SIMATIC NET Preface, Contents Operating Instructions Basic Information on Wireless LAN Communication 1 Description of the 2 SCALANCE W 744-1pro (Client Module) SCALANCE W 788-1pro (Access Point) SCALANCE W 788-2pro (Dual Access Point) SCALANCE W 700 Commissioning 3 Configuration with the Primary Setup Tool 4 Configuration Using the Wizards of Web Based Management 5 Configuration Using Web Based Management and the Command Line Interface 6 Technical Specifications 7 Glossary, Index, Certifi
Classification of Safety-Related Notices This document contains notices which you should observe to ensure your own personal safety, as well as to protect the product and connected equipment. These notices are highlighted in the manual by a warning triangle and are marked as follows according to the level of danger: ! Danger indicates that death or severe personal injury will result if proper precautions are not taken.
Trademarks SIMATIC, SIMATIC NET, SINEC and SIMATIC NET Networking for Industry® are registered trademarks of Siemens AG. Third parties using for their own purposes any other names in this document which refer to trademarks might infringe upon the rights of the trademark owners. Safety Instructions Regarding your Product Before you use the product described here, read the safety instructions below thoroughly.
Correct Usage of Software Products Please note the following regarding the correct usage of software products: Caution This software may only be used for the applications described in the catalog or the technical description, and only in connection with software products, devices, or components from other manufacturers which have been approved or recommended by Siemens.
Preface Purpose of the Manual This manual is intended to provide you with the information you require to install, commission and operate the SCALANCE W 788 correctly. It explains how to configure the SCALANCE W 788 and how to integrate the SCALANCE W 788 in a WLAN network. Scope of this Manual This manual describes the products SCALANCE W 744-1pro, SCALANCE W 7881pro and SCALANCE W 788-2pro. Where the description applies to all products, the name SCALANCE W 700 is used.
Preface Orientation in the Documentation Apart from the operating instructions you are currently reading, the following documentation is also available from SIMATIC NET on the topic of Industrial Wireless LANs: ● Operating Instructions (compact) SCALANCE W 788-1pro / SCALANCE W 788-2pro This document is supplied on paper with the device and contains an abridged version of the most important information required to work with the SCALANCE W 788.
Preface Biological Compatibility The question as to whether electromagnetic fields (for example in connection with high-frequency mobile radio) can be detrimental to human health is taken seriously by Siemens. The protection of the population, customers and employees is of major importance and must come before commercial interest. The products are subject to and comply with the currently valid limit values recommended on the basis of numerous scientific studies.
Preface Notice Changes or modifications made to this equipment not expressly approved by SIEMENS may void the FCC authorization to operate this equipment. This equipment has been tested and found to comply with the limits for a Class B digital device, pursuant to Part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference in a residential installation.
Preface Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 9
Contents 1 Basic Information on Wireless LAN Communication ............................................... 12 1.1 Network Structure .............................................................................................. 12 2 Description of the SCALANCE W 700 ........................................................................ 18 3 Commissioning.............................................................................................................
Contents 7 6.2 6.2.1 6.2.2 6.2.3 6.2.4 6.2.5 6.2.6 6.2.7 6.2.8 6.2.9 6.2.10 The System Menu.............................................................................................. 65 System Information Menu Command ................................................................ 65 IP Settings Menu Command.............................................................................. 66 Services Menu Command .................................................................................
1 Basic Information on Wireless LAN Communication 1.1 Network Structure Ad Hoc Networks In the ad hoc mode, nodes communicate directly with the server (connections 1 through 3 in the graphic below) without involving a SCALANCE W 788 or with each other (connection 4). The nodes access common resources (files or even devices, for example a printer) of the server. This is, of course, only possible when the nodes are within the wireless range of the server or within each other's range.
Basic Information on Wireless LAN Communication Standalone Configuration with the SCALANCE W 788 This configuration does not require a server and the SCALANCE W 788 does not have a connection to a wired Ethernet. Within its transmission range, the SCALANCE W 788 forwards data from one WLAN node to another. The wireless network has a unique name. All the devices exchanging data within this network must be configured with this name. Figure 1-2 Standalone Configuration of a SCALANCE W 788.
Basic Information on Wireless LAN Communication Wireless Access to a Wired Ethernet Network If one (or more) SCALANCE W 788 access points have access to wired Ethernet, the following applications are possible: ● A single SCALANCE W 788 as gateway: A computer equipped only with an Ethernet adapter can be integrated in the client mode in a wireless network over the SCALANCE W 788-1pro.
Basic Information on Wireless LAN Communication Multichannel Configuration If neighboring SCALANCE W 788 access points use the same frequency channel, the response times are longer due to the collisions that occur. If the configuration shown in Figure 1-4 is implemented as a single-channel system, computers A and B cannot communicate at the same time with the SCALANCE W 788-1pro access points in their cells.
