HP MicroLogix 1761-NET-ENI manual Security Mask Behavior Example Condition

Page 42

4-14ENI Configuration (Node 248 to 254)

The security masks default value is 0.0.0.0 out-of-box, which is defined as “accept all register session requests”. A Security Mask of 255.255.255.255 is also defined as “accept all register session requests”.

TIP

The security mask acts as a filter on the source IP address such that any mask octet set to the value of 255 becomes “don’t care” octets in the source IP address and all other fields must match exactly.

The follow examples illustrate the behavior of the security masks:

Table 4.5 Security Mask Behavior

Example Condition

Security Mask Behavior

 

 

If a security mask is set to 192.168.15.255

and an IP address 203.129.75. 23 attempts

The packet is rejected because 203.129.75

 

to message into the controller

does not equal 192.168.15 (the 4th octet, 23,

 

 

is “don’t care”).

 

 

 

 

and an IP address 192.168.15.76 attempts to

The packet is processed because the upper 3

 

message into the controller

octets match (the 4th octet is still “don’t

 

 

care”).

 

 

 

If a security mask is set to 192.168.255.76

All source IPs that equal 192.168.xxx.76 are

 

 

accepted because 255 is “don’t care”.

 

 

 

You can use one or two security masks. If you wish to use only one security mask, use Security Mask 1 because it takes precedence over Security Mask 2 (for example, if Security Mask 1 is accepted, Security Mask 2 is not evaluated). Details of the relationship between the two masks are shown in the following table.

Table 4.6 Using Security Mask 1 and Security Mask 2

Example Condition

 

Security Mask Behavior

 

 

 

Security masks 1 and 2 are evaluated using the following logic:

If the security mask 1 filter results in an

security mask 2 is not evaluated and the register session request is processed.

“Accept” decision

 

 

 

If the security mask 1 filter results in a

security mask 2 is evaluated as follows:

“Deny” decision

If the security mask 2 filter results in an “Accept” decision, the register session

 

request is processed

 

If the security mask 2 filter results in a “Deny” decision, the register session

 

request is not replied to and the socket is closed.

 

 

Publication 1761-UM006A-EN-P - February 2001

Image 42
Contents MicroLogix Ethernet Interface ENI Cat. No -NET-ENIAllen-Bradley is a trademark of Rockwell Automation Table of Contents Chapter Preface Who Should Use this ManualRelated Documentation For Read this DocumentLocal Product Support Technical Product AssistanceYour Questions or Comments on this Manual Preface P-4 Publication 1761-UM006A-EN-P January Product Overview Ethernet Connection Non-Ethernet DevicesProduct Drawing Hardware FeaturesLED Indicators Description Function ColorDefault Settings RS-232 Settings Default Other OptionsDF1 Settings Default Other Options Messaging Operating ModesDevice Compatibility MailUsing a Web Browser with the ENI Ethernet NetworksBasic Ethernet Topology 6Product Overview Publication 1761-UM006A-EN-P February EMC Directive Low Voltage DirectiveSafety Considerations Mounting DIN Rail MountingPanel Mounting RemovalExternal Power Supply Wiring ENI Port IdentificationEthernet 8-Pin 10Base-T Connector Port Ethernet ConnectionsPin Pin Name Ethernet Cables Maintain ENI ConnectionsRS-232 Cables RS-232 ConnectorRS-232 Connector Pin Assignments ENI Connected to Catalog Number Use CableOutgoing messages Operation OverviewNumber of Connections Dedicated to Incoming messagesRSLinx on Ethernet PC Connected to Ethernet ENI Functional OverviewOperation 4Operation RSLogix 6Operation ENI Configuration Node 248 to ENI Configuration UtilityCOM Port Settings RS-232 Baud Rate and TCP/IP ParametersMail Settings Save to ENI RAM or ENI ROMReset Message RoutingController Messaging Configuring ENI Data Parameters Target Device Parameters Configuring ENI String Parameters Configuring the ENI E-Mail From StringAlways set this to Node Function Data Type Number Options Default Elements Node 249 From String Node 248 Save/Reset FunctionSave/Reset ValueNode 250 TCP/IP Configuration TCP/IP Configuration Parameters Function Data Type LengthSubnet Mask Auto-Detect Operation Subnet Mask is in auto-detectSubnet Mask is set to Security Mask Behavior Example Condition Node 252 Bootp Configuration Node 251 E-Mail ServerNode 253 Baud Rate ENI Baud Rate Options Configuration Value Integer Node 254 Ethernet Hardware AddressPeer-to-Peer Messaging Node Node100 Configuration Node TCP/IP addressMessage Routing ENI receives read or Node Node101102 Route 2 Address 100 Route 0 Address101 Route 1 Address 103 Route 3 AddressDF1 Message Routing Function ENI Node148 Use any command supported by your controller Data Table Address Use any valid file Size in ElementsPage Mail Messages Node 50 to OverviewConfiguring E-Mail Smtp E-Mail AddressDestination Addresses Message TextMail Mail Address Description Message Configuration Message Fields to, from, subjectNode Sending an E-Mail Message Mail messages System Diagram Example NetworkPurpose Scope RSLOGIX500Example Network IP Addresses Device 131.200.50.95131.200.50.96 Computer’s Ethernet card Configuring 1761-NET-ENI #1 Throttling Message InstructionsENI #1 Configuration ENI IP Addr Screen Configuring 1761-NET-ENI #2 Message Routing Nodes FunctionENI #2 Configuration RSLogix 5000 Ladder Program ENI #2 Configuration Rung Descriptions Function ENI #2 Configuration Message Instructions ParametersMessage Message Function Publication 1761-UM006A-EN-P February ENI #2 Configuration Message ConfigurationTab 10 L20 Controller’s Tags 11 File Mapping in RSLogix Configure Rslinx 1769-L2013 Modify DF1 Parameters Using RSLInx 14 SLC 5/05 Controller Ladder Program 15 SLC 5/05 Rung 0 MSG General Tab 17 SLC 5/05 Rung 1 MSG General Tab 19 ControlLogix 5550 Controller Ladder Program 20 ControlLogix 5550 Rung 0 Message Configuration Tab 22 ControlLogix 5550 Rung 1 Message Configuration Tab Configuring an Ethernet Driver in Rslinx 25 Configure Ethernet Driver Using RSLinx Power-Up Sequence On solid for 2 secondsFlashes for 4 seconds Description Color State Indicates Message Instruction Error Codes Error Codes Generated by the ENIError Code Description of Error Condition Connection not completed before user-specified timeout Pccc Description Remote station problem due to downloadPccc Description Cannot execute command due to active IPBs Reply not received before user-specified timeoutPccc Description Data conversion error Pccc Description Command cannot be executedPccc Description No access Pccc Description Overflow histogram overflow6Troubleshooting Publication 1761-UM006A-EN-P February Physical Specifications Description ENI SpecificationMicroLogix Web Site Dimensions Mounting DimensionsProduct Dimensions Gateway Optional1 TCP/IP Parameters Function FormatOn the subnet mask ZeroUsing Bootp Install the Bootp ServerEdit the Bootp Configuration File Device Name IP Address Hardware Address Ethernet TCP/IPParameters if necessary Windows From See This platform ExecutableDOS-based Windows Program ManagerRunning the DOS-Based Utility Running the Windows-Based UtilityParameter Description Glossary Node Pccc Programmable Controller Communications Commands RS-232 UTP Unshielded Twisted Pair Allocation of Ethernet connections 3-1Ethernet switch IndexMTA TCP Index Publication 1761-UM006A-EN-P February Page Publication 1761-UM006A-EN-P February