indicates that death or severe personal injury will result if proper precautions are not taken.
WARNING
indicates that death or severe personal injury may result if proper precautions are not taken.
CAUTION
indicates that minor personal injury can result if proper precautions are not taken.
NOTICE
indicates that property damage can result if proper precautions are not taken.
Qualified Personnel
personnel qualified
Proper use of Siemens products
WARNING
Siemens products may only be used for the applications described in the catalog and in the relevant technical
maintenance are required to ensure that the products operate safely and without any problems. The permissible
ambient conditions must be complied with. The information in the relevant documentation must be observed.
Trademarks
Disclaimer of Liability
This manual contains notices you have to observe in order to ensure your personal safety, as well as to prevent
damage to property. The notices referring to your personal safety are highlighted in the manual by a safety alert
symbol, notices referring only to property damage have no safety alert symbol. These notices shown below are
graded according to the degree of danger.
If more than one degree of danger is present, the warning notice representing the highest degree of danger will
be used. A notice warning of injury to persons with a safety alert symbol may also include a warning relating to
property damage.
The product/system described in this documentation may be operated only by
task in accordance with the relevant documentation, in particular its warning notices and safety instructions.
Qualified personnel are those who, based on their training and experience, are capable of identifying risks and
avoiding potential hazards when working with these products/systems.
Note the following:
documentation. If products and components from other manufacturers are used, these must be recommended
or approved by Siemens. Proper transport, storage, installation, assembly, commissioning, operation and
All names identified by ® are registered trademarks of Siemens AG. The remaining trademarks in this publication
may be trademarks whose use by third parties for their own purposes could violate the rights of the owner.
We have reviewed the contents of this publication to ensure consistency with the hardware and software
described. Since variance cannot be precluded entirely, we cannot guarantee full consistency. However, the
information in this publication is reviewed regularly and any necessary corrections are included in subsequent
editions.
7 Upkeep and maintenance ..................................................................................................................... 75
8 Technical data ...................................................................................................................................... 83
Index ................................................................................................................................................... 111
● On the data medium that ships with some products:
– Product CD / product DVD
– SIMATIC NET Manual Collection
● On the Internet pages of Siemens Industry Online Support.
(http://support.automation.siemens.com/WW/view/en/48803858/133300)
In the system manuals "Industrial Ethernet / PROFINET Industrial Ethernet" and "Industrial
Ethernet / PROFINET passive network components", you will find information on other
SIMATIC NET products that you can operate along with the devices of this product line in an
Industrial Ethernet network.
There, you will find among other things optical performance data of the communications
partner that you require for the installation.
You will find the system manuals here:
● On the data medium that ships with some products:
– Product CD / product DVD
– SIMATIC NET Manual Collection
● On the Internet pages of Siemens Industry Online Support under the following entry IDs:
You will find the article numbers for the Siemens products of relevance here in the following
catalogs:
● SIMATIC NET Industrial Communication / Industrial Identification, catalog IK PI
● SIMATIC Products for Totally Integrated Automation and Micro Automation, catalog
ST 70
● Industry Mall - catalog and ordering system for automation and drive technology, Online
You can request the catalogs and additional information from your Siemens representative.
Siemens provides products and solutions with industrial security functions that support the
secure operation of plants, systems, machines and networks.
In order to protect plants, systems, machines and networks against cyber threats, it is
necessary to implement – and continuously maintain – a holistic, state-of-the-art industrial
security concept. Siemens’ products and solutions only form one element of such a concept.
Customer is responsible to prevent unauthorized access to its plants, systems, machines
and networks. Systems, machines and components should only be connected to the
enterprise network or the internet if and to the extent necessary and with appropriate security
measures (e.g. use of firewalls and network segmentation) in place.
Additionally, Siemens’ guidance on appropriate security measures should be taken into
account. For more information about industrial security, please visit
http://www.siemens.com/industrialsecurity (http://www.siemens.com/industrialsecurity)
Siemens’ products and solutions undergo continuous development to make them more
secure. Siemens strongly recommends to apply product updates as soon as available and to
always use the latest product versions. Use of product versions that are no longer supported,
and failure to apply latest updates may increase customer’s exposure to cyber threats.
catalog
To stay informed about product updates, subscribe to the Siemens Industrial Security RSS
Feed under
https://support.industry.siemens.com/cs/ww/en/ps/15247/pm
(https://support.industry.siemens.com/cs/ww/en/ps/15247/pm).
If you use damaged parts, there is no guarantee that the device will function according to
the specification.
If you use damaged parts, this can lead to the following problems:
• Injury to persons
• Loss of the approvals
• Violation of the EMC regulations
• Damage to the device and other components
Use only undamaged parts.
