意义:___________________________________________________13趋势图_____________________________________________________________________________14 S PANNING T REE P ROTOCOL (生产树协议)___________________________________________________18更改交换机的配置____________________________________________________________________19 E XPRESS S ETUP______________________________________________________________________21配置S MARTPORTS_____________________________________________________________________22测试S MARTPORT______________________________________________________________________23 Smartport错误检测__________________________________________________________________24实验三: 使用STRATIX 8000 RSLOGIX5000 AOI指令和 FACTORYTALK VIEW FACEPLATES_________27在RSL OGIX 5000中组态S TRATIX 8000_____________________________________________________27设置S TRATIX 8000A DD-ON 指令__________________________________________________________31使用S TRATIX 8000的F ACTORY T ALK V IEW F ACEPLATES_________________________________________39实验四: 设置端口镜像,使用WIRESHARK抓取数据包__________________________________________57通过W IRESHARK抓取数据包_____________________________________________________________57设定端口镜像________________________________________________________________________63设定端口镜像后抓取数据包_____________________________________________________________64Stratix 8000关于本动手实验本实验的目的是使您熟悉Stratix 8000交换机和组网的基本知识。

Stratix 5700 EtherNet IP 训练工站说明书

Stratix 5700 EtherNet IP 训练工站说明书

Training WorkstationStratix 5700 EtherNet/IP WorkstationCatalog NumberMAJOR COMPONENTSPhoto shows ABT-TDENET5700 unit.Unit Dimensions• Width: 30 in (76 cm)• Height: 21 in (53 cm)• Depth: 13 in (33 cm)• Weight: Approx 45 lb (20 kg)Estimated Lead Time7 weeks. Some items are available for immediate shipment. Please call for availability.220-240V Plug OptionsSee the available document on Literature Library for 220-240V Plug Options for Workstations used in EMEA/AP (GMST10-PP524).Related ProductsThe workstation can be used in conjunction with the following products:• EtherNet/IP Procedures Guide (ABT-N300-TSJ50)• EtherNet/IP Fundamentals and Troubleshooting Lab Book (ABT-CCP180-TLB)• EtherNet/IP Configuration and Troubleshooting Lab Book (ABT-CCP183-TLB)†• Essentials of Industrial Ethernet Networks for an OT Professional Lab Book (ABT-CCP182-TLB)†• Essentials of Industrial Automation for an IT Professional Lab Book (ABT-CCP810-TLB)To use any of the lab books listed above with the ABT-TDENET5700-A workstation, the files provided for use with the PanelView Plus operator terminal will need to be updated.†Additional Hardware Required: The ABT-TD8300 Stratix 8300 workstation (or equivalent hardware) is required to complete some exercises in these lab books.Important Ordering Information*This unit is available with different PanelView Plus operator terminals:• For a unit with a PanelView Plus 6 terminal, order ABT-TDENET5700• For a unit with a PanelView Plus 7 terminal, order ABT-TDENET5700-AAllen-Bradley, CompactLogix, ControlLogix, expanding human possibility, PanelView Plus and Stratix are registered trademarks of Rockwell Automation Inc.Trademarks not belonging to Rockwell Automation are property of their respective companies.Publication GMST10-PP636F-EN-E – February 2020 | Supersedes Publication GMST10-PP636E-EN-E – October 2018Copyright © 2020 Rockwell Automation, Inc. All Rights Reserved. Printed in USA.To be respectful of the environment, Rockwell Automation is transitioning some of its training courses to a paperless format. Students are asked to complete downloads and bring personal devices to these classes. A full list of digital/paperless courses is currently available through your local distributor.。

STRATIX 工业交换机介绍

STRATIX 工业交换机介绍

Stratix 8000 硬件概述
模块类型 模块端口数 总的端口数 10/100 M电口数 100Base-FX 光口述 10/100/1000 电口数 光纤SFP插槽数 支持的SFP类型 工作温度 防护等级
6 22 4 -
10 26 8 -
IEEE 1588 v2 – 精确时间同步协议
• 精确时间同步协议(Precision Time Protocol ,PTP)
– 在分布式系统中实现实时同步
• 在高性能的工业应用中需要这种技术
– 运动控制要求亚微妙的时间精度 – 所有设备同步他们的时钟,误差可小 于1us – SOE应用 – 预定义时间点协同动作 (ex: all systems stop at time=x)
• Stratix 6000 – 固定端口管理型
– 优化工厂现场网络 – 自动化工程师所熟悉的 – RSLogix 5000 配置,Logix标签和FactoryTalk View 面板
• Stratix – 嵌入式技术
– – – – 嵌入在罗克韦尔自动化产品中的两端口交换机 能实现高速环形和线形拓扑 无需配置 最初发布的产品: • Stratix 4000 3端口分接器 • 1756-EN2TR – ControlLogix 网桥模块
Stratix 8000的DHCP可根据端口来分配IP地址 端设备更换简单易行
• 更换终端设备后, 分配之前相同的IP地址给新设备
DHCP 服务器
DHCP 服务器



