WO2022201034A1 - Commissioning distributed control nodes - Google Patents
Commissioning distributed control nodes Download PDFInfo
- Publication number
- WO2022201034A1 WO2022201034A1 PCT/IB2022/052619 IB2022052619W WO2022201034A1 WO 2022201034 A1 WO2022201034 A1 WO 2022201034A1 IB 2022052619 W IB2022052619 W IB 2022052619W WO 2022201034 A1 WO2022201034 A1 WO 2022201034A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- dcn
- process automation
- automation network
- configuration data
- capabilities
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0823—Network architectures or network communication protocols for network security for authentication of entities using certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
- H04L67/1001—Protocols in which an application is distributed across nodes in the network for accessing one among a plurality of replicated servers
- H04L67/1036—Load balancing of requests to servers for services different from user content provisioning, e.g. load balancing across domain name servers
-
- G—PHYSICS
- G05—CONTROLLING; REGULATING
- G05B—CONTROL OR REGULATING SYSTEMS IN GENERAL; FUNCTIONAL ELEMENTS OF SUCH SYSTEMS; MONITORING OR TESTING ARRANGEMENTS FOR SUCH SYSTEMS OR ELEMENTS
- G05B19/00—Program-control systems
- G05B19/02—Program-control systems electric
- G05B19/418—Total factory control, i.e. centrally controlling a plurality of machines, e.g. direct or distributed numerical control [DNC], flexible manufacturing systems [FMS], integrated manufacturing systems [IMS] or computer integrated manufacturing [CIM]
- G05B19/4185—Total factory control, i.e. centrally controlling a plurality of machines, e.g. direct or distributed numerical control [DNC], flexible manufacturing systems [FMS], integrated manufacturing systems [IMS] or computer integrated manufacturing [CIM] characterised by the network communication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/02—Standardisation; Integration
- H04L41/022—Multivendor or multi-standard integration
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/08—Configuration management of networks or network elements
- H04L41/0803—Configuration setting
- H04L41/0806—Configuration setting for initial configuration or provisioning, e.g. plug-and-play
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/08—Configuration management of networks or network elements
- H04L41/0803—Configuration setting
- H04L41/0813—Configuration setting characterised by the conditions triggering a change of settings
- H04L41/082—Configuration setting characterised by the conditions triggering a change of settings the condition being updates or upgrades of network functionality
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/08—Configuration management of networks or network elements
- H04L41/0876—Aspects of the degree of configuration automation
- H04L41/0886—Fully automatic configuration
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/12—Discovery or management of network topologies
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
- H04L67/1001—Protocols in which an application is distributed across nodes in the network for accessing one among a plurality of replicated servers
- H04L67/1004—Server selection for load balancing
- H04L67/101—Server selection for load balancing based on network conditions
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/12—Protocols specially adapted for proprietary or special-purpose networking environments, e.g. medical networks, sensor networks, networks in vehicles or remote metering networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/34—Network arrangements or protocols for supporting network services or applications involving the movement of software or configuration parameters
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F8/00—Arrangements for software engineering
- G06F8/60—Software deployment
- G06F8/65—Updates
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F8/00—Arrangements for software engineering
- G06F8/60—Software deployment
- G06F8/65—Updates
- G06F8/654—Updates using techniques specially adapted for alterable solid state memories, e.g. for EEPROM or flash memories
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F9/00—Arrangements for program control, e.g. control units
- G06F9/06—Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
- G06F9/44—Arrangements for executing specific programs
- G06F9/445—Program loading or initiating
- G06F9/44505—Configuring for program initiating, e.g. using registry, configuration files
Definitions
- Implementations are described herein for commissioning devices, such as compute and/or input/output (EO) gates that are referred to in some contexts as distributed control nodes (DCNs), to process automation networks. More particularly, but not exclusively, implementations are described herein for automatically discovering types and/or operational technology (OT) capabilities of DCNs that are added to process automation networks, such as process automation networks that comply with open standards that allow for the integration of heterogeneous components from various vendors.
- OT capabilities may include, for instance, software and hardware specifications, supported OT capabilities (e.g ., protocol, signal types, control runtime engine, etc.), open standard conformance profiles, and so forth.
- Techniques described herein may save time, effort, reduce human mistakes, and/or mitigate occurrences of system downtime or other system interruptions. For example, a failed DCN may be replaced or upgraded more quickly, while providing improved and/or uninterrupted system availability.
- a method for commissioning a DCN to a process automation network may be implemented using one or more processors and may include: detecting one or more messages transmitted on the process automation network by the DCN, wherein the one or more messages announces that the DCN has joined the process automation network; based on the one or more messages, determining one or more operational technology (OT) capabilities of the DCN; and based on the one or more OT capabilities, commissioning the DCN to the process automation network, wherein the commissioning includes configuring the DCN to cooperate with one or more other process automation nodes on the process automation network to implement an at least partially automated process.
- OT operational technology
- the method may include identifying, based on the one or more OT capabilities, the one or more other process automation nodes on the process automation network that are compatible with the DCN.
- the identifying may include matching at least one actuator of the process automation network with the DCN based on a profile of the at least one actuator.
- the identifying may include matching at least one sensor of the process automation network with the DCN based on a profile of the at least one sensor.
- the detecting may include receiving the message as a multicast message.
- the configuring may include causing configuration data to be installed on the DCN, wherein the configuration data facilitates cooperation between the DCN and the one or more other nodes on the process automation network to implement the at least partially automated process.
- the causing may include pushing the configuration data to the DCN over the process automation network.
- the one or more OT capabilities of the added DCN may include one or more of: a count of input/output (I/O) channels of the DCN; a type of I/O channel of the DCN; a range limit associated with the DCN; a preferred unit of measurement of the DCN; an update frequency of the DCN; one or more analog-to-digital conversion parameters of the DCN; one or more signal conditioning parameters of the DCN; or any combination thereof.
- the method may further include verifying or authenticating the DCN based on data received over one or more computer networks from a vendor system associated with the DCN. In some such implementations, the verifying may include cross- referencing identification information associated with the DCN with the data received from the vendor system.
- a DCN may include logic/circuitry to: transmit one or more messages on a process automation network, wherein the one or more messages announce that the DCN has joined the process automation network and convey one or more OT capabilities of the DCN; receive configuration data from a configuration node over the process automation network, wherein the configuration data includes: IT configuration data that enables the DCN to engage in network communication with other nodes on the process automation network, and OT configuration data that enables the DCN to cooperate with one or more compatible actuators or sensors on the process automation network to implement an at least partially automated process; and in accordance with the configuration data, exchange data with one or more of compatible actuators or sensors to implement the at least partially automated process.
- the circuitry may be configured to receive a software or firmware update from, or at the direction of, the configuration node.
- the IT configuration data may include a security certificate to facilitate encrypted communication.
- the IT configuration data may include time sensitive networking settings.
- some implementations include one or more processors of one or more computing devices, where the one or more processors are operable to execute instructions stored in associated memory, and where the instructions are configured to cause performance of any of the aforementioned methods. Some implementations also include one or more non-transitory computer readable storage media storing computer instructions executable by one or more processors to perform any of the aforementioned methods.
- FIG. 1 schematically depicts an environment in which selected aspects of the present disclosure may be implemented, in accordance with various embodiments.
- FIG. 2 schematically depicts on example of how techniques described herein may be implemented, in accordance with various embodiments.
- Fig. 3 illustrates an example method for performing selected aspects of the present disclosure.
- FIG. 4 illustrates another example method for performing selected aspects of the present disclosure.
- FIG. 5 schematically illustrates an example computer architecture on which selected aspects of the present disclosure may be implemented.
- Implementations are described herein for commissioning devices to process automation applications and/or systems. More particularly, but not exclusively, implementations are described herein for automatically discovering types and/or operational technology (OT) capabilities of devices such as distributed control nodes (DCNs) that are added to process automation networks, such as process automation networks that comply with open standards that allow for the integration of heterogeneous components from various vendors.
- DCNs distributed control nodes
- These types and/or OT capabilities may include, for instance, software and hardware specifications, supported OT capabilities (e.g ., protocol, signal types, control runtime engine, etc.), open standard conformance profiles, and so forth.
- techniques are proposed for automatically configuring devices based on the information collected during the discovery process. Techniques described herein may save time, effort, reduce human mistakes, and/or mitigate against occurrences of system downtime and/or failure. For example, a failed DCN may be replaced or upgraded faster while providing improved and/or uninterrupted system availability.
- the DCN when a DCN or other similar device is connected to a process automation network, the DCN may announce itself, e.g., by broadcasting or multicasting one or more messages on the process automation network.
- a configuration node on the process automation network e.g, a central server
- the configuration node may commission the added DCN to the process automation network. In some implementations, this commissioning may include applying security policies and/or updates, and configuring the added DCN to cooperate with one or more other nodes on the process automation network to implement an at least partially automated process.
- an “at least partially automated process” includes any process cooperatively implemented within a process automation system by multiple devices with little or no human intervention.
- One common example of an at least partially automated process is a process loop of a process automation network in which one or more actuators are operated automatically (without human intervention) based on output of one or more sensors.
- Some at least partially automated processes may be sub-processes of an overall process automation system, such as a single process loop mentioned previously.
- Other at least partially automated processes may comprise all or a significant portion of an entire process automation system.
- the degree to which a process is automated may exist along a gradient, range or scale of automation. Processes that are partially automated, but still require human intervention, may be at or near one end of the scale.
- Processes requiring less human intervention may approach the other end of the scale, which represents fully autonomous processes.
- Process automation in general may be used to automate processes in a variety of domains, e.g ., manufacture, development, and/or refinement of chemicals (e.g, chemical processing), catalysts, machinery, etc.
