SoftJACE Windows security notes

Before beginning SoftJACE installation, it is strongly recommended you download and install the latest Windows security patches from Microsoft, for the specific Windows OS running on your SoftJACE. Specific details are outside the scope of this startup document.

CautionTypically, installation of Microsoft Windows OS updates and/or security patches ends with a system reboot. Although this does not matter for a new SoftJACE (without a working station), please keep this in mind whenever installing future Windows operating system updates—using the NiagaraAX backup feature, always backup your SoftJACE to your Workbench PC first, before installing updates!

A firewall program on the SoftJACE is typically enabled (e.g. the Windows Firewall). SoftJACE platform commissioning often requires firewall adjustments—see the Platform daemon port section.

Platform daemon port

After installing the AX SoftJACE software, in order to initially commission the SoftJACE, TCP port 3011 (and/or if using SSL, TCP port 5011) must be accessible. This is needed for a platform connection from another Workbench PC, so it may run the Commissioning Wizard.

Figure 2 shows a “NiagaraPlatform” inbound rule that has been added to the Windows Firewall in Windows 7 Professional (Advanced Settings) on a SoftJACE, configured to open TCP ports 3011 and 5011.

Figure 2. Windows 7 Firewall


Windows 7 Firewall

Note that during SoftJACE commissioning, you may elect to change this port from 3011 (or if using SSL, 5011) to another port number (see Administer the SoftJACE platform). If you do this, afterwards be sure to adjust any firewall accordingly.

Additionally, during the commissioning process, other ports also typically need to be opened in the same way to allow proper station operation. See Software port notes, which includes a table of commonly used ports in NiagaraAX.