Ip Ports - ABB Relion 650 Series Operation Manual

Hide thumbs Also See for Relion 650 Series:
Table of Contents

Advertisement

Section 4
650 series overview
4.5.2

IP ports

The IP port security guideline cannot suggest concrete products for a secure system setup. This
must be decided within the specific project, requirements and existing infrastructure. The
required external equipment can be separate devices or devices that combine firewall, router and
secure VPN functionality.
To set up an IP firewall the following table summarizes the IP ports used in the 650 series. The
ports are listed in ascending order. The column "Default state" defines whether a port is open or
closed by default. All ports that are closed can be opened as described in the comment column in
the table. Front and Rear refer to the physical front and rear port. The protocol availability on
these ports is configurable.
ABB recommends using common security measures, like firewalls, up to date anti virus software,
etc. to protect the IED and the equipment around it.
Table 20: Available IP ports
Port
Protoc
Default
ol
state
21
TCP
Open
67
UDP
Open
102
TCP
Open
123
UDP
Closed
990
UDP
Open
7001
TCP
Closed
2102
TCP
Open
20 000
TCP
Closed
20 000
UDP
Closed
49220 -
TCP
Closed
49235
1) When the IED is configured as a SNTP client it will use the first ephemeral port available. The range of ephemeral ports is 1024 to
5000.
The 650 series supports two Ethernet communication protocols, which are IEC 61850 and DNP3.0.
These communication protocols are enabled by configuration. This means that the IP port is
38
In order to allow the IED to communicate with PCM600 when users are defined via
the IED Users tool, the access rights "UserAdministration" and "FileTransfer —
Limited" must be applied to at least one user.
Do not use access rights "FileLoading", "FileDumping", "File Transfer (Super)", and
"DB Access super" in PCM600.
Front
Rear
OFF
OFF
ON
N/A
OFF
ON
OFF
OFF
ON
OFF
OFF
OFF
ON
ON
OFF
ON
OFF
ON
ON
ON
© Copyright 2013 ABB. All rights reserved
Service
FTP (clear text password)
DHCP
IEC 61850
SNTP
FTPS
FST
PCM Access (IED configuration
protocol)
DNP3
DNP3
FTP
1MRK 500 096-UUS B
GUID-A5E2256D-C7E2-4CAC-8EAD-E7DBBCB4AF08 v1.1.1.1.1
Comment
File transfer protocol
Front port only, RJ45
MMS communication
Enabled when IED is configured
1)
as SNTP master.
FTP with implicit SSL
SPA protocol on TCP/IP used by
FST (Field Service Tool)
IED configuration protocol
DNP3.0 DNP communication only
DNP3.0 DNP communication only
TCP data ports for FTP PASV
command. Ports opens on
demand.
650 series
Operation manual

Advertisement

Table of Contents
loading

Table of Contents