Protocol Protocol/
Port number
Default port
status
Congurable Authenti‐
cation
Encryption
6)
Port Service
DHCPv6 Client (IPv6) UDP/546 Closed - ✓ - -
EtherNet/IP
2)
TCP/44818
UDP/2222
UDP/44818
Closed - ✓ - -
HTTP Server/Client
4)
TCP/80 Closed ✓ ✓ ✓ -
HTTPS WBM Server/Client TCP/443 Open ✓ ✓ ✓ ✓
MSDP TCP/639 Closed -- ✓ - -
NTP Client UDP/123 Closed ✓ ✓ - -
NTP (secure) UDP/123 Closed ✓ ✓ ✓ -
PROFINET UDP/34964
UDP/49151 ...
49159
1)
Open -- ✓ - -
RADIUS Client UDP/1812
5)
UDP/1813
5)
Outbound only ✓ ✓ - -
UDP/3799 Open ✓ ✓ - -
RIP UDP/520 Closed - ✓ - -
RIPng IPv6 UDP/521 Closed - ✓ - -
SFTP Server UDP/22 Outbound only ✓ ✓ ✓ ✓
SMTP Client TCP/25 Closed ✓ ✓ -- --
SMTP Client (secure) TCP/465 Closed ✓ ✓ ✓ ✓
SNMPv1/v2c
3) 4)
UDP/161 Open ✓ ✓ - -
SNMPv3 UDP/161 Open ✓ ✓ Optional Optional
SNMP Traps UDP/162 Outbound only -- ✓ - -
SNTP Client UDP/123 Closed ✓ ✓ - -
SSH CLI Server TCP/22 Open ✓ ✓ ✓ ✓
Syslog Client UDP/514 Closed ✓ ✓ - -
Syslog (secure) Client TCP/6514 Closed ✓ ✓ - -
Telnet
4)
TCP/23 Closed ✓ ✓ ✓ -
TFTP Client UDP/69 Outbound only ✓ ✓ - -
VRRP TCP/50000 Open, ltered -- ✓ - -
1) Port number can be congured via the WBM.
2) Service disabled by default.
3) Read-only access only.
4) Protocol according to Security by Default.
5) The port is closed by default and is displayed when a RADIUS server is congured. Port number can be congured via the WBM.
6) You can nd additional information on the encryption methods used in the WBM appendix "Ciphers used".
The following is a list of all available Layer 2 services through which the device can be
accessed.
Security recommendations
3.1Security recommendations
SCALANCE XR-500
Operating Instructions, 07/2023, C79000-G8976-C692-01 21