1. Make sure that the package is complete.
2. Check all the parts for transport damage.
SCALANCE XR-500
8Operating Instructions, 05/2017, A5E03275845-11
2
Read the safety notices
General notices
WARNING
Restricted use of the device
WARNING
Maximum ambient temperature
WARNING
Suitable installation location
Note the following safety notices. These relate to the entire working life of the device.
You should also read the safety notices relating to handling in the individual sections,
particularly in the sections "Installation" and "Connecting up".
Devices of the SCALANCE XR-500 product line must not be put into operation in nuclear
power plants or other nuclear facilities.
Note that some factors influence the maximum permitted ambient temperature, refer to the
sections "Permitted ambient temperature (Page 19)", "Safety notices for installation
(Page 37)", "Desktop operation with adhesive feet (Page 43)" and "Technical data
(Page 83)".
The installation location of a device of the SCALANCE XR-500 product line must be
selected so that only qualified service personnel or trained users have access to it.
Operation of a device of the SCALANCE XR-500 product line is permitted only when these
requirements are met.
General safety notices relating to protection against explosion
WARNING
Opening the device
Safety notices for use according to ATEX and IECEx
WARNING
EXPLOSION HAZARD
The current on the terminal may not exceed 25 A. Use a fuse, that protects against currents
> 25 A. The fuse must meet the following requirements:
In areas according to NEC or CEC:
• Suitable for DC (min. 60 V / 25 A)
• Breaking current at least 10 kA
• Approval according to ANSI/UL 248-1
• Suitable for the protection of DC power supply circuits
In other areas:
• Suitable for DC (min. 60 V / 25 A)
• Breaking current at least 10 kA
• Approval in compliance with IEC 60127-1 / EN 601127-1
• Breaking characteristics: B or C for circuit breakers and fuses
• Suitable for the protection of DC power supply circuits
Do not open when energized. Note that this does not apply to opening the service panel in
the housing.
If you use the device under ATEX or IECEx conditions you must also keep to the following
safety notices in addition to the general safety notices for protection against explosion:
Do not press the SELECT/SET button when there is an explosive atmosphere.
SCALANCE XR-500
10Operating Instructions, 05/2017, A5E03275845-11
Safety notes
Safety notices when using the device according to Hazardous Locations (HazLoc)
2.1
Security recommendations
NOTICE
Information security
General
Physical access
2.1 Security recommendations
If you use the device under HazLoc conditions you must also keep to the following safety
notices in addition to the general safety notices for protection against explosion:
This equipment is suitable for use in Class I, Division 2, Groups A, B, C and D or nonhazardous locations only.
This equipment is suitable for use in Class I, Zone 2, Group IIC or non-hazardous locations
only.
Connect to the device and change the standard password for the user set in the factory
"admin" and "" before you operate the device.
To prevent unauthorized access, note the following security recommendations.
● You should make regular checks to make sure that the device meets these
recommendations and/or other security guidelines.
● Evaluate your plant as a whole in terms of security. Use a cell protection concept with
– Using the button, you can reset the device to the factory defaults.
● If the device is publicly accessible, disable the functions of the button using the software.
● Lock unused physical ports on the device. Unused ports can be used to gain forbidden
access to the plant.
11
Safety notes
Software (security functions)
Passwords
Certificates and keys
2.1 Security recommendations
● Keep the firmware up to date. Check regularly for security updates for the device. You will
find information on this on the Internet pages Industrial Security
(http://www.siemens.com/industrialsecurity).
● Inform yourself regularly about security recommendations by Siemens ProductCERT
(http://www.siemens.com/cert/en/cert-security-advisories.htm).
● Only activate protocols that you require to use the device.
● Restrict access to the management of the device with rules in an access control list
(ACL).
● The option of VLAN structuring provides protection against DoS attacks and unauthorized
access. Check whether this is practical or useful in your environment.
● Use a central logging server to log changes and accesses. Operate your logging server
within the protected network area and check the logging information regularly.
● Define rules for the assignment of passwords.
● Regularly change your passwords to increase security.
● Use passwords with a high password strength.
● Make sure that all passwords are protected and inaccessible to unauthorized persons.
● Do not use the same password for different users and systems.
● On the device there is a preset SSL certificate with key. Replace this certificate with a
● Use a certification authority including key revocation and management to sign certificates.
● Make sure that user-defined private keys are protected and inaccessible to unauthorized
● It is recommended that you use password-protected certificates in the PKCS #12 format
● Verify certificates and fingerprints on the server and client to prevent "man in the middle"
● It is recommended that you use certificates with a key length of at least 2048 bits.
