Epas - Components Overview-System Presentation: Ecostruxure Power Automation System Power Solutions Global Training 2020

Download as pdf or txt
Download as pdf or txt
You are on page 1of 43

EPAS – Components Overview-

System Presentation
EcoStruxureTM Power Automation System
Power Solutions Global Training
2020

Confidential Property of Schneider Electric


Internal
Chapter Objectives
By the completion of this chapter, you will be able to:

• Understand concepts and main


components used in EPAS

Confidential Property of Schneider Electric | Page 2


Internal
Safety Information
This is training presentation, reference information is in Official Technical Guides.

▪ It is advisable to read all the Safety


Information, all the time before trying to
Install, Operate, Service or Maintain it.
▪ Electrical equipment should be installed,
operated, serviced and maintained only by
qualified personnel.
▪ Work with facility IT System
Administrators to ensure that the system
adheres to the site-specific cybersecurity
policies.

Failure to follow these instructions can result


in death, serious injury, or equipment damage.

Confidential Property of Schneider Electric | Page 3


Internal
Agenda
• What is a DCS (Digital Control
System)?
• EPAS Devices and Tools
• EPAS Architectures
• EPAS Station Bus
• Cybersecurity
• EPAS System Key Concepts

Confidential Property of Schneider Electric | Page 4


Internal
Main Functions

Confidential Property of Schneider Electric | Page 5


Internal
Some Basic Vocabulary
ICS : Industrial Control System
System used in Industries (Electrical, Water, Oil & Gas, Chemical, Mines,
Transportation, …

- Receives information from remote stations, local control stations


- Send commands to control devices (open or close breakers, switchs…)
- Receives information from controllers and field devices
- Send status information and measured values to local or remote
operators

DCS : Digital Control System


Controllers are distributed to wide area throughout a system

SCADA : Supervisory Control and Data Acquisition


Highly distributed systems.
In EPAS terminology : remote control point geographically distant from
DCS, and can manage many DCS.
For some customer terminology : SCADA is the EPAS system.

Confidential Property of Schneider Electric | Page 6


Internal
System Definition

System is :
a set of devices with specific functions that interact one to/with
other with common rules using a dedicated network

BCU = Bay Computer Unit HMI = Human Machine Interface

GTW = Gateway

Fast Ethernet IEC61850


I/Os

IED

IED = Intelligent Electronic


BCU BCU Device

EPAS = EcoStruxure Power Automation System


Based on PACiS = Protection Automation Control integrated Solution
Confidential Property of Schneider Electric | Page 7
Internal
Basic Components
IED: Intelligent Electronic Device

RTU : Remote Terminal Unit : Electronic device based on


microprocessor to interface Scada to physical devices

PLC : Programmable Logic Controller : more complex, flexible


and configurable than RTU, a digital computer with many
possibilities Ethernet communication, IO boards …

BCU : Bay Computer Unit : PLC that can manage one or more Electrical
Bays

HMI: Human Machine Interface


Workstation used for Substation main display and control
point, Views , states, alarms …

Confidential Property of Schneider Electric | Page 8


Internal
System Networks
With Ethernet Ring, a specific protocol is necessary to manage Ring topology
(ie : RSTP, Self-Healing Ring, HSR …)
To
SCADA
BCU HMI
TBUS
GTW

I/Os Fast Ethernet IEC61850


SBUS
LBUS IED
BCU BCU Intelligent Electronic
Device (IED)

System is CONFIGURATION & COMMUNICATION

SBUS Station BUS (system federal network ...) (Ethernet / IP)


TBUS Tele control BUS (Remote Control Point or SCADA)
LBUS Legacy BUS (Field BUS to IED)
Confidential Property of Schneider Electric | Page 9
Internal
Main System Functions
◼HMI Station/Bay
Supervision ◼Flow Printing Sequence Of Event, Log in
◼Archives with reports
◼Alarms Manage/audible/viewer/printing
◼State/Event viewer/printing

Control ◼Control Mode (local/remote : Bay, Substation)


◼Operating Mode (run, stand-by, maintenance…)
◼Uniqueness, InterLocK, automation running
from ◼Force - Suppress - Substitute of DP
Bay ◼Basic control sequence (DE, SBO)
Substation ◼Built-in Control (ATCC, Synchrocheck, AutoRecloser)
SCADA ◼PSL, PLC

◼Time management
◼Databases management (download, switch, version)
Maintenance
◼Test mode, SBMC
◼Disturbance upload/viewing

