Technical basics
3.8 Security functions
SCALANCE SC-600 Web Based Management (WBM)
54
Configuration Manual, 10/2021, C79000-G8976-C475-03
3.8.3
Firewall
3.8.3.1
Firewall rules SC600
Firewall rules are automatically created, predefined or specially configured IP rules for
data traffic.
Automatic firewall rules
The "Auto firewall rules" setting is available for the following functions:
•
System > SINEMA RC
•
Security > IPsec VPN> Phase 2
•
Security > OpenVPN Client > Connections
The automatically created firewall rules allow packets in the following direction:
From
To
SINEMA RC
IPsec VPN
OpenVPN
Internal
External
✓
✓
✓
External
Internal
✓
✓
✓
Device
External
--
--
✓
External
Device
Predefined IPv4 rules
When the connection is created, the following IPv4
services are enabled:
HTTP
HTTPS
SSH
Ping
Ping
Ping
Predefined firewall rules
The firewall contains predefined IPv4 rules that enable specific IPv4 services on the
device.
Specify the interface via which access takes place under "Security > Firewall >
Predefined IPv4".
The following options are available:
•
VLANx: VLANs with configured subnet
•
VPN connection: SINEMA RC, IPsec and OpenVPN
Factory setting
Содержание SIMATIC NET SCALANCE SC-600
Страница 68: ......