Communication - Siemens S7-1200 System Manual

Hide thumbs Also See for S7-1200:
Table of Contents

Communication

The S7-1200 offers several types of communication between CPUs and programming
devices, HMIs, and other CPUs.
If an attacker can physically access your networks, the attacker can possibly read and write
data.
The TIA Portal, the CPU, and HMIs (except HMIs using GET/PUT) use secure
communication that protects against replay and "man-in-the-middle" attacks. Once
communication is enabled, the exchange of signed messages takes place in clear text
which allows an attacker to read data, but protects against unauthorized writing of data.
The TIA Portal, not the communication process, encrypts the data of know-how protected
blocks.
All other forms of communication (I/O exchange through PROFIBUS, PROFINET, AS-i, or
other I/O bus, GET/PUT, T-Block, and communication modules (CM)) have no security
features. You must protect these forms of communication by limiting physical access. If an
attacker can physically access your networks utilizing these forms of communication, the
attacker can possibly read and write data.
For security information and recommendations, please see our "Operational Guidelines for
Industrial Security"
security/Documents/operational_guidelines_industrial_security_en.pdf) on the Siemens
Service and Support site.
PROFINET
PROFINET is used for exchanging data through the user program with other
communications partners through Ethernet:
● PROFINET supports 16 IO devices with a maximum of 256 submodules. PROFIBUS
● S7 communication
● User Datagram Protocol (UDP) protocol
● ISO on TCP (RFC 1006)
● Transport Control Protocol (TCP)
PROFINET RT IO controller
As an IO controller using PROFINET RT, the CPU communicates with up to 16 PN devices
on the local PN network or through a PN/PN coupler (link). Refer to PROFIBUS and
PROFINET International, PI (www.us.profinet.com) for more information.
S7-1200 Programmable controller
System Manual, 03/2014, A5E02486680-AG
WARNING
(http://www.industry.siemens.com/topics/global/en/industrial-
allows 3 independent PROFIBUS DP Masters, supporting 32 slaves per DP master, with
a maximum of 512 modules per DP master.
10
509
Table of Contents
loading

Table of Contents