Configuring SCALANCE W720/W760 with TIA Portal V13 SP1

David Krause13 min read
Industrial NetworkingSiemensTutorial / How-to
Licensed PE Working through this on a live machine? A Maine-licensed engineer can take it from here — included with IMD hardware, by the hour for everything else. Book an engineer

Overview

The SCALANCE W720 (client) and W760 (access point) family are industrial IEEE 802.11n wireless LAN devices from Siemens designed for cabinet-free installation on DIN rails, walls, or masts inside automation cells. They are commonly used to bridge a SIMATIC S7-1200 PLC across a factory floor where cable runs are impractical. In TIA Portal V13 SP1 Update 9, however, the supplied Hardware Support Package (HSP) for SCALANCE W devices only describes the W720/W760 hardware and firmware up to SCALANCE W version 5.2, while the device you receive in production may ship with firmware 6.1. This version skew triggers a device catalog gap in the TIA project tree and a "device cannot be created" error when you try to drag the AP or client from the hardware catalog into the project.

The solution is to stop treating the SCALANCE W720/W760 as a fully TIA-integrated device and instead use the integrated Web Based Management (WBM) for commissioning. The PLC-side configuration in the S7-1200 still lives in TIA Portal, but the wireless side is administered out-of-band via a browser. This article walks through the firmware-to-HSP mapping problem, the WBM commissioning procedure, IP assignment with the Primary Setup Tool, and the limits and verification checks relevant to a V13 SP1 environment.

Understanding the HSP Version Mismatch

The TIA Portal hardware catalog is populated through HSP (Hardware Support Package) files that ship from Siemens as .isp or .isp13 archives. Each HSP contains the device description (GSD-equivalent, IO device profiles, slots, and Web diagnostics) for a specific device firmware family. For SCALANCE W devices, the HSP that works with TIA Portal V13 SP1 Update 9 is the package that contains the description files for SCALANCE W up to version 5.2.

Tool Version Highest SCALANCE W version described
TIA Portal V13 SP1 Update 9 V13 SP1 Upd9 5.2 (older firmware family)
SCALANCE W720-1 RJ45 / W720-1 CLI / W760-1 RJ45 / W760-1 M12 EEC FW 6.1.x Not in V13 SP1 HSP
SCALANCE W720-1 RJ45 (older rev.) FW 5.2.x Yes - in V13 SP1 HSP

The full Siemens HSP collection, including later versions, is published at the TIA Portal Hardware Support Packages entry ID 72341852. When you install the latest HSP, you may notice the catalog still does not list a 6.1.x W720/W760. This is because newer device generations of SCALANCE W are typically introduced in newer TIA Portal major versions (V15, V15.1, V16, V17, V18) rather than being back-ported into the V13 SP1 HSP.

Field note. Do not downgrade the SCALANCE firmware to match the TIA catalog. Firmware 6.1 is the production-supported branch, and the catalog gap is a project-tree convenience issue, not a runtime compatibility issue between the W720/W760 and the S7-1200 PROFINET stack.

Why Web Based Management Is the Correct Path

SCALANCE W devices are administered through a built-in HTTPS Web Based Management page. The WBM is firmware-version independent: a 5.2 device and a 6.1 device both expose the same logical menu tree, parameter names, and wizards, so the same commissioning sequence works regardless of the HSP situation. TIA Portal is only one of three valid configuration paths for SCALANCE W; the other two are WBM and CLI/SSH. For wireless commissioning in a brownfield V13 SP1 project, WBM is the lowest-risk option because:

  • It does not require the SCALANCE to be present as a PROFINET IO device in the TIA project.
  • It does not depend on a matching HSP file.
  • It supports the full set of features for 802.11n operation: channel selection, transmit power, antenna settings, encryption (WPA2/AES), iPCF-mode, and iREF client roaming parameters.
  • It allows configuration save/load via a single config file, which is essential for fleet rollouts.

The official SCALANCE W760/W720 Web Based Management manual (PH_SCALANCE-W760-W720-WBM_76) lists every parameter and screen that the wizard exposes.

Prerequisites

  1. One SCALANCE W760-1 (access point) and one SCALANCE W720-1 (client) powered and wired to the engineering laptop. The W760 is the AP side, the W720 is the client side, and the role is set in the WBM under WLAN > Operation mode. The article assumes 24 V DC supply from a Siemens SITOP or equivalent, with the 24 V connected to the L+ and M terminals of the plug-in power connector.
  2. A SIMATIC S7-1200 (any CPU from FW 4.0 upward) with PROFINET interface active. The CPU must be reachable on the same IP subnet as the engineering PC during commissioning. CPU 1214C DC/DC/DC and CPU 1215C DC/DC/DC are the typical targets.
  3. TIA Portal V13 SP1 Update 9 for PLC programming and project engineering. The S7-1200 PLC will still be added to the TIA project; only the SCALANCE side stays out of the catalog.
  4. Primary Setup Tool (PST) v4.x or later, used to assign the initial IP address to the SCALANCE. PST is delivered on the product CD and is also published at Siemens Knowledge Base entry 19440762.
  5. An engineering PC with a standard web browser (Chrome, Firefox, Edge). JavaScript and cookies must be enabled; the WBM uses HTTPS on TCP/443 with a self-signed certificate.
  6. The SCALANCE W760/W720 operating instructions (BA_SCALANCE-W760-W720_76) open as a reference for the LED tables, terminal layout, and antenna selection.

