Similar documents






Firewall Settings for SIMATIC B.Data


How to use a project file with an out of date firmware with actual firmware version

Data Storage on Windows Server or NAS Hard Drives


How do you access an SQL database in WinCC Runtime Advanced using a script?


Service & Support. How can you transfer a WinCC (TIA Portal) project to an operator panel using Ethernet? WinCC (TIA Portal) FAQ February 2012

How do you establish MODBUS-RTU communication?


SIMATIC. PCS 7 Process Control System SIMATIC Logon Readme V1.6 (Online) Security information 1. Overview 2. Notes on installation 3.




SIMATIC. Process Control System PCS 7 Configuration McAfee Endpoint Security Security information 1. Preface 2.


SIMATIC NET. Industrial Ethernet Security SCALANCE S615 Getting Started. Preface. Connecting SCALANCE S615 to the WAN 1

SINAMICS G/S: Tool for transforming Warning and Error Messages in CSV format

SIMATIC NET. Industrial Ethernet / PROFINET Primary Setup Tool (PST) Preface. Functions 1. Software installation 2. Operation. Configuration Manual

SIMATIC NET OPC Server Implementation

Configuration of an MRP Ring and a Topology with Two Projects

Setting up 01/2017. Setting up the SIMATIC IOT2000 SIMATIC IOT2020, SIMATIC IOT2040

Setting up 08/2017. Setting up the SIMATIC IOT2000 SIMATIC IOT2020, SIMATIC IOT2040

SIMATIC. Process Control System PCS 7 SIMATIC Management Console (V9.0) Security information 1. Preface 2. Basics 3

SINAMICS G/S: Integrating Warning and Error Messages into STEP 7 V5.x or WinCC flexible



Determination of suitable hardware for the Process Historian 2014 with the PH-HWAdvisor tool

TeleService of a S station via mobile network

SIMATIC. PCS 7 Licenses and configuration limits (V9.0) Security information 1. Preface 2. Selecting the correct license keys 3

SIMATIC. SIMATIC Energy Manager V1.0 App for ios and Android. Preface. SIMATIC Energy Manager app. Establish connection to SIMATIC Energy Manager PRO


Migration of a Process Historian database


Multiuser Engineering in the TIA Portal


SIMATIC. SIMATIC Logon V1.6. Security information 1. Conditions for secure operation of SIMATIC Logon 2. User management and electronic signatures 3


Wireless PC Network Settings


SIMATIC NET. Industrial Remote Communication - Remote Networks SINEMA Remote Connect. Preface. Connecting the SINEMA RC Server to the WAN 1

SIMATIC. Process Control System PCS 7 SIMATIC Management Console (V9.0 Update 1) Security information 1. Preface 2. Basics 3

Integration of Process Historian / Information Server in a Domain

SIMATIC. Process Control System PCS 7 CFC Readme V9.0 (online) Security information 1. Overview 2. Notes on Installation 3. Notes on usage 4.

SIMATIC. Process Control System PCS 7 Advanced Process Functions Operator Manual. Preface. Security information 1. Overview 2. Material management 3

House Control with Touch Panel

SIMATIC PDM - Central access to MODBUS RTU devices


Position Control with SIMATIC S and SINAMICS V90 via IRT PROFINET SINAMICS V90 PROFINET. Application description 03/2016

Communication between HMI and Frequency Converter. Basic Panel, Comfort Panel, Runtime Advanced, SINAMICS G120. Application Example 04/2016

SIMATIC NET. Industrial Remote Communication - Remote Networks SINEMA Remote Connect - Client. Preface. Requirements for operation 1

SIMATIC. Industrial PC Microsoft Windows 7 (USB stick) Safety instructions 1. Initial startup: Commissioning the operating system

Visualizing Energy Data of a SITOP PSU8600


SIMATIC. Process control system PCS 7 Operator Station (V9.0 SP1) Security information 1. Preface 2

View the most recent product information online

Automatic Visualization of the Sample Blocks in WinCC Advanced

SIMATIC. Process Control System PCS 7 Configuration Symantec Endpoint Protection V14. Security information 1. Preface 2.

Siemens Drives & PLCs

Application example 02/2017. SIMATIC IOT2000 Connection to IBM Watson IoT Platform SIMATIC IOT2040


Check List for Programming Styleguide for S7-1200/S7-1500



SIMATIC HMI. WinCC WinCC Runtime Advanced readme. Security information 1. Installation 2. Runtime 3. System Manual. Online help printout

SIMATIC. Industrial PC Microsoft Windows 7. Safety instructions 1. Initial startup: Commissioning the operating. system


SIMATIC. Process control system PCS 7 PCS 7 - PC Configuration (V9.0 SP1) Security information 1. Preface 2. PC components of a PCS 7 system 3


SIMATIC NET. Industrial Remote Communication TeleService TS Gateway. Preface. Application and properties. Installation, commissioning and operation 2


PNDriver V2.1 Quick Start Guide for IOT2040 SIMATIC IOT


APF report templates based on data from the WinCC User Archive

Report operator actions with the WinCC WebNavigator




Display of SINAMICS Fault Messages in WinCC V7.4

Siemens Spares. Setting up security in STEP 7. Professional SIMATIC NET. Industrial Ethernet Security Setting up security in STEP 7 Professional


Sending and Receiving SMS Messages via a SCALANCE M Router SCALANCE M874/M876, S7-1200/S CPU / V1.0. Application Example 06/2016

Siemens Industrial SIMATIC. Process Control System PCS 7 Configuration Trend Micro OfficeScan Server XG. Security information 1.


Application example 12/2016. SIMATIC IOT2000 OPC UA Client SIMATIC IOT2020, SIMATIC IOT2040

Tabular SIMATIC BATCH report for the Information Server. SIMATIC PCS 7 / SIMATIC Information Server 2014 / Customized Reporting


Plant Security Services Protecting productivity in the digital era October



Monitoring Machines and Plants with Network Cameras. SIMATIC HMI Comfort Panels; KTP Mobile / WinCC V13 SP1. Application Example 03/2016

S Data Transfer with SEND/RECEIVE Interface

Networking a SINUMERIK 828D

SIMATIC. TIA-Portal SIMATIC Visualization Architect. Security information 1. Basics 2. Installation 3. Elements and basic settings 4

Transcription:

How do you integrate an HMI operator panel into a local network? HMI Operator Panel / WinCC flexible 2008 / Windows XP / Windows 7 / Windows 10 https://support.industry.siemens.com/cs/ww/en/view/13336639 Siemens Industry Online Support

This entry originates from Siemens Industry Online Support. The conditions of use specified there apply (www.siemens.com/nutzungsbedingungen). Security Information Siemens provides products and solutions with industrial security functions that support the secure operation of plants, systems, machines and networks. In order to protect plants, systems, machines and networks against cyber threats, it is necessary to implement and continuously maintain a holistic, state-of-the-art industrial security concept. Siemens products and solutions only form one element of such a concept. Customers are responsible to prevent unauthorized access to their plants, systems, machines and networks. Systems, machines and components should only be connected to the enterprise network or the internet if and to the extent necessary and with appropriate security measures (e.g. use of firewalls and network segmentation) in place. Additionally, Siemens guidance on appropriate security measures should be taken into account. For more information about industrial security, please visit http://www.siemens.com/industrialsecurity. Siemens products and solutions undergo continuous development to make them more secure. Siemens strongly recommends to apply product updates as soon as available and to always use the latest product versions. Use of product versions that are no longer supported, and failure to apply latest updates may increase the customer s exposure to cyber threats. To stay informed about product updates, subscribe to the Siemens Industrial Security RSS Feed under http://www.siemens.com/industrialsecurity. Contents... 3 1.1 Assigning a Fixed IP Address... 3 1.2 Network Configuration on the Operator Panel... 6 1.3 Other Settings on the PC (Optional)... 8 2 Enabling PC Network Sharing... 10 2.1 Archiving Path... 10 2.2 Sharing a Folder or a Drive on a PC.... 10 2.3 Note on Windows 10... 11 Entry ID: 13336639, Version 2.0, 01/2019 2