- a newly-added DCN may be configured with (e.g, pushed) one or both of information technology (IT) configuration data (operating system, device drivers, security and network policy, etc.) and OT configuration data.
- IT configuration data may enable the DCN to securely engage in network communication with other nodes on the process automation network, and may include, for instance, networking parameters, hardware parameters, etc.
- IT configuration data may be determined based at least in part on IT capabilities of the added DCN, such as redundancy capabilities; interfaces (serial, USB, Ethernet, wireless,...); storage type (e.g, hard disk drive, solid state drive, memory card, etc.); time-sensitive networking; global positioning system (GPS) capabilities; or any combination thereof.
- GPS global positioning system
- OT configuration data may be generated at least in part on OT capabilities of the added DCN and/or the compatibility of those OT capabilities with OT capabilities of other devices in a process automation system.
- OT capabilities may be included in a “profile” associated with the added DCN. OT capabilities may vary widely among industries.
- OT capabilities may include, but are not limited to, a count of input/output (I/O) channels of the added DCN; one or more types of one or more I/O channels of the added DCN; a range limit associated with the added DCN; a preferred unit of measurement of the added DCN; an update frequency of the added DCN; one or more analog-to-digital conversion parameters of the added DCN; one or more signal conditioning parameters of the added DCN; supported open standard protocols such as the Open Platform Communications (OPC) Unified Architecture (OPC UA) and/or Modbus; or any combination thereof.
- I/O input/output
- OPC Open Platform Communications
- OPC UA Open Platform Communications
- Modbus Modbus
- OT configuration data may include, for instance, identifiers (e.g ., IP addresses) of compatible process automation nodes on the process automation system, OT parameters (e.g., units of measure, range adjustments, open communication protocols, etc.) to be used during operation, and so forth.
- identifiers e.g ., IP addresses
- OT parameters e.g., units of measure, range adjustments, open communication protocols, etc.
- IT and OT capabilities and/or configuration data may overlap and/or be combined. In other implementations, they may be disjointed.
- a process automation management system 102 is operably coupled with a process automation network 106 in a process automation facility 108.
- Process automation facility 108 may take numerous forms and may be designed to implement any number of at least partially automated processes.
- process automation facility 108 may take the form of a chemical processing plant, an oil or natural gas refinery, a catalyst factory, a manufacturing facility, etc.
- Process automation network 106 may be implemented using various wired and/or wireless communication technologies, including but not limited to the Institute of Electrical and Electronics Engineers (IEEE) 802.3 standard (Ethernet), IEEE 802.11 (Wi-Fi), cellular networks such as 3GPP Long Term Evolution (“LTE”) or other wireless protocols that are designated as 3G, 4G, 5G, and beyond, and/or other types of communication networks of various types of topologies (e.g, mesh).
- Process automation is often employed in scenarios in which the cost of failure tends to be large, both in human safety and financial cost to stakeholders. Accordingly, in various implementations, process automation network 106 may be configured with redundancies and/or backups to provide high availability (HA) and/or high quality of service (QoS).
- HA high availability
- QoS quality of service
- Process automation management system 102 may include a commissioning module 104 and a database 105 that stores information used by commissioning module 104 to practice selected aspects of the present disclosure.
- Various aspects of process automation management system 102, such as commissioning module 104 may be implemented using any combination of hardware and software.
- process automation management system 102 may be implemented across multiple computer systems as part of what is often referred to as a “cloud infrastructure” or simply the “cloud.” However, this is not required, and in Fig. 1, for instance, process automation management system 102 is implemented within process automation facility 108, e.g ., in a single building or across a single campus of buildings or other industrial infrastructure. In such an implementation, process automation management system 102 may be implemented on one or more local computing systems, such as on one or more server computers.
- N positive integer
- DCNs 110-1 to 110-N are operably coupled with process automation network 106.
- Each DCN may include circuitry or logic 112 that may take various forms, such as processor(s) that execute instructions in memory, a field-programmable gate array (FPGA), an application-specific integrated circuit (ASIC), and so forth.
- Each DCN 110 may have a particular role to play in process automation network 106.
- “Compute” DCNs may, for instance, control a process loop (e.g, a chemical process loop) in which various “field” devices (e.g, devices having sensors and/or actuators) interface with each other to perform some number of function control blocks (FBs).
- FBs function control blocks
- Each DCN 110 may have various input/output (EO) components that dictate at least some of its OT capabilities and, more generally, its role at process automation facility 108.
- first DCN 110-1 includes a flow transmitter (FT) component 114-1 and an actuator (e.g, a valve) 116-1.
- FT flow transmitter
- actuator e.g, a valve
- a software component implemented on DCN 110-1 may transform an analog signal to digital; and/or convert the signal between different units of measurement, for instance.
- a software component implemented on DCN 110-1 may be configured to translate data between various protocols.
- a particular vendor’s DCN may not be configured natively to communicate data using the OPC Unified Architecture (OPC UA).
- OPC UA OPC Unified Architecture
- another DCN 110 may be deployed to translate this data from the vendor’s proprietary format to OPC UA.
