July 18, 2024  —  James Slaby

Data protection issues in air-gapped factory-floor environments

Acronis
Acronis Cyber Protect
formerly Acronis Cyber Backup

The downtime costs for highly automated factory-floor environments are some of the world’s highest, estimated at anywhere from $1 million to $10 million per hour, and up. So it should be no surprise that many manufacturing enterprises seek to eliminate the possibility of a network-borne cyberattack by air gapping their factory-floor IT and operational technology (OT) systems, i.e., disconnecting them from the corporate network, the public internet, and any other potentially untrusted network belonging to a partner or supplier.

Above is one reliable way to reduce the attack surface of factory floor systems that demand extremely low downtime for the business to remain profitable and avoid costly supply-chain disruptions. For example, without a network connection, it’s much harder for a ransomware gang to get its malware onto a system so it can steal sensitive data, encrypt critical applications and demand a hefty extortion fee to get a business back online.

However, that protection against cyberthreats comes at a cost. Air-gapped networks present several challenges to basic IT operations:

Tech infrastructure updates

Without the ability to establish a virtual network connection into the factory floor, centralized IT operations staff cannot remotely download software patches to close security vulnerabilities, updates to IT, OT and industrial control system (ICS) firmware and updates to operating systems, applications and other tech infrastructure like networking devices.

These patches and updates must be transferred manually, e.g., via physical media like USB drives, that’s a time-consuming and error-prone process. If the update creates any problems, e.g., an application stops working or loses functionality because of an OS patch, the rollback process to the preupdate version can be difficult and slow.

System monitoring and data collection

Without the benefit of a network, the collection and analysis of production data generated by OT and ICS for reporting, diagnostics and decision making must also be transferred using slow, unreliable transfer via portable storage media.

Cybersecurity risks

Even without the use of external network connections, the threat of a potential cyberattack still exists. For example, USB drives and other physical media may be compromised with the inclusion of malware like ransomware and keyloggers. For example, the historic Stuxnet advanced persistent threat attack made its initial incursion into a secure manufacturing facility when attackers dropped malware-infected USB drives in the employee parking lot, which unwitting staffers happily collected and then used inside the secure, air-gapped perimeter with disastrous results.

Lack of remote IT monitoring, diagnosis and support

Without access via an external network connection, centralized IT staff cannot implement automated monitoring and alerts to detect and identify problems in real time. IT operations and cybersecurity tools commonly used to remotely diagnose and fix issues cannot cross the air-gap perimeter. This can hamper IT’s ability to share information and coordinate responses with other company department and external vendors.

Need for physical site visits

Without the ability to use remote operations and security tools, IT staffers may have to physically travel to the site to solve problems, incurring extremely high downtime costs in the meantime. This may be exacerbated by the remoteness of many manufacturing facilities, e.g., offshore oil rigs, desert-based refineries, mining facilities in mountainous regions, etc.

Compliance and auditing issues

Without the benefit of remote network connections and automated central monitoring systems, the collection of data for auditing and regulatory compliance issues may have to be done manually, a slower and more error-prone process.

Support for advanced manufacturing architectures like Industry 4.0.

Air gapping prevents IT, OT and ICS infrastructure from being integrated with modern IoT devices and cloud-based services.

Data protection limitations

Backup processes to ensure the ability to restore systems quickly from data loss for any reason, e.g., a hard drive failure or operator error, can be more cumbersome and unreliable in air-gapped environments. Disaster recovery implementation and testing is likewise more difficult, potentially leading to longer recovery times.

On-site staff skills

Managing and maintaining air-gapped environments requires specialized skills and training. Most factory floor environments have skilled OT engineers on-site, but not IT staffers.

How Acronis addresses the challenges of air-gapped factory-floor environments

Acronis has a long history of providing data protection solutions to manufacturing enterprises with air-gapped factory-floor environments. In fact, Acronis Cyber Protect is frequently used by leading automation vendors, including ABB and Rockwell Automation, as their default backup solution. Acronis addresses the challenges of these unique environments, minimizing their painfully expensive downtime costs with the following capabilities:

Protection for IT systems used to monitor, configure and control OT and ICS

Acronis use of image-based backup technology enables the protection a very broad range of Windows, Linux and virtual OSes used in OT and ICS environments, including many ancient versions of these OSes that have long been unsupported by their vendors, and thus are no longer supported by other backup vendors. This is important in environments where the stability of the IT interaction with OT and ICS is critical, so the computer environment is never upgraded even after ten or fifteen years in service.

Very fast, highly reliable and extremely simple-to-operate recovery of IT systems used with OT and ICS

Acronis quickly restores failed IT systems in OT / ICS environments to a matter of minutes in several ways. One, its One-Click Recovery feature, enables non-IT professionals (including OT engineers) to initiate the restoral of a failed computer with push-button simplicity. Two, high-performance restoral features like Instant Recovery minimize the time it takes to get critical IT systems running again after a failure, e.g., by enabling the failed system to run as a virtual machine within a matter of seconds while the recovery process to a physical machine is underway.

Safe, zero-impact testing and rollback of patches and upgrades to factory-floor IT systems

Acronis allows the creation of a “digital twin” of any IT system — a backup copy running on a VM — that can be used to test the functionality and performance of software patches and other updates before they are applied to production machines. This same VM capability can be used to quickly roll back any updated IT systems to their previous version in the event of any unforeseen problems with the patch or new software version.

Reporting on factory-floor IT system performance

Acronis can safely report on the protection status of factory-floor computers associated with OT and ICS to centralized IT staff via outbound-only file transfers.

Learn more about how Acronis helps manufacturers avoid costly downtime by protecting the computers associated with their factory-floor OT and ICS:

About Acronis

A Swiss company founded in Singapore in 2003, Acronis has 15 offices worldwide and employees in 50+ countries. Acronis Cyber Protect Cloud is available in 26 languages in 150 countries and is used by over 20,000 service providers to protect over 750,000 businesses.