
Rockwell Automation Publication ICSTT-RM446N-EN-P - April 2018
21
Introduction
Chapter 1
• Anti-virus software must be installed and be kept updated.
• The workstation must be password protected.
• If the workstation is a laptop, it must be kept locked when not in use.
• If the workstation uses a hardware license USB dongle it must be kept
secure, without it the workstation will not run.
• The Workbench software must be password protected. This can be done
when the Workbench is installed.
• The application must be protected by using a Program Enable Key.
Communication Port Security
A network communications protocol suitable for safety systems, developed by
Rockwell Automation for the AADvance system, permits distributed control
and safety using new or existing network infrastructure while ensuring the
integrity of the data. Individual sensors and actuators can connect to a local
controller, minimizing the lengths of dedicated field cabling. There is no need
for a large central equipment room; rather, the complete distributed system can
be administered from one or more computer workstations placed at convenient
locations. AADvance has a Rockwell secure SIL 3 rated 'Black Channel'
external communication over Ethernet.
The Ethernet transport layer ports (services) are supported by AADvance,
some ports are always available others are only available when configured.
When "always available" ports are not configured or unused they are open to
unauthorized access.
The following transport layer ports (services) are supported by AADvance,
some ports are always available others are only available when configured
(sometimes combined with another condition).
Table 2 - AADvance Communication Ports
IMPORTANT
Firewalls have been known to affect the operation of the
AADvance Discover utility so it may be necessary to
temporary disable the Firewall when using this tool.
Protocol
Port Number
Availability
Purpose
TCP
502
When configured
MODBUS Slave
TCP
1132
Always available
ISaGraf, application downloads, debug, SoE etc.
TCP
10001- 10006
When configured (and the
application is stopped).
Transparent Comms Interface (Serial Tunnelling)
TCP
44818
Always available
CIP Produce & Consume
TCP
55555
Always available
Telnet (diagnostic interface)
UDP
123
When configured
(S)NTP
UDP
1123,1124
Always available
IXL bindings
Содержание AADvance T9110
Страница 4: ...4 Rockwell Automation Publication ICSTT RM446N EN P April 2018 ...
Страница 10: ...10 Rockwell Automation Publication ICSTT RM446N EN P April 2018 Preface ...
Страница 44: ...44 Rockwell Automation Publication ICSTT RM446N EN P April 2018 Chapter 2 Functional Safety Management ...
Страница 116: ...116 Rockwell Automation Publication ICSTT RM446N EN P April 2018 Chapter 5 Checklists ...