- Some such DCNs 110 may be referred to as “gateways” or “bridges” because they form a link between legacy technology and standards such as OPC UA.
- Actuator 116-1 may be any electric, hydraulic, mechanical, and/or pneumatic component that is controllable to affect some aspect of a process automation workflow that occurs at process automation facility 108.
- an actuator 116 may perform its function in response to various signals, such as sensor signals or commands from compute DCNs (which themselves may monitor for sensor signals).
- Some non-limiting examples of actuators 116 include, but are not limited to, valves, pistons, rotors, switches, heaters, coolers, stirrers, injectors, devices to create vacuums, belts, tracks, gears, grippers, motors, relays, servomechanisms, etc.
- Each DCN 110 may have different OT capabilities with respect to one or more (e.g ., all) other DCNs 110.
- second DCN 110-2 includes a FT component 114-2 but no actuator.
- Third DCN 110-3 includes a sensor 118-3 but no actuator.
- Sensor 118-3 may take various forms, including but not limited to a pressure sensor, a temperature sensor, a flow sensor (e.g., FT component 114), various types of proximity sensors, a light sensor (e.g, a photodiode), a pressure wave sensor (e.g, microphone), a humidity sensor (e.g, a humistor), a radiation dosimeter, a laser absorption spectrograph (e.g, a multi-pass optical cell), and so forth.
- fourth DCN 110-4 also includes both a FT component 114-4 and an actuator 116-4.
- DCN-N does not include any input/output (actuators or sensors). Instead, DCN-N may be a “compute only” DCN whose role is to facilitate cooperation between itself and one or more other DCNs 110 on process automation network 106 to implement an at least partially automated process. For example, DCN 110-N may control a single process loop (e.g, a chemical process control loop) that involves one or more other DCNs 110. In some cases, a compute DCN 110 may perform a role similar to an autopilot on an airplane — the compute DCN 110 may receive various signals and, based on those signals and various criteria and/or thresholds, control various actuators.
- actuators or sensors may be a “compute only” DCN whose role is to facilitate cooperation between itself and one or more other DCNs 110 on process automation network 106 to implement an at least partially automated process. For example, DCN 110-N may control a single process loop (e.g, a chemical process control loop) that involves one or more other DCNs 110. In some cases,
- the compute DCN 110 may monitor various sensors 118 to ascertain data about chemical levels, flow rates (e.g, across valves), tank temperatures, control rates, etc., and may control one or more actuators 116 based on these data and/or comparisons of these data to various criteria and/or thresholds.
- compute DCN 110-N can control actuator 116-4 by transmitting, to DCN 116-4, corresponding command(s) that can optionally conform to a protocol that is specific to DCN 116-4.
- third DCN 110-3 may “announce” itself to other nodes on process automation network 106.
- third DCN 110-3 may transmit one or more messages on process automation network 106 using techniques such as broadcast and/or multicast, e.g ., the multicast domain name service (multi-cast DNS). These messages may announce that third DCN 110-3 has joined process automation network 106, and may convey one or more OT capabilities of third DCN 110-3.
- multi-cast DNS multicast domain name service
- each DCN may have its own custom profile(s) (e.g, open standard conformance profiles) that convey information about its model, serial number, security level, number and nature of FO channels such as FT components 114, actuators 116, and/or sensors 118, data formats for each FO channel, etc.
- These profiles which may describe baseline functionality of a DCN, may take various forms, such as representational state transfer (REST)- compliant forms like JavaScript Object Notation (JSON) and extensible markup language (XML). These profiles may be used, e.g, by commissioning module 104 and/or other nodes of process automation network 106, to determine which DCNs 110 are compatible with each other.
- REST representational state transfer
- JSON JavaScript Object Notation
- XML extensible markup language
- commissioning module 104 may maintain list(s) of active DCN profiles in database 105, which enables commissioning module 104 to match newly-added DCNs 110 to other DCNs 110 already connected to process automation network 106.
- profiles may be supported, such as I/O profiles (e.g ., amps versus volts, analog versus digital), alarms processing profiles, actuator profiles, sensor profiles, etc.
- commissioning module 104 may use a lookup table or other similar mechanism (e.g., a dynamic database) to match (soft matching or exact matching) profile(s) of one DCN 110 to profile(s) of another, thereby identifying compatible DCNs.
- commissioning module 104 may be configured to detect one or more messages transmitted on process automation network 106 by third DCN 110-3 as shown by the arrows labeled “A.” Based on the one or more messages transmitted by third DCN 110-3, e.g, as part of a discovery handshake represented in Fig. 1 by the arrows labeled “B,” commissioning module 104 may determine the IT and/or OT capability(ies) of third DCN 110-3. In the example of Fig. 1, third DCN 110-3 includes sensor 118-3.
