Overview
The integration of a SIMATIC S7-300 CPU (such as the 313C-2DP or 314C-2DP) with a SIMATIC TP170B operator panel over PROFIBUS DP is one of the most common field configurations in legacy Siemens automation. The TP170B runs Windows CE and is programmed with WinCC Flexible (or WinCC Flexible 2008 SP5 for newer firmware), while the S7-300 is configured in STEP 7 V5.x via the NetPro and HW Config editors. Although the topology is straightforward, a number of sequencing pitfalls produce misleading error messages—most notably the "Not all components are downloaded… S7RTM is installed" dialog and intermittent panel freezes during runtime.
This reference consolidates the procedure into a deterministic order of operations, with verification checkpoints at each stage. It also documents the root cause of the S7RTM prompt, the role of the TP170B Windows CE Transfer Settings applet, and the typical node address layout for an S7-300 (MPI = 2 default) versus TP170B (PROFIBUS = 1 default) versus PC adapter (address = 0 typical).
System Topology and Default Addresses
Before any software configuration, document the physical bus addresses. The TP170B, the S7-300 CPU, and the engineering PC each occupy a single PROFIBUS/MPI node. Mixing MPI and PROFIBUS nodes on the same segment is permitted at 187.5 kbps but must be planned.
| Device | Default Address | Editable Location | Recommended for First Commissioning |
|---|---|---|---|
| S7-300 CPU (e.g., 313C-2DP) | MPI = 2 | HW Config > Properties > MPI/DP Interface | MPI = 2 (do not change until HW Config is downloaded) |
| TP170B (Basic Panel) | MPI/DP = 1 | Windows CE Control Panel > Transfer > S7 Transfer Settings | DP = 1 (matches factory) |
| PC Adapter (USB / MPI / PCMCIA) | 0 (PG/PC default) | PG/PC Interface > Properties | 0 (must differ from all bus nodes) |
| CP343-1 Ethernet (if used for PG routing) | IP assigned | HW Config > CP343-1 Properties > Ethernet | Set after HW Config download via MPI |
Prerequisites
- STEP 7 V5.5 + SP2 or higher with NetPro. TIA Portal V13+ may be used if the TP170B project is migrated to WinCC (TIA Portal); however, WinCC Flexible remains the canonical engineering tool for the TP170B.
- WinCC Flexible 2008 SP5 (or WinCC Flexible 2008 SP3 minimum) installed with the TP170B option package.
- PC Adapter USB A2 (order number 6GK1571-1AA00) or CP5611/CP5613 MPI/DP card for the engineering PC.
- PROFIBUS cable with PG socket on the CPU end so the PC adapter can remain inserted in parallel with the TP170B during commissioning.
- 24 V DC power supply for the TP170B (separate from the S7-300 backplane).
- TP170B firmware compatible with WinCC Flexible version; mismatched image versions cause silent aborts in transfer. Verify from the panel: Start > Settings > Control Panel > OP > Version.
Hardware Configuration in STEP 7 HW Config
- Open SIMATIC Manager and create a new S7-300 station. Insert the rack (0), the CPU (e.g., 6ES7 313-6CF03-0AB0 for 313C-2DP), and any I/O modules.
- Double-click the CPU X2 (MPI/DP) interface. In the Properties > MPI/DP Interface dialog select MPI for the first download. Confirm Address = 2.
- If a CP343-1 (e.g., 6GK7 343-1EX30-0XE0) is used for Ethernet programming or S7 routing, insert it on slot 4 or higher. Assign a fixed IP address only after the first successful MPI download—setting an IP in the offline project that disagrees with the online CPU halts S7 routing.
- Save and compile HW Config. The system data (SDB) is generated automatically.
- Connect the PC adapter to the CPU's MPI/DP port. Open Set PG/PC Interface and choose PC Adapter (MPI). Click Download to Target System > Hardware Configuration (or use PLC > Download to Target System).
- After the CPU stops briefly (RUN LED flashes), confirm the download and wait for the RUN/STOP LED to return to RUN.
Configuring the PROFIBUS Subnet in NetPro
After the CPU is online-capable, switch the X2 interface from MPI to PROFIBUS. This is required before you can add the TP170B to the bus topology.
- In HW Config, reopen the CPU's MPI/DP interface properties. Change Type from MPI to PROFIBUS. Set Address = 3 (avoid 0, 1, 2). Accept Highest PROFIBUS Address = 126 and Transmission Rate = 1.5 Mbps unless the TP170B or other slaves dictate otherwise.
- Click New under Subnet and create the PROFIBUS(1) subnet with the same baud rate.
- Open NetPro from the SIMATIC Manager toolbar. The SIMATIC 300 station appears on the left.
- Drag a SIMATIC HMI Station from the catalog onto the bus. Assign the TP170B variant (e.g., 6AV6 647-0AA11-3AX0).
- Right-click the HMI station's MPI/DP port > Object Properties > Interface. Set Type = PROFIBUS, Address = 1 (or any unused value different from CPU and PC).
- Right-click the connection line between the CPU and the HMI station > Insert HMI Connection. Confirm the connection partner is the S7-300 station and the slot is the CPU.
- Compile NetPro (Network > Compile and Check All). If the CPU has its PROFIBUS address set correctly online, the connection will be activated without download errors.
Resolving the "S7RTM is Installed" Error
The dialog "Not all components are downloaded. If S7RTM is installed, set the option 'S7RTM is installed' in the 'object properties' of PC station SIMATIC HMI Station, in the 'configuration' tab" appears when the operator attempts to download the entire PC station configuration from NetPro. The root cause is procedural, not a configuration error.
| Symptom | Root Cause | Correct Action |
|---|---|---|
| S7RTM dialog on download | NetPro download targets the PC station configuration; the TP170B is configured as an HMI station with no valid S7RTM (Siemens Runtime) component on the engineering PC. | Do not download the HMI station from NetPro. Transfer only the WinCC Flexible project directly to the TP170B. |
| "Cannot reach partner" with MPI Adapter set | Adapter baud rate differs from the bus (e.g., 1.5 Mbps selected, bus is 187.5 kbps). | Match adapter baud rate to the PROFIBUS network; auto-detect on first connection. |
| TP170B freezes after a few button presses | PROFIBUS cable fault, missing termination, or mismatched GSD version. | Check bus termination (ON at both physical ends only), verify shield bonding, swap cable. If persistent, the panel itself may have a hardware fault. |
| PLC loses IP address when HMI connects via MPI | Wrong interface on TP170B configured as MPI; bus collision on address 2. | Ensure TP170B DP address ≠ CPU MPI/DP address. |
For a TP170B integrated into a STEP 7 project, the correct download flow is split:
- Highlight the SIMATIC 300 station in NetPro (not the HMI station). Press the Download icon. This transfers the S7 program and connection configuration to the CPU.
- Switch to WinCC Flexible. Open the TP170B project and transfer via the > menu: Project > Transfer > Transfer (or the > icon with the small arrow).
- Select MPI/DP as the transfer channel, set the station address to the TP170B's PROFIBUS address (1 in this topology), and click Transfer.
TP170B Transfer Settings on Windows CE
The TP170B must be told which channel and address to listen on. This is set on the device, not in WinCC Flexible.
- Power on the TP170B. Touch Start > Settings > Control Panel (the gear icon).
- Open Transfer. The first applet is Channel: select Enable Channel for MPI/DP. Disable channels that are not in use to avoid handshake collisions.
- Open S7 Transfer Settings. Set:
- Network: MPI/DP
- Station Address: 1 (or whatever is configured in NetPro)
- Highest Station Address: 126
- Transmission Rate: 1.5 Mbps (match the CPU's PROFIBUS setting exactly)
- Remote Control: Enable (recommended so the panel automatically accepts transfers when WinCC Flex initiates)
- Tap OK and close the Control Panel. The TP170B persists these settings in non-volatile memory.
