ABB ABILITY
TM
EDGE INDUSTRIAL GATEWAY
10
1
—
1.3 Cybersecurity
1.3.1 Disclaimer
It is the sole responsibility of the customer to provide and continuously ensure a secure connection
between the product and the customer network or any other network. The customer is required to
establish and maintain any appropriate measures (including but not limited to the installation of
firewalls, application of authentication measures, encryption of data, installation of anti- virus
programs, etc.) to protect the product, the network, its system and the interface against any kind of
security breach, unauthorized access, interference, intrusion, leakage and/or theft of data or
information. ABB and its affiliates are not liable for damage and/or losses related to such security
breaches, unauthorized access, interference, intrusion, leakage and/or theft of data or information.
1.3.2 TCP/IP based protocols and used IP ports
To set up an IP firewall the following table summarizes the IP ports used by the device.
For further details on cybersecurity, please refer to
Cyber Security Deployment Guideline section
Modbus protocol is not secure as such. When this protocol is used, eavesdroppers on the local
network are able to understand the communication exchange happening with the device
—
1.4 Warning messages used in this document
1.4.1 Warning messages for harm to persons
To indicate an imminently hazardous situation which, if not avoided, will result in death or serious
injury, the following message is used:
DANGER!
Sign (if necessary)
TEXT THAT EXPLAINS THE HAZARD AND THE CONSEQUENCES OF NOT AVOIDING IT
Text that explains how to avoid this hazard
To indicate a potentially hazardous situation which, if not avoided, could result in death or
serious injury, the following message is used:
WARNING!
Sign (if necessary)
TEXT THAT EXPLAINS THE HAZARD AND THE CONSEQUENCES OF NOT AVOIDING IT
Text that explains how to avoid this hazard
Interface Port Type Default state Description
UDP Closed/Outbound DNS (Name resolution)
UDP Closed/Outbound NTP (Time synchronization)
TCP Closed/Outbound HTTPS (firmware update from cloud)
TCP Closed/Inbound SSH (ABB maintenance access)
TCP Open/Inbound HTTPS (Provisioning Tool)
TCP Open/Inbound HTTPS (Web server)
UDP Open/Inbound DNS (Name resolution)
UDP Open/Inbound DHCP (Dynamic IP)
UDP Open/Inbound DHCP (Dynamic IP)
TCP Open/Inbound Modbus TCP (Device configuration)
TCP Closed/Outbound Modbus TCP (Field devices communication)