The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 27, 2021

Filed:

Nov. 21, 2014
Applicant:

Fisher-rosemount Systems, Inc., Round Rock, TX (US);

Inventors:

Lee A. Neitzel, Austin, TX (US);

Dan H. Ussing, Georgetown, TX (US);

Assignee:

FISHER-ROSEMOUNT SYSTEMS, INC., Round Rock, TX (US);

Attorney:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G05B 15/02 (2006.01); H04L 12/24 (2006.01); H04L 29/06 (2006.01); H04L 12/66 (2006.01); H04L 12/46 (2006.01);
U.S. Cl.
CPC ...
G05B 15/02 (2013.01); H04L 12/462 (2013.01); H04L 12/66 (2013.01); H04L 41/08 (2013.01); H04L 63/0227 (2013.01); H04L 63/0209 (2013.01); H04L 63/0281 (2013.01); H04L 63/145 (2013.01);
Abstract

A process control system having an external data server that provides process control data to external networks via one or more firewalls implements a cost-effective security mechanism that reduces or eliminates the ability of the external data server to be compromised by viruses or other security attacks. The security mechanism includes a DMZ gateway disposed outside of the process control network that connects to an external data server located within the process control network. A configuration engine is located within the process control network and configures the external data server to publish one or more preset or pre-established data views to the DMZ gateway, which then receives the data/events/alarms as defined by the data views from the control system automatically, without performing read and write requests to the external data server. The DMZ gateway then republishes the data within the data views on an external network to make the process control data within the published data views available to one or more client applications connected to the external network. Because this security mechanism does not support client read, write, or configuration access to the external data server within the control system, this security mechanism limits the opportunity of viruses to use the structure in the DMZ gateway device to access the process control network.


Find Patent Forward Citations

Loading…