Mindmup - Paiet/Capstone GitHub Wiki

Mindmup image

ISC Training Network Following the Purdue Model

Virtualization/ESXI

Enterprise Security Zone

Firewall

DMZ Level 3.5

  • Reverse Proxy
    • Set one up using Nginx
  • Web Services
    • Basic Apache setup
  • Remote Gateway
    • Implement a remote gateway using Palo Alto's Global Protect VPN

Industrial Security Zone(s)

Level 3: Site Operations

  • Remote Access Server
    • More Global Protect
  • Machine: Engineering Workstation
    • Would be used to stimulate workstation traffic on a network for engineering
  • Factory Talk App Server and Directory
    • Factory Talk Application Server
    • Product of Rockwell Automation and used when mass logging of automation controls is needed

Process Control/SCADA Zone

  • Level 2: Area Supervisory Control
    • Factory Talk Application Server
      • another product of Rockwell and would be used for incorrect various ICS devices
    • Machine: Engineering Workstation
      • More workstations to help with simulations of traffic
    • Factory Talk App Server and Director
  • Level 1: Controls
    • Batch Control
    • Discrete Control
    • Continuous Process Control
    • Safety Control
  • Level 0: Process
    • Sensors
    • Drives
    • Actuators
    • Robots