Tia Portal Cloud Connector How To en Us
Tia Portal Cloud Connector How To en Us
Tia Portal Cloud Connector How To en Us
Cloud Connector 1
System requirements 2
Providing a virtual machine
SIMATIC (VM) 3
Using the virtual machine
(VM) 4
Instructions on the TIA Portal Cloud
Connector
Operating Manual
10/2018
A5E44390452-AA
Legal information
Warning notice system
This manual contains notices you have to observe in order to ensure your personal safety, as well as to prevent
damage to property. The notices referring to your personal safety are highlighted in the manual by a safety alert
symbol, notices referring only to property damage have no safety alert symbol. These notices shown below are
graded according to the degree of danger.
DANGER
indicates that death or severe personal injury will result if proper precautions are not taken.
WARNING
indicates that death or severe personal injury may result if proper precautions are not taken.
CAUTION
indicates that minor personal injury can result if proper precautions are not taken.
NOTICE
indicates that property damage can result if proper precautions are not taken.
If more than one degree of danger is present, the warning notice representing the highest degree of danger will be
used. A notice warning of injury to persons with a safety alert symbol may also include a warning relating to property
damage.
Qualified Personnel
The product/system described in this documentation may be operated only by personnel qualified for the specific
task in accordance with the relevant documentation, in particular its warning notices and safety instructions. Qualified
personnel are those who, based on their training and experience, are capable of identifying risks and avoiding
potential hazards when working with these products/systems.
Proper use of Siemens products
Note the following:
WARNING
Siemens products may only be used for the applications described in the catalog and in the relevant technical
documentation. If products and components from other manufacturers are used, these must be recommended or
approved by Siemens. Proper transport, storage, installation, assembly, commissioning, operation and
maintenance are required to ensure that the products operate safely and without any problems. The permissible
ambient conditions must be complied with. The information in the relevant documentation must be observed.
Trademarks
All names identified by ® are registered trademarks of Siemens AG. The remaining trademarks in this publication
may be trademarks whose use by third parties for their own purposes could violate the rights of the owner.
Disclaimer of Liability
We have reviewed the contents of this publication to ensure consistency with the hardware and software described.
Since variance cannot be precluded entirely, we cannot guarantee full consistency. However, the information in
this publication is reviewed regularly and any necessary corrections are included in subsequent editions.
Index...........................................................................................................................................................55
The use of virtual machines together with the TIA Portal Cloud Connector in a private cloud
offers the following advantages:
● Support for modern private cloud infrastructures:
– Full scalability
– No installation on individual workstations required
– Central maintenance and administration of the TIA Portal in the VM
– Central data storage for projects and libraries
● Cross-network online access to PLCs and HMI devices
● Secure connection via HTTPS (Windows 8.1 and higher)
● Support for all local interfaces of workstations
● Quick access to different versions of the TIA Portal
● More efficient utilization of available licenses
● Easy remote maintenance of machines
You have the option of creating a template from a pre-configured VM. You can derive new
VMs from this template. This can save you work in installation and configuration.
Note
TIA Portal Cloud Connector
The TIA Portal Cloud Connector is only intended for engineering tasks with the TIA Portal.
You can find additional information at Siemens Industry Online Support under https://
support.industry.siemens.com/cs/document/109739390/ (https://
support.industry.siemens.com/cs/ww/en/view/109739390).
See also
User interface of the TIA Portal Cloud Connector (Page 7)
Application cases of the TIA Portal Cloud Connector (Page 17)
Special considerations when working in a virtual machine (Page 19)
Using certificates (Page 20)
System requirements (Page 23)
Providing a virtual machine (VM) (Page 29)
Using the virtual machine (VM) (Page 37)
TIA Portal Cloud Connector in the information area of the Windows taskbar
After starting the TIA Portal Cloud Connector, you will find an icon for the Cloud Connector in
the information area of Windows taskbar. When you right-click on the icon, the menu of the
TIA Portal Cloud Connector opens.
The following figure shows the icon of the TIA Portal Cloud Connector in the information area
of the Windows taskbar when the communication endpoints are disabled:
The icon varies in color depending on the status of the communication endpoints.
