Protection
6.3 Using the user program to set additional access protection
CPU 1516pro-2 PN (6ES7516-2PN00-0AB0)
62 Operating Instructions, 09/2016, A5E35873416-AA
3. Activate the desired protection level in the first column of the table. The green check
marks in the columns to the right of the respective access level show you which
operations are still available without entering the password. In the example (see above),
read access and HMI access is still possible without a password.
4. In the "Enter password" column, specify a password for the access level "Full access" in
the first row. In the "Confirm password" column, enter the selected password again to
guard against incorrect entries.
Ensure that the password is sufficiently secure, in other words, that is does not follow a
pattern that can be recognized by a machine!
5. Assign additional passwords to other access levels as needed, if the selected access
level calls for this.
6. Download the hardware configuration for the access level to take effect.
The CPU logs the entry of the correct or incorrect password and any changes in the
configuration of the access levels by a corresponding entry in the diagnostics buffer.
Behavior of a password-protected CPU during operation
The CPU protection takes effect after the settings are downloaded in the CPU.
Before an online function is executed, the necessary permission is checked and, if
necessary, the user is prompted to enter a password. The functions protected by a password
can only be executed by one programming device/PC at any one time. Another programming
device/PC cannot log on.
Access authorization to the protected data is in effect for the duration of the online
connection, or until the access authorization is manually rescinded with "Online > Delete
access rights".
For the fail-safe CPU, there is an additional access level besides the four access levels
described. You can find additional information about this access level in the description of
the fail-safe system SIMATIC Safety Programming and Operating Manual SIMATIC Safety -
Configuring and Programming
(http://support.automation.siemens.com/WW/view/en/54110126
).
Using the user program to set additional access protection
Access protection by means of the user program
You can also restrict access to a password-protected CPU in STEP 7 using the ENDIS_PW
instruction. You can find a description of this block in the online help under the keyword
"ENDIS_PW: Limit and enable password legitimation".