Skip to content

Validate S7CommPlus TLS (V2/V3) against real hardware #793

Description

@gijzelaerr

Problem

Newer S7-1200/1500 firmware with "secure PG/PC communication" enabled requires TLS. Both thomas-v2 and lircy support TLS connections. We have TLS code on the fix-tls-layering-v2 branch but it has not been validated against real TLS-enabled hardware.

Scope

  • Test TLS handshake against a real S7-1500 with secure communication enabled
  • Validate V2 (integrity + anti-replay) and V3 (TLS) protocol paths
  • Ensure certificate handling works (Siemens uses per-device certs)

Priority

Critical — without TLS, S7CommPlus is unusable on modern firmware configurations.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions