DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

OPC port forward on Draytek 2862

  • adamwynne
  • Topic Author
  • User
  • User
More
17 Aug 2018 14:40 #1 by adamwynne
OPC port forward on Draytek 2862 was created by adamwynne
Hi all

I have a client who has a Siemens S7 PLC sitting behind a Draytek 2862
I want to access the S7's OPC server on port 4840
I have tried port redirection on UDP and TCP, and I have tried opening port 4840.
Neither option seems to allow communication with the OPC server.
(VPN-ing onto the local network does allow access to the OPC server port 4840)

The protocol is opc.tcp:// binary.

Is this possible on Draytek 2826?

Many thanks.

Please Log in or Create an account to join the conversation.

  • prushmere
  • User
  • User
More
17 Aug 2018 14:48 #2 by prushmere
Replied by prushmere on topic Re: OPC port forward on Draytek 2862
You'll probably need to open a lot more ports than that as OPC relies on DCOM.

Personally, I'd stick to the VPN option for security reasons - you really don't want an automation controller/network accessible to the outside world.

Please Log in or Create an account to join the conversation.

  • manicguitarist
  • User
  • User
More
17 Aug 2018 14:51 #3 by manicguitarist
Replied by manicguitarist on topic Re: OPC port forward on Draytek 2862
^^ what he said re security.

I've worked on OPC servers....you want them behind a firewall and not open to the whole world.

Please Log in or Create an account to join the conversation.

  • adamwynne
  • Topic Author
  • User
  • User
More
17 Aug 2018 15:24 #4 by adamwynne
Replied by adamwynne on topic Re: OPC port forward on Draytek 2862
Thanks both. This is OPC UA which is TCP/IP based not DCOM based (apparently).

Appreciate the sentiment RE port opening, but it's IP range protected and the OPC side is signed/encrypted read-only data.

Any further ideas? Thx.

Please Log in or Create an account to join the conversation.

  • prushmere
  • User
  • User
More
17 Aug 2018 15:39 #5 by prushmere
Replied by prushmere on topic Re: OPC port forward on Draytek 2862
That's correct, OPC UA doesn't use DCOM - I missed the opc.tcp bit at the bottom.

However, it does require different ports opening depending on *what* you want to access, have a look here: http://opcfoundation.github.io/UA-.NETStandard/help/firewall_settings.htm

Please Log in or Create an account to join the conversation.