● Change certificates and keys immediately, if there is a suspicion of compromise.
self-made certificate with key. We recommend that you use a certificate signed either by
a reliable external or by an internal certification authority.
persons.
attacks.
SCALANCE XR-500
12Operating Instructions, 05/2017, A5E03275845-11
Safety notes
Secure/non-secure protocols and services
2.1 Security recommendations
● Avoid or disable non-secure protocols and services, for example HTTP, Telnet and TFTP.
For historical reasons, these protocols are available, however not intended for secure
applications. Use non-secure protocols on the device with caution.
● Check whether use of the following protocols and services is necessary:
– Non authenticated and unencrypted ports
– MRP, HRP
– IGMP snooping
– LLDP
– Syslog
– RADIUS
– DHCP Options 66/67
– TFTP
– GMRP and GVRP
● The following protocols provide secure alternatives:
– HTTP → HTTPS
– Telnet → SSH
– SNMPv1/v2c → SNMPv3
Check whether use of SNMPv1/v2c. is necessary. SNMPv1/v2c is classified as nonsecure. Use the option of preventing write access. The device provides you with
suitable setting options.
If SNMP is enabled, change the community names. If no unrestricted access is
necessary, restrict access with SNMP.
Use the authentication and encryption mechanisms of SNMPv3.
● Use secure protocols when access to the device is not prevented by physical protection
measures.
● If you require non-secure protocols and services, operate the device only within a
protected network area.
● Restrict the services and protocols available to the outside to a minimum.
● For the DCP function, enable the "Read Only" mode after commissioning.
● If you use RADIUS for management access to the device, activate secure protocols and
*) With the SCALANCE XR526-8C (2 x 24 VDC) if you use SFP/SFP+ pluggable transceivers
in the SFP+ slots, the maximum ambient temperature is reduced to 60 °C, see section
"Permitted ambient temperature (Page 19)".
The following components ship with a SCALANCE XR-500:
Device with exchangeable medi-
Product DVD with documentation
2 brackets for 19" rack installa-
8 screws for mounting the fixing
brackets for 19" rack installation
4 adhesive feet for desktop oper-
SCALANCE XR-500
18Operating Instructions, 05/2017, A5E03275845-11
● ● ● ●
● ● ● ●
● ● ● ●
M3 x 5 countersunk,
●●●●
M3 x 5 countersunk,
M3 x 6 countersunk,
M3 x 6 countersunk,
Description of the device
SCALANCE
XR524-8C
SCALANCE
XR526-8C
SCALANCE
XR528-6M
SCALANCE
XR552-12M
Torx)
naling contact
pin D-sub female connector
Fan unit
- - FAN597-2
FAN597-1
Filter frame with filter pad
- - ●
●
SFP/SFP+
of the media module slots
ules in use
Note
When the modules shi
3.1.1
Permitted ambient temperature
SCALANCE XR524-8C
SCALANCE XR524-8C
(24 VDC)
SCALANCE XR524-8C
(240 VAC)
ELH200
With SFP transceivers
-40 ℃ to +60 °C
-25 ℃ to +60 °C
3.1 Product overview
2 mounting plates and 24 screws
for mounting the power supply
units (M3 x 6 countersunk, drive:
4-pin terminal block for the 24
VDC power supply
2-pin terminal block for the sig-
Connecting cable for the serial
interface with RJ-11 plug and 9-
Covers for the interfaces of the
Dummy covers for the interfaces
Labels for the slot numbers to
identify the MM900 media mod-
- - ●●
With variants with
24 VDC
● ● ● ●
● ● ● ●
8 10 4 4
- - 6 12
- - ●●
With variants with
24 VDC
●●
p, the media module slots are fitted with dummy covers.
The maximum permitted ambient temperature of a device of the product line SCALANCE XR
-500 depends on the components used. Note the information with the individual components
in the section "Accessories (Page 20)" and the Technical specifications (Page 83).
For SCALANCE XR524-8C (24 VDC), the ambient temperature must not exceed 70 °C.
For SCALANCE XR524-8C (240 VAC), the ambient temperature must not exceed 60 ℃.
Without pluggable transceiver of the types LH, LH+, ELH or
* Cannot be operated in SFP+ slots.
Pluggable transceivers with the supplement (C) in the type name have varnished printed circuit boards
(conformal coating).