Basic Information on Wireless LAN Communication Wireless Distribution System (WDS) WDS allows direct connections between SCALANCE W 788 access points. These are used to create a wireless backbone or to connect an individual SCALANCE W 788 to a network that cannot be connected directly to the cable infrastructure due to its location. Two alternative configurations are possible. The WDS partner can be configured both using its name and its MAC address.
Basic Information on Wireless LAN Communication Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 17
Description of the SCALANCE W 700 2 Components of the Product The following components are supplied with the SCALANCE W 700: ● SCALANCE W 744-1pro, SCALANCE W 788-1pro or SCALANCE W 788-2pro ● 2 OMNI antennas ● 1 Harting RJ-45 hybrid cable connector ● 1 dummy plug for the M12 socket ● 2 (or 4 for the SCALANCE W 788-2pro) dummy plugs for the R-SMA sockets ● 1 SIMATIC NET Industrial Wireless LAN CD ● These Operating Instructions for the SCALANCE W 700 Please check that the consignment you have received is c
Description of the SCALANCE W 700 Possible Applications of the SCALANCE W 788 The SCALANCE W 788 is equipped with an Ethernet interface and a wireless LAN interface (SCALANCE W 788-2pro: two WLAN interfaces). This makes the device suitable for the following applications: ● The SCALANCE W 788 forwards data within its transmission range from one node to another without a connection to wired Ethernet. ● The SCALANCE W 788 is used as a gateway from a wired to a wireless network.
Description of the SCALANCE W 700 LED Display On the front of the housing, several LEDs provide information on the operating status of the SCALANCE W 788: 7 8 8 -1 p ro L 1 F L 2 P 1 R 1 S C A L A N C E W 7 8 8 -2 p ro Figure 2-1 L 1 F R 2 L 2 P 1 R 1 S C A L A N C E W The LEDs of the SCALANCE W 788 The LEDs have the following significance: LED P1 L2 R1 R2 20 Color Meaning Yellow Data transfer over the Ethernet interface. Green There is a connection over the Ethernet interface.
Description of the SCALANCE W 700 L1 Green Power supply over the M12 connector. F Red An error occurred during operation with the SCALANCE W 788. Configuration Information on the C Plug The C Plug is used to transfer the configuration of the old device to the new device when a device is replaced. When the new device starts up, it continues with exactly the same configuration as the old device.
Commissioning 3 Lightning Protection ! Warning Antennas installed outdoors must be within the area covered by a lightning protection system. Make sure that all conducting systems entering from outdoors can be protected by a lightning protection potential equalization system. When implementing your lightning protection concept, make sure you adhere to the VDE 0182 or IEC 62305 standard.
Commissioning Connectors for the Power Supply and for Ethernet The SCALANCE W 788 is attached to Ethernet via a hybrid socket on the front of the housing (position A in Figure 3.1). This port also has contacts for the operating voltage. Note If you do not use the hybrid socket, this must be covered with a protective cap, otherwise IP65 protection is lost. A suitable protective cap is available as an accessory.
Commissioning Assembling the Hybrid Connector Remove the two inner shells of the universal sealing ring to adapt it to the diameter of the hybrid cable. Push the bushing, washer, adapted universal sealing ring and the housing over the cable jacket. Strip the cable jacket and braid shield to the correct lengths. 25 mm for the power leads. 30 mm (jacket) for the data leads (shorten the braid by 11 mm). Arrange the data leads according to the color code on the splice element.
Wire color code (standard) Connector color code (Siemens IE) Siemens IE FC RJ-45 jack (reference) White / orange * Orange White / Green * Green White Blue Yellow Orange 3 6 1 2 * White wire of the colored pair. Insert all the data leads at the same time up to the end of the splice element. Fit the splice element onto the RJ-45-data module and click in place. Insert the data module and splice element into the supplied IDC assembly tool.
Commissioning Remove the assembled data module from the IDC assembly tool. Fit the upper shield plate and press it over the cable shield. Then fit the lower shield plate and snap it into the upper plate (there should be an audible click). Arrange the power leads and insert them to the end of the hinged elements of the insulator body. Refer to the table below for the assignment.
Commissioning Press the hinged elements and the integrated IDC contact together individually. Recommendation: Use a small slotted screwdriver (max. 3.5 mm) as a lever. Push the housing over assembled data module and the insulator body until they lock together (there should be an audible click). Tighten the bushing. We recommend an open ring key with a size of 21 mm.
Configuration with the Primary Setup Tool 4.1 4 Introduction Initial Assignment of an IP Address An initial IP address for the SCALANCE W 788 cannot be assigned using Web Based Management or the Command Line Interface because these configuration tools require that an IP address already exists. The initial IP address can be obtained over DHCP or assigned using the Primary Setup Tool. The Primary Setup Tool is capable of assigning such an address to unconfigured devices without an IP address.