The following figure shows the menu in the information area with the configured communication
role "Remote device":
You can make all settings that are required for a connection in the different tabs.
The table below provides an overview of the possible settings and the existing buttons for the
communication role "Remote device":
The table below provides an overview of the possible settings and the existing buttons for the
communication role "User device":
The following figure shows the status display in the "User device" communication role:
See also
Basics of working with the TIA Portal Cloud Connector (Page 5)
Application cases of the TIA Portal Cloud Connector (Page 17)
Special considerations when working in a virtual machine (Page 19)
Using certificates (Page 20)
System requirements (Page 23)
Network 1
Private Cloud
VM
TIA Portal
TIA Portal
Cloud Connector
Tunnel
RDP
TIA Portal
Cloud Connector
PG/PC PLC/HMI
Network 1
Private Cloud
VM
TIA Portal
TIA Portal
Production cell 1
Cloud Connector
IPC
Production cell 2
PG/PC
Network 1 Network 2
Private Cloud
VM
TIA Portal
TIA Portal
Production cell 1
Cloud Connector
IPC
Production cell 2
PG/PC
See also
Basics of working with the TIA Portal Cloud Connector (Page 5)
User interface of the TIA Portal Cloud Connector (Page 7)
Special considerations when working in a virtual machine (Page 19)
Using certificates (Page 20)
System requirements (Page 23)
Providing a virtual machine (VM) (Page 29)
Using the virtual machine (VM) (Page 37)
Simulation
In order to simulate a PLC program, you must first disable the TIA Portal Cloud Connector.
However, this is not necessary for the simulation of HMI devices.
See also
Basics of working with the TIA Portal Cloud Connector (Page 5)
User interface of the TIA Portal Cloud Connector (Page 7)
Application cases of the TIA Portal Cloud Connector (Page 17)
Using certificates (Page 20)
System requirements (Page 23)
Providing a virtual machine (VM) (Page 29)
Using the virtual machine (VM) (Page 37)
See also
Basics of working with the TIA Portal Cloud Connector (Page 5)
User interface of the TIA Portal Cloud Connector (Page 7)
Application cases of the TIA Portal Cloud Connector (Page 17)
Special considerations when working in a virtual machine (Page 19)
Creating certificate for data encryption (Page 42)
Exporting certificate for data encryption (Page 43)
Importing certificate for data encryption (Page 44)
Selecting certificate for data encryption (Page 45)
Creating certificate for user authentication (Page 46)
Exporting certificate for user authentication (Page 47)
Importing certificate for user authentication (Page 48)
Adding certificate for user authentication (Page 49)
Selecting certificate for user authentication (Page 50)
Removing certificate for user authentication (Page 51)
Note
Please note the following:
● The TIA Portal Cloud Connector cannot be used in 32-bit operating systems.
● Make sure that the operating system is always up to date. To do this, perform all critical
Windows updates in a timely manner.
● If SIMATIC NET is installed in a version smaller than 15.01, the TIA Portal Cloud Connector
cannot be activated.
● Name resolution in the network only functions correctly if in the Windows Control Panel >
Network and Sharing Center > Advanced sharing settings, you select either the option "Turn
on network discovery" or the option "Turn on file and printer sharing". Alternatively, you can
also use an external name server.
You can either include the License Key in the installation or transfer it using the Automation
License Manager after the installation.
See also
System requirements for VM (Page 24)
Licenses (Page 26)
Note
Operation of the TIA Portal Cloud Connector with an existing installation of SIMATIC NET
The TIA Portal Cloud Connector cannot be enabled when SIMATIC NET is installed in the VM.