- these IT and/or OT capabilities may include, for instance: software specifications; operating system (OS) specifications; hardware specifications; data formatting and/or communication protocols such as supported open standard protocols such as OPC UA and/or Modbus; signal types; control runtime engines; a count of I/O channels; types of I/O channels; range limit(s); preferred units of measurement; update frequency(ies); one or more analog-to- digital conversion parameters; one or more signal conditioning parameters; etc.
- commissioning module 104 may commission third DCN 110-3 to process automation network 106. For example, as shown by the arrows labeled “C”, commissioning module 104 may configure third DCN 110-3 to cooperate with one or more other process automation nodes on the process automation network to implement an at least partially automated process. In some implementations, commissioning module 104 may push various IT and/or OT configuration information to third DCN 110-3 that third logic 112-3 uses to cooperate with other DCNs to implement an at least partially automated process. In some of those implementations, commissioning module 104 can select or generate at least some of the IT and/or OT configuration information in dependence on the determined IT and/or OT capability(ies) of third DCN 110-3.
- IT configuration information may include, but is not limited to, OS or other software updates, firmware updates, software applications and/or libraries designed and/or compiled for the DCN’s specific OS and/or central processing unit (CPU) architecture, etc.
- this configuration information may include a security certificate (e.g ., a public key) that the DCN can use to implement encrypted communication on process automation network 106.
- this configuration information may additionally or alternatively include time sensitive network (TSN) settings.
- TSN time sensitive network
- commissioning module 104 may authenticate a to-be-added DCN, such as third DCN 110-3 in this example, to ensure the to-be-added DCN is legitimate and does not pose a security risk to process automation network 106.
- process automation management system 102 is operably coupled via one or more networks 120 (e.g, the Internet) with some number M (positive integer) of vendor systems 122-1 to 122-M.
- Each vendor system 122 may be associated with a vendor (not depicted) of one or more components (e.g, DCNs 110-1 to 110-N) used in process automation facility 108.
- a vendor system 122 may be configured to authenticate various types of credentials forwarded to it by process automation management system 102 using a variety of different authentication techniques.
- each DCN 110 may be provided with a public encryption key from its respective vendor.
- the DCN 110 and/or process automation management system 102 may use this public key to encrypt some piece of handshake data that is then sent to the respective vendor system 122.
- the vendor system 122 may use its own private key to decrypt the handshake data; if the decryption is successful, the DCN 110 may be authenticated.
- Other variations of public key encryption are contemplated.
- the DCN 110 may provide other credentials, such as a digital certificate, that a respective vendor system 122 may validate before the DCN 110 is permitted to function fully on process automation network 106.
- a vender system 122 may verify not only the legitimacy of a DCN 110, but also whether the DCN 110 conforms to desired/requested criteria associated process automation facility 108. For example, various identification information associated with the added DCN 110, such as a serial number, model number, lot number, etc., may be cross- referenced with a purchase and/or work order created for process automation facility 108. Additionally or alternatively, IT and/or OT capabilities of the added DCN 110 may be compared with known parameters of process automation facility 108 and/or process automation network 106 to ensure compatibility.
- a vendor system 122 may push digital keys/certificates and/or other data that includes these data to process automation management system 102 so that commissioning module 104 can perform these checks locally.
- the vendor system 122 may provide a file or list of relevant information about the new DCNs (e.g ., serial/model numbers, capabilities, etc.) that can be used locally by commissioning module 104 to perform these checks.
- FIG. 2 an example commissioning process flow is depicted schematically between commissioning module 104 and four DCNs 210-1 to 210-4.
- time advances downward on the page.
- a first DCN 210-1 with an actuator 216-1 announces itself to commissioning module 104 at top left.
- this announcement message may be broadcast or multicast on process automation network 106 by first DCN 210-1.
- commissioning module 104 may have a network identifier such as an IP address that is included on a multicast address list.
- this announcement may include an operational technology (“O.T ” in Fig.
- profile e.g., an open standard conformance profile
- first DCN 210-1 has having an actuator 216-1 that takes the form of a pressure valve, as having no sensors, and as being capable of receiving digital input in a (hypothetical) “A” format.
- Profiles need not necessarily be conveyed in this manner, and the profiles depicted in Fig. 2 are for illustrative purposes only.
- commissioning module 104 may generate and/or retrieve configuration data and provide it back to first DCN 210-1, which may then implement it locally.
- a second DCN 210-2 is connected to the network (106 in Fig. 1) and a similar exchange with commissioning module 104 occurs.
- Second DCN 210-2 has a different OT profile that designates it as having no actuators, a voltage thermometer (sensor 218-2), and indicates that it outputs an analog signal indicative of temperature.
- a third DCN 210-3 is connected to the network (106 in Fig. 1) and a similar exchange with commissioning module 104 occurs.
- Third DCN 210-3 has a different OT profile that designates it as having no actuators, no sensors, and an FT component 214-3 that converts analog data to digital data.
- a fourth DCN 210-4 is connected to the network.
- Fourth DCN 210-4 does not include any sensors, actuators, or FT components, which may be conveyed in its own announcement (for which no call-out box is shown in Fig. 2).
