Application Planning
3.6 Check list: Data security
Fail-safe operation of the Mobile Panel 277F IWLAN
Function Manual, 08/2008, 6AV6691-1FQ01-2AB0
51
● Project transfer to the HMI device
● The process management phase in which the HMI device is used to operate and monitor
the plant.
Check the interplay of the specified measures.
The measures listed in the table are marked as follows:
● To achieve PROFIsafe conformity, you must take all the measures which are marked with
an asterisk * and highlighted in bold in the table.
● Additional voluntary measures are not marked.
Measure
Further information
Check
* Comply with the regulations in the document "PROFIsafe
- Environmental Requirements".
Document PROFIsafe -
Environmental
Requirements
Access points
Select the installation site and antenna characteristics of
the access points in such a manner that only the desired
area is with supplied wireless capacity. In this regard note
that wireless waves spread out horizontally as well as
vertically.
Access point operating
instructions
* Install access points where there is secure access, e.g.
in intermediate ceilings. In this manner you prevent
manipulations directly at the access point or at the
Ethernet connection to the LAN.
* Only use wire conducted connections to access the
parameter assignments of the access point.
Change the default administration password.
Access point Operating
instructions
* Hidden SSID: Configure the access point in such a
manner that the SSID of the wireless cell is not visible.
Access point Operating
instructions
* Change the pre-set SSID.
Access point Operating
instructions
Network
Examine the use environment with a spectrum analyzer
and via WLAN measurement programs for possible
interference to the WLAN on the wireless level.
If you have detected interference sources specify the
appropriate remedial measures. Log the results.
Only operate the network in the infrastructure mode.
System manual
"Fundamentals of Industrial
Wireless LAN", chapter
"Network architecture"
* Completely disconnect the automation networks from
other networks. Use firewalls, or VPNs at points where
connections to these networks must exist. Limit the
communication between the networks to the absolute
minimum required.
System manual
"Fundamentals of Industrial
Wireless LAN", chapter
"VPN (Virtual Private
Network)"