ABB i-bus
®
KNX
Safety
AC/S 1.x.1 | 2CDC508198D0211 Rev. A 13
2.7 Connection to the Internet
KNXnet/IP routing and KNXnet/IP tunneling use unencrypted data transfer and is therefore not intended
for use on the public internet. For this reason router ports in the direction of the internet must not be
opened: this action will ensure KNX communication is not visible on the internet.
Systems can be accessed via the internet in the following ways:
• Access to KNX installations via VPN connections. However, this requires a router with VPN server
functionality or a server.
• Use of manufacturer-specific solutions or visualizations, e.g. access via https.
2.8 Open IP network ports
The device uses the following network ports for data communication in the IP network. It is to be ensured
that only authorized systems have access to these network ports.
Port Limitation Protocol Remark
27360 TCP 20/minute SSH Only if SSH access has been
activated
Only if BACnet is activated.
The port can be changed.
2403 TCP 30/second Automation ASM Monitor mode.
Only if access has been activated.
Table 2: Open IP network ports