Configuration with the Primary Setup Tool 3. Right-click to open the context menu and select Properties. The General tab lists all clients, protocols and services. The DLC protocol should also be listed and selected: If the DLC protocol is listed, you can skip to the next but one section "Installing the Primary Setup Tool". If there is no entry for the DLC protocol, install it as described in the next section.
Configuration with the Primary Setup Tool 4.2 Installing the DLC Protocol Extracting the Archive File The files for installing the DLC protocol are in the self-extracting ZIP archive pst_xp_install.exe. Follow the steps below to extract the files from the archive: 1. Double-click on the file name pst_xp_install.exe in the Windows Explorer or start the program using the Windows menu command Start > Run. 2.
Configuration with the Primary Setup Tool 4.3 Installing the Primary Setup Tool Procedure The files of the Primary Setup Tools are in the self-extracting ZIP archive pst_install.exe. Follow the steps below to install the files of the archive: 4.4 1. Double-click on the file name pst_install.exe in the Windows Explorer or start the program using the Windows menu command Start > Run. 2.
Configuration with the Primary Setup Tool Browsing the Network Before you assign IP addresses with the PST, you must first locate the configurable devices in the network. Start this search with the steps outlined below: ● Select the Network > Browse menu command. ● Click on the magnifier icon in the toolbar below the menu bar. While the Primary Setup Tool browses the network, the Browse Network dialog is displayed with a progress bar.
Configuration with the Primary Setup Tool 3. Decide how the device will obtain its IP address: ● Dynamically from a DHCP server: Select the Obtain IP address from DHCP server option button. ● Manual assignment by the user: Select the Assign IP parameters option button. 4.[a] In the Client ID box, enter a unique identifier for the SCALANCE W 788 if you have selected dynamic assignment of the IP address. This string can be a maximum of 63 characters long; special characters are not permitted. 4.
Configuration with the Primary Setup Tool Starting Web Based Management INCs (Industrial Network Components) such as the SCALANCE W 788 include Web Based Management. Select the device you want to configure with Web Based Management and follow the steps below to start Web Based Management: ● Select the menu command Module -> Start INC Browser. ● Click on the third icon from the left in the toolbar (module with four blue wires).
Configuration with the Primary Setup Tool 4.5 Primary Setup Tool via the Command Line Syntax You can also use the Primary Setup Tool from the command line of a DOS prompt. The syntax is as follows; optional parameters are shown in square brackets: s7wnpstx MAC address -DHCP[=client ID] s7wnpstx MAC address -RESET s7wnpstx MAC address IP address subnet mask [router address] The following table explains the parameters: Command Description MAC address The MAC address of the module to be configured.
Configuration Using the Wizards of Web Based Management 5.1 5 Introduction Principle of Web Based Management The SCALANCE W 788 has an integrated HTTP server for Web Based Management. If the SCALANCE W 788 is accessed by an Internet browser, it returns HTML pages to the client computer depending on user input. Users enter the configuration data in the HTML pages sent by the SCALANCE W 788. The SCALANCE W 788 evaluates this information and generates response pages dynamically.
Configuration Using the Wizards of Web Based Management 5.2 Starting Web Based Management and Logging On Procedure 1. In the address box of the Web browser, enter the IP address or the URL of the SCALANCE W 788. If there is a problem-free connection to the SCALANCE W 788, the Logon dialog of Web Based Management is displayed: 2. In the "User Name" list box, select the "Admin" entry if you want to change settings of the SCALANCE W 788 (read and write access).
Configuration Using the Wizards of Web Based Management 5.3 Selecting the Wizards Basic Wizard and Security Wizard Web Based Management provides two wizards that allow straightforward commissioning without detailed knowledge of wireless technology. A wizard consists of a series of dialogs in which you enter the basic configuration data. There is a wizard for general settings and a second wizard for configuring security settings.
Configuration Using the Wizards of Web Based Management 5.4 Basic Wizard 5.4.1 IP Settings Description One of the basic steps in configuration of an Ethernet device is setting the IP address. The IP address identifies a device in the network uniquely. On this page, you enter the information for IP configuration of the SCALANCE W 788.
Configuration Using the Wizards of Web Based Management Subnet Mask Input Box The subnet mask specifies the range of addresses within which communication can take place. The four numbers of an IP address separated by periods are interpreted as a bit pattern. If a one is set at a bit position within the subnet mask, this means that only devices with an IP address the matches the IP address of the SCALANCE W 788 at this bit position can communicate with the SCALANCE W 788.
Configuration Using the Wizards of Web Based Management 5.4.2 Device Name Description The device name also identifies a network node but means more to the user than the IP address. Device Name Text Box In this box, you enter the device name for your SCALANCE W 788. This parameter corresponds to the sysName SNMP parameter.
Configuration Using the Wizards of Web Based Management 5.4.3 Country Code Description Some countries have different frequency band divisions for WLAN communication. The regulations for maximum output power also differ from country to country. When you configure the SCALANCE W 788, you must specify which local regulations are relevant for your location. You do this with the Country code parameter.
Configuration Using the Wizards of Web Based Management 5.4.4 Wireless Settings Description On this page, you specify the configuration of the wireless network. This includes the network name and the transmission mode. If you are configuring the SCALANCE W 788-2pro model, this page appears a second time to allow you to configure the second wireless adapter. You can make different settings for "WLAN1" and "WLAN2". SSID Text Box Enter the name of your network in this box.
Configuration Using the Wizards of Web Based Management 5.4.5 Channel Settings Description The SCALANCE W 788 uses a specific channel within the frequency band for communication. You can either set this channel specifically or configure the SCALANCE W 788 so that the channel is selected automatically. A specific channel must be set, for example, in the following situations: ● Communication suffers from interference from another device (for example microwaves) or another wireless network.
Configuration Using the Wizards of Web Based Management Auto Channel Select Check Box Select this check box if you do not have any particular requirements regarding channel selection. Radio Channel List Box Here, you select a channel suitable for your application. You can only select from this list if the Auto Channel Select check box is not selected. The entries in the list box depend on the previous selection made in the Country code box and on the mode (IEEE 802.11.a, IEEE 802.11b, IEEE 802.11g). 5.4.
Configuration Using the Wizards of Web Based Management Finish Button Click this button to close the Basic Wizard. Alternatively, click on the Security Wizard link to change to the security settings.
Configuration Using the Wizards of Web Based Management 5.5 Security Wizard Introduction With the Security Wizard, you can specify security-related parameters without detailed knowledge of security technology in wireless networks. Note The SCALANCE W 788 can be operated even if you do not set the security parameters. Depending on the properties of your network, there is then, however, an increased risk of unauthorized access.
Configuration Using the Wizards of Web Based Management 5.5.1 Security Settings Password First, set a new admin password. Enter the string twice in the text boxes of this page. Until you set a password, the defaults set in the factory apply: The default password for the admin user is admin. You can use the wizards only if you log on as administrator.
Configuration Using the Wizards of Web Based Management 5.5.2 Security Settings for Management Interfaces Protocols for Configuration In this page, you specify the protocols with which you can access the configuration of the SCALANCE W 788. All protocols with a selected check box can be used for configuration. You should only select protocols that you actually use. The protocol settings only take effect after exiting the Security Wizard and restarting.
Configuration Using the Wizards of Web Based Management 5.5.3 Security Settings for SNMP Protocol Access Permissions using the SNMP Protocol When using the SNMP protocol, you specify access permissions by means of community strings. A community string effectively combines the function of user name and password in one string; different community strings are defined for read and write permissions. More complex and more secure authentications are possible only in some SNMPv2 variants and in SNMPv3.
Configuration Using the Wizards of Web Based Management 5.5.4 Security Settings for WLAN (Page 1) Network-Specific Security Settings On the first page of the security settings, you select settings that apply regardless of protocol-specific restrictions. The basic measures for securing a network against unauthorized access involve ● restricting communication with the SCALANCE W 788 to specific clients (only those with the same network name (SSID)).
Configuration Using the Wizards of Web Based Management Enable `Intracell mode` for WLAN 1 Check Box In intracell mode, clients connected to the network over a radio link cannot communicate with clients in the wired network. Selecting this check box enables the intracell mode. 5.5.5 Security Settings for WLAN (Page 2) Predefined Security Levels Authentication and encryption are tried and tested methods for increasing security in networks.
Configuration Using the Wizards of Web Based Management Level Authentication Encryption Cipher Encryption Key Source Lowest without disabled without not applicable Low Shared Key enabled AUTO local Middle 802.1x enabled WEP Server High WPA (preshared key) enabled TKIP local Highest WPA (Radius) enabled TKIP Server Authentication Authentication basically means that some form of identification is required.
Configuration Using the Wizards of Web Based Management Security Level for WLAN List Box Select a security level that is supported by all clients. The content of the next page depends on the selected security level. If you select the security level None, there is no following page since neither encryption nor authentication will be used. 5.5.6 Settings for the Security Level Low WEP Key List Box Select the WEP key you want to define. Key Text Box Enter the character string for the key here.
Configuration Using the Wizards of Web Based Management 5.5.7 Settings for the Security Level Middle Authorization Lifetime Text Box Enter the period of validity of the authentication in seconds. The minimum period is 15 minutes and the maximum period is 12 hours. The default setting is two hours. RADIUS Server Table You can enter the data for two RADIUS servers; the information in the Backup column is used if the server defined in the Primary column is not available.
Configuration Using the Wizards of Web Based Management 5.5.8 Settings for the Security Level High Pass Phrase for WLAN Text Box Here, you enter a WPA key. The key must be at least 8 characters long, the maximum length is 63 ASCII characters or 64 hexadecimal characters. 5.5.9 Settings for the Security Level Highest The options you can set correspond to those of the Middle security level. Pass Phrase for WLAN Text Box Here, you enter your key.
