background image

 

PROFINET connection 

 

3.2 Remote service 

Cloud Connector 
Getting Started, 07/2020, C79000-G8976-C507-03 

57

 

3.2.5

 

Enable the TIA Portal Cloud Connector on the server 

Requirement 

 

The TIA Portal Cloud Connector V1.1 SP4 

(

https://support.industry.siemens.com/cs/ww/en/view/109764115

) is installed. 

You can find additional information on the TIA Portal Cloud Connector in the 

documentation "Working with the TIA Portal Cloud Connector 

(

https://support.industry.siemens.com/cs/ww/en/view/109747305

)" and "SIMATIC 

Instructions on the TIA Portal Cloud Connector 

(

https://support.industry.siemens.com/cs/ww/en/view/109742490

)"

Procedure 

1.

 

Start the TIA Portal Cloud Connector. 

2.

 

In the "General" tab, select the "Remote device" option. 

3.

 

Switch to the "Protocol" tab and select the "TCP settings" option. 

4.

 

 Configure TCP with the following settings: 

 

Target device 

SCALANCE  

User device address 

VPN address of the SCALANCE M874 

The VPN address of the SCALANCE M874 is displayed on the SINEMA RC 

client. 

Port 

9023 

The port must be the same as the port assigned to the remote device. 

5.

 

To store the settings, click the "Apply" button. 

6.

 

Switch to the "General" tab. 

7.

 

Click on the link in the "Cloud Connector Communication" area. 
When the connection to the TIA Portal Cloud Connector of the SCALANCE M804PB has 

been successfully established, a check mark appears next to the link. 

8.

 

Click on the "Enable Communication" button in the "Cloud Connector Communication" area. 

Summary of Contents for SIMATIC NET SCALANCE M80PB

Page 1: ...SIMATIC NET Industrial Remote Communication Remote Networks Cloud Connector Getting Started 07 2020 C79000 G8976 C507 03 Preface Description 1 PROFIBUS connection 2 PROFINET connection 3 ...

Page 2: ... operated only by personnel qualified for the specific task in accordance with the relevant documentation in particular its warning notices and safety instructions Qualified personnel are those who based on their training and experience are capable of identifying risks and avoiding potential hazards when working with these products systems Proper use of Siemens products Note the following WARNING ...

Page 3: ...urther documentation Configuration Manual SCALANCE M 800 Command Line Interface This document contains the CLI commands supported by SCALANCE M 800 devices Getting Started Based on examples these documents explain the configuration of the SCALANCE M 800 S615 Operating instructions These documents contains information on installing connecting maintaining and servicing the following products Operati...

Page 4: ...EMA Remote Connect and TIA Portal Cloud Connector You can find this entry under the following entry ID 109767355 SIMATIC NET manuals You will find SIMATIC NET manuals on the Internet pages of Siemens Industry Online Support using the search function Link to Siemens Industry Online Support https support industry siemens com cs ww en Enter the entry ID of the relevant manual as the search item In th...

Page 5: ...urity measures e g firewalls and or network segmentation are in place For additional information on industrial security measures that may be implemented please visit https www siemens com industrialsecurity Siemens products and solutions undergo continuous development to make them more secure Siemens strongly recommends that product updates are applied as soon as they are available and that the la...

Page 6: ...Preface Cloud Connector 6 Getting Started 07 2020 C79000 G8976 C507 03 ...

Page 7: ... the SINEMA RC client on the PC 30 2 2 5 Enable the TIA Portal Cloud Connector on the server 31 2 2 6 Connecting to the TIA Portal Cloud Connector 33 3 PROFINET connection 39 3 1 Local service 39 3 1 1 Introduction 39 3 1 2 Enabling the TIA Portal Cloud Connector on the device 42 3 1 3 Enabling the TIA Portal Cloud Connector on the PG PC 43 3 1 4 Connecting to the TIA Portal Cloud Connector 45 3 2...

Page 8: ...Table of contents Cloud Connector 8 Getting Started 07 2020 C79000 G8976 C507 03 ...

