The "PROFINET Security Classes" introduced in 2022 codify three levels of native security: SC1 (authentication), SC2 (authentication + integrity), SC3 (authentication + integrity + payload encryption).
True
PROFINET Security Classes (Specification V2.4+) are defined as follows: SC1 provides mutual authentication between device and controller using cryptographic signatures, with no encryption and a light overhead; SC2 adds integrity protection (HMAC on every telegram) on top of SC1; SC3 adds payload encryption (AES-128) on top of SC2, with a significant cryptographic overhead that should be reserved for critical traffic. Adoption is progressive over 2024-2027 on new sensitive projects (OT cybersecurity, IEC 62443 SL2+).
Do not enable SC3 globally on a high-cycle motion network without measuring the impact first: the AES overhead can erode the very real-time margins you bought IRT hardware to obtain.
PROFINET bank in preparation
The full PROFINET bank isn't available yet. Drop your email to get notified at launch and grab an early-bird discount.
Join the waitlist →See the 9 other PROFINET practice questions
Related questions
- PROFINET defines three device roles: IO Controller (equivalent to the PLC master), IO Device (equivalent to a slave: sensor, actuator) and IO Supervisor (engineering PC used for diagnostics and configuration).1. Architecture · Device-Rollen-Modell
- A GSDML file (Generic Station Description Markup Language) is provided by the manufacturer of a PROFINET IO Device and is imported into the engineering tool (e.g. TIA Portal) to integrate the device into the project.1. Architecture · GSDML
- The PROFINET Update Time of an IO Device is configurable individually depending on the application: typical values range from 1 to 128 ms in RT, and down to 250 us in IRT.2. Real-time classes · Update Time
- PROFINET supports several physical topologies: star (via switches), line (daisy-chain through ports integrated in the devices) and ring (with MRP for redundancy), and they may be combined within the same network.3. Topology & cabling · Unterstützte Topologien
- LLDP (Link Layer Discovery Protocol, IEEE 802.1AB) lets PROFINET devices identify each other and automatically discover the network topology, which is exploited by diagnostic tools such as PRONETA or the TIA Portal Topology Editor.4. Diagnostics · LLDP