Confidential Property of Schneider Electric | Page 10


Internal
EPAS Devices & Tools

Confidential Property of Schneider Electric | Page 11


Internal
EPAS Devices Range

Visible to customer
EPAS-UI / EcoSUI (Local / web access)
MiCOM C264 Computer (C264 / C264P)
Easergy C5 (C52 / C53)
MiCOM Ethernet Switch Boards (SWx, REUv2)
EPAS GTW (Gateway)

Hidden to customer

EPAS Agency (Station BUS) (IEC61850)


EPAS System Configuration Editor

Confidential Property of Schneider Electric | Page 12


Internal
EPAS Devices

HMI : EcoSUI – Substation User


Interface
MiCOM C264
Easergy C5
MiCOM Ethernet Switches - REU
ConneXium / Modicon range
3rd Party : Hirschman Switches

GTW - EPAS Gateway

Confidential Property of Schneider Electric | Page 13


Internal
EPAS Tools
DRM – Disturbance Retrieval Manager
DBLoader - Database Management Tool
SCE - EPAS System Configuration Editor

CAT – C264 Administration Tool

Web browser – C5 & GTW Administration


EPAS-M :Maintenance (Baselines)
SE-CSH – SE - Windows Event Collector

Confidential Property of Schneider Electric | Page 14


Internal
EPAS Architectures

Confidential Property of Schneider Electric | Page 15


Internal
EPAS Automation schemes
● Pre-designed automation schemes
● MiCOM C264 level
● Automatic Voltage Regulator
● Synchro-check
● Autorecloser
● EPAS application level
● Fast Load shedding for Large industry and Oil & Gaz
● Loop management & reconnection for Industry & Infrastructure
● Distributed Interlocking
● Power management (Load sharing, Islanding, Micro-grid)

● Personnalized automation schemes


● Using the IEC61850 GOOSE peer-to-peer fast data
transfert capabilities
● Programmable Scheme Logic
● IEC61131-3 automatism language (ISAGRAF)
Confidential Property of Schneider Electric | Page 16
Internal
Standard System Architecture
Up to 8 EPAS
EPAS EcoSUI Server + Client EcoSUI Clients

1 Remote

EPAS Gateway TBUS

Redundant Server
SBUS IEC61850

MiCOM C264

11:32:28
17/02/06 LBUS
I/O Redundancy
GPS
Clock

SBUS IED

Set of MiCOM C264


Confidential Property of Schneider Electric | Page 17
Internal
MiCOM Computer Stand-Alone Example
Up to 4 Serial Links (RS 485/232) for SCADA & IED interface

C264C
2 x DIU200

1 2 3 4 IEC-60870-5-101
Regional center
RS232
3xModbus
RS485

11HKL ION7330 13HKL ION7330 21HKL

12HKL ION7330 14HKL ION7330 22HKL ION7330

WAGO WAGO 23HKL ION7330

Vesuvius Etna
WAGO

Ketelhuis

Confidential Property of Schneider Electric | Page 18


Internal
MiCOM C264 Multi-Rack
The C264 connects through Ethernet Port 2 to the two extension racks

• IP adrs on Eth2 are using


different sub-network than
IP adrs on Eth1

• Each extension rack


connects through the LBUS
to the IEDs.

Confidential Property of Schneider Electric | Page 19


Internal
EPAS GTW – Multiple use cases
EPAS HMI EPAS HMI DCS interface

SCADA
GATEWAYS

EPAS HMI
Ring A
FLS HMI
GATEWAY
IEC61850
IEC/IEC FLS
GTW

Ring B FLS ring


IEC61850 IEC6185
0
GATEWAY
Data Concentrator C264
C264s - Feeders

LV

Confidential Property of Schneider Electric | Page 20


Internal
Healthcare Application
Sytem in Hospitals with Ring Management - (FRANCE)

Confidential Property of Schneider Electric | Page 21


Internal
Distributed Architecture Example
Applications :
HV Substations
Distribution Stations
Industry
Railway
Oil & Gas

EPAS HMI Redundant Server


SOE printing
Data reports

EPAS Gateway
Serial SCADA communication
MiCOM C264 Redundancy Ethernet SCADA communication
Internal Synchrocheck
Auto Recloser
IED Management
Advanced automation
Confidential Property of Schneider Electric | Page 22
Internal
Railway Project – example 500km