Configuration Using the Wizards of Web Based Management 5.5.10 Following Settings Were Made Overview of the Selected Settings This page contains an overview of the selected security settings. If you want to change a setting, you can click on the << Previous button to return to a previous page where you can enter a different value or make a different selection.
Configuration Using the Wizards of Web Based Management 5.5.11 Finish Exiting the Wizard The last page of the wizard indicates other security measures that you can take. If you still want to make final modifications, you can open the relevant pages by clicking on the texts highlighted in blue: ● IP Filter opens the Security > Access page. ● Access Control List for WLAN 1 (WLAN 2) opens the Security > ACL page for wireless adapter 1 or 2. ● To apply changes perform restart opens the System > Restart page.
Configuration Using the Wizards of Web Based Management Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 59
Configuration Using Web Based Management and the Command Line Interface 6 6.1 General Information on Web Based Management and the Command Line Interface 6.1.1 Introduction Contents of This Chapter Web Based Management provides you with configuration options way beyond those described in the previous chapter. This chapter explains the possible settings for the SCALANCE W 788. For a detailed description of the individual elements of a page, refer to the online help.
Configuration Using Web Based Management and the Command Line Interface 6.1.2 The LED Simulation of Web Based Management Display of the Operating State The SCALANCE W 788 has one or more LEDs that provide information on the operating state of the device (see Chapter 2). Depending on its location, direct access to the SCALANCE W 788 may not always be possible. Web Based Management therefore displays simulated LEDs. Activating the Simulation There is an HTML-based simulation of the LED status.
Configuration Using Web Based Management and the Command Line Interface 6.1.3 Working with Web Based Management Navigation Bar The upper menu bar of WBM contains the following links: ● Console This link opens a console window in which you can enter CLI commands. ● Support When you click this link, you open a SIEMENS AG support page. ● Logout Close the current Web Based Management session by clicking on this link. The logon dialog is then displayed again.
Configuration Using Web Based Management and the Command Line Interface 6.1.4 Command Line Interface Starting the CLI in a Windows Console Follow the steps outlined below to start the Command Line Interface in a Windows console: ● Open a Windows console and type in the command telnet followed by the IP address of the SCALANCE W 788: C:\>telnet ● Enter your login and password. Starting the CLI in Web Based Management Click on the Console entry in the upper menu bar of Web Based Management.
Configuration Using Web Based Management and the Command Line Interface Symbols for Representing CLI Commands CLI commands generally have one or more parameters that are represented in the syntax description as follows: ● Mandatory parameters are shown in pointed brackets. Example: If you omit a mandatory parameter, most commands output the set value. ● Alternative input values are separated by the pipe character ( | ). In this case, you specify one of the listed values as the parameter.
Configuration Using Web Based Management and the Command Line Interface 6.2 The System Menu 6.2.1 System Information Menu Command Mode and Locale Setting On this page, you make several basic settings for the SCALANCE W 788, for example, the country and mode for the device (SCALANCE W 744-1pro or SCALANCE W 788-1pro). Syntax of the Command Line Interface CLI\SYSTEM> Command apmode Description This specifies the mode for the SCALANCE W 788: E D Comment Not available for the SCALANCE W 744-1pro.
Configuration Using Web Based Management and the Command Line Interface 6.2.2 IP Settings Menu Command Configuration Here, you decide whether you will use a DHCP server or whether you want to assign a fixed IP address to the SCALANCE W 788. You can also set the IP address of a router and the default TTL. The TTL (time to live) parameter specifies the maximum number of routers passed through by a data packet before it is discarded. Syntax of the Command Line Interface CLI\SYSTEM\IP> Command Description
Configuration Using Web Based Management and the Command Line Interface If you want to deactivate the option of configuration with Web Based Management, you can do this in the Security Wizard. Any settings you make there only take effect after you restart the SCALANCE W 788. Syntax of the Command Line Interface CLI\SYSTEM\SERVICES> Command Description telnet Enable / disable configuration of the SCALANCE W 788 over Telnet.
Configuration Using Web Based Management and the Command Line Interface CLI\SYSTEM\SERVICES\TRAPS> Command traps Description Comment Enable / disable traps. CLI\SYSTEM\SERVICES\EMAIL> Command mail 6.2.4 Description Comment Enable / disable SCALANCE W 788 sending mail. Restart Menu Command Restart Button Click this button to restart the SCALANCE W 788. You must confirm the restart in a dialog box.
Configuration Using Web Based Management and the Command Line Interface There is no automatic restart. This allows you to enter data using Web Based Management before the restart. The changes take effect only after a restart. In User mode, this button is not visible. Reset to memory defaults and restart Button Click on this button to restore the factory configuration settings. The protected defaults (see above) are also reset. An automatic restart is triggered.
