Preface
SIMATIC MV500
Operating Instructions, 06/2018, C79000-G8976-C494-01
7
The firmware itself is signed and encrypted. This ensures that only authentic firmware can be
downloaded to the device.
Secure/non-secure protocols
● Check whether it is necessary to use SNMPv1. SNMPv1 is classified as non-secure.
Make use of the possibility to prevent write access. The product offers corresponding
settings for this.
● If SNMP is activated, change the community names. If unrestricted access is not
necessary, limit access via SNMP.
● Use secure protocols if access to the device is not protected by means of physical
safeguards.
The following protocols provide secure alternatives:
HTTP → HTTPS
● To prevent unauthorized access to the device or network, set up appropriate safeguards
against non-secure protocols.
● Enable only the services (protocols) that will actually be used on the device. The same
applies to the installed interfaces/ports. Unused ports could be used to access the
network downstream from the device.
List of available protocols
All available protocols and their ports that are used with SIMATIC MV500 are listed below.
Table 2 List of available protocols
HTTPS TCP/443 Open -- Yes Yes
1)
1)
PROFINET UDP/34964
Open -- No No
2)
This protocol is only used when the "CONNECT" button is used.
2)
Only when the reader is in "Stop".