1.1 Assigning a Fixed IP Address Microsoft Windows XP Open the Control Panel via "Start > Control Panel". Open the "Network Connections" folder in the Control Panel. If you select "LAN Connection", a dialog window opens in which you can configure this LAN connection. When you click the "Properties" button, another window opens. Select the "Internet Protocol (TCP/IP)" and click "Properties" to open the properties for this protocol. Another dialog window opens. Select "Use the following IP address". You can now assign a separate IP address for the PC. The following network settings have been applied in this example: IP address: 192.168.0.1 Subnet mask: 255.255.255.0 Figure 1-1 Microsoft Windows 7 When you click the "Advanced..." button, another window opens. In the new window you select the "WINS" folder. Make sure that "Standard" is check marked under "NetBIOS Setting". This concludes the settings for assigning the IP address and for the NetBIOS on the PC. Open the Control Panel via "Start > Control Panel". Entry ID: 13336639, Version 2.0, 01/2019 3

Open the "Network and Sharing Center" folder in the Control Panel. On the left side you select the "Change adapter settings" option. Open the Properties of the network card via which communication with the operator panel is to be made. In the Properties window you select the "Internet Protocol Version 4 (TCP/IPv4)" and click the "Properties" button to open the Properties of this protocol. Another dialog window opens. Select "Use the following IP address". You can now assign a separate IP address for the PC. The following network settings have been applied in this example: IP address: 192.168.0.1 Subnet mask: 255.255.255.0 Figure 1-2 Complete the input via the "OK" button. This concludes the settings for assigning the IP address on the PC. Microsoft Windows 10 Open the Control Panel via "Start > Settings". Open the "Network and Internet" folder in the Control Panel. Entry ID: 13336639, Version 2.0, 01/2019 4

Select the "Ethernet" option (1). Select the "Change adapter options" menu (2). Open the Properties of the network card via which communication with the operator panel is to be made (3). In the Properties window you select the "Internet Protocol Version 4 (TCP/IPv4)" and click the "Properties" button to open the Properties of this protocol. Another dialog window opens (4). Select "Use the following IP address". You can now assign your own IP address for the PC (5). The following network settings have been applied in this example: IP address: 192.168.0.1 Subnet mask: 255.255.255.0 Figure 1-3 1 3 2 4 5 Complete the input via the "OK" button. This concludes the settings for assigning the IP address on the PC. Entry ID: 13336639, Version 2.0, 01/2019 5

1.2 Network Configuration on the Operator Panel Requirements The Control Panel is open. Open the "Communications" dialog in the Control Panel or the "System" dialog in Windows CE 5.0. In the "Device name" input box, you enter the computer name of the operator panel, "MP377test", for example. In the "Device description" input box, you enter a description of the operator panel if required. Confirm the entries with "OK". The dialog closes. Open the "Network ID" dialog. Enter the user name in the "User name" input box. Enter your password in the "Password" input box. Enter the domain name in the "Domain name" input box. Confirm the entries with "OK". The dialog closes. Note User name and password are the logon data of the PC where you want to archive the data. Open the "Network" dialog or the "Network & Dial up Connections" dialog in Windows CE 5.0. In the "Adapters" tab, you select the driver for the network card being used. In this example, use the "Onboard LAN Ethernet Driver". If you are using an external Ethernet card, select NE2000 Compatible Ethernet Driver" here. Click the "Properties" button. In the "IP Address" tab you click "Specify an IP address". You can now assign an IP address to the panel. Note The IP address must be in the same "IP band" as the PC with which the panel has to communicate later on. The following figure shows the network setting in Windows CE 5.0. The settings are similar in a SIMATIC HMI panel with Windows CE 3.0. The following network settings have been applied on the panel in this example. IP address: 192.168.0.2 ( PC setting: 192.168.0.1) Subnet mask: 255.255.255.0 ( PC setting: 255.255.255.0) Entry ID: 13336639, Version 2.0, 01/2019 6

Figure 1-4 Click "OK" to confirm all entries until you return to the Control Panel. Using a Router If the configuration PC and the panel are in different Ethernet networks, then the two Ethernet networks are connected via a router, for example. When you specify the IP address in the HMI configuration you must also specify the network-specific IP address of the router. Example: Network 1, Configuration PC Network 2, HMI operator panel The following figure shows a possible configuration. Entry ID: 13336639, Version 2.0, 01/2019 7

