ABB | E-Hub 2.0
Introduction | Cyber security
5 | © 2019 ABB | DOC. N° 1SDH002109A1001 - ECN000125349 - Rev. A
Warnings
WARNING! READ THE FOLLOWING MANUAL CAREFULLY BEFORE INSTALLING OR
WORKING ON E-HUB 2.0
• Keep this manual carefully with all the other available documents, including: Getting
Started for first installation, electrical diagrams, drawings and any descriptive notes.
• Keep these documents available during the E-Hub 2.0 installation, operating and
maintenance step to facilitate the following operations.
• Install the unit in compliance with the environmental, electrical and mechanical limits
described in the product documentation.
• E-Hub 2.0 has been designed to operate with voltage and current values within the
rated limits: do not install in systems that work at values exceeding these rated limits.
• Follow the safety procedures set by your company.
• Do not open lids or doors, do not work on devices before disconnecting all circuits and
checking that they are disconnected with a measuring instrument.
3 - Cyber security
Disclaimer
It is the sole responsibility of the customer to provide and continuously ensure a secure
connection between the product and the customer network or any other network. The
customer is required to establish and maintain any appropriate measures (including but not
limited to the installation of firewalls, application of authentication measures, encryption
of data, installation of anti- virus programs, etc.) to protect the product, the network,
its system and the interface against any kind of security breach, unauthorized access,
interference, intrusion, leakage and/or theft of data or information. ABB and its affiliates
are not liable for damage and/or losses related to such security breaches, unauthorized
access, interference, intrusion, leakage and/or theft of data or information.
TCP/IP based protocols
and used IP ports
To set up an IP firewall the following table summarizes the IP ports used by the device.
Interface
Port
Type
Default state
Description
ETH0/Wi-Fi/Cellular
53
UDP
Closed/Outbound
DNS (Name resolution)
ETH0/Wi-Fi/Cellular
123
UDP
Closed/Outbound
SNTP (Time synchronization)
ETH0/Wi-Fi/Cellular
443
TCP
Closed/Outbound
HTTPS (Send data to cloud platform)
ETH1
22
TCP
Open/Inbound
SSH (ABB maintenance access)
ETH1
80
TCP
Open/Inbound
HTTP (Web server)
ETH1
443
TCP
Open/Inbound
HTTPS (Web server)
ETH1
53
UDP
Open/Inbound
DNS (Name resolution)
ETH1
67
UDP
Open/Inbound
DHCP (Dynamic IP)
ETH1
68
UDP
Open/Inbound
DHCP (Dynamic IP)
ETH1
69
UDP
Closed/Outbound
TFTP (Transfer configuration files)
ETH1
502
TCP
Open/Inbound
Modbus TCP (Device configuration)
ETH1
502
TCP
Closed/Outbound
Modbus TCP (Field devices
communication)