Read this document and the documents listed in the additional resources section about installation, configuration, and operation of this equipment
before you install, configure, operate, or maintain this product. Users are required to familiarize themselves with installation and wiring instructions
in addition to requirements of all applicable codes, laws, and standards.
Activities including installation, adjustments, putting into service, use, assembly, disassembly, and maintenance are required to be carried out by
suitably trained personnel in accordance with applicable code of practice. If this equipment is used in a manner not specified by the manufacturer,
the protection provided by the equipment may be impaired.
In no event will Rockwell Automation, Inc. be responsible or liable for indirect or consequential damages resulting from the use or application of this
equipment.
The examples and diagrams in this manual are included solely for illustrative purposes. Because of the many variables and requirements associated
with any particular installation, Rockwell Automation, Inc. cannot assume responsibility or liability for actual use based on the examples and
diagrams.
No patent liability is assumed by Rockwell Automation, Inc. with respect to use of information, circuits, equipment, or software described in this
manual.
Reproduction of the contents of this manual, in whole or in part, without written permission of Rockwell Automation, Inc., is prohibited.
Throughout this manual, when necessary, we use notes to make you aware of safety considerations.
WARNING: Identifies information about practices or circumstances that can cause an explosion in a hazardous environment, which may lead to
personal injury or death, property damage, or economic loss.
ATTENTION: Identifies information about practices or circumstances that can lead to personal injury or death, property damage, or economic
loss. Attentions help you identify a hazard, avoid a hazard, and recognize the consequence
Important:
Labels may also be on or inside the equipment to provide specific precautions.
Identifies information that is critical for successful application and understanding of the product.
SHOCK HAZARD: Labels may be on or inside the equipment, for example, a drive or motor, to alert people that dangerous voltage may be
present.
BURN HAZARD: Labels may be on or inside the equipment, for example, a drive or motor, to alert people that surfaces may reach dangerous
temperatures.
ARC FLASH HAZARD: Labels may be on or inside the equipment, for example, a motor control center, to alert people to potential Arc Flash. Arc
Flash will cause severe injury or death. Wear proper Personal Protective Equipment (PPE). Follow ALL Regulatory requirements for safe work
practices and for Personal Protective Equipment (PPE).
FactoryTalk Network
Installation
First Time Setup
Supported Utilities
Manager
Table of contents
Chapter 1
System Requirements ........................................................................................................... 5
System Prerequisites ............................................................................................................. 6
FactoryTalk® Network Manager™ software provides insight into the design,
performance, and health of an industrial automation network. Use FactoryTalk
Network Manager to view your network topology and manage switch-level alarms
as they happen. Monitor the health of network devices and reduce downtime to
improve overall automation equipment efficiency.
FactoryTalk Network Manager:
• Discovers both network and end devices including devices across a
controller backplane
• Generates an overall topology and a device-centric view of plant floor assets
for increased network visibility
• Captures managed switch level alarms and events in real-time for more
precise troubleshooting
• Provides historical data and logging for analysis and resolution
• Provides configuration backup and firmware revision management of
Stratix™ managed switches for simplified deployment and maintenance
See also
Installation on page 9
First Time Setup on page 11
Supported Utilities on page 23
Hardware requirements
The computer running FactoryTalk Network Manager must meet or exceed these
specifications:
The FactoryTalk Network Manager installation file is available for download on
the Rockwell Automation Product Compatibility and Download Center
(PCDC) web site.
To install FactoryTalk Network Manager
1. Visit the Rockwell Automation Product Compatibility and Download
SNMP enabled switches must be configured for optimal network discovery. This
includes Stratix managed switches. Stratix switches can be configured for SNMP
v2 or SNMP v3.
configure terminal
# Device Prerequisite Configuration for SNMPv2
snmp-server community <read-community> RO
exit
Configure SNMP v3 via CLI for Stratix 5400/5410, Stratix 5700, Stratix
8000/8300, Armor Stratix 5700, and Stratix 5800:
• To enable SNMP v3 discovery, open the command-line interface to the
supported device. Type these commands, ignoring lines starting with #
symbols:
enable
configure terminal
# <mode> values are [noauth, auth, priv]:
# noauth: authenticate using only username.
# auth: authenticate using md5 or sha algorithm.
# priv: authenticate using md5 or sha algorithm and aes
128 or des encryption.
snmp-server group <group-name> v3 <mode>
# <authentication-type> values are [sha, md5], use only if
using auth or priv snmp <mode>.
# <privacy-type> values are [aes 128, des], use only if using
priv snmp <mode>.
# <authentication-password> sets the string that enables the
agent to receive packets from the host.
# <privacy-password> sets the privacy user password. Must
not exceed 64 characters.
After configuring the SNMP server, enter one of the UNLICENSED to
LICENSED State configurations.
For more information on SNMP v3 configuration, see the
SNMPv3
Community MIB Support document available from Cisco.