Cisco Industrial Ethernet 5000 Series SwitchesData sheet Cisco publicContentsProduct overview 3 Features and benefits 3 Cisco ONE Software 5 Product specifications 6 Ordering information 16 Warranty information 17 Cisco environmental sustainability 17 Cisco and Partner Services 17 Cisco Capital 17 For more information 18Developed specifically to withstand the harshest industrial environments, these switches offer the most flexible and scalable industrial Ethernet platform that grows with your network.Product overviewThe Cisco® Industrial Ethernet (IE) 5000 Series Switches with four 10 Gigabit or four 1 Gigabit Ethernet uplinks and 24 Gigabit Ethernet downlinks is a rack mount, ruggedized switch that provides Layer 2 and Layer 3 line rate aggregation and copper Power over Ethernet (PoE) connectivity in the harshest of industrial environments. The IE 5000 Series uses superior high-bandwidth hardware switching and proven Cisco IOS® Software. TheIE 5000 is highly secure and scalable for access and aggregation layer deployments. It also provides Cisco stackable technologies for advanced network reliability. The switch is built to withstand extreme environments while adhering to overall IT network design, compliance, and performance requirements. The IE5000 has built-in SW image verification to ensure authenticity of the Cisco Software.The IE 5000 Series can be used to easily and securely extend the enterprise network to harsh environments with a software-defined access extension for the Internet of Things (IoT) enabling connectivity in outdoor areas, warehouses, distribution centers, roadways, etc., using powerful enterprise-grade intent-based network management platform such as Cisco DNA Center.The IE 5000 Series is ideal for industrial Ethernet applications where hardened products are required. This includes utility industries, manufacturing, energy and process control, Intelligent Transportation Systems (ITS), oil and gas field sites, city surveillance programs, and mining. With improved overall performance, greater bandwidth with available 10 Gigabit Ethernet interfaces, a richer feature set, and enhanced hardware, the Cisco IE 5000 Series Switches complement the current Industrial Ethernet portfolio of products. This portfolio includes Cisco industrial Ethernet switches, such as the Cisco IE 2000, IE 3200, IE 3300, IE 3400, IE 4000 and IE 4010 Series Switches, as well as utility - focused products, such as the Cisco IE 2000U Industrial Ethernet switches and Cisco 2500 Series Connected Grid Switches.Through a user-friendly web device manager, the IE 5000 provides easy out-of-the-box configuration and simplified operational manageability to deliver advanced security, data, video, and voice services over industrial networks.Features and benefitsTable 1 lists the features and benefits of Cisco IE 5000 Series Switches.Table 1.Features and benefits of Cisco IE 5000 Series SwitchesThe Cisco Industrial Ethernet 5000 Series Switches offer:●Bandwidth and capacity to grow with your networking needs: High-performance non-blocking switchcapacity with up to 24 Gigabit Ethernet downlink ports and four 10 Gigabit or four 1 Gigabit Ethernet uplink ports per switch●SFP+ heater to allow standard SFP+ optics to operate to -40C (10GE SKU only)●Cisco IOS Software features for smooth IT integration and policy consistency●Robust resiliency enabled by features, such as dual-ring design through four 10 Gigabit Ethernet uplinkports, Resilient Ethernet Protocol (REP), Parallel Redundancy Protocol (PRP), PROFINET– MediaRedundancy Protocol (MRP) ring, High Availability Seamless Redundancy (HSR) ring, EtherChannel, Flex Links, redundant power input, and dying gasp●Oven-controlled crystal oscillator (OCXO) to provide superior frequency stability needed for precisesynchronization applications●Simplified software upgrade path with universal images●Integrated support for features such as GPS receiver and IRIG●Cisco DNA Center management and support for software-defined access extension for IoTCisco ONE SoftwareCisco ONE Software offers a simplified consumption model, centered on common customer scenarios in the industrial automation and extended enterprise environments. Cisco ONE Software and services provide customers with four primary benefits:●Software suites that address typical customer use scenarios at an attractive price●Investment protection for their software purchase through software services-enabled license portability●Access to ongoing innovation and new technology with Cisco Software Support Service (SWSS)●Flexible licensing models to smoothly distribute customers' software spending over timeFigure 1 shows switch models, Table 2 shows all the available IE 5000 models, Table 3 lists the power supplies and Table 4 shows the available power budget for PoE/PoE+ for Cisco IE 5000 Series Switches Series Switches.Figure 1.IE 5000 switchTable 2.Cisco Industrial Ethernet 5000 Series models1 Uplink ports can run at 1 Gigabit Ethernet or 10 Gigabit Ethernet mode depending on the SFP or SFP+ inserted.2 Can be upgraded to IP Services license with the PID in Table 15.Table 3.Power supplies for Cisco IE 5000 Series SwitchesTable 4.Available power budget for PoE/PoE+ with different power supply wattageProduct specificationsTable 5 lists specifications, Table 6 lists information about Physical specifications, Table 7 lists information about switch performance and scalability, Tables 8 and 9 list important software license features, Tables 10-11 list the Cisco DNA Essentials and Advantage features. Table 12 lists compliance specifications, and Table 13 lists information about management and standards and Table 14 lists the supported SFPs on Cisco IE 5000 Series SwitchesTable 5.Product specificationsTable 6.Physical specificationsTable 7.Switch performance and scalabilityTable 8.Cisco IE 5000 Key LAN Base Software features1 Full flexible Netflow is included is included on all IE-5000 Switches and requires either one of the following licenses per switch:●Cisco ONE™ Foundation Perpetual license●Cisco DNA Essentials license●Cisco IP Services licenseTable 9.Cisco IE 5000 IP services license: Key software featuresTable 10.Cisco IE 5000 DNA Essentials featuresTable 11.Cisco IE 5000 DNA Advantage featuresTable pliance specificationsTable 13.Management and standardsIEEE standards ●IEEE 802.1D MAC Bridges, STP●IEEE 802.1p Layer2 COS prioritization●IEEE 802.1q VLAN●IEEE 802.1s Multiple Spanning-Trees●IEEE 802.1w Rapid Spanning-Tree●IEEE 802.1x Port Access Authentication●IEEE 802.1AB LLDP●IEEE 802.3ad Link Aggregation (LACP)●IEEE 802.3af Power over Ethernet provides up to15.4W DC power to each end device●IEEE 802.3at Power over Ethernet provides up to25.5W DC power to each end device ●IEEE 802.3af Power over Ethernet●IEEE 802.3at Power over Ethernet Plus●IEEE 802.3ah 100BASE-X SMF/MMF only ●IEEE 802.3x full duplex on 10BASE-T●IEEE 802.3 10BASE-T specification●IEEE 802.3u 100BASE-TX specification ●IEEE 802.3ab 1000BASE-T specification ●IEEE 802.3z 1000BASE-X specification ●IEEE 1588v2 PTP Precision Time ProtocolRFC compliance ●RFC 768: UDP●RFC 783: TFTP●RFC 791: IPv4 protocol●RFC 792: ICMP●RFC 793: TCP●RFC 826: ARP●RFC 854: Telnet●RFC 951: BOOTP●RFC 959: FTP●RFC 1157: SNMPv1●RFC 1901,1902-1907 SNMPv2●RFC 2273-2275: SNMPv3●RFC 2571: SNMP Management●RFC 1166: IP Addresses●RFC 1256: ICMP Router Discovery ●RFC 1305: NTP●RFC 1492: TACACS+●RFC 1493: Bridge MIB Objects●RFC 1534: DHCP and BOOTP interoperation●RFC 1542: Bootstrap Protocol●RFC 1643: Ethernet Interface MIB●RFC 1757: RMON●RFC 2068: HTTP●RFC 2131, 2132: DHCP●RFC 2236: IGMP v2●RFC 3376: IGMP v3●RFC 2474: DiffServ Precedence●RFC 3046: DHCP Relay Agent Information Option ●RFC 3580: 802.1x RADIUS●RFC 4250-4252 SSH ProtocolSNMP MIB objects ●BRIDGE-MIB●CALISTA-DPA-MIB●CISCO-ACCESS-ENVMON-MIB●CISCO-ADMISSION-POLICY-MIB●CISCO-AUTH-FRAMEWORK-MIB●CISCO-BRIDGE-EXT-MIB●CISCO-BULK-FILE-MIB●CISCO-CABLE-DIAG-MIB●CISCO-CALLHOME-MIB●CISCO-CAR-MIB●CISCO-CDP-MIB●CISCO-CIRCUIT-INTERFACE-MIB●CISCO-CLUSTER-MIB●CISCO-CONFIG-COPY-MIB●CISCO-CONFIG-MAN-MIB●CISCO-DATA-COLLECTION-MIB●IF-MIB●CISCO-DHCP-SNOOPING-MIB ●CISCO-SNMP-TARGET-EXT-MIB●CISCO-STACK-MIB●CISCO-STACKMAKER-MIB●CISCO-STP-EXTENSIONS-MIB●CISCO-SYSLOG-MIB●CISCO-TCP-MIB●CISCO-UDLDP-MIB●CISCO-VLAN-IFTABLE-RELATIONSHIP-MIB ●CISCO-VLAN-MEMBERSHIP-MIB●CISCO-VTP-MIB●ENTITY-MIB●ETHERLIKE-MIB●HC-RMON-MIB●IEEE8021-PAE-MIB●IEEE8023-LAG-MIB●IF-MIB●IP-FORWARD-MIB●IP-MIB●CISCO-EMBEDDED-EVENT-MGR-MIB●IP-MIB●CISCO-ENTITY-ALARM-MIB●CISCO-ENTITY-SENSOR-MIB●CISCO-ENTITY-VENDORTYPE-OID-MIB●LLDP-MIB●CISCO-ENVMON-MIB●CISCO-ERR-DISABLE-MIB●CISCO-FLASH-MIB●CISCO-FTP-CLIENT-MIB●CISCO-IF-EXTENSION-MIB●CISCO-IGMP-FILTER-MIB●CISCO-IMAGE-MIB●CISCO-IP-STAT-MIB●CISCO-LAG-MIB●CISCO-LICENSE-MGMT-MIB●CISCO-MAC-AUTH-BYPASS-MIB●OLD-CISCO-TCP-MIB●CISCO-MAC-NOTIFICATION-MIB●OLD-CISCO-TS-MIB●CISCO-MEMORY-POOL-MIB●CISCO-PAE-MIB●CISCO-PAGP-MIB●CISCO-PING-MIB●CISCO-PORT-QOS-MIB●CISCO-PORT-SECURITY-MIB●CISCO-PORT-STORM-CONTROL-MIB●SNMP-NOTIFICATION-MIB●CISCO-PRIVATE-VLAN-MIB●CISCO-PROCESS-MIB●CISCO-PRODUCTS-MIB●CISCO-RESILIENT-ETHERNET-PROTOCOL-MIB ●SNMP-VIEW-BASED-ACM-MIB●CISCO-RTTMON-ICMP-MIB●CISCO-RTTMON-IP-EXT-MIB●CISCO-RTTMON-MIB●CISCO-RTTMON-RTP-MIB ●LLDP-EXT-MED-MIB●LLDP-MIB●NETRANGER●NOTIFICATION-LOG-MIB●OLD-CISCO-CHASSIS-MIB●OLD-CISCO-CPU-MIB●OLD-CISCO-FLASH-MIB●OLD-CISCO-INTERFACES-MIB ●OLD-CISCO-IP-MIB●OLD-CISCO-MEMORY-MIB●OLD-CISCO-SYS-MIB●OLD-CISCO-SYSTEM-MIB●OLD-CISCO-TCP-MIB●OLD-CISCO-TS-MIB●RMON-MIB●RMON2-MIB●SMON-MIB●SNMP-COMMUNITY-MIB●SNMP-FRAMEWORK-MIB●SNMP-MPD-MIB●SNMP-NOTIFICATION-MIB●SNMP-PROXY-MIB●SNMP-TARGET-MIB●SNMP-USM-MIB●SNMP-VIEW-BASED-ACM-MIB ●SNMPv2-MIB●TCP-MIB●UDP-MIBTable 14.SFP supportNote:For DOM support and for first software release supporting SFP, refer tohttps:///en/US/products/hw/modules/ps5455/products_device_support_tables_list.html.Not all SFPs are supported in PROFINET GSD for SIMATIC STEP7/TIA Portal. Please visithttps:///c/en/us/td/docs/switches/lan/industrial/software/configuration/guide/b_sfp_TIA.html.Ordering informationTable 15 lists the ordering information for Cisco IE 5000 system. Table 15.Ordering informationWarranty information for the IE 5000 switch is available at/warrantyfinder.aspx.Cisco environmental sustainabilityInformation about Cisco’s environmental sustainability policies and initiatives for our products, solutions, operations, and extended operations or supply chain is provided in the “Environment Sustainability” section of Cisco’s Corporate Social Responsibility (CSR) Report.Reference links to information about key environmental sustainability topics (m entioned in the “Environment Sustainability” section of the CSR Report) are provided in the following table:Cisco makes the packaging data available for informational purposes only. It may not reflect the most current legal developments, and Cisco does not represent, warrant, or guarantee that it is complete, accurate, or up to date. This information is subject to change without notice.Cisco and Partner ServicesAt Cisco, we’re committed to minimizing our customers’ TCO, and we offer a wide range of services programs to accelerate customer success. Our innovative programs are delivered through a unique combination of people, processes, tools, and partners, resulting in high levels of customer satisfaction. Cisco Services helps you protect your network investment, optimize network operations, and prepare your network for new applications to extend network intelligence and the power of your business. Some of the key benefits our customers can get from Cisco Services follow:●Mitigating risks by enabling proactive or expedited problem resolution●Lowering TCO by taking advantage of Cisco expertise and knowledge●Minimizing network downtime●Supplementing your existing support staff so they can focus on additional productive activitiesFor more information about Cisco Services, refer to Cisco Technical Support Services or Cisco Advanced Services at https:///web/services/Cisco CapitalFlexible payment solutions to help you achieve your objectives.Cisco Capital makes it easier to get the right technology to achieve your objectives, enable business transformation and help you stay competitive. We can help you reduce the total cost of ownership, conserve capital, and accelerate growth. In more than 100 countries, our flexible payment solutions can help you acquire hardware, software, services and complementary third-party equipment in easy, predictable payments. Learn more.For more information about the Cisco IE 5000 Series, visit https:///go/ie5000 or contact your local account representative.Printed in USA C78-734967-12 07/20。