Page 9: ...e The Cloud Connector is suitable for remote maintenance Teleservice You can use it to perform teleservice functions such as reading diagnostic buffers firmware updates and diagnosing module states Remote maintenance can be performed directly local service or remotely via SINEMA RC remote service Getting Started describes the possibilities in 4 configuration examples PROFIBUS MPI connection Local ...

Page 10: ...Description Cloud Connector 10 Getting Started 07 2020 C79000 G8976 C507 03 ...

Page 11: ...PG PC SCALANCE M804PB has an integrated TIA Portal Cloud Connector The two TIA Portal Cloud Connectors form the endpoints of the communication connection unsecured The TIA Portal Cloud Connector of the SCALANCE M804PB is the server and the TIA Portal Cloud Connector on the PG PC is the client The pre defined IPv4 rule Cloud Connector is enabled to prevent unauthorized access by network devices to ...

Page 12: ... established as follows SCALANCE M804PB Enable the integrated TIA Portal Cloud Connector PG PC Enable the TIA Portal Cloud Connector to establish an unsecured communication connection to the TIA Portal Cloud Connector of the SCALANCE M804PB Establish the online connection to the TIA Portal or STEP7 via the TIA Portal Cloud Connector ...

Page 13: ...n the configuration example were freely chosen In a real network you would need to adapt these IP settings to avoid possible address conflicts Requirement SCALANCE M804PB Firmware version 6 3 The device is accessible via the PG PC and you are logged on to the WBM as Administrator You can find more information on this in the SCALANCE M 800 Getting Started https support industry siemens com cs ww en...

Page 14: ...following settings Operation Enabled Port 9023 default port If you change the default port make sure that it is not occupied by another ser vice Protocol PROFIBUS 3 Click the Set Values button 4 The firewall is enabled on the device by default Click on Security Firewall in the navigation area and on the Predefined IPv4 rules tab in the content area Enable the pre defined Cloud Connector IPv4 rule ...

Page 15: ...ing with the TIA Portal Cloud Connector https support industry siemens com cs ww en view 109747305 and SIMATIC Instructions on the TIA Portal Cloud Connector https support industry siemens com cs ww en view 109742490 Activating the TIA Portal Cloud Connector 1 Start the TIA Portal Cloud Connector 2 In the General tab select the Remote device option 3 Switch to the Protocol tab and select the TCP s...

Page 16: ...cation area When the connection to the TIA Portal Cloud Connector of the SCALANCE M804PB has been successfully established a check mark appears next to the link 8 Click on the Enable Communication button in the Cloud Connector Communication area Result When communication has been established successfully the color of the status symbol changes to yellow ...

Page 17: ...he TIA Portal Cloud Connector Connecting via the TIA Portal 1 Start the TIA Portal and switch to the project view The color of the TIA Portal Cloud Connector status icon changes to green 2 Open the Online access folder 3 Right click on the SCALANCE M804PB MPI interface 4 Select the Properties command from the shortcut menu ...

Page 18: ...r Active configuration select the SCALANCE M804PB Automatic protocol detection entry and click OK 6 Double click on Update accessible devices below the interface The devices are listed that can be reached via the MPI interface of the SCALANCE M804PB The diagnostics buffer can be read via Online Diagnostics ...

Page 19: ...7 2020 C79000 G8976 C507 03 19 Connecting via STEP 7 1 Double click the STEP 7 icon on your desktop 2 Open the dialog Set PG PC Interface via Options Set PG PC Interface 3 In the Interface Parameter Assignment Used list select the interface SCALANCE M804PB Auto 1 Click OK ...

Page 20: ... service 2 2 1 Introduction In this example configuration the service technician accesses a server in the service center via remote desktop In addition to the programming software TIA Portal or STEP 7 the TIA Portal Cloud Connector is also installed on this server SINEMA RC is used to secure the TIA Portal Cloud Connector communication connection SINEMA RC provides secure management of tunnel conn...

Page 21: ...4PB via the SINEMA RC function and the service technician via the SINEMA RC client The communication connection of the two TIA Portal Cloud Connectors client and server goes through the VPN tunnel connection and is secured in this way Through this secure communication connection the service technician accesses the connected S7 automation system via the programming software and reads out the diagno...

