Support for Industrial Control and Automation Protocols (SCADA) in DPI / IDS
Idea originally posted by TheMachineWhisperer in 2018 but never responded to by Sophos.
Security for industrial automation, critical infrastructure, and SCADA systems is very much a critical issue.
We would like to see some development to include capability for Deep Packet Inspection and control of industrial control protocols such as:
Modbus TCP
Ethernet/IP (CIP)
OPC Classic (DCOM / RPC)
Siemens S7
DNP3
etc.
Inclusion of rules for these into IDS and would also be welcomed.
A number of vendors approaching us are starting to get into this specialist area of the market and it would be great to see Sophos offering an industrial orientated product.
This could feasibly be a specialist feature set license for the UTM / XG to provide the functionality required for industrial environments.
