User Manual

Security
10.1 Network access security
LOGO!
280 Manual, 06/2014, A5E33039675
Siemens strongly recommends that you do not put the LOGO! devices (LOGO! Base
Modules and the LOGO! TDE) and the SIMATIC S7 devices directly on the Internet, but hide
them behind a firewall (see illustration below). In addition, make sure you select TCP port
8080 and block all other ports in the firewall configuration; otherwise, there may be network
security risks, for example, data leakage, virus invasion and hacker attack.
WARNING
Death, severe personal injury and/or property damage from unauthorized access to LOGO!
from the Web server
You can set from LOGO!Soft Comfort to enable remote access to LOGO! from the Web
server. This allows you to perform program/variable changes from the Web server.
Unauthorized access to LOGO! from the Web server could disrupt process operation and
could result in death, severe personal injury and/or property damage.
Siemens recommends that you observe the following security practices:
Password-protect Web server access to LOGO! with a strong password. Strong
passwords are at least eight characters in length, mix letters, numbers, and special
characters, are not words that can be found in a dictionary, and are not names or
identifiers that can be derived from personal information. Keep the password secret and
change it frequently.
Perform error-checking and range-checking on your variables in your program logic.
Note
To protect your devices, you must make sure your Intranet is secure; otherwise,
your
devices may still be subject to network security risks.