Depending on the selected software package, various guest operating systems are supported
within the VM:
Guest operating SIMATIC STEP 7 SIMATIC STEP 7 SIMATIC WinCC SIMATIC WinCC SIMATIC WinCC
system Basic Professional Basic Professional Advanced
Windows Server X X X X X
2012 R2 StdE (full
installation) (64-
bit)
Windows Server X X X X X
2016 Standard
(full installation)
(64-bit)
Windows 7 Home X - X - -
Premium SP1 (64-
bit)
Windows 7 Profes‐ X X X X X
sional SP1 (64-bit)
Windows 7 Enter‐ X X X X X
prise SP1 (64-bit)
Windows 7 Ulti‐ X X X X X
mate SP1 (64-bit)
Windows 10 Home X - - X -
Version 1703 (64-
bit)
Windows 10 Pro X X X X X
Version 1703 (64-
bit)
Windows 10 Enter‐ X X X X X
prise Version 1703
(64-bit)
Windows 10 Enter‐ X X X X X
prise 2016 LTSB
(64-bit)
Windows 10 IoT X X X X X
Enterprise 2015
LTSB (64-bit)
Windows 10 IoT X X X X X
Enterprise 2016
LTSB (64-bit)
- Operating system is not supported.
X operating system is supported
Note
Please note the following:
● 32-bit operating systems are not supported.
● The same hardware requirements apply to the guest operating systems as to the respective
TIA products.
● The SIMATIC USB prommer is not supported.
● If you want to use SD cards in the VM, you first need to integrate them in the VM as a
removable medium. Refer to the help for your virtualization platform for the exact procedure.
● Make sure that the operating system is always up to date. To do this, perform all critical
Windows updates in a timely manner.
See also
System requirements PG/PC (Page 23)
Licenses (Page 26)
2.3 Licenses
When floating license keys are used, the licenses can be provided by a license key server.
See also
System requirements PG/PC (Page 23)
System requirements for VM (Page 24)
Using a license key server (Page 32)
Icon Meaning
The license allocation is disabled.
The license allocation is enabled, but no licenses are currently being used by the remote
device on the user device.
The license allocation is enabled and the remote device uses the licenses of the user device.
The data exchange between the TIA Portal and the SIMATIC automation hardware was
interrupted. The status display is shown to provide you with more details about the cause.
See also
Licenses (Page 26)
Using a license key server (Page 32)
3. If necessary, install any required optional packages, e.g. SIMATIC STEP 7 Safety
Advanced.
4. If required, install additional compatible software packages that should be available to all
users.
5. Configure the VM to meet your requirements.
6. Follow the instructions of your virtualization platform to create a template from the VM.
Result
You have created a VM template, which you can copy and pass along. Note, however, that
the required licenses must be available when you use a copy of the template. You can use a
separate license server (VM) to manage your licenses.
See also
Saving user and project settings centrally (Page 30)
Using a license key server (Page 32)
Installing the TIA Portal Cloud Connector in the VM (Page 32)
UserSettings
User1
User2
User3
"User1", "User2" and "User3" are the user names of the VM users here. The path of the
environment variable is then "\\MyServer\UserSettings\%USERNAME%".
"MyServer" is an available computer in the network in this example. "%USERNAME%" is the
tag for the user name. This tag is resolved when the user logs on and the environment variable
is changed accordingly. If this is done for multiple users, it is advisable to save the script in the
Autostart folder. This environment variable is reset with every logon, and the storage location
for the settings is adapted to the logged on user.
Requirement
● All users have write access to the server areas that are to be used as new locations.
● The user-defined directories exist.
See also
Creating a new VM template (Page 29)
Using a license key server (Page 32)
Installing the TIA Portal Cloud Connector in the VM (Page 32)
Introduction
During the installation of the TIA Portal or the TIA Portal Cloud Connector, the Automation
License Manager (ALM) is installed as well. You need this for license transfer and handling.
You can find additional information on the Automation License Manager and setting up a
license server in the user documentation for Automation License Manager.
See also
Licenses (Page 26)
Allocating a license of the user device (Page 27)
Creating a new VM template (Page 29)
Saving user and project settings centrally (Page 30)
Installing the TIA Portal Cloud Connector in the VM (Page 32)
15.Click "Install".
Installation is started.
Note
If no license key is found during installation, you have the option of transferring it to your
PC. If you skip the license transfer, you can carry it out later with the Automation License
Manager.
Following installation, you receive a message indicating whether the installation was
successful.
16.You may be required to restart the computer. In this case, select the "Yes, restart my
computer now." option button. Then click "Restart".
17.If the computer does not reboot, click "Exit".
See also
Creating a new VM template (Page 29)
Saving user and project settings centrally (Page 30)
Using a license key server (Page 32)
Note
Please note the following:
● You need a valid license for the TIA Portal Cloud Connector.