罗克韦尔发布Stratix 5410分布式交换机

罗克韦尔发布Stratix 5410分布式交换机

罗克韦尔发布Stratix 5410分布式交换机
来源:《智能制造》 2015年第10期
2015 年9 月30 日,罗克韦尔自动化正凭借新型Allen-Bradley Stratix 5410 工业分布式交换机,进一步扩展其工业以太网交换机产品组合。

Stratix 5410 交换机配备四个万兆以太网端口,可与工厂网络架构的其余部分建立高性能连接。

该交换机可用作第2 层或第3 层路由交换机,因此可帮助工程师实现更加丰富应用。

“扩展后的Stratix 系列交换机应用范围更广,可帮助IT 和工程专家设计高可用性的网络,”罗克韦尔自动化的产品经理Mark Devonshire 介绍,“Stratix 5410 分布式交换机具备设计面向未来的网络架构时所需的高性能和灵活性。

”Stratix 5410 交换机采用19 英寸机架安装设计,为最终用户提供了分布式网络的中央节点和更密集的端口。

凭借嵌入思科技术以及与罗克韦尔自动化集成架构系统的源代码级集成,Stratix 5410 交换机能够提供信息技术(IT) 和运营技术(OT) 专业人员都熟悉的解决方案。



1EinführungSIMATIC NETAnswers for industry.Industrial Ethernet Switches SCALANCE XB-000/XB-000GSimple – Space-saving – Suitable for industry Brochure · May 2009Industrial Ethernet Switches SCALANCE XB-000/XB-000GBenefits•Implementing a machine network even under constant cost pressure•Space-saving installation thanks to small, compact design •Quick commissioning without configuration•Easy on-site diagnostics via LEDsApplication areaThe unmanaged Industrial Ethernet switches of theSCALANCE XB-000/XB-000G line allow cost-effective solu-tions for setting up small star or line topologies with switching functionality in machinery or plant components. The enclo-sure is designed for space-saving installation in a control cabinet on a standard rail. Wall mounting is also possible. Product versionsAll versions can be diagnosed directly on the device using LEDs (power, link status data traffic)Versions for the construction of electrical Industrial Ethernet star and line topologies with:Fast Ethernet (100 Mbit/s):•SCALANCE XB005 and SCALANCE XB008;5 or 8 x 10/100 Mbit/s electrical RJ45 portsGigabit Ethernet (1000 Mbit/s):•SCALANCE XB005G and SCALANCE XB008G;5 or 8 x 10/100/1000 Mbit/s electrical RJ45 ports Versions for the construction of electrical and optical Industrial Ethernet star and line topologies with:Fast Ethernet (100 Mbit/s):•SCALANCE XB004-1 and SCALANCE XB004-1LD;4 x 10/100 Mbit/s electrical RJ45 ports and1 x 100 Mbit/s optical SC port (multimode/singlemode,glass)Gigabit Ethernet (1000 Mbit/s):•SCALANCE XB004-1G and SCALANCE XB004-1LDG;4 x 10/100/1000 Mbit/s electrical RJ45 ports and1 x 1000 Mbit/s optical SC port (multimode/singlemode,glass) DesignThe SCALANCE XB-000/XB-000G Industrial Ethernet switches are optimized for mounting on a standard rail.They have:• A 3-pin terminal block for connecting the power supply (1x24 V DC) and functional ground.•An LED to display status information (Power)•LEDs for indicating the status information (link status and data exchange) per portThe following port types are available:•10/100 BaseTX electrical RJ45 ports or10/100/1000 BaseTX electrical RJ45 ports;automatic data transmission rate detection(10/100/1000 Mbit/s), with Autosensing and Autocrossing function for connecting IE TP cables up to 100 m.•100 BaseFX, optical SC port for direct connection to the Indus-trial Ethernet FO cables. Multimode fiber-optic cable up to 3 km •100 BaseFX, optical SC port for direct connection to the Industrial Ethernet FO cables. Single mode fiber-optic cable up to 26 km •1000 BaseSX optical SC port for direct connection to the Industrial Ethernet FO cables.Multimode fiber-optic cable up to 750 m•1000 BaseLX optical SC port for direct connection to the Indus-trial Ethernet FO cables. Singlemode fiber-optic cable up to 10 km Function•Construction of electrical Industrial Ethernet line or star topologies•Use of uncrossed connecting cables is possible due to the integrated Autocrossing function of the ports•Simple network configuration and network expansion;no restriction on network expansion when cascading the switches.SCALANCE XB004-1Industrial Ethernet Switches2Industrial Ethernet Switches3Network topology and network configurationThe SCALANCE XB-000/XB-000G switches are typically in-stalled with the stations to be connected in a control cabinet or control box. When configuring the network, it is necessary to observe the following boundary conditions:•Length of the TP cable between two SCALANCE XB-000/ XB-000G switches -max. 100 m-max. 10 m via patch cable with TP Cord-max. 100 m via Industrial Ethernet FC Outlet RJ45, IE FC Standard Cable and TP Cord •Length of fiber-optic cables:-max. 3 km with Industrial Ethernet FO cables multimode-max. 26 km with Industrial Ethernet FO cables singlemode DiagnosticsThe following information is indicated on the device by means of LEDs:•Power •Port status •Data trafficElectrical star topology with SCALANCE XB005G for the connection of ter-minal devices and connection to higher-level network structures with Gigabit EthernetElectrical star topology with SCALANCE XB005 for the connection of ter-minal devices with Fast EthernetMixed star topology with SCALANCE XB004-1 or SCALANCE XB004-1GThe information provided in this brochure contains descriptions or characteristics of performance which in case of actual use do not always apply as described or which may change as a result of further development of the products. An obligation to provide the respective characteristics shall only exist if expressly agreed in the terms of contract. Availability and technical specifications are subject to change without notice.All product designations may be trademarks or product names of Siemens AG or supplier companies whose use by third parties for their own purposes could violate the rights of the owners.Siemens AG Industry SectorSensors and Communication Postfach 48 4890026 NÜRNBERG GERMANYSubject to change without prior notice Order No.: 6ZB5530-1AS02-0BA13P.8101.46.16 / Dispo 26000BR 0509 2.0 ROT 4 En Printed in Germany © Siemens AG 2009/simatic-netOrdering dataTechnical specificationsIndustrial Ethernet Switches SCALANCE XB-000/XB-000Gunmanaged Industrial Ethernet Switches for 10/100/1000 Mbit/s,IP20 degree of protection, incl. operating instructions, Industrial Ethernet Network manual on CD-ROM SCALANCE XB0055 x 10/100 Mbit/s RJ45 electrical RJ45 ports6GK5 005-0BA00-1AB2SCALANCE XB005G5 x 10/100/1000 Mbit/s electrical RJ45 ports6GK5 005-0GA00-1AB2SCALANCE XB0088 x 10/100 Mbit/s RJ45 electrical RJ45 ports6GK5 008-0BA00-1AB2SCALANCE XB008G8 x 10/100/1000 Mbit/s electrical RJ45 ports6GK5 008-0GA00-1AB2SCALANCE XB004-14 x 10/100 Mbit/s electrical RJ45 ports and 1x 100 Mbit/s optical SC port (multimode, glass), up to 3 km 6GK5 004-1BD00-1AB2SCALANCE XB004-1G4 x 10/100/1000 Mbit/s RJ45 electrical RJ45 ports and 1x 1000 Mbit/s optical SC port (multimode, glass), up to 750 m 6GK5 004-1GL00-1AB2SCALANCE XB004-1LD4 x 10/100 Mbit/s electrical RJ45 ports and 1 x 100 Mbit/s optical SC port (singlemode, glass), up to 26 km 6GK5 004-1BF00-1AB2SCALANCE XB004-1LDG4 x 10/100/1000 Mbit/s electrical RJ45 ports and 1 x 1000 Mbit/s optical SC port (singlemode, glass), up to 10 km6GK5 004-1GM00-1AB2IE TP Cord RJ45/RJ45TP cable 4 x 2 with 2 RJ45 connectors■0,5 m ■ 1 m ■ 2 m ■ 6 m ■10 m6XV1 870-3QE506XV1 870-3QH106XV1 870-3QH206XV1 870-3QH606XV1 870-3QN10FO Standard Cable GP 50/125Fiber-optic cable, pre-assembled with 4 SC connectors (not for SCALANCE XB004-1LD/XB004-1LDG)■80 m ■100 m ■150 m ■200 m ■300 m6XV1 873-6AN806XV1 873-6AT106XV1 873-6AT156XV1 873-6AT206XV1 873-6AT30InterfacesConnection of terminal equipment or network components via twisted pair4, 5 or 8 x 10/100/1000 Mbit/s RJ45 electrical portsNumber of optical ports for fiber-op-tic cables1 x 100/1000 Mbit/s optical SC port (multimode/singlemode)Connection for power supply1 x 3-pin plug-in terminal blockElectrical data Power supply+24 V DC■Premissible range+19.2 V DC to +28.8 V DC Power loss at 24 V DC 2.9 W Current consumption at rated voltage120 mAPermissible ambient conditions/EMC Operating temperature -10 ºC to +60 ºC Transport/storage temperature -40 ºC to +80 ºCRelative humidity in operation < 95% (no condensation)Interference immunity EN 61000-6-2Emitted interference EN 61000-6-4Degree of protection IP20ConstructionDimensions (W x H x D) in mm 45 x 100 x 87Weight in g 180Installation optionsDIN rail, wall mounting。



