Security Gateway
A router, virtual private network (VPN) endpoint, and firewall device, the SEL-3622 Security Gateway can perform secure and proxy user access for a small number of serial-and Ethernet-based intelligent electronic devices (IEDs). The SEL-3622 helps create a user audit trail through strong, centralized, user-based authentication and authorization to modern and legacy IEDs. The SEL-3622 secures your control system communications with a stateful deny-by-default firewall, strong cryptographic protocols, and logs for system awareness. The SEL-3622 also manages protected IED passwords, ensuring that passwords are changed regularly and conform to complexity rules. The SEL-3622 supports enhanced security, enabling you to protect critical cyberassets with strong multifactor authentication technologies, such as RSA SecurID using Remote Authentication Dial-In User Service (RADIUS).
The SEL-3622 resists known and unknown malware attacks with exe-GUARD embedded antivirus technology. Powerful rootkit resistance, embedded Linux mandatory access controls, and process whitelisting help mitigate attacks against the gateway itself and eliminate costly patch management and antivirus signature updates. The SEL-3622 supports NERC CIP v3 and v5 compliance efforts without needing Technical Feasibility Exceptions (TFEs).
The SEL-3622 integrates physical awareness sensors through an onboard accelerometer, light sensor, and input contact sensor. The SEL-3622 also alerts when Ethernet cables are connected or disconnected, alerting operators to potential remote cyberattacks or physical equipment manipulation.