EasyManuals Logo

Siemens SIMATIC S7-1200 CP 1243-8 IRC User Manual

Siemens SIMATIC S7-1200 CP 1243-8 IRC
230 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #108 background imageLoading...
Page #108 background image
Configuration
4.16 Security
CP 1243-8 IRC
108 Operating Instructions, 02/2018, C79000-G8976-C385-03
Key exchange interval
Period after which the key is exchanged again between the CP and the master. The
interval must be matched up on both communications partners.
Range of values: 0...65535 min. at 0 (zero), the key is never changed (function disabled).
Default setting: 15 min.
Recommendation: Set the key exchange interval for the CP twice as high as for the
master.
Authentication timeout
Maximum waiting time for the response from the master to an authentication request of
the CP.
Exceeding the wait time is evaluated as an error by the CP. In this case, the CP
generates a security event and sends this to the master.
Range of values: 1... 65535 s Default setting: 5
Pre-shared key
The pre-shared key can be configured in two ways:
Manual configuration
Enter the pre-shared key in STEP 7 manually as a hexadecimal value.
Import as file
Import the pre-shared key from the file system of the engineering station if the pre-
shared key was generated by the master or another system.
The pre-shared key of the CP must be identical to the pre-shared key of the master.
4.16.4
Firewall
4.16.4.1
Pre-check of messages by the MAC firewall.
Each incoming or outgoing frame initially runs through the MAC firewall (layer 2). If the frame
is discarded at this level, it will not be checked by the IP firewall (layer 3). This means that
with suitable MAC firewall rules, IP communication can be restricted or blocked.
4.16.4.2
Firewall settings for configured connection connections via a VPN tunnel
IP rules in advanced firewall mode
If you set up configured connection connections with a VPN tunnel between the CP and a
communications partner, you will need to adapt the local firewall settings of the CP:
In advanced firewall mode ("Security > Firewall > IP rules") select the action "Allow*" for both
communications directions of the VPN tunnel.
See section Settings for online security diagnostics and downloading to station with the
firewall activated (Page 109) for information on this.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Siemens SIMATIC S7-1200 CP 1243-8 IRC and is the answer not in the manual?

Siemens SIMATIC S7-1200 CP 1243-8 IRC Specifications

General IconGeneral
Product TypeCommunication Processor
SeriesSIMATIC S7-1200
ModelCP 1243-8 IRC
Data Transfer Rate10/100 Mbps
Power Supply24 V DC
MountingDIN rail
Dimensions (W x H x D)45 mm x 100 mm x 75 mm
Digital Inputs Quantity0
Digital Outputs Quantity0
Supported ProtocolsISO-on-TCP
InterfaceEthernet
IP AddressingStatic, DHCP
ConfigurationSTEP 7 Basic/Professional
Operating Temperature-20°C to +60°C
WeightApprox. 200 g

Related product manuals