● Settings in the Windows firewall: A prerequisite for an incoming connection is that the port
used in the TIA Portal Cloud Connector is entered in your firewall in the "Exceptions" tab
for the service "Siemens SCP Remote Connection". The default is "Any".
Procedure
To install the TIA Portal Cloud Connector, follow these steps:
1. Insert the installation medium in the appropriate drive or navigate to the installation file in
the file system of your computer.
You can find the installation file in the "Support" directory on the installation medium.
2. Double-click on the installation file "TIA Portal Cloud Connector_<Version>.exe".
The Windows user account control is displayed.
3. Confirm the user account control with "Yes".
The installation dialog opens.
4. Click "Next".
A selection of the available setup languages is displayed.
5. Select the desired setup language and click "Next".
The required files are unzipped and the next installation dialog opens.
6. Close any programs still running and click "Next".
The license conditions are displayed.
7. Accept the license conditions and click "Next".
The available programs and the memory requirements for installation are displayed.
8. Click "Next".
A dialog box opens showing an overview of the system settings that can be changed during
installation.
9. Select the check box to apply the changes.
10.Click "Next".
An overview of the programs to be installed is displayed.
11.Click "Install".
Installation is started.
12.You may be required to restart the computer. In this case, select the "Yes, restart my
computer now." option button. Then click "Finish".
See also
Configuring the TIA Portal Cloud Connector on the PG/PC (Page 38)
Configuring the TIA Portal Cloud Connector in the VM (Page 40)
Online connection via the TIA Portal Cloud Connector (Page 51)
Using the virtual machine (VM) offline (Page 52)
Note
Communication protocol
In order for your PG/PC to connect to the VM, you need to specify a communication protocol.
For security reasons, you should always use HTTPS as of Windows 8.1.
Result
Your PG/PC is now ready to communicate with the VM. Next, configure the TIA Portal Cloud
Connector in the VM.
See also
Installing the TIA Portal Cloud Connector on the PG/PC (Page 37)
Configuring the TIA Portal Cloud Connector in the VM (Page 40)
Online connection via the TIA Portal Cloud Connector (Page 51)
Using the virtual machine (VM) offline (Page 52)
Note
Communication protocol
You must specify the communication protocol that is going to be used so that a PG/PC can
establish a connection to the VM. For security reasons, you should always use HTTPS as of
Windows 8.1. You should also check the identity of the requesting connection partner before
you accept a connection.
8. Enter the IP address of the user device or select the "Automatic configuration" entry to have
the address determined automatically.
9. Enter the port through which communication is to be performed. The port must be identical
to the one specified on the user device.
10.Open the "General" tab again.
11.Click "Enable communication" in the "Cloud Connector Communication" area.
Result
The TIA Portal Cloud Connector is ready for communication. After activating both
communication partners, you can access the locally connected SIMATIC hardware (PLCs/
HMIs) from the user device.
See also
Installing the TIA Portal Cloud Connector on the PG/PC (Page 37)
Configuring the TIA Portal Cloud Connector on the PG/PC (Page 38)
Online connection via the TIA Portal Cloud Connector (Page 51)
Using the virtual machine (VM) offline (Page 52)
Procedure
To create a certificate for data encryption, follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the user device.
2. Select the "Configuration (user device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS endpoint" check box.
The buttons "Create" and "Select" are activated.
5. Click "Create".
The "TIA Portal Cloud Connector - Create certificate" dialog opens.
6. Enter a domain name or select the domain from the drop-down list.
Note
Use the "+" button to apply the domain to the domain list. Use the "-" button to remove a
domain from the domain list.
7. Click "Browse".
The "Save as" dialog opens.
8. Select a storage location and enter a file name for the certificate.
9. Click "Save".
10.Select the date as of which the certificate is to be valid.
11.Select the date as until which the certificate is to be valid.
12.Click "OK".
Result
The certificate is created and used for the HTTPS endpoint on the user device. In addition, it
is saved at the specified storage location as file with the file name extension ".cer"; from there
it can be copied to the remote device. The certificate is also added to the Windows certificate
store.
