Protection
8.2 Configuring access protection for the CPU
Distributed I/O system
System Manual, 12/2016, A5E03576849-AG
165
Properties of the access levels
Each access level allows unrestricted access to certain functions without entering a
password, for example, identification using the "Accessible devices" function.
The CPU's default setting is "No restriction" and "No password protection". In order to protect
access to a CPU, you need to edit the properties of the CPU and set up a password. In the
default access level "Full access (no protection)" every user can read and change the
hardware configuration and the blocks. A password is not set and is also not required for
online access.
The access level of the CPU does not restrict communication between the CPUs (via the
communication functions in the blocks) unless PUT/GET communication is deactivated.
Entry of the right password allows access to all the functions that are allowed in the
corresponding level.
Note
Configuring an access level does not replace know-how protection
Configuring access levels offers a high degree of protection against unauthorized changes to
the CPU by restricting the rights to download the hardware and software configuration to the
CPU. However, blocks on the SIMATIC memory card are not write- or read-protected. Use
know-how protection to protect the code of blocks on the SIMATIC memory card.
Behavior of functions with different access levels
The STEP 7 online help includes a table which lists the online functions that are available in
the different access levels.
Summary of Contents for Simantic ET200SP
Page 1: ......