Note
Restriction for pluggable transceivers for SCALANCE XR524-8C (2 x 24 VDC) and
SCALANCE XR526-8C (2 x DC 24 V)
If you use pluggable transceivers of the types LH, LH+, ELH or ELH200 wit
XR524
temperature is reduced to 60
For further information on the ambient temperature, refer to sections “
temperature
Note
No far-end fault detection for an SFP transceiver in SFP+ slots with SCALANCE XR528 and
SCALANCE XR552
If you use an SFP transceiver in
interface. This can impair the functionality of link
SFP+ transceiver
Type
Properties
Article number
cable (multimode), up to max. 300 m
cable (multimode), up to max. 300 m
cable (single mode), up to max. 10 km
cable (single mode), up to max. 10 km
cable (single mode), up to max. 40 km
3.1 Product overview
SFP992-1LH 1 x 1000 Mbps LC port optical for glass FO
SFP992-1LH+ 1 x 1000 Mbps LC port optical for glass FO
cable (single mode) up to max. 70 km
SFP992-1ELH 1 x 1000 Mbps LC port optical for glass FO
6GK5 992-1AN00-8AA0
6GK5 992-1AP00-8AA0
6GK5 992-1AQ00-8AA0
h a SCALANCE
-8C (2 x 24 VDC) and SCALANCE XR526-8C (2 x 24 VDC) , the maximum ambient
℃.
Permitted ambient
(Page 19)“ and “Technical data (Page 83)“.
an SFP+ slot, no far-end fault detection is possible for this
-based protocols, e.g. ring redundancy.
SFP993-1 1 x 10 Gbps, LC port optical for glass FO
1 x 10 Gbps, LC port optical for glass FO
SFP993-1LD 1 x 10 Gbps, LC port optical for glass FO
1 x 10 Gbps, LC port optical for glass FO
SFP993-1LH 1 x 10 Gbps, LC port optical for glass FO
Can only be operated in SFP+ slots.
SCALANCE XR-500
22Operating Instructions, 05/2017, A5E03275845-11
6GK5 993-1AT00-8AA0 1)
6GK5 993-1AT10-8AA0 2)
6GK5 993-1AU00-8AA0 1)
6GK5 993-1AU10-8AA0 2)
6GK5 993-1AV00-8AA0 1)
Description of the device
SFP+ data cable
Component
Description
Article number
pack of 1
Length 1 m
6GK5 980-3CB00-0AA1
Note
1)
Restriction with SFP+ transceivers for SCALANCE XR526-8C
If you use SFP+ transceivers identifie
maximum ambient temperature is reduced to 50 ℃.
Note
2)
Restriction for DFP+ transceivers for SCALANCE XR526-8C (2 x 24 VDC)
If you use SFP+ transceivers identified with
VD
3.1.2.2
Additional accessories for modular devices
Fan unit
Type
Properties
Article number
FAN597-1
For SCALANCE XR552-12M
6GK5 597-1AA00-8AA0
FAN597-2
For SCALANCE XR528-6M
6GK5 597-2AA00-8AA0
NOTICE
Operation only with fan unit
3.1 Product overview
The following cables are available for SFP+ transceivers:
IE CABLE SFP+/SFP+ Preassembled IE cable with SFP+
plugs,
electrical, 10 Gbps,
Length 2 m 6GK5 980-3CB00-0AA2
Length 7 m 6GK5 980-3CB00-0AA7
The following devices have SFP+ slots:
● SCALANCE XR526-8C
d with 1) with the SCALANCE XR526-8C, the
2)
with the SCALANCE XR526-8C (2 x 24
C), the maximum ambient temperature is reduced to 60 ℃.
For further information on the ambient temperature, refer to sections “Permitted ambient
temperature (Page 19)“ and “Technical specifications of the SCALANCE XR526-8C
(Page 86)“.
● SCALANCE XR528-6M
● SCALANCE XR552-12M
The following additional accessories are available for devices SCALANCE XR528-6M and
SCALANCE XR552-12M:
Use the devices SCALANCE XR528-6M and SCALANCE XR552-12M only with a correctly
fitted fan unit. Operation without the fan is not possible and would damage the device.
MM991-4 4 x 100 Mbps, ST ports optical, multimode fiber-
optic cable, up to max. 5 km.