See also
Using certificates (Page 20)
Exporting certificate for data encryption (Page 43)
Importing certificate for data encryption (Page 44)
Selecting certificate for data encryption (Page 45)
Requirement
The certificate for data encryption has been created and is displayed under the HTTPS
endpoint of the user device.
Procedure
To export a certificate for data encryption, follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the user device.
2. Select the "Configuration (user device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS endpoint" check box.
The buttons "Create" and "Select" and "Export" are activated.
5. Click "Export".
The "Save as" dialog opens.
6. Select a storage location and enter a name for the certificate.
7. Click "Save".
Result
The currently used certificate for data encryption is saved at the specified storage location as
file with the file name extension ".cer".
See also
Using certificates (Page 20)
Creating certificate for data encryption (Page 42)
Importing certificate for data encryption (Page 44)
Selecting certificate for data encryption (Page 45)
Requirement
● The certificate for data encryption was created on the user device.
● The certificate for data encryption was copied to a local drive of the remote device.
Procedure
To import a certificate for data encryption to the TIA Portal Cloud Connector of the remote
device, follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the remote device.
2. Select the "Configuration (remote device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS settings" check box.
The buttons "Import" and "Select" are activated.
5. Click on "Import".
The "Open" dialog box opens.
6. Select the certificate file in the file system. You recognize the certificate files by their file
name extension ".cer".
7. Click "Open".
Result
The certificate is imported and it is used immediately for communication. The certificate is also
added to the Windows certificate store.
See also
Using certificates (Page 20)
Creating certificate for data encryption (Page 42)
Exporting certificate for data encryption (Page 43)
Selecting certificate for data encryption (Page 45)
Requirement
The certificate for data encryption has been created beforehand (user device) or imported
(remote device) and is available in the Windows certificate store.
Procedure
To select and use an existing certificate for data encryption from the Windows certificate store,
follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar.
2. Select the "Configuration (user device)" or "Configuration (remote device)" command from
the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS endpoint" check box (user device) or the "HTTPS settings" check box
(remote device).
The "Select" button becomes active.
5. Click "Select".
The "Windows Security" dialog opens and the available certificates are displayed.
6. Select a certificate. If necessary, you can display additional properties of the certificate.
7. Click "OK".
Result
The selected certificate is used for communication. The same certificate must be set on the
user device and the remote device for communication to take place.
See also
Using certificates (Page 20)
Creating certificate for data encryption (Page 42)
Exporting certificate for data encryption (Page 43)
Importing certificate for data encryption (Page 44)
Procedure
To create a certificate for user authentication, follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the remote device.
2. Select the "Configuration (remote device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS settings" check box.
The area for user authentication becomes active in the "Settings" tab.
5. Switch to the "Settings" tab.
6. Click "Create" in the "User authentication" area.
The "TIA Portal Cloud Connector - User authentication" dialog opens.
7. Enter a name for the new certificate in the "Certificate name" field.
8. Click "Browse".
The "Save as" dialog opens.
9. Select a storage location and enter a file name for the certificate.
10.Click "Save".
11.Select the date as of which the certificate is to be valid.
12.Select the date as until which the certificate is to be valid.
13.Click "OK".
Result
The certificate is created and used on the remote device. In addition, it is saved at the specified
storage location as file with the file name extension ".cer"; from there it can be copied to the
user device. The certificate is also added to the Windows certificate store.
See also
Using certificates (Page 20)
Exporting certificate for user authentication (Page 47)
Importing certificate for user authentication (Page 48)
Adding certificate for user authentication (Page 49)
Selecting certificate for user authentication (Page 50)
Removing certificate for user authentication (Page 51)
Requirement
The certificate for user authentication has been created on the remote device beforehand and
it is displayed in the "Settings" tab under "User authentication".
Procedure
To export a certificate for user authentication, follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the remote device.
2. Select the "Configuration (remote device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS settings" check box.
The area for user authentication becomes active in the "Settings" tab.
5. Switch to the "Settings" tab.
6. Click "Export" in the "User authentication" area.
The "Save as" dialog opens.
