
Configuration
Operating Manual PCOM sec br2
1004534-EN-04
| 27
8.4
Create device
Create PNOZmulti and PSS 4000 devices
The devices that are to be protected must be created and configured on the user interface.
Devices can be created manually or it is also possible to scan the network for connected
devices.
Special feature for PNOZmulti:
}
The
Network scan
function in the PNOZmulti Configurator can only be executed by
users who have
PNOZmulti
permissions.
Special feature for PSS 4000 devices:
}
The
Network scan
function in PAS4000 can only be executed by users who have
PSS4000
permissions.
}
A maximum of 64 PNOZmulti and PSS 4000 devices can be created.
Create OPC server
The OPC server must be in the unprotected network. The communication between the
device in the protected area and the OPC server is monitored by the SecurityBridge. De-
pending on the configured access permission, only read or read/write operations are per-
mitted.
}
A maximum of 5 OPC servers can be created. 4 OPC servers for the product range PSS
4000 and 1 OPC server for the product range PVIS.
Create Generic Devices
Generic Devices are all devices with a network interface that do not belong to the PSS
4000, PNOZmulti or OPC Server product family. These devices are located in the protected
area. The devices can only be created manually. Scanning the network for generic devices
is not possible.
}
A maximum of 15 Generic Devices can be created.
}
The IP address and/or the MAC address must be configured for each Generic Device.
8.4.1
Forwarding rules for PSS 4000
These rules monitor data traffic between a device in an unprotected network and the PSS
4000 in a protected network.
Please note the following when creating rules:
}
You can define a maximum of 64 rules
}
If you know the IP address and the port numbers, always enter a unique IP address and
port number.
If you set unknown IP addresses or port numbers, multiple devices from an unprotected
network will be able to access the PSS 4000 device in the protected network.
}
Create precisely one rule for one connection, which has been configured for a PSS 4000
device.