(RSLogix 5000)
- FactoryTalk View
- RSLogix5K
RSLogix 5000
- ߵ਍‫܋‬੨‫ݴ‬ದIP‫ں‬኷‫ڦ‬DHCP
- 0 ~60
Stratix 2000
10-24 VAC 10-35 VDC
VLAN IEEE 802.1x

Telnet SNMP
SSH v2 SNMP v3

• •
512 ACL
ACL 384 QoS)
• 100BASE-LX10 -FX LC
Stratix 8300
Stratix 8300 Stratix 8000
Stratix 8300 IOS Cisco Catalyst 3750 IP Services Images
Stratix 8300
1783-RMS10T 1783-RMS06T
Stratix 8000
Stratix 8000 Cisco CatalystTM





了解更多信息生命周期服务咨询我们的工程师在罗克韦尔自动化软件门户网站购买的软件包括一份独立的支持合同,其终止日期与 TechConnect 协议的签署周年日期保持一致。


标准产品产品系列 (例如自动化控制系统) 中列出的全部产品均可得到支持。

自动化控制系统可编程控制器 — Compact GuardLogix®、CompactLogix™、ControlLogix® (1756 系列), GuardLogix®, SmartGuard™ 600 SoftLogix™ 5800操作员界面— DTAM™ 2707、工业计算机、InView™、PanelView 5500、PanelView Plus、MobileView™ (仅包括 2711T)分布式 I/O — Block I/O™、Expansion I/O、Flex™ I/O、POINT I/O™ 以及远程 I/O网络 — ControlNet、DeviceNet、DH+™、DH-485、EtherNet/IP、9300 (电缆和 9300-ENA)、1784 板卡 (不包括 ISA 或 PCMCIA 板卡)网络安全与基础设施 — Stratix® 交换机传感器与开关 — 无线射频识别 (RFID)相关软件 — FactoryTalk Echo、FactoryTalk® View ME、RSLinx® Lite、RSNetWorx™、RSLogix™ 5000、Studio 5000® 状态监测 — 集成式机器状态监测模块 (包括 1444)、ESAFE 状态监测软件、便携式数据采集器、保护模块 (包括 XM 模块) 以及状态监测传感器电力监测仪 — PowerMonitor™ 500、PowerMonitor 1000 以及 PowerMonitor 5000电能 —RSPower™低压变频器和启动器ArmorConnect® 电源介质 (280-PWRM)、ArmorStart® 控制器 (280、281、284、290、291、294)、PowerFlex® 4M、4、40、40P、400、523、525、527、753、755、755TL/ TR/TM 以及 755 On-Machine、755TS、753TS 变频器、20S SCR 母线电源、电源调节产品 1321、变频器通信卡 (20 comm、20-750-comm) DriveExecutive™、DriveExplorer™、Connected Components Workbench™ 软件、MegaDySC® 1608M、MiniDySC ® 1608N 和ProDySC® 1608P Armor PowerFlex 35S、35P、PFDC 20P 中压变频器和启动器857、865、1500-1599、1900-1999、7000A-RPDTD、7000L-RPDTD 7000L-R18TX、7000A-RPTX、7000L-RPTX、7000A-RPTXI、7000-RPTX、7000-R18TX、7000-RPTXI、7760、7761、7762、7703电机控制中心 (MCC) IntelliCENTER®、CENTERLINE® 2100 和 CENTERLINE® 2500独立推车技术 (ICT) MagneMotion® iTRAK® 5730/5750、MagneMover®、QuickStick® 100、QuickStick® HT™工业运动控制基于机架的运动控制产品 —ControlLogix 运动控制模块 (1756-M02AE、M08SE、M16SE、M03SE、M02AE、M02AS、HYD02 和 1758M04SE)伺服驱动器和电机 — Kinetix® 驱动器 (3、300、350、2000、5100、5300、5500、5700、5800、6000、6200、6500 和 7000)、Ultra™ 3000 (2098DSD) 和 Kinetix VP、TLP、MP-Series™ 电机 (旋转电机和直线电机系列)编程软件 — MotionView、RSLogix Motion Commands、UltraWARE组件级产品北美以外地区:• 一个工作日内免费回电支持,24x7 全天候响应• 电话或实时聊天支持:上午 8:00 至下午 5:00,可升级至 24x7 全天候响应北美地区:• 上午 8:00 至下午 5:00 免费支持• 24x7 全天候服务 (需签署支持协议)计算机与操作员界面 — PanelView Component 和 PanelView 800工控产品1可编程控制器 — Micro800® 控制系统安全、传感器、连接系统商业产品软件 — Connected Component Workbench 软件过程安全需要签署过程安全支持合同。

3、Rockwell AB 交换机

3、Rockwell AB 交换机

.Stratix TM工业以太网交换机产品选型手册1Stratix TM 工业以太网交换机产品以太网在车间层和在整个企业内的部署,以及制造商日益增加的业务压力,导致了网络和技术通过以太网进行了融合。

这就造成了IT 及制造业控制部门在组织结构上和文化上的融合。

Stratix TM 系列工业以太网基础架构产品是专为帮助您推进网络融合而设计的。





Stratix 8000系列产品具有罗克韦尔自动化和Cisco 联合品牌的模块化管理型交换机的特性,它为IT 和自动化控制专业人员带来了新价值。

该系列的其他产品线还包括:Stratix 嵌入式技术,以及一系列固定端口的管理型和非管理型交换机及物理介质。

整个系列产品使用标准的、未修改的以太网并且在EtherNet/IP 应用和集成架构中得以优化使用,另外Stratix 8000产品线中特别使用了Cisco 操作系统、用户环境及功能集。

Stratix TM 系列产品可以广泛用于流程工业自动化,工厂自动化,地铁、隧道、高速公路、铁路和机场,电力,水、污水等基础设施,智能交通运输系统(ITS),SCADA 系统等。

使用Cisco 技术的Stratix 8000联合品牌模块化管理型交换机Cisco 和罗克韦尔自动化在联合品牌的工业管理型交换机上进行了合作,Stratix 8000是两家公司联合推出的首款交换机。

包括一个对IT 和制造环境的优化功能集。

交换机产品线使用当前Cisco Catalyst TM 交换机的操作系统、功能和用户界面,从而使IT 专业人员能使用思科设备管理器Web 界面,以及思科网络助理和CiscoWorks 等支持工具,简化了工业网络的部署、管理和更换。


交换机、网桥 各种接口,集线器,
除此之外,工业以太网常使用的协议还有:Profinet,Ethernet/IP,EPA,EtherCAT,Powerlink,VNET/IP,TCnet, Modbus-IDA等。
交换机也叫交换式集线器,它将接收的信息经内部处理后转发至指定端口,具备自动寻址能力和交换作用。由于交换机根 据所传递信息包的目的地址,将每一信息包独立地从源端口送至目的端口,避免了和其他端口发生碰撞。同时交换机的每个端 口都支持缓存功能,允许所有的输入端口同时接收和传送帧,它们可以并行地、全双工地工作,解决了工业以太网中不断增长 的流量负荷问题,这是单信道CSMA/CD不能做到的。
PPP Point to Point Protocol 点到点协议 • 在点对点的链路上封装多协议数据包 • 实现在点到点连接之间的IP 通信 • 能在任何DTE/DCE之间实现通信 • 无速率限制
应用层 表示层 会话层 传输层 网络层 数据链路层 物理层
IES31 系列
IES41 系列
IES1000 系列 PC
PLC IES21 系列
W-Ring IES31 系列
IES10 系列
双绞线 光纤 千兆光纤