Page 22: ...ion is established the service technician can read out the diagnostic buffer of the CPU Settings used For the configuration example the devices are given the following IP address settings Device Interface IP address SINEMA RC server PC1a LAN port 192 168 0 150 255 255 255 0 WAN port 192 168 20 150 255 255 255 0 The WAN IP address via which the SINEMA RC server can be reached is the WAN IP address ...

Page 23: ...ou can find additional information on this in the operating instructions SINEMA RC Server https support industry siemens com cs ww en view 109482121 PC1b The TIA Portal V15 Update 2 or STEP 7 V5 6 is installed on the PC Access to this server via Remote Desktop is configured for the service technician Service technician The PC has access to the Internet The SINEMA RC client is installed You can fin...

Page 24: ...cessible and you are logged on to the WBM with administrator rights Create participant group 1 In the navigation area click Remote connections Participant groups 2 Click the Create button and create a group named Service_Admin 3 Enable Members may communicate with each other 4 Enable LAN1 at Network interfaces accessible through the VPN tunnel 5 Click the Save button Creating a device 1 In the nav...

Page 25: ...0 Subnet mask 255 255 255 0 4 Click the Finish button Creating users 1 Click the Create button and configure the user with the following settings Tab Parameter Setting Contact data User names Service Logon procedure Password Rights Force comment Activate When the VPN tunnel between SINEMA RC client and server is ended the user is requested to enter a comment Only then can the current session be cl...

Page 26: ...e SINEMA RC for the service technician and the SCALANCE M804PB device To connect the SCALANCE M804PB to the SINEMA RC you need the device ID and CA certificate You can find this data in the device information In the navigation area click on Remove connections Devices to open the device information and for Actions click on the symbol ...

Page 27: ...PROFIBUS connection 2 2 Remote service Cloud Connector Getting Started 07 2020 C79000 G8976 C507 03 27 ...

Page 28: ... created in the SINEMA RC server Device Password Device Password Confirmation The password configured for access Auto Firewall NAT rules The firewall and NAT rules are created automatically for the VPN connection The connections between the configured exported subnets and the subnets that can be reached via the SINEMA RC server are allowed The NAT settings are implemented as config ured in the SIN...

Page 29: ...loud Connector Getting Started 07 2020 C79000 G8976 C507 03 29 Result TIA Portal Cloud Connector is started and enabled Under Information SINEMA RC you can check whether the VPN tunnel to the SINEMA RC server has been successfully established ...

Page 30: ...he SINEMA RC SCALANCE M804PB and the user are assigned to the same participant group Procedure 1 Double click the SINEMA RC client icon on your desktop 2 Log in with the Service user and the corresponding password 3 Click the Offline button The VPN connection to the SINEMA RC server is established 4 Click the Connect all devices button Result After successful connection the SINEMA RC client is ass...

Page 31: ...com cs ww en view 109742490 Procedure 1 Start the TIA Portal Cloud Connector 2 In the General tab select the Remote device option 3 Switch to the Protocol tab and select the TCP settings option 4 Configure TCP with the following settings Target device SCALANCE User device address VPN address of the SCALANCE M804PB The VPN address of the SCALANCE M804PB is displayed on the SINEMA RC client Port 902...

Page 32: ...BUS connection 2 2 Remote service Cloud Connector 32 Getting Started 07 2020 C79000 G8976 C507 03 Result When communication has been established successfully the color of the status symbol changes to yellow ...

Page 33: ...the TIA Portal Cloud Connector Connecting via the TIA Portal 1 Start the TIA Portal and switch to the project view The color of the TIA Portal Cloud Connector status icon changes to green 2 Open the Online access folder 3 Right click on the SCALANCE M804PB MPI interface 4 Select the Properties command from the shortcut menu ...

Page 34: ...or Active configuration select the SCALANCE M804PB Automatic protocol detection entry and click OK 6 Double click on Update accessible devices below the interface The devices are listed that can be reached via the MPI interface of the SCALANCE M804PB The diagnostics buffer can be read via Online Diagnostics ...

Page 35: ...07 2020 C79000 G8976 C507 03 35 Connecting via STEP 7 1 Double click the STEP 7 icon on your desktop 2 Open the dialog Set PG PC Interface via Options Set PG PC Interface 3 In the Interface Parameter Assignment Used list select the interface SCALANCE M804PB Auto 1 Click OK ...

