User Manual
Network Security Controls
3
37
Siemens
Application Note
Smart Infrastructure
Customer IT – Server
Backbone
Customer IT – Local Office
DCC – Control
Room
Customer IT - DMZ
DCC – Server Backbone 2
DCC – Subsystem nDCC – FS20 DCC – System One
FS20 System One Cameras
DCC – Subsystem m
VMS
DCC – Sipass
Sipass
DCC – Desigo PX
Desigo PX
DCC – SPC
Cameras
DCC Server
WinCC OA
MS SQL
Tomcat
DCC Client
BIRT
IIS
DCC WSI
DCC Server
WinCC OA
DCC FEP
WinCC OA
DCC Client
HTML5
DCC Client
HTML5
DCC Client
HTML5
DCC Client
HTML5
MS SQL
BIRT
Tomcat
IIS
DCC WSI
DCC – Server Backbone 1
DCC Server
WinCC OA
DCC Client
DCC WSI
DCC Server
WinCC OA
DCC FEP
WinCC OA
MS SQL
BIRT
Tomcat
IIS
WWW
Customer IT - HomeofficeCustomer IT - Branchoffice
DCC Client
HTML5
DCC Client
HTML5
DCC Client
HTML5
DCC Client
HTML5
Firewall Firewall
Firewall
Firewall
FirewallFirewallFirewallFirewall
Firewall Firewall
Firewall FirewallFirewallFirewallFirewallFirewallFirewall
Figure 18: Large, Distributed Client/Server.
3.2.6 Distributed System Configurations
Intended Use Case
The distributed system configuration allows interconnecting several projects that
run independently, either on one or several physical machines. The interconnection
of the projects allows transparent engineering and operation through them seeing
them as one only system. The distributed system configurations extend even
further the support of very large systems, increase robustness eliminating single
point of failures and allow geographical or discipline segregation.
Three types of distributed deployments are supported:
Fully meshed: Each server is logically connected to all others. Clients can see
all objects in all servers. Servers can be geographically distributed. Virtual
servers are also supported.
Segmented: A fully meshed configuration where all systems run on the same
server. Allows to build larger systems on one single server
Hierarchical: front servers are logically connected to one head server. Clients
connected to the head server can see all objects; clients connected to front
servers can only see local objects. For campus or inherently hierarchical
applications