- commissioning module 104 may convey to fourth DCN 210-4 which other process automation nodes are compatible.
- the compatible nodes include first DCN 210-1 (DCN1), second DCN 210-2 (DCN2), and third DCN 210-3 (DCN3).
- DCN1 first DCN 210-1
- DCN2 second DCN 210-2
- DCN3 third DCN 210-3
- a network identifier such as an IP address is provided, along with a relevant data about what role each compatible DCN serves. Based on these IP addresses, fourth DCN 210-4 may thereafter cooperate with other DCNs 210-1 to 210-3 to implement all or part of an at least partially automated process.
- Fig. 3 is a flowchart illustrating an example method 300 of practicing selected aspects of the present disclosure, in accordance with implementations disclosed herein. For convenience, the operations of the flow chart are described with reference to a system that performs the operations. This system may include various components of various computer systems, such as one or more components of process automation management system 102, including commissioning module 104. Moreover, while operations of method 300 are shown in a particular order, this is not meant to be limiting. One or more operations may be reordered, omitted or added.
- the system may detect a message transmitted on process automation network 106 by a DCN (e.g, 110-3 in Fig. 1).
- the message may announce that the added DCN has joined process automation network 106.
- the announcement message may be broadcast by the added DCN to all nodes on process automation network 106.
- the message may be multicast by the added DCN to one or more targeted nodes (e.g, members of a multicast list), such as process automation management system 102.
- the system may determine one or more OT capabilities of the added DCN.
- the message or subsequent message(s) may include one or more profiles (e.g, open standard conformance profiles) of the added DCN.
- Commissioning module 104 may match these one or more profiles of the added DCN to one or more profiles of other DCNs on process automation network 106 that are stored in database 105.
- the system e.g ., by way of commissioning module 104, may identify the one or more other process automation nodes on the process automation network that are compatible with the added DCN based on their respective profiles.
- the system may match at least one actuator 116/216 of process automation network 106 with the added DCN based on a profile of the at least one actuator. Additionally or alternatively, in some implementations, the system may match at least one sensor 118/218 of process automation network 106 with the added DCN based on a profile of the at least one sensor. Additionally or alternatively, in some implementations, the system may match at least one FT component 114/214 of process automation network 106 with the added DCN based on a profile of the at least one FT component.
- the system may commission the added DCN to process automation network 106.
- the operations associated with the commissioning of block 306 may take various forms in various implementations.
- the commissioning of block 306 may include, at block 308, authenticating the added DCN with various authorities, such as the applicable vendor system 122 of Fig. 1.
- the authentication of block 308 may be performed in various ways, such as using public-key cryptography, security certificates, two-factor authentication, and so forth.
- the system may configure the added DCN to cooperate with one or more other process automation nodes (e.g, other DCNs) on the process automation network to implement an at least partially automated process.
- the system may, at block 312, cause configuration data to be installed on the added DCN.
- the configuration data may facilitate the cooperation between the added DCN and the one or more other nodes on the process automation network to implement the at least partially automated process.
- the configuration data may include IT configuration data that enables the added DCN to engage in network communication with other nodes on process automation network 106, and/or OT configuration data that enables the added DCN to cooperate with one or more compatible FT components 114, actuators 116, and/or sensors 118 on process automation network 106 to implement the at least partially automated process.
- Fig. 4 is a flowchart illustrating an example method 400 for a DCN 110/210 to practice selected aspects of the present disclosure, in accordance with implementations disclosed herein. While operations of method 400 are shown in a particular order, this is not meant to be limiting. One or more operations may be reordered, omitted or added.
- the DCN 110/210 may transmit one or more messages on process automation network 106. Similar to previous examples, the one or more messages may announce that the DCN has joined process automation network 106 and convey one or more OT capabilities of the DCN.
- the DCN 110/210 may receive configuration data from a configuration node such as commissioning module 104 over process automation network 106.
- This configuration data may vary between implementations.
- the configuration data may include IT configuration data received at block 406.
- IT configuration data may include, for instance, an IP address, a subnet mast, network credentials, DNS (including multicast DNS) data, and any other parameters that enable the DCN to engage in network communication with other nodes on process automation network 106.
- IT configuration may also include other IT parameters such as redundancy capabilities, interfaces, storage type, TSN, GPS capabilities, etc.
- the configuration data may include OT configuration data received at block 408.
- OT configuration data may enable the DCN to cooperate with one or more compatible actuators or sensors on the process automation network to implement an at least partially automated process.
- a non-limiting example of OT configuration data was depicted in the dashed call-out box (“Compatible Nodes”) at bottom right in Fig. 2.
- the DCN may thereafter exchange data with one or more of compatible actuators or sensors, e.g, associated with/hosted by corresponding DCNs, to implement the at least partially automated process.
- FIG. 5 is a block diagram of an example computing device 510 that may optionally be utilized to perform one or more aspects of techniques described herein.
