Safety notices
1.1 Security recommendations
SCALANCE XP-200
Operating Instructions, 05/2016, C79000-G8976-C428-01
15
● Restrict the services and protocols available to the outside to a minimum.
● For the DCP function, enable the "DCP read-only" mode after commissioning.
● Use port security functions (IEEE 802.1X).
● Enable port authentication on the ports of end devices.
● Use the function "Locked Ports" to block ports for unknown nodes.
● Configure the ports, e.g. edge ports, receive ports, unused ports to block all unnecessary
protocols and services.
● Configure the receive ports so that they discard all untagged frames (Tagged Frames
Only).
Available protocols per port
The following list provides you with an overview of the open ports on this device. Keep this in
mind when configuring a firewall.
The table includes the following columns:
●
All protocols that the device supports
●
Port number assigned to the protocol
●
– Open
The port is always open and cannot be closed.
– Open (when configured)
The port is open if it has been configured.
Note
With some protocols the port may be open although the corresponding protocol is
disabled, for example TFTP.
●
Default status of the port
– Open
As default the port is open.
– Closed
As default the port is closed.
●
Specifies whether or not the protocol is authenticated during access.