SEL-2740S
Managed OT SDN Ethernet Switch
- To address the security vulnerabilities and performance limitations of traditional Ethernet switches, this platform adopts an innovative architecture that physically separates the Control Plane from the Data Plane.
Centrally managed by the SEL-5056 NMS, the switch focuses exclusively on high-speed packet forwarding according to predefined Flow Rules. This architecture enables microsecond-scale network healing, robust whitelist-based security, and total visibility across the entire network.
Key Features
-
Proactive Network Healing
Rather than recalculating paths after a failure occurs, the system immediately switches to pre-engineered backup paths. This achieves a recovery time of less than 100 microseconds (µs), ensuring seamless continuity for real-time critical control applications. -
Deny-by-Default Security Architecture
Following a Zero Trust security model, the switch blocks all traffic by default, only allowing packets explicitly authorized by the flow controller. This fundamentally prevents the lateral movement of malicious traffic within the network. -
Multi-Layer Packet Inspection
The system performs deep inspection of packet headers from L1 (physical port) to L4 (TCP/UDP port), rather than relying solely on MAC addresses. This provides effective defense against IP spoofing and unauthorized port scanning. -
OpenFlow 1.3 and TLS Encrypted Communication
Supports the industry-standard OpenFlow 1.3 protocol. All communications with the NMS are encrypted and mutually authenticated via TLS (Transport Layer Security). -
Modular Interface Design
Equipped with 6 modular slots that support a mix of copper, multimode fiber, and single-mode fiber interfaces. The hot-swappable design allows for module replacement or expansion without system downtime. -
Precision Time Synchronization
Includes a built-in PTP Transparent Clock supporting the IEEE C37.238-2017 Power Profile, correcting time errors caused by network residence time to ensure nanosecond-level precision.
Convenience features
-
Centralized Situational Awareness
Integrated with the SEL-5056 NMS to provide real-time visualization of network topology, active flows, backup path status, and per-port statistics through a centralized dashboard. -
Automated Circuit Provisioning
By importing network diagrams or IEC 61850 SCD (Substation Configuration Description) files, the SEL-5056 automatically calculates optimal paths and deploys configurations to the switches. -
Non-Disruptive Change Management
New rules can be added or modified without impacting existing traffic flows, allowing for seamless network updates or device additions. -
Syslog and Audit Logging
All security events and system status changes are transmitted to a central log server via standard Syslog for auditing and compliance. -
Versatile Mounting Options
Supports standard 19-inch rack mounting, along with panel-mount and surface-mount kits for flexible installation.