Configuration Using Web Based Management and the Command Line Interface 6.2.5 Event Config Menu Command System Events of the SCALANCE W 788 On this page, you specify how the SCALANCE W 788 reacts to system events. You can configure the reaction of the SCALANCE W 788-1pro to the following events: ● Startup of the SCALANCE W 788 ● Connection establishment to and disconnection from the SCALANCE W 788. ● Error in authentication. ● Changing the power supply of the SCALANCE W 788.
Configuration Using Web Based Management and the Command Line Interface CLI\SYSTEM\EVENT> Command setec 1 setec 2 Description Reactions when the SCALANCE W 788 restarts. Reaction when establishing a connection monitored with the Link Check function. setec 3 Reaction to aborting a connection monitored with the Link Check function.
Configuration Using Web Based Management and the Command Line Interface from 6.2.7 Specifies the sender of E-mails from the SCALANCE W 788. SNMP Config Menu Command Configuration Select the check boxes of the entries according to the SNMP functionality you want to use. SNMP Version 3 allows you to assign rights at the protocol level. You specify groups and users in the submenu.
Configuration Using Web Based Management and the Command Line Interface Command Description snmpv1 snmpro Enables / disables SNMPv1/v2c. getcomm setcomm snmpv3 Specifies the Read community string. Comment Enables / disables SNMPv1/v2c read only. Specifies the Write community string. Enables / disables SNMPv3. The special features of SNMPv3 undertake effect after you disable SNMPv1.
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\SYSTEM\SNTP> Command Description server Specifies the IP address of the SNTP server. tzone Specifies the deviation of the time zone of the SCALANCE W 788 according to UTC (Universal Time Conversion) in hours. 6.2.9 Comment Fault State Menu Command This page displays information on faults/errors that have occurred.
Configuration Using Web Based Management and the Command Line Interface 6.2.10 Load & Save Menu Command Saving and Loading Device Data Clicking the Load & Save menu command first opens a page with the current firmware version. The HTTP and TFTP submenus allow you to save device data in external files or to transfer data from external files to the SCALANCE W 788.
Configuration Using Web Based Management and the Command Line Interface How to Load or Save Data over TFTP 1. Enter the IP address of the FTP server in the TFTP Server IP text box. 2. Enter the port of the FTP server in the Port text box. 3. Click on the Set Values button before you enter any further information for saving the data. 4.
Configuration Using Web Based Management and the Command Line Interface 6.3 The Interfaces Menu Introduction The SCALANCE W 788 has one Ethernet interface and up to two WLAN interfaces that can be configured separately. In the pages of this menu, you can configure both the wired Ethernet interface and the WLAN interface. 6.3.1 Ethernet Menu Command Transmission Speed and Mode For a wired Ethernet interface, you only need to specify the transmission speed and mode parameters.
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\INTERFACES\ETHERNET> Command ethspeed Description Specifies the transmission speed and mode of the Ethernet interface: A 100F 100H 10F 10H 6.3.
Configuration Using Web Based Management and the Command Line Interface mode Select the transmission standard 802.11a / 802.11b / 802.11g. In the version for USA/Canada, the 802.11a and 802.11g standards cannot be selected for the second wireless adapter. autoch Enable / disable the channel selection by the SCALANCE W 788. channel <1 ... 11> adopt Specifies the wireless channel. Assigns a MAC address to the Ethernet port of the SCALANCE W 744-1pro.
Configuration Using Web Based Management and the Command Line Interface Operation Outdoors In some countries, there are special wireless channels for data transmission outdoors. Depending on the country setting you have made, you can select the Enable 5GHz Outdoor Channels check box to use these wireless channels. IEEE 802.11b Select the Enable Basic 11b Mode check box if the SCALANCE W 788 will only use the transmission rates 1 Mbps and 2 Mbps.
Configuration Using Web Based Management and the Command Line Interface Enable iQOS QOS is the action for Quality of Service. QOS is an application-specific configuration monitoring system that you can enable by selecting the Enable QOS check box. Roaming in the Absence of an Ethernet Interface If the wired Ethernet interface is no longer available (cable break, connector removed), a client connected over the wireless network is not aware of this.
Configuration Using Web Based Management and the Command Line Interface Command Description Comment caltime <0 ... 65535> Specifies the time in seconds after which the chipset is calibrated. preamb Enables / disables the short preamble. swretry Enables / disables the software retry functionality. swretno <0 ... 15> Specifies the number of software retries. The default is 3. hwretno <0 ... 15> Specifies the number of software retries. The default is 4.
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\INTERFACES\WLAN1\802.11G> or for the second wireless adapter (if it exists) CLI\INTERFACES\WLAN2\802.11G > Command ctsmode <0|1|2> Description Comment Specifies whether CTS is used for 802.11g management information: 0 Do not use CTS. 1 Always use CTS. 2 Use CTS depending on the packet size. ctsrate <0|1|2|3> Specifies the data rate for 802.