Secondary Edge Port 0/2
Preferred Port blocking for VLAN 201-400
REP环间耦合 其它厂商环网环间耦合
i E k
j F
Etherchannel (端口聚合)
• 组合几条物理链路为一个逻 辑连接的技术,可增加交换 机间的带宽 • 可实现负载平衡和网络冗余 能力 • STP将EtherChannel看成一条 路径
联合品牌产品 – Stratix 8000
• 模块化管理型交换机系列产品,Stratix 8000 • 由Allen-Bradley和Cisco联合品牌和设计 • 6到26端口
Cisco最佳特性 • 和企业网的安全集成
– Cisco互联网操作系统(IOSTM) TM – Cisco Catalyst 系列交换机架构和功能集 – IT熟悉的工具:命令行界面 (CLI),CNA和设备管理 器
Stratix 8000 模块化管理型
• 端口配置:
• 6 - 26 端口 • 基本模块6,10口两种 • 扩展模块:8电口、8光口
• 特点:
• 无需配置,没有诊断功能,无 网络安全特点
• 特点:
• Cisco 技术: IOS, CLI, DeviceManager & Automation Smartports • RSLogix 5000 组态, 标签和面板 • 支持VLANs, QoS, SNMP, 端口镜像, MAC ID 端口安全,根据端口来分配IP地址的DHCP, REP –支持环形拓扑 • CF卡存储IOS和配置数据



PPP Point to Point Protocol 点到点协议 • 在点对点的链路上封装多协议数据包 • 实现在点到点连接之间的IP 通信 • 能在任何DTE/DCE之间实现通信 • 无速率限制
应用层 表示层 会话层 传输层 网络层 数据链路层 物理层
10Mbps DIX以太网1.0标准 IEEE 802.3以太网标准 10BASE-T 快速以太网100BASE-T 1000BASE-LX/SX/CX 1000BASE-T 10 千兆以太网 100 千兆以太网
◆ 开放性 以太网是开放且透明的网络标准,在以太网中实现相互操作 简单易行,不同厂商的设备能够相互兼容
交换机、网桥 各种接口,集线器,
除此之外,工业以太网常使用的协议还有:Profinet,Ethernet/IP,EPA,EtherCAT,Powerlink,VNET/IP,TCnet, Modbus-IDA等。
交换机也叫交换式集线器,它将接收的信息经内部处理后转发至指定端口,具备自动寻址能力和交换作用。由于交换机根 据所传递信息包的目的地址,将每一信息包独立地从源端口送至目的端口,避免了和其他端口发生碰撞。同时交换机的每个端 口都支持缓存功能,允许所有的输入端口同时接收和传送帧,它们可以并行地、全双工地工作,解决了工业以太网中不断增长 的流量负荷问题,这是单信道CSMA/CD不能做到的。
◆ 传输速率高 目前10Mbit/s、100Mbit/s和1000Mbit/s的速率已经广泛应 用,可完全满足工业控制网络不断增长的带宽要求

Stratix 系列交换机和网络设备说明书

Stratix 系列交换机和网络设备说明书

Plant LAN - VLAN 17-Layer 2 Domain Plant IP-Subnet Via Network Address Translation21342134ABBACell/Area Zone #1Subnet 192 168 1.0/24Cell/Area Zone #2Subnet 192 168 1.0/24Cell/Area Zone #3Subnet 192 168 1.0/24Stratix 57009300-ENAStratix 5700Stratix 5900Stratix 5900Stratix 5900Cell/Area Zone #1Subnet 192 168 1.0/24Cell/Area Zone #2Subnet 192 168 1.024Cell/Area Zone #3Subnet 192 168 1.0/24Plant-wide/Site-wide Network using Stratix 9300-ENAs with NAT Providing IP Subnet RepeatabilityPlant-wide/Site-wide Network using Stratix 5900’s with NAT Providing IP Subnet RepeatabilityPlant-wide/Site-wide Network using Stratix 5700’swith VLANS and NAT 9300-ENA9300-ENAStratix 8300Plant-wideSite-wide Operation SystemLevel 3-Site OperationsIndustrial ZoneLevel 0-2Cell/Area ZoneLevel 3-Site OperationsIndustrial ZoneLevel 0-2Cell/Area ZoneLevel 3-Site OperationsIndustrial ZoneLevel 0-2Cell/Area ZoneStratix 8300Plant-wide Site-wide Operation SystemStratix 5700Stratix 5700Stratix 5700Stratix 8300Plant-wide Site-wide Operation SystemRockwell Automation and EtherNet/IP Provide Multiple Options to Connect to Your Plant Network Using Standard Ethernet TechnologyNote: Information presented here is for illustrative purposes onlyPlant LAN - VLAN 17-Layer 2 Domain Plant IP-Subnet LAN - VLAN 17-Layer 2 Domain Plant IP-Subnet Zone #1VLAN 10Subnet 192 168 1.0/24Cell/Area Zone #2VLAN 20Subnet 192 168 1.0/24Cell/Area Zone #3VLAN30Subnet 192 168 1.0/24Plant LAN - VLAN 17-Layer 2 Domain Plant IP-Subnet IP subnets between CPwE Cell/Area Zones. Translating IP addresses using 9300-ENA network address translation appliances In this example, IP addresses can be reused across Cell/Area Zones, allowing OEMs to repeat IP subnets while still allowing for a converged network.• A 9300-ENA appliance is placed between each Cell/Area Zone to provide Network Address Translation .• From the Level 3, the site operations are able to access all devices • Between each individual Cell/Area Zone, IP addresses can be re-used• Each 9300-ENA must be programmed to translate from the192.168.1.0/24 IP subnet to the plant-wide/site-wide IP subnet.If the entire Cell/Area Zone needs to communicate with the plant-wide/site- wide network, then all devices must have their addresses manually translated• This architecture complicates the plant-wide/site-wide side of the ar chitecture to provide simplicity to the Cell/Area Zones and OEMsRepeating IP subnets between CPwE Cell/Area Zones. Translating IP addresses using Stratix 5900 Unified Threat Management Security Appliance with NATIn this example, IP addresses can be reused across Cell/Area Zones, allowing OEMs to repeat IP subnets while still allowing for a converged network. NAT also provides the benefit of smaller Layer 2 building blocks, allowing control over traffic traversing between IP subnets.NAT can be implemented via the Stratix 5900 unified threatmanagement security appliance.The UTM security appliance can provide an additional level of enhanced security to further segment Cell/Area Zones from the plant-wide/site-wide network and other Cell/Area Zones.• A UTM security appliance is placed between each Cell/ Area Zone to provide Network Address Translation• From the Level 3, the site operations are able to access all devices • Between each individual Cell/Area Zone, IP Addresses can be re-used • Each UTM security appliance must be programmed to translate from the IP subnet to the plant-wide/site-wide IP subnet • This architecture complicates the plant-wide/site-wide side of the architecture to provide simplicity to the Cell/Area Zones and machine/ process skid buildersRepeating IP subnets between CPwE Cell/Area Zones. Translating IP ad-dresses using Stratix 5700 series switches VLANs implemented to logically segment CPwE Cell/Area Zones.In this example, IP addresses can be reused across Cell/Area Zones, allowing OEMs to repeat IP subnets while still allowing for a converged network. The Cell/Area Zones repeat IP subnets and are segmented from each other by utilizing VLANs.• Each Cell/Area Zone is segmented via a unique VLAN• If Cell/Area Zones need to communicate between each other, they must communicate through a Layer 3 switch such as the Stratix 8300 that can provide inter-VLAN routing• This architecture provides small layer 2 domains of trust, fault domains and broadcast domains• This architecture can help limit access between Cell/Area Zones to help provide restrictive access to machine/process skid builders’ intellectual property• From Level 3, the site operations are able to access all devices • Between each individual Cell/Area Zone, IP Addresses can be re-used • Each Stratix 5700 must be programmed to translate from the192.168.1.0/24 IP subnet to the plant-wide/site-wide IP subnet.If the entire Cell/Area Zone needs to communicate with the plant-wide/site-wide network, then all devices must have their addresses manually translated• This architecture complicates the plant-wide/site-wide side of the architecture to provide simplicity to the Cell/Area Zones and machine/ process skid buildersPublication IASIMP-QR30A-EN-PAbout the ProductsStratix 5700• Scalable Layer 2 managed industrial switch• Default configurations for industrial autom ation and EtherNet/IP devices (Global and Smartports)• Studio 5000 for configuration via Add on Profiles/Predefined Logix tags for diagnostics • FactoryTalk View Faceplates for status monitoring and alarming • Best of Cisco - Catalyst® switch architecture/ feature setStratix 8300• Full Layer 3 industrial switch that supports routing between Subnets and VLANs.• Default configurations for industrial automation and EtherNet/IP devices (Global and Smartports)• Studio 5000 for configuration via Add on Profiles/Predefined Logix tags for diagnostics • FactoryTalk View Faceplates for status monitoring and alarming • Best of Cisco - Catalyst® switch architecture/ feature setStratix 5900• Combines a number of modern security functions into a single appliance• Managed router that also provides a number of managed switching features • A single device to implement VPN, Firewall, NAT, and many other services • Best of Cisco - Fully integrated with Cisco IOS9300-ENA• NAT Appliance allowing identical machines to be placed on Ethernet networksAbout this ConfigurationThis system consists of three Cell/Area Zones, each with different hardware and potentially from three unique OEMs who would like to protect their Intellectual Property (IP). It illustrates different techniques to accomplish the following: 1. Protect intellectual property of machine/process skid builders 2. Provide small Layer 2 domains of trust and broadcast domains3. Provide logical Layer 2 building blocks to ensure a future-ready network4. Enable Network Address Translation on a plant-wide/site-wide network to provide IP subnet repeatability at the Cell/Area Zone level, providing faster commissioning time for machine/ process skid buildersSummary of Considerations for Segmentation MethodologiesAdditional ResourcesENET-PP005C-EN-E Stratix 5700 Industrial Ethernet Switch Product ProfileENET-PP002B-EN-P Stratix 8000 and 8300 Industrial Ethernet Switches Product Profile ENET-PP006A-EN-P Stratix 5900 Services Router Product ProfileENET-AT004B-EN-ESegmentation Methods within the Cell / Area ZoneIASIMP-QS038A-EN-PStratix 5700 NAT Quick StartENET-WP032A-EN-E Stratix 5700 NAT WhitepaperENET-QR001-EN-E Stratix Switch Reference Chart ENET-QR002-EN-EStratix 5700 Reference ChartGMSP-PP001-EN-E 9300-ENA Network Address Translation Device Product ProfileIASIMP-QR029A-EN-PStratix/Infrastructure Product Family Quick Reference DrawingENET-TD001-EN-PConverged Plantwide Ethernet (CPwE) Design and Implementation Guide (DIG)Reference Architecture Web Page/rockwellautomation/products-technologies/network-technology/architectures.pageBill of MaterialQty Catalog # Description System: Communication Hardware1 1783-BMS10CL Stratix 5700 Layer2 Managed Switch, 10 Ports Lite1 1783-BMS10CGN Stratix 5700 Layer2 Managed Switch, 10 Ports,Full with CIP Synch and NAT 1 1783-RMS10T Stratix 8300 Layer3 Managed Switch, 10 Ports 1 1783-MS10T Stratix 8000 Layer 2 Managed Switch, 10 Ports 1 1783-SR Stratix 5900 Security Appliance1 9300-ENA Network Address Translation ApplianceSegmentation Techniques Positive Design Considerations Negative Design ConsiderationsNo Segmentation (Not Recommended)• Initially, may appear to be simple to design anddeploy• Link Resiliency (redundant path topologies)• Same Layer 2 broadcast andfault domain, not a scalable or future ready solution.• Every node requires a unique IP address • Blurred demarcation line of network ownershipMultiple NIC Segmentation (ControlLogix Only)• Simple to design and deploy• Smaller Layer 2 domains (broadcast and fault)• Reusable IP addresses/subnets• Clear demarcation of network ownership• Not scalable or future ready, only CIP traffic can traverse a CIP bridge, limited quantity of bridge modules.• Smaller PACs do not support a dual NIC.• No Link Resiliency (redundant path topologies)NAT Appliance Segmentation 9300-ENA• Smaller Layer 2 domains (broadcast and fault)• Reusable IP addresses/subnets • Clear demarcation of network ownership• More difficult to design, deploy,and manage-manual entry and management of IP address translations• No Link resiliency (redundant path topologies)Unified Threat Management Security Appliance with NAT Stratix 5900• Smaller Layer 2 domains (broadcast and fault)• Reusable IP addresses/subnets • Clear demarcation of network ownership• Enhanced security features• More difficult to design, deploy, and manage-manual entry andmanagement of IP address translations • No Link resiliency (redundant path topologies)VLANs Only Segmentation Stratix 5700• Scalable and future ready• Smaller Layer 2 domains (broadcast and fault)• Smaller domains of trust (management of security policies)• Link Resiliency (redundant path configuration)• Layer 3 switch or router is required to forward (route) information between VLANs• Every node requires a unique IP address • Blurred demarcation line of network ownershipVLAN Segmentation with NAT Stratix 5700• Scalable and future ready• Smaller Layer 2 domains (broadcast and fault)• Smaller domains of trust (management of security policies)• Reusable IP addresses/subnets • Link Resiliency (redundant path configuration• Layer 3 switch or router is required to forward (route) information between VLANs• More difficult to design, deploy, andmanage-manual entry and management of IP address translations• Blurred demarcation line of network ownershipPlant LAN - VLAN 17-Layer 2 Domain Plant IP-Subnet,every device requires a unique IP addressPlant LAN - VLAN 17-Layer 2 Domain Plant IP-Subnet Via VLANs21342134ABBACell/Area Zone #1VLAN 10Subnet 192 168 1.0/24Cell/Area Zone #2VLAN 20Subnet 192 168 1.0/24Cell/Area Zone #3VLAN30Subnet 192 168 1.0/24Level 3-Site OperationsIndustrial ZoneLevel 0-2Cell/Area ZoneStratix 5700Stratix 5700Stratix 5700FAULTFWD SelEsc 525FAULTFWD SelEsc 525Stratix 8300Plant-wide Site-wide Operation SystemCell/Area Zone #1VLAN 10Subnet Zone #2VLAN 20Subnet Zone #3VLAN 30Subnet Network using Stratix 5700’s with VLANs and Unique IP SubnetsPlant-wide/Site-wide Network using Stratix 5700’s with VLANs and NATLevel 3-Site OperationsIndustrial ZoneLevel 0-2Cell/Area ZoneStratix 5700Stratix 5700Stratix 5700FAULT FWD SelEsc 525FAULT FWD Sel Esc 525Stratix 8300Plant-wide Site-wide Operation SystemRockwell Automation and EtherNet/IP Provide Multiple Options to Connect to Your Plant Network Using Standard Ethernet TechnologyNote: Information presented here is for illustrative purposes onlyNon repeating IP subnets (with each device requiring a unique IP address) between CPwE Cell/Area Zones. Stratix 5700 series switches - VLANs implemented to logically segment CPwE Cell/Area Zones.In this example, all nodes within the Industrial Zones must have a unique IP address.IP addresses cannot be reused across machines/process skids or anywhere else within the Industrial Zone.• Each Cell/Area Zone is segmented via a unique VLAN and IP subnet• Note that CPwE VLAN best practices dictates that each Cell/Area Zone must have a unique IP subnet• If Cell/Area Zones need to communicate between each other, they must communicate through a Layer 3 switch such as the Stratix 8300 that can provide inter-VLAN routing• This architecture provides small layer 2 domains of trust, fault domains and broadcast domains• This architecture can help limit access between Cell/Area Zones to help provide restrictive access to machine/process skid builders’ intellectual property • Machine/process skid builders must adhere to addressing schema of plant-wide/ site-wide network, potentially adding complication and time to commissioningRepeating IP subnets between CPwE Cell/Area Zones. Translating IP addresses using Stratix 5700 series switches VLANs implemented to logically segment CPwE Cell/Area Zones.In this example, IP addresses can be reused across Cell/Area Zones, allowing OEMs to repeat IP subnets while still allowing for a converged network. The Cell/Area Zones repeat IP subnets and are segmented from each other by utilizing VLANs.• Each Cell/Area Zone is segmented via a unique VLAN• If Cell/Area Zones need to communicate between each other, they must communicate through a Layer 3 switch such as a Stratix 8300 that can provide inter-VLAN routing• This architecture provides small layer 2 domains of trust, fault domains and broadcast domains • This architecture can help limit access between Cell/Area Zones to help provide restrictive access to machine/process skid builders’ intellectual property• This architecture utilizes Network Address Translation provided by the Stratix 5700 switches • From Level 3, the site operations are able to access all devices • Between each individual Cell/Area Zone, IP Addresses can be re-used• Each Stratix 5700 must be programmed to translate from the IP subnet to the plant-wide/site-wide IP subnet.If the entire Cell/Area Zone needs to communicate with the plant-wide/site-wide network, then all devices must have their addresses manually translated • This architecture complicates the plant-wide/site-wide side of the architecture to provide simplicity to the Cell/Area Zones and machine/process skid buildersPublication IASIMP-QR30A-EN-PAbout the ProductsStratix 5700• Scalable Layer 2 managed industrial switch• Default configurations for industrial autom ation and EtherNet/IP devices (Global and Smartports)• Studio 5000 for configuration via Add on Profiles/Predefined Logix tags for diagnostics • FactoryTalk View Faceplates for status monitoring and alarming • Best of Cisco - Catalyst® switch architecture/ feature setStratix 8300• Full Layer 3 industrial switch that supports routing between Subnets and VLANs.• Default configurations for industrial automation and EtherNet/IP devices (Global and Smartports)• Studio 5000 for configuration via Add on Profiles/Predefined Logix tags for diagnostics • FactoryTalk View Faceplates for status monitoring and alarming • Best of Cisco - Catalyst® switch architecture/ feature setStratix 5900• Combines a number of modern security functions into a single appliance• Managed router that also provides a number of managed switching features • A single device to implement VPN, Firewall, NAT, and many other services • Best of Cisco - Fully integrated with Cisco IOS9300-ENA• NAT Appliance allowing identical machines to be placed on Ethernet networksAbout this ConfigurationThis system consists of three Cell/Area Zones, each with different hardware and potentially from three unique OEMs who would like to protect their Intellectual Property (IP). It illustrates different techniques to accomplish the following: 1. Protect intellectual property of machine/process skid builders 2. Provide small Layer 2 domains of trust and broadcast domains3. Provide logical Layer 2 building blocks to ensure a future-ready network4. Enable Network Address Translation on a plant-wide/site-wide network to provide IP subnet repeatability at the Cell/Area Zone level, providing faster commissioning time for machine/ process skid buildersBill of MaterialQty Catalog # Description System: Communication Hardware1 1783-BMS10CL Stratix 5700 Layer2 Managed Switch, 10 Ports Lite1 1783-BMS10CGN Stratix 5700 Layer2 Managed Switch, 10 Ports,Full with CIP Synch and NAT 1 1783-RMS10T Stratix 8300 Layer3 Managed Switch, 10 Ports 1 1783-MS10T Stratix 8000 Layer 2 Managed Switch, 10 Ports 1 1783-SR Stratix 5900 Security Appliance1 9300-ENA Network Address Translation ApplianceSegmentation Techniques Positive Design Considerations Negative Design ConsiderationsNo Segmentation (Not Recommended)• Initially, may appear to be simple to design anddeploy• Link Resiliency (redundant path topologies)• Same Layer 2 broadcast andfault domain, not a scalable or future ready solution.• Every node requires a unique IP address • Blurred demarcation line of network ownershipMultiple NIC Segmentation (ControlLogix Only)• Simple to design and deploy• Smaller Layer 2 domains (broadcast and fault)• Reusable IP addresses/subnets• Clear demarcation of network ownership• Not scalable or future ready, only CIP traffic can traverse a CIP bridge, limited quantity of bridge modules.• Smaller PACs do not support a dual NIC.• No Link Resiliency (redundant path topologies)NAT Appliance Segmentation 9300-ENA• Smaller Layer 2 domains (broadcast and fault)• Reusable IP addresses/subnets • Clear demarcation of network ownership• More difficult to design, deploy,and manage-manual entry and management of IP address translations• No Link resiliency (redundant path topologies)Unified Threat Management Security Appliance with NAT Stratix 5900• Smaller Layer 2 domains (broadcast and fault)• Reusable IP addresses/subnets • Clear demarcation of network ownership• Enhanced security features• More difficult to design, deploy, and manage-manual entry andmanagement of IP address translations • No Link resiliency (redundant path topologies)VLANs Only Segmentation Stratix 5700• Scalable and future ready• Smaller Layer 2 domains (broadcast and fault)• Smaller domains of trust (management of security policies)• Link Resiliency (redundant path configuration)• Layer 3 switch or router is required to forward (route) information between VLANs• Every node requires a unique IP address • Blurred demarcation line of network ownershipVLAN Segmentation with NAT Stratix 5700• Scalable and future ready• Smaller Layer 2 domains (broadcast and fault)• Smaller domains of trust (management of security policies)• Reusable IP addresses/subnets • Link Resiliency (redundant path configuration• Layer 3 switch or router is required to forward (route) information between VLANs• More difficult to design, deploy, andmanage-manual entry and management of IP address translations• Blurred demarcation line of network ownershipSummary of Considerations for Segmentation MethodologiesReference Architecture Web Page/rockwellautomation/products-technologies/network-technology/architectures.pageAdditional ResourcesENET-PP005C-EN-E Stratix 5700 Industrial Ethernet Switch Product ProfileENET-PP002B-EN-P Stratix 8000 and 8300 Industrial Ethernet Switches Product Profile ENET-PP006A-EN-P Stratix 5900 Services Router Product ProfileENET-AT004B-EN-E Segmentation Methods within the Cell / Area ZoneIASIMP-QS038A-EN-PStratix 5700 NAT Quick StartENET-WP032A-EN-E Stratix 5700 NAT Whitepaper ENET-QR001-EN-E Stratix Switch Reference Chart ENET-QR002-EN-EStratix 5700 Reference ChartGMSP-PP001-EN-E 9300-ENA Network Address Translation Device Product ProfileIASIMP-QR029A-EN-PStratix/Infrastructure Product Family Quick Reference DrawingENET-TD001-EN-PConverged Plantwide Ethernet (CPwE) Design and Implementation Guide (DIG)。

罗克威尔自动化公司 Stratix Ethernet 设备技术规范说明书

罗克威尔自动化公司 Stratix Ethernet 设备技术规范说明书

Type tested at 1250V DC for 60 s
Type tested at 853V AC for 60 s
4.8 W
6.24 W
4.8 W
6.24 W
RJ45 connector according to IEC 60603-7, 2- or 4-pair Category 5e minimum cable according to TIA 568-B.1 or Category 5 cable according to ISO/IEC 24702
IEC 61754-20 LC connector, maximum insertion loss 0.75 dB per connection 2 km (1.24 mi) (1)
(1) The channel (connectors and cable) must not exceed the allowable power budget.
European Union 2011/65/EU RoHS, compliant with: • EN 50581; Technical Documentation
Australian Radiocommunications Act, compliant with: AS/NZS CISPR 11; Industrial Emissions
Stratix Ethernet Device Specifications
Embedded Switch Technology
Technical Specifications - EtherNet/IP Taps
Attribute Description

























3.4 交换机的接口类型
BNC 接口
这是专门用于连接细同 轴电缆的接口,目前提供这 种接口的交换机比较少见。 个别交换机保留BNC接口, 主要是用于与细同轴电缆作 为传输介质的令牌网络连接 。
3.5 交换机的接口类型
用于配置交换机而使用 的接口。
不同交换机的Console 接受有所不同,有些与 Cisco路由器一样采用RJ45类型Console接口,而 有的则采用串口作为 Console接口。
络进行控制和管理。进步抑制广播风暴。 5、可网管交换机的数
(Latency)低。 6、可以基于源、目的、网段进行数据信息流
的控制 7、链路聚合可以让交换机和交换机以及交换机和服务
堆叠 只有支持堆叠的交换及之
间才可进行堆叠,使用专用的 堆叠线通过交换机上提供的堆 叠接口使用一定的连接方式连 接起来。
多台交换机的堆叠是靠一 个提供背板总线带宽的多口堆 叠母模块与单口的堆叠子模块 相连实现的,并插入不同的交 换机实现交换机的堆叠。
4.4 交换机的连接方式
连接方式不同:级联是两台交换机通过两个PORT互联,而堆 叠是交换机通过专门的背板堆叠模块相连。堆叠可以增加设备总带 宽,而级联是不能增加设备的总带宽。
优点:数据处理速度比存储转发方式快 缺点:比直通式慢 适用环境:一般的通讯链路
1.3.1 交换机的分类
– 第二层交换机 – 第三层交换机 – 第四层交换机 – 第七层交换机



交换机 罗克韦尔自动化Stratix交换机常见问题解答常见问题解答1.工业现场布置以太网时对电缆有什么要求?在工业现场布置以太网时,可以使用屏蔽双绞线(STP)、非屏蔽双绞线(UTP)和光纤。









下表是Stratix 系列光纤模块的传输距离3.以太网双绞线安装时应注意哪些事项?按照电磁兼容性(EMC)标准,网络通讯属于EMC-2,而交流电源、大功率输入输出以及运动驱动器与电机之间的电源线等属于EMC-1。


a. 如果必须与电源线交叉,它们之间应该互相垂直;b.至少与高压外壳、或RF/微波发射源相隔1.5米;c.如果导体安装在一个金属导线槽或导管,1)导线槽或导管的每段接头处必须焊接以保证整个线路的导电连通性,2)入口点必须与外壳焊接在一起;d.适当的屏蔽(在需要的地方)并将其安放在配线管道中,使之与EMC-1导体隔开;e. 参考用户当地、国家以及国际关于电缆分组的标准。


电缆至少要保持的距离噪声源的强度通过电缆电压8.3 cm 小于20安培的EMC-1导体24 至10015 cm 大约20安培,低于100kVA的交流电源线101至20030 cm 高于100kVA的交流电源线201 至400g. 在导管或金属导向槽中安装UTP电缆时,请咨询电缆供应商确认是否影响电气性能;4.HUB、交换机、管理型交换机、三层交换机、路由器和网关有何区别?HUB:HUB或称集线器属于物理层的设备,HUB主要功能是对信号放大,HUB只识别数据包是0还是1,不识别其它内容,所有HUB连接在一起的设备属于一个冲突域,HUB连接的网络是一个共享式网络。

  1. 1、下载文档前请自行甄别文档内容的完整性,平台不提供额外的编辑、内容补充、找答案等附加服务。
  2. 2、"仅部分预览"的文档,不可在线预览部分如存在完整性等问题,可反馈申请退款(可完整预览的文档不适用该条件!)。
  3. 3、如文档侵犯您的权益,请联系客服反馈,我们会尽快为您处理(人工客服工作时间:9:00-18:30)。

.Stratix TM工业以太网交换机产品选型手册Stratix TM工业以太网交换机产品以太网在车间层和在整个企业内的部署,以及制造商日益增加的业务压力,导致了网络和技术通过以太网进行了融合。


Stratix TM系列工业以太网基础架构产品是专为帮助您推进网络融合而设计的。





Stratix 8000系列产品具有罗克韦尔自动化和Cisco联合品牌的模块化管理型交换机的特性,它为IT和自动化控制专业人员带来了新价值。


整个系列产品使用标准的、未修改的以太网并且在EtherNet/IP应用和集成架构中得以优化使用,另外Stratix 8000产品线中特别使用了Cisco操作系统、用户环境及功能集。

Stratix 8300是工业级模块化三层交换机,可以在不同子网间和VLAN间进行路由。

Stratix TM系列产品可以广泛用于流程工业自动化,工厂自动化,地铁、隧道、高速公路、铁路和机场,电力,水、污水等基础设施,智能交通运输系统(ITS),SCADA 系统等。

使用Cisco技术的Stratix 8000联合品牌模块化管理型交换机Cisco和罗克韦尔自动化在联合品牌的工业管理型交换机上进行了合作,Stratix 8000是两家公司联合推出的首款交换机。


交换机产品线使用当前Cisco Catalyst TM交换机的操作系统、功能和用户界面,从而使IT专业人员能使用思科设备管理器Web界面,以及思科网络助理和CiscoWorks 等支持工具,简化了工业网络的部署、管理和更换。


用户能够从RSLogix 5000中的CIP标签和组态画面以及FactoryTalk View诊断面板中受益。


1性能指标•线速交换•128MB DRAM•64MB 闪存•可配置多达8000 个MAC 地址•可配置多达255 个IGMP 群组•可配置的最大传输单元(MTU)为9000字节,最大以太网帧为9018字节(巨型帧),用于千兆以太网端口上的桥接;最大1998 字节,用于10/100 和10/100/1000 端口上多协议标签交换(MPLS)标记帧的桥接•-40˚C~ 60˚C的运行环境参数,耐冲击、振动和浪涌。

DIN 轨或19”机架安装•支持300 种不同的硬件配置•提供继电器触点来连接外部告警系统•通过Cisco IOS 软件提供高可用性、关键数据传输保证和可靠安全性•只需按下一个按键,即能获得针对工业应用的建议软件配置•符合广泛的工业以太网规范,适用于工业自动化、ITS、变电站、铁路和其他市场•支持IEEE1588 v2,这一高精度时钟同步协议为高性能应用提供了纳秒级精确度组网、管理和维护方便•通过Web浏览器简化了初始配置,无需较为复杂的终端模拟程序•EtherNet/IP Smartports模板使用户只需按下一个按键,即能获得针对这些工业以太网协议的优化设置•可插拔闪存使交换机更换快速、简便。



能通过基于CIP的管理工具管理,支持用户使用单一工具来管理整个工业自动化系统•通过SNMP(v1/v2/v3)支持,能借助CiscoWorks 等传统IT 管理工具来进行管理•思科网络助理软件是一个基于Windows 的免费配置软件,能简化用户数目不超过250名的网络管理。

凭借思科网络助理,用户能够管理Stratix 8000交换机。




•在一段特定的时间之后,老化功能会将MAC地址从交换机中删除,以便让另外一个设备连接到同一个端口思科高速环网技术-快速弹性以太网协议(REP)• REP是一种高速环网协议,它使交换机能够以环形、环形段或者嵌套环形段的形式来连接。



REP为多达200 个节点提供网络冗余性,光纤环网等各种拓扑结构的收敛(恢复)时间不超过50ms。


2实时性和确定性•支持虚拟局域网(VLAN)能对网络进行逻辑分区,便于优化带宽使用•支持QoS 对数据进行分类和划分优先级,保证关键任务数据的传输•支持IGMP v3的监听功能,让客户端能够迅速地加入或者退出组播流,使带宽密集型流量只限提供给发出请求的用户。

•支持IGMP过滤,能过滤出非授权用户并限制每端口的并发组播流数,以提供组播验证•基于单个端口的广播、组播和单播风暴控制能够防止发生故障的基站降低整个系统的性能•支持IEEE 802.1d生成树协议,支持冗余的骨干网连接和无环路的网络,从而能够简化网络配置,提高容错性•支持CIP Sync,CIP Sync是ODVA对IEEE 1588精确时间协议的实现,使自动化设备能够在100纳秒范围内实现时钟同步。


Stratix 8000这一版本支持透明和边界IEEE 1588时钟技术,且具有CIP接口的,从而可以方便的集成。

可靠性和稳定性Stratix 8000 采用了最可靠的元器件和稳定可靠的操作系统。

在运行过程中,Stratix 8000除了进行内部检测以外,还可以进行各种接口和协议错误检测:•BPDU出错禁止•DHCP嗅探错误检测•动态中继协议DTP错误检测•SFP错误检测•进线电源错误检测•链路状态抖动错误检测和恢复:有效防止时断时续端口对网络的影响•loopback错误检测•端口聚合协议PAgP错误检测•SFP配置不匹配错误检测网络安全性•带VLAN 分配功能、访客VLAN 和语音VLAN 的IEEE 802.1x口的动态安全性,提供用户身份验证•MAC 地址安全使管理员能在网络添加或者删除用户时获得通知•端口安全性可根据MAC 地址,保护对某个接入或者汇聚端口的访问权限•MAC地址过滤能通过一个匹配MAC地址来防止转发任意类型的数据包•SSH v2,HTTPS 和SNMP v3能够通过在Telnet 和SNMP会话中加密来提供网络安全。

由于美国出口法律的限制,SSH v2和SNMP v3版本需要一种特殊的加密软件镜像•TACACS+和RADIUS身份验证能对交换机进行集中控制,并防止未经授权的用户更改配置•DHCP 监听使管理员能确保IP到MAC地址的一致镜像。

这能用于防止企图破坏DHCP捆绑数据库的攻击,并对进入交换机端口的流量进行限速•可信边界能在具有IP电话时信任QoS优先级设置,并在IP电话拆除后禁用信任设置,由此防止恶意用户篡改网络中的优先级划分•可使用程序打开和关闭交换机端口•能在各交换机端口上应用ACL,支持多达512 个ACL,有两种类别:安全性(384 个安全ACL和128个QoS 策略),以及QoS(128 个安全ACL 项和384 个QoS)。

3连接器和布线•10BASE-T端口:RJ-45连接器,2对3、4或5类非屏蔽双绞线(UTP)电缆•100BASE-TX 端口:RJ-45 连接器,2 对5 类UTP 电缆•1000BASE-T 端口:RJ-45 连接器,4 对5 类UTP 电缆•基于SFP 的1000BASE-SX、-LX 端口:LC 光纤连接器(单模/ 多模光纤)•100BASE-LX10,-FX:LC 光纤连接器(单模/ 多模光纤)Stratix 8300模块化三层管理型交换机Statix 8300具有Stratix 8000的所有特性,Stratix 8300 的IOS 使用Cisco Catalyst 3750 IP Services Images,与思科企业级平台的交换机相兼容。

Stratix 8300的两个基本模块型号为1783-RMS10T和1783-RMS06T,可以使用Stratix 8000的扩展模块和SFP 子模块。

Stratix 8300的路由功能:•静态路由,VLAN间路由•动态路由:RIP v1/v2,OSPF,OSPF快速收敛,增强型 IGRP(EIGRP)•PBR(策略路由)•多播路由:PIM(SM,DM, SDM),距离矢量组播路由协议(DVMRP)隧道•VRF简化版•HSRP(热备份路由器协议)•CEF:Cisco Express Forwarding (思科快速转发)Stratix 8300增强的安全功能•私有VLAN(PVLAN)•802.1x 用于语音VLAN的MAC 身份验证旁路•NAC(网络访问控制) - L2 IP•SSH 2 客户端•VACL(VLAN访问控制列表)•RACL(路由器访问控制列表)Stratix 6000固定端口管理型交换机通过监测控制系统的网络状态,能够最大限度地改善网络正常运行时间和整体生产力。

Stratix 6000可以很容易地连接到Logix控制器。



使用Stratix 6000,您能够实时地访问基于Logix 的控制系统中的网络数据。

