Siemens SIMATIC BATCH Operating Manual page 76

Process control system pcs 7
Table of Contents

Advertisement

Product introduction and installation
3.7 Security aspects
SIMATIC PCS 7 makes the following documentation available:
● PCS 7 Compendium Part F - Industrial Security
This document presents the "Defense in Depth" security concept with example
configurations.
● SIMATIC PCS 7 Security Manuals
These documents contain important information on the following topics:
– Security concept
– Virus scanners
Note
Security aspects of SIMATIC BATCH
Shared directories, data, and archives must be continuously protected by suitable security
mechanisms. Note this for the following functions, in particular:
● Archiving batches (Batches > Archiving > Archiving method (Page 745)
) If you are using one of the following methods for archiving, the storage locations of the
archives must be protected:
– "Directory"
– "FTP server"
● Protecting backup files (Backup (Page 1076)/Restore) (Page 1076) and Export/Import
(Page 321)
You must protect these files (.sbx) because SIMATIC BATCH does not provide recognized
protection mechanisms for these files at present. One possibility is to create access
permissions for accessing the directory.
● Printing in process mode in the BatchCC/BATCH recipe editor
To avoid intervention in the operating system, devices/printers such as XPS printers or PDF
printers must not exist or not be selectable in print dialogs. Remove such devices or printers
in the Windows Control Panel.
● Settings for secure process mode
To prevent intervention in the operating system, you need to configure the user rights
accordingly. Remove all rights that are not absolutely necessary for process mode.
We recommend that you do not grant rights for the commands "Back up", "Export" and
"Import" for process mode, as these commands could allow intervention in the operation
system.
The assignment of rights enables you to regulate all access in accordance with your own
wishes and thus guarantee secure process mode.
SIMATIC BATCH system
To increase security, we recommend that you use the "NTLM" mode for communication of the
SIMATIC BATCH system.
76
SIMATIC BATCH V8.2
Operating Manual, 02/2016, A5E35958174-AA

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents