EasyManuals Logo
Home>Siemens>Switch>SIMATIC NET SCALANCE XM-400 Series

Siemens SIMATIC NET SCALANCE XM-400 Series User Manual

Siemens SIMATIC NET SCALANCE XM-400 Series
90 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #15 background imageLoading...
Page #15 background image
Secure/non-secure protocols and services
Avoid or disable non-secure protocols and services, for example HTTP, Telnet and TFTP. For
historical reasons, these protocols are available, however not intended for secure
applications. Use non-secure protocols on the device with caution.
Check whether use of the following protocols and services is necessary:
Non authenticated and unencrypted ports
MRP, HRP
IGMP snooping
LLDP
Syslog
RADIUS
DHCP Options 66/67
TFTP
GMRP and GVRP
The following protocols provide secure alternatives:
HTTP → HTTPS
Telnet → SSH
SNMPv1/v2c → SNMPv3
Check whether use of SNMPv1/v2c. is necessary. SNMPv1/v2c is classi󹪝ed as non-secure.
Use the option of preventing write access. The device provides you with suitable setting
options.
If SNMP is enabled, change the community names. If no unrestricted access is necessary,
restrict access with SNMP.
Use the authentication and encryption mechanisms of SNMPv3.
Use secure protocols when access to the device is not prevented by physical protection
measures.
If you require non-secure protocols and services, operate the device only within a protected
network area.
Restrict the services and protocols available to the outside to a minimum.
For the DCP function, enable the "Read Only" mode after commissioning.
If you use RADIUS for management access to the device, activate secure protocols and
services.
Interfaces security
Disable unused interfaces.
Use IEEE 802.1X for interface authentication.
Use the function "Locked Ports" to block interfaces for unknown nodes.
Use the con󹪝guration options of the interfaces, e.g. the "Edge Type".
Con󹪝gure the receive ports so that they discard all untagged frames ("Tagged Frames Only").
Recommendations on network security
SCALANCE XM-400
Operating Instructions, 03/2021, C79000-G8976-C306-10 15

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Siemens SIMATIC NET SCALANCE XM-400 Series and is the answer not in the manual?

Siemens SIMATIC NET SCALANCE XM-400 Series Specifications

General IconGeneral
BrandSiemens
ModelSIMATIC NET SCALANCE XM-400 Series
CategorySwitch
LanguageEnglish

Related product manuals