Security Functions - Siemens SIMATIC S7-1200 CP 1243-8 IRC Operating Instructions Manual

For telecontrol
Hide thumbs Also See for SIMATIC S7-1200 CP 1243-8 IRC:
Table of Contents

Advertisement

Application and functions

1.6 Security functions

● Online functions
From an engineering station (ES) on which STEP 7 is installed, you can use the online
functions of STEP 7 via the Ethernet interface of the CP to access the S7-1200 CPU if
the station is located in the same IP subnet.
The following online functions are available:
– Downloading project or program data from the STEP 7 project to the station
– Querying diagnostics data on the station
– Downloading firmware files to the CP
For a remote station located in a different IP subnet or that can be reached via the
Internet, these functions can only be used if the ES (with CP 1628 or via SCALANCE S)
is connected to the station via a VPN tunnel.
● SNMP
As an SNMP agent, the CP supports data queries using SNMP (Simple Network
Management Protocol).
For more detailed information, refer to section SNMP (Page 175).
1.6
Security functions
With Industrial Ethernet Security, individual devices, automation cells or network segments
of an Ethernet network can be protected.
Read the information in the section Security recommendations (Page 55) for planning and
configuring your networks.
Security functions of the telecontrol and transmission protocols
For the telecontrol communication, the following Security functions can be activated:
● ST7
The transmission protocols that can be used by the CP for telecontrol communication via
the ST7 protocol support the following Security functions:
– MSC
– MSCsec
● DNP3
The security functions specific to DNP3 can be used.
20
The MSC protocol supports authentication of the communications partners and simple
encryption of data. A user name and a password are included in the encryption. An
MSC tunnel is established between the MSC station and MSC master station.
MSCsec supports authentication of the communications partners and data encryption
with a user name and password. In addition to this, the shared automatically
generated key is renewed between the communications partners at configurable
intervals.
Operating Instructions, 02/2018, C79000-G8976-C385-03
CP 1243-8 IRC

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents