|Maximum number of CIP services in a packet||
The CIP service code Multiple_Service_Packet makes it possible to encapsulate several CIP commands in the same network packet. This field allows defining the number of commands that can be grouped in a single packet.
This value has to be between 1 and 65535 seconds (default value: 65535).
Standard services tab
This list sets out the service IDs and associated standard CIP services that the firewall authorizes by default. The action (Analyze / Block) applied to each service can be modified by clicking in the Action column. The Modify all services button allows modifying the action (Analyze / Block) applied to all services.
Specific services tab
This list sets out the service IDs, specific CIP services and associated class IDs that the firewall authorizes by default. These services are allowed by default (Analyze action). These services are classified by service group: Acknowledge Handler Object, Assembly Object, Connection Configuration Object, Connection Manager Object, Connection Object, File Object, Message Router Object, Motion Axis Object, Parameter Object, S-Analog Sensor Object, S-Device Supervisor Object, S-Gas Calibration Object, S-Partial Pressure Object, S-Sensor Calibration Object, S-Single Stage Controller Object and Time Sync Object.
The buttons Block by service set, Analyze by service set and Modify all services allow modifying the action (Analyze / Block) applied to the selected service set or to all CIP services listed in the table.
Customized classes and services
This list makes it possible to filter, for the selected class IDs (between 0 and 65535 inclusive, separated by commas or by a dash to define a range), the CIP service IDs to be authorized (between 0 and 127 inclusive, separated by commas or by a dash to define a range). It is possible to Add or Delete elements to or from this list by clicking on the relevant buttons.