EasyManua.ls Logo

Siemens SCALANCE User Manual

Siemens SCALANCE
32 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
Checklist for setting
up SCALANCE devices
SCALANCE
https://support.industry.siemens.com/cs/ww/en/view/109745536
Siemens
Industry
Online
Support
Question and Answer IconNeed help?

Do you have a question about the Siemens SCALANCE and is the answer not in the manual?

Siemens SCALANCE Specifications

General IconGeneral
Product FamilySCALANCE
FunctionEthernet Switch
Temperature Range-40°C to +70°C (depending on model)
Protection ClassIP20, IP30 (depending on the model)
MountingDIN rail, wall mounting (depending on the model)
Power Supply24 V DC
Number of PortsVaries by model (e.g., 4, 8, 24 ports)
TypeManaged, Unmanaged
SubtypesX, W, M, S
CertificationsCE, ATEX, IECEx (depending on the model)
Network ProtocolsPROFINET, Ethernet

Summary

Legal information

Use of application examples

Explains Siemens application examples, their nature, and user responsibility.

Disclaimer of liability

Outlines Siemens' liability limitations regarding application examples.

Other information

Covers Siemens' right to change examples and precedence of other documentation.

Security information

Discusses industrial security, cyber threats, and recommended measures for SCALANCE devices.

Introduction

Overview

Provides background on SCALANCE devices, risks, and motivation for the checklist.

Document contents

Lists the topics covered in the checklist document.

The SCALANCE devices

Describes SCALANCE devices, their configuration methods, and classification.

Abridged checklist

Checklist items

Lists key security and configuration steps for SCALANCE devices.

Detailed checklist

Use the latest firmware

Recommends using the latest firmware version for SCALANCE devices.

Set up time synchronization

Explains the importance of time synchronization and supported methods.

Disable unencrypted protocols

Details disabling unencrypted protocols like HTTP, Telnet, and using secure alternatives.

Use secure FTP

Recommends using SFTP over TFTP for secure file transfer.

DHCP client

Advises on configuring the DHCP client to prevent unauthorized reconfiguration.

Change default passwords

Emphasizes changing default "admin" and "user" passwords for device security.

PROFINET

Covers PROFINET configuration, disabling unused functionality, and update times.

HTTPS certificates and SSH keys

Discusses using self-signed or custom certificates for secure HTTPS and SSH access.

Dynamic Configuration Protocol (DCP)

Explains DCP for device configuration and recommends restricting access to read-only.

DCP forwarding

Discusses DCP forwarding and disabling it for security on unknown networks.

DCP Discovery

Explains DCP Discovery for supplying core parameters to new nodes.

Quality of service - traffic shaping

Details prioritizing network traffic using COS and DSCP tags.

Redundancy

Covers ring redundancy protocols like MRP and HRP, and interruption-free options.

Ring redundancy

Discusses MRP and HRP protocols, failover times, and application compatibility.

MRP Interconnection

Explains MRP Interconnection for coupling multiple MRP rings.

Factory settings

Describes default ring port settings and Automatic Redundancy Detection (ARD).

Spanning tree

Explains Spanning Tree Protocol (STP) and Rapid Spanning Tree (RSTP).

Passive listening

Discusses disabling "Passive Listening" to prevent BPDU forwarding and MAC table issues.

Wireless LAN

Covers WLAN security and configuration.

WLAN encryption

Recommends WPA2 with AES encryption for wireless security.

WLAN layer-2 tunnel

Explains the "Layer 2 Tunnel" MAC mode for SCALANCE W devices.

WLAN IPCF

Discusses deterministic "iPCF" for time-critical data over wireless.

Configuration

Explains automatic configuration saving mechanisms in MSPS devices.

Storage information with MSPS devices

Details how SCALANCE devices save configuration to RAM and flash storage.

Configuration backup

Emphasizes creating regular configuration backups for SCALANCE devices.

C-PLUG/Key-PLUG

Explains the use of C-PLUG and Key-PLUG for storing settings and firmware.

Scheduled restart and Trial Mode

Describes using Trial Mode for testing configurations and scheduled restarts for safety.

Additional settings

Covers various additional configuration options for SCALANCE devices.

Port settings

Recommends disabling unused ports and using auto-negotiation for ports.

System information

Advises assigning meaningful labels for system name, contact, and location.

Syslog

Discusses using Syslog for logging and recommends secure TLS communication.

Limit key functions

Explains disabling physical reset keys or ring function switches.

Rate control

Details using rate control for throttling traffic and potential impacts.

Loop detection

Recommends enabling loop detection to prevent network disruptions.

Port mirroring

Explains port mirroring for network monitoring and its configuration.

VRRP

Discusses VRRP for redundant gateway IP addressing.

Default gateway

Advises setting a default gateway for future expansion and remote maintenance.

Brute Force Prevention

Details configuring brute force prevention to limit login attempts.

Turn off firewall with SCALANCE S/M

Strongly discourages disabling the firewall and suggests alternative configuration.

Appendix

Service and support

Provides contact information and links for Siemens Industry Online Support and Technical Support.

SITRAIN – Digital Industry Academy

Information on Siemens training courses for industry.

Service offer

Lists various Siemens services like spare parts, repair, and maintenance.

Industry Online Support app

Information about the Siemens Industry Online Support app for mobile devices.

Industry Mall

Describes the Siemens Industry Mall platform for product portfolio access.

Links and literature

Lists relevant links to Siemens online resources and literature.

Change documentation

Provides version history and modification details for the document.

Related product manuals