Configuration and operation
6.1 Security recommendations
CP 443-1 Advanced (GX30)
66
Manual, 03/2019, C79000-G8976-C256-05
Service/
Protocol
Protocol/
port number
Default port
status
Configurable
Authentication
Encryption
Service Port
PROFINET CM
UDP/34964
Open
--
--
No
No
PROFINET-RPC 2x
PROFINET-PN-EPM
UDP/552xx
Open
--
--
No
No
PROFINET-CBA
RPC
TCP/135
Closed
--
--
No
No
Explanation for table:
●
Service/Protocol
Protocols that the device supports.
●
Protocol/port number
Port number assigned to the protocol.
●
Default port status
–
Open
The port is open at the start of the configuration.
–
Closed
The port is closed at the start of the configuration.
●
Configurable port
–
✓
The port can be configured.
–
--
The port cannot be configured
●
Authentication
Specifies whether the communication partner is authenticated.
●
Encryption
Specifies whether the transfer is encrypted.
Ports of communication partners and routers
Make sure that you enable the required client ports in the corresponding firewall on the
communications partners and in intermediary routers.
These can be:
●
DHCP / 67, 68 (UDP)
●
DNS / 53 (UDP)
●
NTP / 123 (UDP)
●
SMTP / SMTP (STARTTLS) / 25 (TCP) - Open in CP on block call (outgoing only)
●
FTPS / 20, 21 (TCP)
●
Syslog / 514 (UDP)