EasyManuals Logo

Siemens SIMATIC NET SCALANCE SC636-2C User Manual

Siemens SIMATIC NET SCALANCE SC636-2C
372 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #19 background imageLoading...
Page #19 background image
Security recommendations
SCALANCE SC-600 Web Based Management (WBM)
Configuration Manual, 10/2021, C79000-G8976-C475-03
19
• If non-secure protocols and services are required, ensure that the device is operated
in a protected network area.
• Check whether use of the following protocols and services is necessary:
– Non-authenticated and unencrypted ports
– MRP, HRP
– IGMP Snooping
– Syslog
– RADIUS
– Broadcast pings
– ICMP (redirect)
– LLDP
– DHCP Options 66/67
– SNTP
– NTP
– TFTP
– GMRP and GVRP
– VRRPv3
– DNS
– SNMPv1/V2c
• If a secure alternative is available for a protocol, use it.
The following protocols provide secure alternatives:
– SNMPv1/v2 → SNMPv3
Check whether use of SNMPv1/v2c is necessary. SNMPv1/v2c are classified as
non-secure. Use the option of preventing write access. The device provides you
with suitable setting options.
If SNMP is enabled, change the community names. If no unrestricted access is
necessary, restrict access with SNMP.
Use the authentication and encryption mechanisms of SNMPv3.
– HTTP → HTTPS
– Telnet → SSH
– NTP → Secure NTP
– TFTP → SFTP
• Restrict the services and protocols available to the outside to a minimum.
• If you use RADIUS for management access to the device, enable secure protocols and
services.
• For the DCP function, leave the "Read-Only" mode after commissioning.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Siemens SIMATIC NET SCALANCE SC636-2C and is the answer not in the manual?

Siemens SIMATIC NET SCALANCE SC636-2C Specifications

General IconGeneral
BrandSiemens
ModelSIMATIC NET SCALANCE SC636-2C
CategorySwitch
LanguageEnglish

Related product manuals