7. Select a storage location and enter a name for the certificate.
8. Click "Save".
Result
The currently used certificate for user authentication is saved at the specified storage location
as file with the file name extension ".cer".
See also
Using certificates (Page 20)
Creating certificate for user authentication (Page 46)
Importing certificate for user authentication (Page 48)
Adding certificate for user authentication (Page 49)
Selecting certificate for user authentication (Page 50)
Removing certificate for user authentication (Page 51)
Requirement
● The certificate for user authentication was created on the remote device.
● The certificate for user authentication was copied to a local drive of the remote device.
Procedure
To import a certificate for user authentication, follow these steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the user device.
2. Select the "Configuration (user device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS endpoint" check box.
The area for user authentication becomes active in the "Settings" tab.
5. Switch to the "Settings" tab.
6. Click "Import" in the "User authentication" area.
The "Open" dialog box opens.
7. Select the certificate file in the file system. You recognize the certificate files by their file
name extension ".cer".
8. Click "Open".
Result
The certificate is imported and added to the list of trusted certificates. You can use this list to
specify the remote devices with which the user device may communicate. The addressed
remote device must have the same certificate for user authentication as the user device.
See also
Using certificates (Page 20)
Creating certificate for user authentication (Page 46)
Exporting certificate for user authentication (Page 47)
Adding certificate for user authentication (Page 49)
Selecting certificate for user authentication (Page 50)
Removing certificate for user authentication (Page 51)
Requirement
The required certificate is available in the Windows certificate store.
Procedure
To add a certificate for user authentication from the Windows certificate store, follow these
steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the user device.
2. Select the "Configuration (user device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS endpoint" check box.
The area for user authentication becomes active in the "Settings" tab.
5. Switch to the "Settings" tab.
6. Click "Add" in the "User authentication" area.
The "Select certificate" dialog opens and the available certificates are displayed.
7. Select a certificate. If necessary, you can display the certificate.
8. Click "OK".
Result
The certificate from the Windows certificate store is added to the list of trusted certificates. You
can use this list to specify the remote devices with which the user device may communicate.
The addressed remote device must have the same certificate for user authentication as the
user device.
See also
Using certificates (Page 20)
Creating certificate for user authentication (Page 46)
Exporting certificate for user authentication (Page 47)
Importing certificate for user authentication (Page 48)
Selecting certificate for user authentication (Page 50)
Removing certificate for user authentication (Page 51)
Requirement
The certificate for user authentication has been created beforehand and is available in the
Windows certificate store.
Procedure
To select a certificate for user authentication from the Windows certificate store, follow these
steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the remote device.
2. Select the "Configuration (remote device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS settings" check box.
The area for user authentication becomes active in the "Settings" tab.
5. Switch to the "Settings" tab.
6. Click "Select" in the "User authentication" area.
The "Windows Security" dialog opens and the available certificates are displayed.
7. Select a certificate. If necessary, you can display additional properties of the certificate.
8. Click "OK".
Result
The certificate is used on the remote device for user authentication. If necessary, it can be
exported to exchange it with the user device.
See also
Using certificates (Page 20)
Creating certificate for user authentication (Page 46)
Exporting certificate for user authentication (Page 47)
Importing certificate for user authentication (Page 48)
Adding certificate for user authentication (Page 49)
Removing certificate for user authentication (Page 51)
Procedure
To remove a certificate for user authentication from the list of trusted certificates, follow these
steps:
1. To open the TIA Portal Cloud Connector, right-click on the status icon of the TIA Portal
Cloud Connector in the information area of the Windows taskbar on the user device.
2. Select the "Configuration (user device)" command from the shortcut menu.
The configuration window of the TIA Portal Cloud Connector opens.
3. Switch to the "Protocol" tab.
4. Select the "HTTPS endpoint" check box.
The area for user authentication becomes active in the "Settings" tab.
5. Switch to the "Settings" tab.
6. Select the certificate you want to remove in the list of trusted certificates.
7. Click "Remove" in the "User authentication" area.
Result
The certificate is removed from the list of trusted certificates. A connection to the remote device
which uses this certificate for user authentication is no longer possible.