Configuration Using Web Based Management and the Command Line Interface Command optimize <1|2|3|4> 84 Description Comment Specifies the optimization level for 802.11g devices.
Configuration Using Web Based Management and the Command Line Interface 6.4 The Security Menu Introduction In this menu, you configure the security settings with which you want to operate your SCALANCE W 788. Apart from selecting the authentication and encryption scheme, this also includes the decision as to whether or not an external Radius server is used and whether access is restricted based on MAC addresses (ACL). Syntax of the Command Line Interface CLI\SECURITY> Command mgmteth 6.4.
Configuration Using Web Based Management and the Command Line Interface Authentication You can set the following options in the Authentication Type box: ● Open System There is no authentication. ● Shared Key WEP authentication with keys stored on the device. In this case, you must specify four master keys in the Keys menu. ● WPA (Radius) WPA authentication over an external RADIUS server. To use this scheme, you must provide information on the authentication server in the RADIUS Server menu.
Configuration Using Web Based Management and the Command Line Interface ● WEP Encryption with static WEP keys (according to the RC4 algorithm) that you specify in the Keys menu. ● AES (Advanced Encryption Standard) Encryption according to the Rijndael algorithm. ● TKIP Use of dynamic keys. Starting from an initialization key, a new key is generated for each data packet.
Configuration Using Web Based Management and the Command Line Interface Command Description Comment grkint Specifies the "Group Key Update Intervals". supssid Enable / disable Close Wireless System functionality. intracell Enable / disable Enable Intracell mode functionality. username password chkserver Specifies the user name. PEAP only. Specifies the password PEAP only.
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\SECURITY\ACL\WLAN1> Command aclmode 6.4.4 Description Comment Enable / disable access control list. RADIUS Server Menu Command Authentication over an External Server The concept of RADIUS is based on an external authentication server. A client can only access the network after the SCALANCE W 788 has verified the logon data of the client with the authentication server.
Configuration Using Web Based Management and the Command Line Interface 6.4.5 Access Menu Command Access Permissions for IP Addresses In this menu, you specify the access permissions for IP addresses. You can decide whether management access is possible only with the defined addresses or whether management access is possible with all IP addresses that are not contained in the list. Syntax of the Command Line Interface CLI\SECURITY\ACCESS> Command clearall access statmgmt 90 Description C
Configuration Using Web Based Management and the Command Line Interface 6.5 The Bridge Menu Introduction A bridge is a computer that connects two networks. A bridge is not dependent on the protocol; management of the data packages is based on the physical address of the network nodes (MAC address). The SCALANCE W 788 provides bridge functionality because it handles data exchange between wired and wireless Ethernet.
Configuration Using Web Based Management and the Command Line Interface 6.5.1 WDS Menu Command Communication between SCALANCE W 788 Devices In normal operation, the SCALANCE W 788 is used as a server and communicates with clients. There are, however, situations in which SCALANCE W 788 devices need to communicate with each other, for example to extend wireless coverage or to set up a wireless backbone. This mode is possible with WDS (Wireless Distributed System).
Configuration Using Web Based Management and the Command Line Interface 6.5.3 ARP Table Menu Command Assignment of MAC Address and IP Address The ARP protocol (Address Resolution Protocol) obtains the corresponding MAC address of a known IP address. The page of this menu command also indicates the interface over which a computer can be reached. The last column indicates how the information was obtained (for example dynamic if it was obtained from active data exchange). 6.5.
Configuration Using Web Based Management and the Command Line Interface Age of the Configuration Information With the Max Age parameter, you specify the maximum age of configuration information. If a bridge receives configuration information older than specified in Max Age, it discards the message and starts a new calculation of the paths. New configuration data is not used immediately by a bridge but only after the period specified in the Forward Delay parameter.
Configuration Using Web Based Management and the Command Line Interface ● PathCost This parameter is used to specify the preferred data paths between the root bridge and other bridges and the value should be based on the transmission speed. The faster a connection, the lower the value for PathCost should be. You can specify values between 0 and 65535. The default is 100. The spanning tree algorithm selects the transmission path for which the sum of all individual values is the lowest.
Configuration Using Web Based Management and the Command Line Interface CLI\BRIDGE\SPANNING\WDS> Command Description enblwds1 enblwds2 Enable / disable the WDS port n (between 1 and 8) of the first or second wireless adapter. portwds1 <0 ... 255> portwds2 <0 ... 255> Specifies the priority of the WDS port n (between 1 and 8) of the first or second wireless adapter. costwds1 <1 ... 65535> costwds2 <1 ...