First WinCC Flexible Download
- Open the TP170B project in WinCC Flexible. From the menu Project > Transfer > Transfer Settings, configure:
- Mode: MPI/DP
- Station Address: 1 (TP170B)
- PG/PC Interface: PC Adapter (MPI) — even though you are talking DP, the adapter driver is named PC Adapter (MPI) and supports DP at matching baud.
- Click Transfer. If the TP170B is in Remote Control mode, the project loads automatically and the panel reboots into runtime. If not, accept the prompt on the panel within the configured wait time (default 30 s).
- After the transfer, verify on the panel: the configured startup screen appears and tag connections (e.g., a button toggling a bit in the CPU) respond within one PROFIBUS cycle (~10 ms at 1.5 Mbps).
Verification Procedures
After commissioning, run the following sanity checks before handing the machine to production.
| Check | Procedure | Pass Criterion |
|---|---|---|
| CPU online visibility | STEP 7 > Accessible Nodes or PLC > Online > Diagnose Hardware | CPU appears with PROFIBUS address 3 and a green status icon. |
| Connection status | NetPro > right-click the HMI connection > Connection Status | Status = Established; no S7 connection error code (e.g., 0x031E, 0x0130). |
| Tag polling | WinCC Flex online test mode (Tools > Tag Simulation) | Tags update within one bus cycle; no quality code 0x0040 (Bad_CommunicationError). |
| PROFIBUS diagnostics | PLC > Module Information > PROFIBUS | Bus error count < 10 since last power-up; slave 1 (TP170B) reports DIAG = OK. |
| Panel runtime stability | Press buttons repeatedly for 5 minutes | No freeze; no watchdog reset; CPU does not report DP slave failure. |
Common S7 Connection Error Codes
When the connection between WinCC Flexible and the CPU fails, the panel logs an S7 error code. Use this mapping to triage.
| Hex Code | Meaning | Likely Cause | Action |
|---|---|---|---|
| 0x0001 | Resource error | Too many HMI connections on the CPU | Reduce active connections; 313C-2DP supports max 8. |
| 0x0130 | Partner not reachable | Wrong PROFIBUS address or cabling | Verify node addresses; check bus termination. |
| 0x031E | Connection setup failed | NetPro connection not downloaded to CPU | Re-download NetPro with the SIMATIC 300 station highlighted. |
| 0x03FF | Internal error | FW mismatch between WinCC Flexible image and TP170B firmware | Re-image TP170B or update WinCC Flexible to compatible SP. |
Hardware Fault Symptom: Panel Freeze
A TP170B that loads a project, responds to the first several operator inputs, then locks up and requires power cycling is a classic signature of either:
- PROFIBUS physical layer fault — missing termination, broken shield, or oxidized connector pins. Replace the bus cable, ensure terminators are ON only at the two physical ends, and verify shield is bonded to ground at one point.
- TP170B hardware failure — flash memory degradation or power supply weakness. If the bus checks clean and the fault persists, the panel itself is defective and must be replaced.
Documented field experience confirms the second root cause: swapping the TP170B for a known-good unit of the same order number (6AV6 647-0AA11-3AX0 or equivalent variant) resolves the freeze immediately, while the original CPU, program, and bus remain unchanged.
Migrating to TIA Portal (Optional)
For new deployments, consider migrating the TP170B project to TIA Portal V16+ with the Basic Panels HMI package. The TIA Portal PROFIBUS HMI connection guide describes the equivalent workflow in the Devices & Networks editor. The legacy TP170B is supported only via WinCC Flexible SP3 onward, so the migration is one-way: import the WinCC Flexible project, convert screens, recompile, and transfer. Connection parameters remain identical: PROFIBUS subnet, master address (CPU), slave address (TP170B), and baud rate.