To configure remote security above and beyond user and group
authentication requires implementing Access Control Lists (ACLs). For
more information on implementing Access Control Lists, see the
9. Select the Users tab, then add an snmpv3 user with name, security level,
authentication protocol, authentication password, privacy protocol, and
privacy password. Select OK.
10. Select the Group tab, select the created user, and specify the group name.
Select OK.
11. Select Submit.
See also
Network Manager Node
Licenses
Network Discovery on page 17
FactoryTalk Network Manager discovers all devices on the network and presents
them graphically in the Operate > Topology screen.
For best network discovery results, complete the switch configuration before
performing network discovery.
To perform Network Discovery
•Create a Discovery Profile and an Access Profile. Use the Create Device
Access Profile and Discover Assets guided tours for step by step
instructions.
See also
Switch configuration for optimal network discovery on page 13
FactoryTalk Network Manager basic features are available at no charge.
FactoryTalk Network Manager does not require a license to download. Some
features such as Managed Switch View, switch port parameter configuration, and
switch configuration backups are enabled with a node license. A node license is
applied to a licensable device (also known as a node). Licenses are available as a 1
To purchase FactoryTalk Network Manager Node Licenses:
1. Visit https://portal.rockwellsoftware.com.
2. Log in or register as a new user.
3. Locate FactoryTalk Network Manager, then select Continue.
4. Select a package, support level, and quantity.
5. Select Add to Cart.
Chapter 3
First Time Setup
Configure a switch for a
6. From the shopping cart, select Checkout, then complete the checkout and
billing process.
7. When you receive the Serial Number and Product Key, open FactoryTalk
Activation Manager on the FactoryTalk Network Manager host computer.
8. Select Get New Activations.
9. Enter the Serial Number and Product Key, then select Validate Activation.
10. Enter the number of licenses to download to the host computer, then select
Download activation.
11. Once complete, select Find Available Activations, then select Refresh.
The activation is now listed under Available Activations.
For troubleshooting or more assistance with FactoryTalk Activation
Manager, view FactoryTalk Activation Manager Help.
See also
FactoryTalk Network
Manager node license
Configure a switch for a FactoryTalk Network Manager node license
page 18
Switches that can be licensed (also known as nodes) must be configured to
communicate with FactoryTalk Network Manager and accept a license.
Configuration may occur using the command line, Device Manager, or WebUI.
Follow these steps to update the switch configuration so that FactoryTalk
Network Manager can transition a switch from the UNLICENSED to
LICENSED state to access additional features.
Configure Telnet/SSH for all supported switches via Device Manager:
1. Select Admin > Access Management.
2. Check the box to enable SSH for secure communications over HTTPS or
# This should match the device access username and password
specified in the system Access Profile
username <username> privilege 15 password 0 <password>
# Configure AAA
aaa new-model
aaa authentication login default local
aaa authorization exec default local
# Configure HTTP server
ip http server
ip http authentication aaa login-authentication default
# Configure VTY
line vty 0 15
login authentication default
transport input all
transport output all
• Using SSH/HTTPS, to transition the supported device from
UNLICENSED to LICENSED state, open the command-line interface to
the supported device. Type these commands, ignoring lines starting with #
symbols:
# Configure user account with privilege level 15
# This should match the device access username & password
specified in the system Access Profile
username <username> privilege 15 password 0 <password>
# Configure AAA
aaa new-model
aaa authentication login default local
aaa authorization exec default local
# Configure SSH server
ip ssh version 2
# Configure HTTPS server
ip http secure-server
ip http authentication aaa login-authentication default
ip http secure-ciphersuite aes-256-cbc-sha
# Configure VTY
line vty 0 15
login authentication default
transport input all
transport output all
3. In the password change confirmation panel, click Next.
ftnm-resetpassword.exe utility to reset the
Chapter 4
Supported Utilities
Restore Database Backup
4.In Reset System Admin Password, enter the new password in both the
Enter Password and Confirm Password fields.
Tip:
For guidelines on creating FactoryTalk Network Manager passwords, select the i
icon next to the New Password field. A panel with password requirements
displays.
5. Select Next.
6. Select Save to save the password.
See also
Reset Database Password on page 23
Restore Database Backup on page 24
To restore an FTNM database from a previous FTNM backup, you must have
administrative rights to the Windows location where the FTNM application is
installed.
Important:
Restoring from backup overwrites any data currently present in
FactoryTalk Network Manager.
Your comments will help us serve your documentation needs better. If you have any suggestions on how to improve this document, complete the
How Are We Doing? form at http://literature.rockwellautomation.com/idc/groups/literature/documents/du/ra-du002_-en-e.pdf
.
Rockwell Automation maintains current product environmental information on its website at http://www.rockwellautomation.com/rockwellautomation/ab out-us/sustainability-ethics/product-environmental-compliance. page.
Allen-Bradley, Rockwell Automation, and Rockwell Software are trademarks of Rockwell Automation, Inc.
Trademarks not belonging to Rockwell Automation are property of their respective companies.