See also
Using certificates (Page 20)
Creating certificate for user authentication (Page 46)
Exporting certificate for user authentication (Page 47)
Importing certificate for user authentication (Page 48)
Adding certificate for user authentication (Page 49)
Selecting certificate for user authentication (Page 50)
Introduction
If you use the TIA Portal Cloud Connector for the connection to the hardware, working in the
TIA Portal is no different from a normal online connection to the hardware. Once you have
enabled tunnel communication, you can therefore compile, load or monitor your data as usual.
For more information about establishing an online connection and working in online mode,
refer to the online help for the TIA Portal.
Communication is enabled but there is no data exchange between the TIA Portal
and the SIMATIC automation hardware.
Communication is enabled and data exchange between the TIA Portal and the
SIMATIC automation hardware is taking place.
The data exchange between the TIA Portal and the SIMATIC automation hard‐
ware was interrupted. The status display is shown to provide you with more
details about the cause.
Status display
In the information area in the Windows taskbar, you can show a status display on both the
remote device as well as on the user device. This opens the window "TIA Portal Cloud
Connector - Remote device" or "TIA Portal Cloud Connector - User device." This window
provides you with all the information, warnings and error messages of the TIA Portal Cloud
Connector. In addition, it shows how long a TCP or HTTPS connection has been running.
You can hide the status bar at any time.
See also
Installing the TIA Portal Cloud Connector on the PG/PC (Page 37)
Configuring the TIA Portal Cloud Connector on the PG/PC (Page 38)
Configuring the TIA Portal Cloud Connector in the VM (Page 40)
Using the virtual machine (VM) offline (Page 52)
You do not need the TIA Portal Cloud Connector for every type of connection. The following
scenarios may occur:
● If your hardware is connected directly to your PG/PC via an Ethernet or USB adapter, you
can set a "Bridged" network connection.
The TIA Portal Cloud Connector must be disabled in the VM with this connection type.
● If your hardware is attached to the network via its own USB or network adapter, you can
use the "Host-only" option. In this case, the TIA Portal Cloud Connector must be enabled
in the VM so that you can also use the PROFIBUS interface.
After using the VM locally, you can copy it back to the remote device.
Requirement
● The appropriate software for starting the VM, for example, VMware Workstation, is installed
on your PG/PC.
● Automation License Manager is installed on the PG/PC.
Transferring the virtual machine (VM) from the remote device to the PG/PC
To work with the virtual machine offline, follow these steps:
1. Copy the VM to your local programming device/PC. The exact procedure depends on the
virtualization environment used. Refer to the corresponding documentation if you need help.
2. Open the Automation License Manager and transfer the required licenses for the SIMATIC
software in the TIA Portal to your local drive.
3. Copy all required project data from the server to your local drive.
4. Start the VM and configure the network connection. Read the notes at the top of the page.
Transferring the virtual machine (VM) from the PG/PC to the remote device
To transfer the virtual machine back to the remote device, follow these steps:
● Copy the VM from your local PG/PC to the remote device. The exact procedure depends
on the virtualization environment used. Refer to the corresponding documentation if you
need help.
● Open the Automation License Manager and transfer the licenses from your local drive back
to the ALM Server.
● Copy all required project data from your local drive back to the server.
See also
Installing the TIA Portal Cloud Connector on the PG/PC (Page 37)
Configuring the TIA Portal Cloud Connector on the PG/PC (Page 38)
Configuring the TIA Portal Cloud Connector in the VM (Page 40)
Online connection via the TIA Portal Cloud Connector (Page 51)
C U
Certificate, 20 User interface, 7
Adding, 49
Creating, 42, 46
Exporting, 43, 47 V
Importing, 44, 48
VM
Removing, 51
Configuring, 40
Selecting, 45, 50
Configuration, 7
Configuring the HTTPS connection, 39, 41
Configuring the TCP connection, 38, 40
I
Info area, 7
O
Online connection, 51
P
PG/PC
Configuring, 38
S
Simulation, 19
Status display, 14, 52
Status symbols, 52
Support packages, 19
T
Taskbar, 7
TIA Portal Cloud Connector
Application case, 17
Basics, 5
Certificate, 20
Configuring, 7
Online connection, 51
Provision, 6
Status display, 14
User interface, 7