~
19
~
NOVATEK-ELECTRO
ЕТ-485
marking depends on the router manufacturer, see the router documentation). The straight-through (supplied)
Ethernet cable is used for connecting unit to the router. Set the router for Internet connection as per ISP
recommendations using the router documentation. The router settings should also provide for the redirection of
requests, which are coming to static IP-address provided by the ISP, to the unit IP-address (factory setting -
192.168.0.111);
verify if the Internet connection is protected by standard means (see below);
when referring the unit via Internet, use IP-address provided by your ISP
4. PROTECTION OF CONNECTION
ET-485 has basic protection media against unauthorized access via Ethernet network;
IP address filter for setting can be enabled to provide to a single main client the permit to access the HTTP
and Modbus interfaces of the unit. The main client can be the master device in Modbus network (RS-485) or a client
in Ethernet network with a set IP. herewith, the access to Modbus network might not be restricted.
IP address filters for Modbus TCP can be enabled to provide to a single client the permit to access to Modbus
network (RS-485) via Modbus protocol and ET-485;
IP address filters for recording and/or reading can be enabled to provide to a single client the permit to request
via Modbus protocol such function codes, which are not reading functions;
unit settings can be changed remotely only after password input (not less than 5 symbols). The unit blocks the
attempts to guess the correct value by multiple input of incorrect passwords;
access passwords can be established to restrict recording and/or reading via Modbus and to read the
ET-485 unit state and settings;
at password input the access is provided only to the given client via the given protocol. If a client does not
send any queries for a long time, the access is closed.
N o te - If the password is input correctly, the access is opened in unsecured connection. The users are
strongly recommended to enable the "IP-connections filter for configuration" option of
ET- 485 in case of network configuration (especially for networks without other types of protection).
The unit protection system is not designed to counter malicious network attacks (especially those, which are
not trying to get access to the unit but to block it instead);
In case of complex and large networks (especially when providing access to the ET-485 via Internet), the
users are recommended to separate the unit from unprotected networks with standard protective equipment (router,
configured to filter the transmissions, Firewall, etc.).