Available Services - Siemens SIMATIC NET SCALANCE XCM-300 Product Manual

Industrial ethernet switches
Hide thumbs Also See for SIMATIC NET SCALANCE XCM-300:
Table of Contents

Advertisement

Recommendations on network security

3.2 Available services

• Make sure the latest firmware version is installed, including all security-related patches.
For the latest information on security patches for Siemens products, visit the Industrial
Security (https://www.siemens.com/industrialsecurity) website or the ProductCert Security
Advisories (https://www.siemens.com/cert/en/cert-security-advisories.htm) website.
Updates to the Siemens Product Security Advisories can be obtained by subscribing to the RSS
feed on the Siemens ProductCERT Security Advisories website, or by following @ProductCert
on Twitter.
• Only enable services that will be used on the device, including physical ports. Unused
physical ports could potentially be used to gain access to the network behind the device.
• For optimal security, use the authentication and encryption mechanisms in SNMPv3
whenever possible, and apply strong passwords.
• Configuration files can be downloaded from the device. Make sure configuration files are
properly protected. For instance, digitally sign and encrypt the files, store them in a secure
place, and only transfer configuration files via secure communication channels.
Configuration files can be password-protected when downloaded. For information about
protecting a configuration file with a password, refer to "Supplementary documentation
(Page 7)".
• When using SNMP (Simple Network Management Protocol):
– Configure SNMP to raise a trap upon authentication failures.
– Make sure the default community strings are changed to unique values.
– Use SNMPv3 whenever possible. SNMPv1 and SNMPv2c are considered non-secure and
– Whenever possible, prevent write access.
3.2
Available services
The following is a list of all available protocols or services and their ports through which the
device can be accessed, including the following information:
• Service
The service supported by the device.
• Protocol
The protocol used by the service.
• Port number
The port number assigned to the service.
• Default status
The default state of the service (i.e. Open, Closed, Active)
• Configurable service
Specifies whether or not the service can be configured.
• Configurable port number
Specifies whether the port number is configurable.
16
For more information, refer to "Supplementary documentation (Page 7)".
should only be used when necessary.
Product Manual, 04/2022, C79000-G8976-C585-01
SCALANCE XCM-300

Advertisement

Table of Contents
loading

This manual is also suitable for:

Simatic net scalance xcm332

Table of Contents