- Computing device 510 typically includes at least one processor 514 which communicates with a number of peripheral devices via bus subsystem 512. These peripheral devices may include a storage subsystem 524, including, for example, a memory subsystem 525 and a file storage subsystem 526, user interface output devices 520, user interface input devices 522, and a network interface subsystem 516. The input and output devices allow user interaction with computing device 510.
- Network interface subsystem 516 provides an interface to outside networks and is coupled to corresponding interface devices in other computing devices.
- User interface input devices 522 may include a keyboard, pointing devices such as a mouse, trackball, touchpad, or graphics tablet, a scanner, a touch screen incorporated into the display, audio input devices such as voice recognition systems, microphones, and/or other types of input devices.
- pointing devices such as a mouse, trackball, touchpad, or graphics tablet
- audio input devices such as voice recognition systems, microphones, and/or other types of input devices.
- use of the term "input device” is intended to include all possible types of devices and ways to input information into computing device 510 or onto a communication network.
- User interface output devices 520 may include a display subsystem, a printer, a fax machine, or non-visual displays such as audio output devices.
- the display subsystem may include a cathode ray tube (CRT), a flat-panel device such as a liquid crystal display (LCD), a projection device, or some other mechanism for creating a visible image.
- the display subsystem may also provide non-visual display such as via audio output devices.
- output device is intended to include all possible types of devices and ways to output information from computing device 510 to the user or to another machine or computing device.
- Storage subsystem 524 stores programming and data constructs that provide the functionality of some or all of the modules described herein.
- the storage subsystem 524 may include the logic to perform selected aspects of the methods of Figs. 3-4, as well as to implement various components depicted in Figs. 1-2.
- Memory 525 used in the storage subsystem 524 can include a number of memories including a main random access memory (RAM) 530 for storage of instructions and data during program execution and a read only memory (ROM) 532 in which fixed instructions are stored.
- a file storage subsystem 526 can provide persistent storage for program and data files, and may include a hard disk drive, a floppy disk drive along with associated removable media, a CD-ROM drive, an optical drive, or removable media cartridges.
- the modules implementing the functionality of certain implementations may be stored by file storage subsystem 526 in the storage subsystem 524, or in other machines accessible by the processor(s) 514.
- Bus subsystem 512 provides a mechanism for letting the various components and subsystems of computing device 510 communicate with each other as intended. Although bus subsystem 512 is shown schematically as a single bus, alternative implementations of the bus subsystem may use multiple busses.
- Computing device 510 can be of varying types including a workstation, server, computing cluster, blade server, server farm, or any other data processing system or computing device. Due to the ever-changing nature of computers and networks, the description of computing device 510 depicted in Fig. 5 is intended only as a specific example for purposes of illustrating some implementations. Many other configurations of computing device 510 are possible having more or fewer components than the computing device depicted in Fig. 5.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- General Health & Medical Sciences (AREA)
- Computer Security & Cryptography (AREA)
- Health & Medical Sciences (AREA)
- Computer Hardware Design (AREA)
- Medical Informatics (AREA)
- Automation & Control Theory (AREA)
- Physics & Mathematics (AREA)
- Quality & Reliability (AREA)
- General Physics & Mathematics (AREA)
- Manufacturing & Machinery (AREA)
- Computer And Data Communications (AREA)
- Programmable Controllers (AREA)
- Telephonic Communication Services (AREA)
- Selective Calling Equipment (AREA)
Abstract
Description
Claims
Priority Applications (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| DE112022001639.6T DE112022001639T5 (en) | 2021-03-22 | 2022-03-22 | COMMISSIONING OF DISTRIBUTED CONTROL NODES |
| JP2023554901A JP7597241B2 (en) | 2021-03-22 | 2022-03-22 | Authorizing Distributed Control Nodes |
| CN202280021526.0A CN117044175A (en) | 2021-03-22 | 2022-03-22 | Debugging distributed control nodes |
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US17/207,905 | 2021-03-22 | ||
| US17/207,905 US11750696B2 (en) | 2021-03-22 | 2021-03-22 | Commissioning distributed control nodes |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2022201034A1 true WO2022201034A1 (en) | 2022-09-29 |
Family
ID=83283798
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/IB2022/052619 Ceased WO2022201034A1 (en) | 2021-03-22 | 2022-03-22 | Commissioning distributed control nodes |
Country Status (5)
| Country | Link |
|---|---|
| US (1) | US11750696B2 (en) |
| JP (1) | JP7597241B2 (en) |
| CN (1) | CN117044175A (en) |
| DE (1) | DE112022001639T5 (en) |
| WO (1) | WO2022201034A1 (en) |