For hardware diagnostics after a CPU replacement, the SiePortal article Connecting to S7-300 by Profibus recommends uploading the HW Config from the CPU (HW Config > PLC > Upload Station to PG) to recover the project, then reading the diagnostic buffer via PLC > Module Information > Diagnostic Buffer for PROFIBUS slave fault entries.
Troubleshooting Matrix
| Symptom | First Check | Second Check | Resolution |
|---|---|---|---|
| S7RTM download dialog | Which station is selected in NetPro? | Are you attempting to download the HMI station? | Download only the S7-300 station; transfer the HMI project via WinCC Flexible. |
| Transfer dialog closes immediately | TP170B Transfer applet Remote Control setting | Is the channel enabled? | Enable Remote Control and the MPI/DP channel on the panel. |
| PLC loses IP after HMI connects | TP170B address | Address collision with CPU MPI default (2) | Reassign TP170B to address 1; verify CPU remains on PROFIBUS 3. |
| Button works a few times then freezes | PROFIBUS cable and termination | Swap TP170B hardware | Replace faulty TP170B; confirm CPU diagnostics buffer clean. |
| First download fails over PROFIBUS | Has HW Config ever been downloaded? | CPU X2 interface type | Switch to MPI for first HW Config download, then switch X2 to PROFIBUS. |
Field-Proven Commissioning Checklist
- Verify all node addresses are unique (CPU, HMI, PC adapter).
- Confirm bus termination is enabled only at the two physical ends.
- Match baud rate across CPU, HMI, and PC adapter.
- Download HW Config over MPI first; switch to PROFIBUS only after successful online connection.
- Download NetPro with the S7-300 station selected (not the HMI station).
- Configure the TP170B Transfer applet on the device (Channel, Address, Remote Control).
- Transfer the WinCC Flexible project using MPI/DP transfer channel.
- Validate with tag polling, button test, and PROFIBUS diagnostics buffer.
- If freezes occur after a few operations, replace the TP170B before chasing software faults.
FAQ
Why does STEP 7 prompt "S7RTM is installed" when I try to download NetPro?
The prompt appears when you select the SIMATIC HMI Station in NetPro and attempt to download it as a PC station. The TP170B project must be transferred via WinCC Flexible, not NetPro. Highlight the SIMATIC 300 station instead and download only the CPU connection data; then use WinCC Flexible > Project > Transfer to push the panel image.
What is the default MPI address on an S7-300 CPU and can I change it?
Default MPI address is 2. It is editable in HW Config under Properties > MPI/DP Interface. Change it only after the first successful HW Config download, otherwise you may lock yourself out of the CPU if you forget the new address.
Can I perform the first HW Config download over PROFIBUS DP?
No. A virgin S7-300 CPU is not yet a configured DP slave and will not respond on a PROFIBUS address. Use the MPI interface on the same physical port for the first download, then switch the port type to PROFIBUS in HW Config and re-download.
Why does the TP170B freeze after a few button presses?
Two causes are common: PROFIBUS physical layer fault (cable, termination, or shielding) or TP170B hardware failure. Check the CPU's diagnostic buffer for DP slave failure entries; if the bus is clean and the buffer shows no errors, replace the TP170B.
How do I make the TP170B auto-accept a WinCC Flexible transfer?
On the panel, open Start > Settings > Control Panel > Transfer, enable the MPI/DP channel, and turn on Remote Control. In S7 Transfer Settings, verify the station address and baud rate match the CPU's PROFIBUS configuration, then save and close the Control Panel.
Where do I configure the HMI connection in TIA Portal for a TP170B?
The TIA Portal PROFIBUS HMI connection guide describes selecting the PROFIBUS interface in the Devices & Networks editor and binding the HMI connection to the CPU's DP interface. Node addressing and baud rate follow the same rules as STEP 7 classic.