Figure 1-5 PC HMI project IP-Address: 172.16.34.1 Subnetmask: 255.255.0.0 Standardgateway172.16.34.80 IP-Address: 182.168.10.12 Subnetmask: 255.255.255.0 Standardgateway:182.168.10.10 Network 1 255.255.0.0 Router, Channel 1 = Gateway-Address 1 IP-Address: 172.16.34.80 Subnetmask: 255.255.0.0 Router Router, Channel 2 = Gateway-Address 2 IP-Address: 182.168.10.10 Subnetmask: 255.255.255.0 Network 2 255.255.255.0 IP-Address: 182.168.10.12 Subnetmask: 255.255.255.0 Standardgateway:182.168.10.10 HMI Panel Details on the topic of "Integrating HMI Operator Panels in TCP/IP Networks " are available in Entry ID: 92346478 1.3 Other Settings on the PC (Optional) If the panel is to be reached from the PC via "name resolution", then you must make the following settings in the lmhosts file. Change the lmhosts file You can find the lmhosts file in C:\WINDOWS\System32\drivers\etc. Open the lmhosts file (with Notepad, for example). In the lmhosts file you enter the IP address and name of the panel. In this example "192.168.0.2 MP377test". This entry ensures that the PC can exactly assign the operator panel uniquely in the network environment on the basis of the IP address and name of the operator panel. Entry ID: 13336639, Version 2.0, 01/2019 8

Note The "lmhosts" file is often available as "lmhosts.sam". In this case you edit the file name and delete the ".sam" extension. Restart the computer. Figure 1-6 Sample view of the opened "lmhosts" file. Figure 1-7 Entry ID: 13336639, Version 2.0, 01/2019 9

2 Enabling PC Network Sharing 2 Enabling PC Network Sharing In order to be able to save archives, for example, from an operator panel on a PC via the Ethernet network, a file folder or drive has to be shared on the PC. 2.1 Archiving Path When configuring the archives, the path designation must have the following syntax. The name of the path is composed of the elements below: "\\computer_name\share_name". Example: Computer name: HHPC File folder: DataFiles Share name: ArchiveData (name of your choice) Complete file designation: \\HHPC\ArchiveData Note The "DataFiles" file folder is now identified by the "share name". It is does not matter in which "subfolder" the "DataFiles" folder is located. 2.2 Sharing a Folder or a Drive on a PC. In this example an existing file folder with the name "DataFiles" is shared in Windows 7 (the procedure is similar in other Windows operating systems). Open the Windows Explorer. Mark a "DataFiles" folder that is to be shared for data exchange between the operator panel and the PC. Open the Properties of the folder. Switch to the "Sharing" tab and click the "Advanced Sharing..." button (1). Enable the "Share this folder" option (2). In the "Share name:" field you select a name or add a new share name using the "Add" button (3). Use the "Permissions" button to call up the special permissions for the folder (4). Define the permissions by checking the appropriate checkboxes in the "Allow" column. In this case "Full Control" (5). You can change the permissions to suit your needs and requirements. Confirm the entries with "OK". Entry ID: 13336639, Version 2.0, 01/2019 10

2 Enabling PC Network Sharing Figure 2-1 2 3 1 4 5 2.3 Note on Windows 10 With Windows 10, version 1709, the sharing of folders has changed. SIMATIC operator panels with the Windows CE operating system use the "SMB" protocol for accessing shared folders. In Windows 10, version 1709, the "SMB" protocol is disabled by default on the PCs. This means that operator panels that use the "SMB" protocol can no longer access the shared folders. Detailed information about this is available on the Microsoft Support pages. Remedy By disabling the "SMB" protocol Microsoft has closed a security gap in the Windows 10 operating system. You can enable the "SMB" protocol again manually. CAUTION Before enabling the "SMB" protocol refer to the Microsoft Support pages to find out what effects enabling the "SMB" protocol can have on your plant. Enable the SMB protocol (Windows 10 operating system) Open the "Settings". Select the "Apps" item (1). Select the "Apps & features" app (2) and the "Apps & features" page opens. On the "Apps & features" page you select the "Programs and Features" function (3). The "Programs and Features" window opens. Entry ID: 13336639, Version 2.0, 01/2019 11

2 Enabling PC Network Sharing Figure 2-2 3 2 1 On the "Uninstall or change a program" page you select the "Turn Window features on or off" function (4). The "Windows Features" window opens. In the "Windows Features" you enable the following options (5): "SMB Direct". "SMB 1.0/CIFS File sharing Support". Confirm the entries with "OK". This completes the settings for the "SMB" protocol. It is now again possible to access the shared folders. Figure 2-3 4 5 Entry ID: 13336639, Version 2.0, 01/2019 12