Families Citing this family (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US12562956B2 (en) | 2022-12-28 | 2026-02-24 | Yokogawa Electric Corporation | Alarm viewer establishment of connection-oriented communication with a distributed control node of a process automation system |
| US12455561B2 (en) | 2022-12-28 | 2025-10-28 | Yokogawa Electric Corporation | Utilizing graphical user interface to generate process automation alarms for distributed control nodes |
| US12406570B2 (en) * | 2022-12-28 | 2025-09-02 | Yokogawa Electric Corporation | Deploying process automation alarms to distributed control nodes |
| US12535807B2 (en) * | 2022-12-28 | 2026-01-27 | Yokogawa Electric Corporation | Transmitting, to a distributed control node (DCN), default alarm configuration file(s) determined based on a function block type |
| US20240333696A1 (en) * | 2023-03-30 | 2024-10-03 | Yokogawa Electric Corporation | Controlling write access for input/output channels in an industrial process automation environment |
| US20250328835A1 (en) * | 2024-04-23 | 2025-10-23 | Dell Products L.P. | Device onboarding in distributed systems |
Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20180255091A1 (en) * | 2017-03-02 | 2018-09-06 | General Electric Company | Cyber-attack detection and neutralization |
| US20190041830A1 (en) * | 2017-11-16 | 2019-02-07 | Intel Corporation | Self-descriptive orchestratable modules in software-defined industrial systems |
Family Cites Families (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20070150565A1 (en) * | 2005-12-22 | 2007-06-28 | Arun Ayyagari | Surveillance network system |
| US20180150061A1 (en) | 2016-11-28 | 2018-05-31 | Honeywell International Inc. | System and method for using bluetooth communication in industrial process control and automation systems |
| US10157085B2 (en) * | 2017-02-17 | 2018-12-18 | Sas Institute Inc. | Techniques for decentralized load balancing |
| US10244043B1 (en) * | 2017-09-22 | 2019-03-26 | Yokogawa Electric Corporation | Management system for a plant facility and method for managing a plant facility |
| US11036571B2 (en) * | 2017-11-29 | 2021-06-15 | Cisco Technology, Inc. | Repair walker agents in a network |
-
2021
- 2021-03-22 US US17/207,905 patent/US11750696B2/en active Active
-
2022
- 2022-03-22 JP JP2023554901A patent/JP7597241B2/en active Active
- 2022-03-22 CN CN202280021526.0A patent/CN117044175A/en active Pending
- 2022-03-22 DE DE112022001639.6T patent/DE112022001639T5/en active Pending
- 2022-03-22 WO PCT/IB2022/052619 patent/WO2022201034A1/en not_active Ceased
Patent Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20180255091A1 (en) * | 2017-03-02 | 2018-09-06 | General Electric Company | Cyber-attack detection and neutralization |
| US20190041830A1 (en) * | 2017-11-16 | 2019-02-07 | Intel Corporation | Self-descriptive orchestratable modules in software-defined industrial systems |
Also Published As
| Publication number | Publication date |
|---|---|
| JP7597241B2 (en) | 2024-12-10 |
| DE112022001639T5 (en) | 2024-01-18 |
| JP2024510962A (en) | 2024-03-12 |
| CN117044175A (en) | 2023-11-10 |
| US20220303338A1 (en) | 2022-09-22 |
| US11750696B2 (en) | 2023-09-05 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US11750696B2 (en) | Commissioning distributed control nodes | |
| US10749692B2 (en) | Automated certificate enrollment for devices in industrial control systems or other systems | |
| US11269619B2 (en) | Firmware management for IoT devices | |
| US11824934B2 (en) | Security systems for use in implementing highly-versatile field devices and communication networks in control and automation systems | |
| US11212322B2 (en) | Automated discovery of security policy from design data | |
| US9772623B2 (en) | Securing devices to process control systems | |
| US12422828B2 (en) | Commissioning devices to process automation systems using portable setup devices | |
| JP2022046438A (en) | Network resource management in communication system for control and automation systems | |
| JP2022046424A (en) | Highly-versatile field devices and communication networks for use in control and automation systems | |
| JP2022046436A (en) | Node management of node communication networks for versatile field devices in control and automation systems | |
| JP2022046437A (en) | Publish-subscribe communication architecture for highly-versatile field devices in control and automation systems | |
| US20200145494A1 (en) | Method for Operating an Automation Network | |
| GB2558205A (en) | Enabling communications between devices | |
| JP2024513674A5 (en) | ||
| US12452174B2 (en) | Leveraging out-of-band communication channels between process automation nodes | |
| US20220191089A1 (en) | Electronic device configuration mechanism | |
| US20230291725A1 (en) | Computer-Implemented Registration Authority, System and Method for Issuing a Certificate | |
| US20240333696A1 (en) | Controlling write access for input/output channels in an industrial process automation environment |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 22774458 Country of ref document: EP Kind code of ref document: A1 |
|
| WWE | Wipo information: entry into national phase |
Ref document number: 2023554901 Country of ref document: JP |
|
| WWE | Wipo information: entry into national phase |
Ref document number: 202280021526.0 Country of ref document: CN |
|
| WWE | Wipo information: entry into national phase |
Ref document number: 112022001639 Country of ref document: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 22774458 Country of ref document: EP Kind code of ref document: A1 |