Configuring Access Protection For The Cpu - Siemens SIMATIC S7-1500 Automation System System Manual

Hide thumbs Also See for SIMATIC S7-1500 Automation System:
Table of Contents

Advertisement

Protection

14.2 Configuring access protection for the CPU

14.2
Configuring access protection for the CPU
Introduction
The CPU offers four access levels, in order to limit access to specific functions.
By setting up the access levels and the passwords for a CPU, you limit the functions and
memory areas that are accessible without entering a password. The individual access levels
as well as the entry of their associated passwords are specified in the object properties of
the CPU.
Access levels of the CPU
Table 14- 1
Access levels
Complete
access (no
protection)
Read access
HMI access
No access
(complete
protection)
Each access level allows unrestricted access to certain functions without entering a
password, e.g. identification using the "Accessible devices" function.
The CPU's default setting is "No restriction" and "No password protection". In order to protect
access to a CPU, you must edit the properties of the CPU and set up a password.
Communication between the CPUs (via the communication functions in the blocks) is not
restricted by the protection level of the CPU, unless PUT/GET communication is deactivated.
Entry of the right password allows access to all the functions that are allowed in the
corresponding level.
154
Access levels of the CPU
Access restrictions
The hardware configuration and the blocks can be read and changed by all users.
With this access level, read-only access to the hardware configuration and the
blocks is possible without entering a password, which means you can download
hardware configuration and blocks to the programming device. HMI access and
access to diagnostics data is also possible.
Without entering the password, you cannot load any blocks or hardware
configuration into the CPU. Additionally, the following are not possible without the
password: Test functions which write, changing the operating mode (RUN/STOP),
and firmware update (online).
With this access level only HMI access and access to diagnostics data is possible
without entering the password.
Without entering the password, you can neither load blocks and hardware
configuration into the CPU, nor load blocks and hardware configuration from the
CPU into the programming device. Additionally, the following are not possible
without the password: Test functions which write, changing the operating mode
(RUN/STOP), and firmware update (online).
When the CPU is completely protected, no read or write access to the hardware
configuration and the blocks is possible. HMI access is also not possible. The
server function for PUT/GET communication is disabled in this access level
(cannot be changed).
Authentication with the password will again provide you full access to the CPU.
S7-1500 Automation System
System Manual, 01/2013, A5E03461182-01

Advertisement

Table of Contents
loading

Table of Contents