Secure/non-secure protocols
• Avoid or disable non-secure protocols, for example Telnet and TFTP. For historical reasons,
these protocols are available, however not intended for secure applications. Use non-secure
protocols on the device with caution.
• Check whether use of the following protocols and services is necessary:
– Non authenticated and unencrypted ports
– MRP, HRP
– LLDP
– DHCP Options 66/67
The following protocols provide secure alternatives:
– HTTP → HTTPS
– TFTP → FTPS
– Telnet → SSH
– SNTP → NTP
Check whether use the use of NTP is necessary. NTP is classified as non-secure. Activate
Secure NTP when the NTP server supports this protocol and use the authentication and
encryption mechanisms of Secure NTP.
– SNMPv1/v2c → SNMPv3
Check whether use of SNMPv1/v2c. is necessary. SNMPv1/v2c are classified as non-
secure. Use the option of preventing write access. The device provides you with suitable
setting options.
If SNMP is enabled, change the community names. If no unrestricted access is necessary,
restrict access with SNMP.
Use the authentication and encryption mechanisms of SNMPv3.
• Use secure protocols when access to the device is not prevented by physical protection
measures.
• If you require non-secure protocols and services, operate the device only within a protected
network area.
• Restrict the services and protocols available to the outside to a minimum.
• For the DCP function, enable the "DCP read-only" mode after commissioning.
Available protocols
The following list provides you with an overview of the open protocol ports.
The table includes the following columns:
• Protocol
• Port number
• Port status
– Open
– Closed
Security recommendations
SCALANCE XR-300M PoE
16
Compact Operating Instructions, 03/2022, A5E02661178-15
Содержание SCALANCE XR-300M PoE Series
Страница 10: ...Introduction SCALANCE XR 300M PoE 10 Compact Operating Instructions 03 2022 A5E02661178 15 ...
Страница 12: ...Safety instructions SCALANCE XR 300M PoE 12 Compact Operating Instructions 03 2022 A5E02661178 15 ...
Страница 18: ...Security recommendations SCALANCE XR 300M PoE 18 Compact Operating Instructions 03 2022 A5E02661178 15 ...
Страница 32: ...Device description 4 5 C PLUG SCALANCE XR 300M PoE 32 Compact Operating Instructions 03 2022 A5E02661178 15 ...
Страница 66: ...Maintenance and cleaning SCALANCE XR 300M PoE 66 Compact Operating Instructions 03 2022 A5E02661178 15 ...
Страница 78: ...Dimension drawings SCALANCE XR 300M PoE 78 Compact Operating Instructions 03 2022 A5E02661178 15 ...
Страница 92: ...Index SCALANCE XR 300M PoE 92 Compact Operating Instructions 03 2022 A5E02661178 15 ...