MM991-4LD 4 x 100 Mbps, ST ports optical, single mode fiber-
MM992-4 4 x 1000 Mbps, SC ports optical, multimode FO
MM992-4LD 4 x 1000 Mbps, SC ports optical, single mode FO
MM992-4CUC 4 x 10/100/1000 Mbps, RJ-45 ports electrical with
MM992-4PoE 4 x 10/100/1000 Mbps, PoE ports electrical, max
MM992-4PoEC 4 x 10/100/1000 Mbps, PoE ports electrical with
6GK5 991-4AB00-8AA0
6GK5 991-4AC00-8AA0
6GK5 992-4AL00-8AA0
6GK5 992-4AM00-8AA0
6GK5 992-4GA00-8AA0
6GK5 992-4QA00-8AA0
6GK5 992-4RA00-8AA0
The following cables are available for SFP+ transceivers:
IE CABLE SFP+/SFP+ Preassembled IE cable with SFP+
plugs,
electrical, 10 Gbps,
pack of 1
SCALANCE XR-500
24Operating Instructions, 05/2017, A5E03275845-11
Length 7 m 6GK5 980-3CB00-0AA7
Description of the device
3.2
SELECT/SET button
WARNING
EXPLOSION HAZARD
Position
Setting the display mode
3.2 SELECT/SET button
Do not press the SELECT/SET button when there is an explosive atmosphere.
With a SCALANCE XR-500, the "SELECT/SET" button is on the front of the housing. The
"SELECT/SET" button has several functions that are described below.
Figure 3-1 SELECT/SET button on the SCALANCE XR524-8C SCALANCE XR526-8C is
Figure 3-2 SELECT/SET button on the SCALANCE XR552-12M SCALANCE XR528-6M is
By pressing the button briefly, you change to the display mode of the LED display. You will
find detailed information on the display modes in the sections ""DM1" and "DM2" LEDs for
the display mode (Page 29)" and "Port P1, P2, ... LEDs for the port status (Page 31)".
If you have disabled the "Restore Factory Defaults" function for the "SELECT/SET" button in
the co
factory settings
If the function has been disabl
startup phase.
Procedure
Enabling and disabling the button
3.2 SELECT/SET button
If you reset, all the settings you have made will be overwritten by factory defaults.
An inadvertent reset can cause disturbances and failures in a configured network with
further consequences.
● The device is in operation.
● The function "Restore Factory Defaults" is enabled for the "SELECT / SET" button.
nfiguration, this does not apply during the startup phase, see section "Restoring the
(Page 80)".
ed in the configuration, it is only disabled on completion of the
To reset the device to the factory defaults during operation, follow the steps below:
1. Switch to display mode A.
Display mode A is active when the LEDs "DM1" and "DM2" are off.
When the LEDs "DM1" and "DM2" are lit or flashing, you need to press the
"SELECT/SET" button several times briefly until the "DM1" and "DM2" LEDs are off.
If you do not press the "SELECT/SET" button for longer than 1 minute, the device
automatically switches to display mode A.
2. Hold down the "SELECT/SET" button for 12 seconds.
After 9 seconds, the "DM1" and "DM2" LEDs start to flash for 3 seconds. At the same
time, the port LEDs light up one after the other.
If you release the button before the 12 seconds have elapsed, the reset is canceled.
In the configuration, you can enable or disable the button function.
SCALANCE XR-500
26Operating Instructions, 05/2017, A5E03275845-11
Description of the device
Defining the fault mask
Enabling/disabling the redundancy manager
Initial situation:
Result:
Initial situation:
Result:
3.2 SELECT/SET button
Using the fault mask, you specify an individual "good status" for the connected ports and the
power supply. Deviations from this status are displayed as errors/faults.
To define the fault mask, follow the steps below:
1. Change to display mode D.
Display mode D is active when the "DM1" and "DM2" LEDs are lit green.
If a different display mode is active, press the "SET/SELECT" button several times briefly,
until the "DM1" and "DM2" LEDs are lit green.
2. Hold down the "SELECT/SET" button for 5 seconds.
After 2 seconds, the "DM1" and "DM2" LEDs start to flash for 3 seconds. At the same
time the port LEDs go on one after the other.
After you have pressed the button for 5 seconds, the current settings are stored as the
"good status".
If you release the button before the 5 seconds are up, the previous fault mask is retained.
To enable/disable the redundancy manager, follow the steps below:
1. Change to display mode B.
Display mode B is active when the "DM1" LED is lit green and the and "DM2" LED is off.
If a different display mode is active, press the "SET/SELECT" button several times briefly,
until the "DM1" LED is lit green and the "DM2" LED is off.
2. Hold down the "SELECT/SET" button for 5 seconds.
After 2 seconds, the "DM1", "DM2" and "RM" LEDs start to flash for 3 seconds. At the
same time, the port LEDs light up one after the other.
If you release the button before the 5 seconds have elapsed, the action is canceled.
The result of the action depends on the initial situation:
–
The redundancy manager and media redundancy are disabled.
After enabling the redundancy manager, media redundancy is also enabled.
–
The redundancy manager and media redundancy are enabled.
After disabling the redundancy manager, media redundancy remains enabled.