Page 36: ...tor 36 Getting Started 07 2020 C79000 G8976 C507 03 4 Select PLC Display Accessible Nodes Accessible Nodes lists the devices that can be reached via the MPI interface of the SCALANCE M804PB The diagnostics buffer can be read with PLC Module Information ...

Page 37: ...PROFIBUS connection 2 2 Remote service Cloud Connector Getting Started 07 2020 C79000 G8976 C507 03 37 ...

Page 38: ......

Page 39: ...ed on the PG PC SCALANCE M874 3 has an integrated TIA Portal Cloud Connector The two TIA Portal Cloud Connectors form the endpoints of the communication connection unsecured The TIA Portal Cloud Connector of the SCALANCE M874 3 is the server and the TIA Portal Cloud Connector on the PG PC is the client The pre defined IPv4 rule Cloud Connector is enabled to prevent unauthorized access by network d...

Page 40: ...n is established as follows SCALANCE M874 Enable the integrated TIA Portal Cloud Connector Server Enable the TIA Portal Cloud Connector to establish an unsecured communication connection to the TIA Portal Cloud Connector of the SCALANCE M874 3 Use TIA Portal to establish the online connection using the TIA Portal Cloud Connector ...

Page 41: ...escribed below relates to the SCALANCE M874 3 Note The IP settings used in the configuration example were freely chosen In a real network you would need to adapt these IP settings to avoid possible address conflicts Requirement SCALANCE M874 3 Firmware version 6 3 The device is accessible via the PG PC and you are logged on to the WBM as Administrator You can find more information on this in the S...

Page 42: ...t 9023 default port If you change the default port make sure that it is not occupied by another ser vice Protocol PROFINET Interface Activate vlan1 INT 3 Select Enabled during operation 4 Click the Set Values button 5 The firewall is enabled on the device by default Click on Security Firewall in the navigation area and on the Predefined IPv4 rules tab in the content area Enable the pre defined Clo...

Page 43: ...ud Connector in the documentation Working with the TIA Portal Cloud Connector https support industry siemens com cs ww en view 109747305 and SIMATIC Instructions on the TIA Portal Cloud Connector https support industry siemens com cs ww en view 109742490 Activating the TIA Portal Cloud Connector 1 Start the TIA Portal Cloud Connector 2 In the General tab select the Remote device option 3 Switch to...

Page 44: ...cation area When the connection to the TIA Portal Cloud Connector of the SCALANCE M874 3 has been successfully established a check mark appears next to the link 8 Click on the Enable Communication button in the Cloud Connector Communication area Result When communication has been established successfully the color of the status symbol changes to yellow ...

Page 45: ... to the TIA Portal Cloud Connector Connecting via the TIA Portal 1 Start the TIA Portal and switch to the project view The color of the TIA Portal Cloud Connector status icon changes to green 2 Open the Online access folder 3 Right click on the vlan1 INT interface 4 Select the Properties command from the shortcut menu ...

Page 46: ...0 C79000 G8976 C507 03 5 For Active configuration select the VLAN INT PN IE entry and click OK 6 Double click on Update accessible devices below the interface The accessible devices that can be reached via VLAN1 are listed The diagnostics buffer can be read via Online Diagnostics ...

Page 47: ... M874 3 and the service center The Service Center is connected with the SINEMA RC server via LAN and can be reached in this way To manage the tunnel connection the SCALANCE M874 3 device and a user for the service technician are created on the SINEMA RC server The service technician and the SCALANCE M874 3 device establish a connection to SINEMA RC separately This is the SCALANCE M874 3 via the SI...

Page 48: ...e Connect Server PC1a the LAN interface is enabled for the service technician The service technician uses Remote Desktop to connect his PC PC2 with the server PC1b in the service center Service Center Via Remote Desktop the service technician enables the TIA Portal Cloud Connector client to establish a communication connection with the TIA Cloud Portal Connector server of the SCALANCE M874 3 The c...