Configuration Using Web Based Management and the Command Line Interface 6.5.5 Storm Threshold Menu Command Limitation of Broadcast and Multicast Frames Storm Threshold is the maximum number of broadcast or multicast frames per second forwarded by the SCALANCE W 788. If this limit is exceeded, the SCALANCE W 788 stops processing such frames for 30 seconds. Syntax of the Command Line Interface CLI\BRIDGE\STORMTHR> Command Description stromthr broadcast Enable / disable Storm Thresho
Configuration Using Web Based Management and the Command Line Interface 6.6 The Filters Menu 6.6.1 MAC Filter Menu Command Blocking the Data Traffic between MAC Addresses For communication partners that use the SCALANCE W 788 as a bridge, it is possible to filter according to their MAC address. You enter the source and target devices between which you want to prevent communication in the Bridge MAC Addresses Filter list. Syntax of the Command Line Interface CLI\FILTERS\MAC2FLT> Command clearall fltma
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\FILTERS\PROTO> Command Description clearall Deletes all entries for the protocol filter. statprot The selected protocols are forwarded / not forwarded. fltprot Enable / disable the protocol filter.
Configuration Using Web Based Management and the Command Line Interface 6.7 The I-Features Menu 6.7.1 iQoS Menu Command Client-Specific Bandwidth Reservation iQoS (Quality of Service) is technique with which clients are assigned a certain bandwidth. Due to this assignment, there is a high probability that data transmission to these clients will be within a defined period. This technique can be useful when response times must be guaranteed.
Configuration Using Web Based Management and the Command Line Interface System Event for Connection Abort You can specify how the SCALANCE W 788 reacts to a connection abort (or to the reestablishment of a connection) in the System > Event Config menu. Syntax of the Command Line Interface CLI\IFEATURES\LINKCHECK> Command Description linkchk Enable / disable device-related connection monitoring.
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\IFEATURES\REDUNDANCY> Command Description redun Enables / disables the redundancy function wep mac1 Enables / disables WEP encryption. mac2 Specifies the device that will be operated redundantly along with the second wireless adapter.
Configuration Using Web Based Management and the Command Line Interface Syntax of the Command Line Interface CLI\IFEATURES\IP_ALIVE> Command Description ipalive Enables / disables applicationrelated connection monitoring. add : Adds a new IP address to the connection monitoring and enables / disables monitoring for this IP address. clearall Deletes all entries for connection monitoring.
Configuration Using Web Based Management and the Command Line Interface 6.8 The Information Menu System Events and Information on the Protocols The pages of this menu display tables contain information on system events and on the behavior of the protocols (IP, TCP, UDP, and ICMP. SNMP). Updating the Display Most pages have the Refresh button at the bottom edge with which you can update the display. The Client List menu command also allows you to update automatically.
Configuration Using Web Based Management and the Command Line Interface Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 105
7 Technical Specifications Data Transmission Transmission rate for Ethernet 10/100 Mbps Transmission rate for wireless 1 ... 54 Mbps Supported standards for wireless 802.11a, 802.11b, 802.11g Supported standards for energy supply 802.3 af (Power over Ethernet) Interfaces Energy M12 Binder series 713 (exists twice) Harting RJ-45 hybrid (energy contacts) Data Harting RJ-45 hybrid (RJ-45 jack) R-SMA antenna socket (exists twice) Electrical Data Power supply 20 ... 57 V d.c. voltage 90 ...
Technical Specifications SCALANCE W 788 Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 107
Appendix Private MIB Variables of the SCALANCE W 700 OID The private MIB variables of the SCALANCE W 700 have the following object identifiers: iso(1).org(3).dod(6).internet(1).private(4).enterprises(1). ad(4196).adProductMibs(1).simaticNet(1).iRxm(4).iRxmMib(100) Variables The following table shows the private MIB variables of the SCALANCE W 788: Name OID Description Number of Objects snDownload 1.3.6.1.4.1.4196.1.1.4.100.1.
Appendix Private MIB Variables of the SCALANCE W 700 SCALANCE W 788 Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 109
Glossary ACL Access Control List with MAC addresses with the right to access the wireless network Ad hoc network Wireless network between individual devices (point-to-point) AES Advanced Encryption Standard. New standard of cryptography of data in WLANs. EAP Extensive Authentification Protocol. Authentication protocol. Hidden node problem Two nodes are arranged in a wireless cell so that they are outside their own transmission range.
Glossary Roaming Free movement of wireless LAN nodes even beyond the boundaries of an access point's cell. The nodes and can move from one cell to the next without any noticeable interruption. RTS/CTS Request to send/Clear to send. Scheme for avoidance of collisions. SNMP Simple Network Management Protocol. Standardized protocol for transporting network management information. TKIP Temporal Key Integrity Protocol. Scheme for cyclic changing of keys in WLANs. WBM Web Based Management.
Index A ACL.......................................................... 87 Ad Hoc networks ..................................... 11 ARP table ................................................ 92 Authentication.................................... 52, 85 B Basic Wizard ........................................... 38 Beacon .................................................... 79 Bridge ...................................................... 90 C C Plug......................................................
Index Operating Instructions SCALANCE W 788-1pro / SCALANCE W 788-2pro C79000-G8976-C184-01 113