▪ Bay Controllers C264 530 pieces


▪ LAN Switches H356 600 pieces
▪ iPCs 132 pieces
▪ WAN Switches 140 pieces
▪ Protective Relays 220 pieces
▪ Power Quality Monitoring 50 pieces
Confidential Property of Schneider Electric | Page 23
▪ Optical Fiber 5800 km
Internal
EPAS Station Bus

Confidential Property of Schneider Electric | Page 24


Internal
Station BUS : Definition

SBUS
Station BUS which integrate all EPAS system devices
Except EPAS SCE for configuration

Use a Communication Agency


Common Application Program. Interface
to all system device ( implementation of IEC 61850 protocol)

Confidential Property of Schneider Electric | Page 25


Internal
Station BUS : Overview

Network: Ethernet
Standard 10/100 Mbps, Copper Tx, Optic Fx
EMC Electric Plant
Public : Belden-Hirshmann, Moxa, …
AREVA Specific : Immunity, Power Supply
Star/Tree => MiCOM H34x, SWU20x
Redundancy => MiCOM H35x, SWR20x, SWR21x
Dual Homing => MiCOM H36x, SWD20x, SWD21x
Dual Ring + Dual Star => MiCOM H356 & H362, SWD21x
RSTP - Compatible => MiCOM H17x, SWS21x
PRP & HSR - Compatible => MiCOM H18, REUv2 board for C264

Protocol: IEC61850 Client/Server


Standard/Open
N Clients & M Servers
Optimized traffic
Fast Communication

Confidential Property of Schneider Electric | Page 26


Internal
SBUS : Client/Server Mechanism (1)

Protocol: IEC61850 Client/Server

SERVERS These are all CLIENTS


my data
MiCOM C264 HMI EcoSUI HMI
Server = IEC Client
I subscribe to
SBUS IED these data

EPAS
I report the change Gateway
of state of these
data you subscribed MiCOM C264
(TBUS)

OPTIMIZED TRAFFIC
Confidential Property of Schneider Electric | Page 27
Internal
SBUS : Client/Server Mechanism (2)

Protocol: IEC61850 Client/Server

SERVER CLIENT

◆ Send Reports (RP) ◆ Receive Reports (RP)


◆ Receive Controls ◆ Send Controls
◆ Send Control Acknowledgements ◆ Receive Control Acknowledgements

◆ Send GOOSE (fast message for shared


automation)

Confidential Property of Schneider Electric | Page 28


Internal
SBUS : Gooses Mechanism
IEC61850 Gooses: fast Ethernet Multicast exchanges / continuously published

Open order Subscribers


publishers

MiCOM C264 Circuit Breaker

MiCOM C264
Closed
Easergy C5 Open

Easergy C5
SBUS IED
SBUS IED

time

Continuous + Fast TRAFFIC


Confidential Property of Schneider Electric | Page 29
Internal
• SBUS – IEC61850 Agency
Agency = software module giving SBUS Clients and SBUS Server services

MiCOM C264 EPAS GTW

MiCOM C264 EPAS GTW


Applicative Applicative

SBUS Agency SBUS Agency

SBUS IEC61850

SBUS Agency SBUS Axs / IEC Ed2 SBUS Agency


SBUS IED
no agency EPAS
EPAS OI Srv EcoSUI EPAS SMT
SbusSrv Kernel
EPAS OI EPAS
HMI EcoSUI EPAS SMT HMI
MCIS
EPAS OI EcoSUI EPAS SMT

Confidential Property of Schneider Electric | Page 30


Internal
• SBUS Agency & Applications Setup
Agency = software module giving SBUS Clients and SBUS Server services

MiCOM C264 EPAS GTW EPAS SMT


MiCOM C264 1/ SBUS Agency 1/ SBUS Agency
Firmware Setup Setup
download
process 2/ EPAS GTW Setup 2/ EPAS SMT Setup

