21060 26M N AA | X SER IE S
G5
| 77
Table 9-3: User-enabled services on XSeries
G5
Security feature available
Serves connection requests
for secure login shell and file
transfer. Supports
connection requests from
third-party SSH/SFTP clients
Authentication based on private-public
key pairs, passphrase-protected keys
Totalflow
Software
Update
Service
Enables or blocks the ability
of the device loader to
update the embedded
software.
None specific to the service. Must use Bi-
level security passcode or Role-Based
Authentication (RBAC)
9.2.2 Open Transmission Control Protocol (TCP) ports
The table below lists the open TCP ports on an XSeries
G5
device. These ports are used for all TCP/IP
based connections which are supported by the Ethernet and Wi-Fi interfaces.
Protocols over TCP can be standard like SSH, or proprietary like Totalflow (Remote or Local).
Table 9-4: Open TCP ports on an XSeries
G5
Assigned to connections used for device
monitoring, configuration and data collection or
polling. PCCU, WinCCU, TDS and third-party SCADA
systems request these connections.
Assigned to the device loader connections for
device software update.
PCCU requests this type of connection.
Assigned to secure shell (SSH/SFTP) connections.
Third-party SSH/SFTP clients request these
connections.
Assigned to connections between the XSeries
G5
devices and external Modbus devices for
communication and data transfer
IMPORTANT NOTE: For connections with user-configurable ports assigned, customers can use
the default value or assign a different port number in the range of 1024 to 65534. Connections
using non-default TCP ports are handled by additional Totalflow/TCP communication or Modbus
TCP applications configured with different TCP ports. For example, the figure below shows an
additional Totalflow/TCP application (named ControlGroup) with a different TCP port (10001).