Page 49: ... e g 192 168 203 150 PC PC1b LAN port vlan1 192 168 0 20 255 255 255 0 Service technician PC2 192 168 5 1 255 255 255 0 Default gateway is the LAN IP address of the router 192 168 5 2 Router 2 LAN port 192 168 5 2 255 255 255 0 WAN port Dynamic IP address from the provider SCALANCE M874 3 LAN port vlan1 192 168 16 84 255 255 255 0 ppp0 Dynamic IP address from the provider CPU 317 192 168 16 31 Use...

Page 50: ...ed to the Internet Firmware version 6 3 The device is accessible via the PC and you are logged on to the WBM as Administrator You can find more information on this in the SCALANCE M 800 Getting Started https support industry siemens com cs ww en view 78389746 KEY PLUG for SINEMA RC is available The device is connected to the CPU via P2 VLAN1 Steps in configuration The following steps are required ...

Page 51: ...g characters are permitted a z A Z 0 9 and _ The space character is not allowed conn cannot be used as a name New password Enter a password and repeat it The password must be made up of up percase and lowercase letters numbers and special characters Password Confirmation Vendor Siemens Type SCALANCEM874 M876 RM1244 VPN settings Apply default settings All access Participant group Select the Service...

Page 52: ...he current session be closed The comment is entered in the log of the SINEMA RC server Group membership Service_Admin Activate VPN connection mode Apply default settings Password New password Enter a password and repeat it Confirm password 2 Click the Finish button Result A user is created on the SINEMA RC for the service technician and the SCALANCE M874 3 device To connect the SCALANCE M874 3 to ...

Page 53: ...PROFINET connection 3 2 Remote service Cloud Connector Getting Started 07 2020 C79000 G8976 C507 03 53 See also Introduction Page 47 ...

Page 54: ... The password configured for access Auto Firewall NAT rules The firewall and NAT rules are created automatically for the VPN connec tion The connections between the configured exported subnets and the subnets that can be reached via the SINEMA RC server are allowed The NAT settings are implemented as configured in the SINEMA RC server You can enable SINEMA RC to access specific services of the dev...

Page 55: ...ether the VPN tunnel to the SINEMA RC server has been successfully established 3 2 4 Start the SINEMA RC client on the PC Requirement The Service user for the service technician is created on the SINEMA RC SCALANCE M874 3 and the user are assigned to the same participant group Procedure 1 Double click the SINEMA RC client icon on your desktop 2 Log in with the Service user and the corresponding pa...

Page 56: ...r 56 Getting Started 07 2020 C79000 G8976 C507 03 3 Click the Offline button The VPN connection to the SINEMA RC server is established 4 Click the Connect all devices button Result After successful connection the SINEMA RC client is assigned a VPN address ...

Page 57: ...dure 1 Start the TIA Portal Cloud Connector 2 In the General tab select the Remote device option 3 Switch to the Protocol tab and select the TCP settings option 4 Configure TCP with the following settings Target device SCALANCE User device address VPN address of the SCALANCE M874 The VPN address of the SCALANCE M874 is displayed on the SINEMA RC client Port 9023 The port must be the same as the po...

Page 58: ...of the status symbol changes to yellow 3 2 6 Connecting to the TIA Portal Cloud Connector Connecting via the TIA Portal 1 Start the TIA Portal and switch to the project view The color of the TIA Portal Cloud Connector status icon changes to green 2 Open the Online access folder 3 Right click on the vlan1 INT interface 4 Select the Properties command from the shortcut menu ...

Page 59: ...C79000 G8976 C507 03 59 5 For Active configuration select the VLAN INT PN IE entry and click OK 6 Double click on Update accessible devices below the interface The accessible devices that can be reached via VLAN1 are listed The diagnostics buffer can be read via Online Diagnostics ...

Page 60: ...PROFINET connection 3 2 Remote service Cloud Connector 60 Getting Started 07 2020 C79000 G8976 C507 03 ...

Page 61: ...Cloud Connector Getting Started 07 2020 C79000 G8976 C507 03 61 Index G Glossary 4 S Service Support 4 SIMATIC NET glossary 4 T Training 4 ...

Page 62: ...Index Cloud Connector 62 Getting Started 07 2020 C79000 G8976 C507 03 ...

Reviews: