A B B A B I L I T Y
T M
ED G E I N D US T R I A L G AT E WAY
10
1
—
1.3 Cybersecurity
1.3.1 Disclaimer
It is the sole responsibility of the customer to provide and continuously ensure a secure connection
between the product and the customer network or any other network. The customer is required to
establish and maintain any appropriate measures (including but not limited to the installation of
firewalls, application of authentication measures, encryption of data, installation of anti- virus
programs, etc.) to protect the product, the network, its system and the interface against any kind of
security breach, unauthorized access, interference, intrusion, leakage and/or theft of data or
information. ABB and its affiliates are not liable for damage and/or losses related to such security
breaches, unauthorized access, interference, intrusion, leakage and/or theft of data or information.
1.3.2 TCP/IP based protocols and used IP ports
To set up an IP firewall the following table summarizes the IP ports used by the device.
For further details on cybersecurity, please refer to
Cyber Security Deployment Guideline section
Modbus protocol is not secure as such. When this protocol is used, eavesdroppers on the local
network are able to understand the communication exchange happening with the device
—
1.4 Warning messages used in this document
1.4.1 Warning messages for harm to persons
To indicate an imminently hazardous situation which, if not avoided, will result in death or serious
injury, the following message is used:
DANGER!
Sign (if necessary)
TEXT THAT EXPLAINS THE HAZARD AND THE CONSEQUENCES OF NOT AVOIDING IT
Text that explains how to avoid this hazard
To indicate a potentially hazardous situation which, if not avoided, could result in death or
serious injury, the following message is used:
WARNING!
Sign (if necessary)
TEXT THAT EXPLAINS THE HAZARD AND THE CONSEQUENCES OF NOT AVOIDING IT
Text that explains how to avoid this hazard
Interface
Port
Type
Default state
Description
ETH0/Wi-Fi/Cellular
53
UDP
Closed/Outbound
DNS (Name resolution)
ETH0/Wi-Fi/Cellular
123
UDP
Closed/Outbound
NTP (Time synchronization)
ETH0/Wi-Fi/Cellular
443
TCP
Closed/Outbound
HTTPS (firmware update from cloud)
ETH1
22
TCP
Closed/Inbound
SSH (ABB maintenance access)
ETH1
5001
TCP
Open/Inbound
HTTPS (Provisioning Tool)
ETH1
5003
TCP
Open/Inbound
HTTPS (Web server)
ETH1
53
UDP
Open/Inbound
DNS (Name resolution)
ETH1
67
UDP
Open/Inbound
DHCP (Dynamic IP)
ETH1
68
UDP
Open/Inbound
DHCP (Dynamic IP)
ETH1
502
TCP
Open/Inbound
Modbus TCP (Device configuration)
ETH1
502
TCP
Closed/Outbound
Modbus TCP (Field devices communication)
Summary of Contents for Ability
Page 1: ... USER MANUAL ABB AbilityTM Edge Industrial Gateway ...
Page 2: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 2 ...
Page 4: ......
Page 6: ......
Page 12: ......
Page 16: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 16 ...
Page 21: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 21 3 ...
Page 22: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 22 4 ...
Page 28: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 28 5 ...
Page 34: ...6 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 34 ...
Page 44: ...7 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 44 ...
Page 48: ...8 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 48 ...
Page 54: ...9 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 54 ...
Page 58: ...1 0 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 58 ...
Page 61: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 61 1 0 ...
Page 62: ...1 1 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 62 ...
Page 76: ...1 2 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 76 ...
Page 80: ...1 3 ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 80 ...
Page 84: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 84 1 4 ...
Page 88: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 88 1 5 ...
Page 94: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 94 1 6 ...
Page 99: ...ABB ABILIT Y TM EDGE INDUSTRIAL GATEWAY 99 1 6 ...