How to restrict access to a subdevice using firewall policies
When you use a runtime or device with several controllers from different vendors as subdevices
and you want each vendor to access only their controller, you can limit their access to
specific subdevices by adjusting the firewall settings.
FactoryTalk®
Remote Access™
Manager- Access.FactoryTalk® Remote Access™Manager
- Access .
- Create a new firewall policy:
- Right-click the domain tree and selectCreate firewall policy.
- Name the firewall policy and selectSave.
- In the domain tree, navigate to thePoliciesand select the new policy you created.
- Select the plus button in theFirewall Rulessection to define the firewall rules.
- In theCreate firewall ruledialog window set the firewall rules:
- In theMAC Addressdrop-down menu, selectAny.
- In theEthernet Typedrop-down menu, selectIPv4.
- In theIP Addressdrop-down menu, selectSingleand below provide the IP address of the device.
- In theIP Protocoldrop-down menu, selectAny.
- SelectSave.
- Select the device you want to set the firewall policies for.
- Navigate toFirewallpane and select the plus button.
- In theAssociate firewall policydialog window appears set the firewall policy:
- In theSelect firewall policydrop-down menu, select the firewall policy you created.
- Select the user you are setting the firewall policy for.
- SelectAllow.
- In theFirewallpane, clear theInherit firewall policiescheckbox and in theDefault actiondrop-down menu, selectDeny.The selected user can only access the subdevice defined in the rule.
Provide Feedback