EcoSUI
EPAS OI
1/ EPAS EcoSui
Setup 1/ SBUS Agency
Setup
2/ EPAS OI Setup

Confidential Property of Schneider Electric | Page 31


Internal
Station BUS : Network devices (1)
Ethernet Switch: Actual Range
Reference Description Ethernet Device
Tx Fx
SWU 200 Switch “ simple” copper 4 0 Cx6x board
SWU 202/ 204 Switch “ simple” (multi/ mono) 4 2 Cx6x board
SWR 212/ 214 Switch “ Redundant” (multi/ mono) 4 2 Cx6x board
SWD 212/ 214 Switch “ Dual Homing” (multi/ mono) 4 2 Cx6x board
SWS 212/ 214 Switch “ RSTP compatible” (multi/ mono) 4 2 Cx6x board
MICOM H 140 Switch “ simple” Copper 6 0 PCI board
MICOM H 152/ 154/ 156/ 158 Switch “ Redundant” (multi/ mono/ LC) 4 2 PCI board
MICOM H 162/ 164/ 166/ 168 Switch “ Dual Homing” (multi/ mono/ LC) 4 2 PCI board
MICOM H 172/ 174/ 176/ 178 Switch “ RSTP compatible” (multi/ mono/ LC) 4 2 PCI board
MICOM H 340 Switch “ simple” Copper 6 0 DIN Rack
MICOM H341/ 343 Switch “ simple” (multi/ mono) 6 1 DIN Rack
MICOM H 342/ 344 Switch “ simple” (multi/ mono) 6 2 DIN Rack
MICOM H 352/ 354 Switch “ Redundant” (multi/ mono ST) 6 2 DIN Rack
MICOM H 356/ 358 Switch “ dual Ring / dual Star” (multi/ mono 2 2+ DIN Rack
LC ) 4
MICOM H 362/ 364 Switch “ Dual Homing” (multi/ mono ST) 6 2 DIN Rack
MICOM H 60x Optical Star with 19’ Rack
1 to 4 of following board
compatible RSTPMICOM
/ PRP / HSR
H 621/ 623 : V2 double switch (multi/ mono) 2*4 2*1
MICOM H 631/ 633 V3 (multi/ mono) 2 6
C264 board = REUv2
PCi board = MICOM H18

Confidential Property of Schneider Electric | Page 32


Internal
Station BUS : Network devices (2)
MiCOM H35x switch address : Jumpers adrs must be configured !
unique on network (end IP @ first port)

Jumpers must be configured !


MiCOM Hxx, SWxx switch address Example : MiCOM H352
:
unique on network
(end IP @ first port)
Confidential Property of Schneider Electric | Page 33
Internal
Station BUS : Topology

Redundant Ring
Star / Tree SWR20x or
SWU20x / H34x SWR21x / H35x

Dual Homing Dual Ring + Dual Star


SWD20x or SWD21x / SWD202 / H362
H36x + H63x + H356

Confidential Property of Schneider Electric | Page 34


Internal
Station BUS : PRP Integration
PRP in C264 : REUv2
in PCi board : H18x

PC EcoSUI
with H18

C264 with REU

Confidential Property of Schneider Electric | Page 35


Internal
Station BUS : HSR Integration

HSR on C264 : REUv2


on PCi board : H18x

SAN : Single Attached Node


DAN : Dual Attached Node
VDAN : Virtual Dual Attached Node
RedBox : Redundancy Box

Confidential Property of Schneider Electric | Page 36


Internal
EPAS Cybersecurity

Confidential Property of Schneider Electric | Page 37


Internal
Cyber Security
RBAC model (users / roles / rights) (since PACiS v5.2)

Hardening (disabling unused logical/physical ports)

Account management (log off, nb of attempts)


RBAC configuration with CAE since PACiS v5.2

Security logs
CAP with Security Dashboards, VM management, Authentication¨Proxy, 3rd party
integration : NIDS based on Nozomi, Secure remote access based on Claroty
Radius Authentication, Firmware signature…

Antivirus (McAfee)
White-Listing (McAfee)

Banner/Disclaimer
Processes and Specific Organization
Confidential Property of Schneider Electric | Page 38
Internal
EPAS Key Concepts

Confidential Property of Schneider Electric | Page 39


Internal
Key Concepts
System is Communication + Configuration

EPAS Devices & Software


EcoSUI, CAT, WebCAT, WebGAT, DBLoader, DRM
MiCOM C264, Easergy C5, MiCOM Switches, EPAS Gateway
SBUS Agency, EPAS SCE
EPAS Architectures
Distributed
Computer Stand alone RTU
Ethernet Architectures
Star - Tree Copper
Ring Optical
Dual Homing
Dual Ring + Dual Star

Networks SBUS Station BUS Client/Server protocol (IEC61850)


TBUS TeleControl BUS T101,
T104, DNP3, ModBus,…
LBUS Legacy BUS ModBus, T103, T101, DNP3
Confidential Property of Schneider Electric | Page 40
Internal
Target Audience

Questions?

Confidential Property of Schneider Electric | Page 45


Internal
Internal
Internal

You might also like