Step-by-Step: Commissioning the W720/W760

Step 1 - Assign the Initial IP Address with the Primary Setup Tool

Out of the box, SCALANCE W devices ship with DHCP client enabled. In a greenfield network without a DHCP server, you must assign a static IP first. Connect the engineering PC directly to the SCALANCE with a standard patch cable (auto-crossover is supported on the RJ45 ports of the W720-1 RJ45 variant). Launch the Primary Setup Tool, click Search, and the SCALANCE should appear as a MAC-address-only entry if no IP is set yet.

  1. In the search results, right-click the SCALANCE row and select Assign IP address.
  2. Enter the desired IPv4 address, subnet mask, and gateway. For the AP (W760) use a stable address, for example 192.168.0.10 / 255.255.255.0. The client (W720) side uses 192.168.0.11 / 255.255.255.0. The gateway can be left blank during commissioning.
  3. Click Assign. The SCALANCE will reboot its management interface, which takes roughly 30 to 60 seconds. The "P1" or "P2" LED on the device will indicate link status.
  4. Verify with ping 192.168.0.10 from the engineering PC.

Step 2 - Open the Web Based Management

Open a browser and enter the SCALANCE IP as URL, e.g. https://192.168.0.10. The browser will warn about the self-signed certificate; accept the exception. The default WBM credentials are admin / admin. The first login forces a password change. After the new password is set, the WBM lands on the Information > Start page showing device name, article number, firmware version, and serial number. Confirm the firmware banner reads SCALANCE W760/W720 (MLFB 6GK...) FW V6.1 (or whatever is on the actual label).

Step 3 - Configure the Access Point (W760)

On the W760 WBM, navigate the left menu to WLAN > Basic. Set the country code first, as the regulatory channel list is filtered against the selected country; using the wrong country is the most common cause of a SCALANCE that scans but refuses to associate. Acceptable values are ISO 3166-1 alpha-2 codes such as DE, US, FR, GB. Then configure:

Parameter Recommended value (industrial) Notes
Operation mode Access Point W760 is AP-only hardware; this field is informational.
SSID e.g. PLANT_WLAN_01 Up to 32 chars, ASCII.
Channel 36, 40, 44, 48 (5 GHz DFS-free) or 1, 6, 11 (2.4 GHz non-overlapping) Prefer 5 GHz for industrial noise immunity.
Channel width 20 MHz 40 MHz is allowed by 802.11n but reduces coexistence.
Transmit power 10 dBm to 17 dBm Tune to local regulations after RSSI survey.
802.11 mode 802.11n only (or 802.11a/b/g/n mixed) Disable 802.11b clients in industrial cells.
Max. number of clients 16 (typical plant AP) Hardware ceiling; see configuration limits below.

Next, set security under WLAN > Security. Use WPA2-PSK / AES-CCMP with a 63-character ASCII passphrase, or WPA2-Enterprise / 802.1X with a RADIUS server if the plant has centralized authentication. TKIP is supported but is not recommended on a 6.1 firmware build. Save the configuration with System > Save, then click System > Restart to apply.

Step 4 - Configure the Client (W720)

On the W720, open the WBM at its IP (https://192.168.0.11). Set WLAN > Operation mode > Client. Enter the same SSID, security method, and passphrase as the W760. The W720 can be set to scan and associate automatically. For a deterministic, fast association in a noisy RF environment, set the MAC address of the target AP in the Preferred BSSID field; this avoids the W720 spending 5 to 10 seconds scanning all channels on a roaming event. The SCALANCE W760/W720 configuration limits page lists the maximum number of preferred BSSIDs per client.

Step 5 - Connect the S7-1200 to the W720 RJ45 Port

Plug the patch cable from the S7-1200 PROFINET port (X1) into the W720's P1 or P2 RJ45 socket. The CPU's PROFINET interface must be configured with an IP in the same subnet as the W720's wired side, e.g. 192.168.0.20 / 255.255.255.0. This IP assignment is done in TIA Portal V13 SP1 in the device view of the S7-1200, under Properties > PROFINET interface > Ethernet addresses.

Symmetrically, the W760-1 AP connects to a second S7-1200 (or to the plant backbone switch) on its wired side. The two S7-1200 stations do not need to know about the wireless link; PROFINET and S7 communication traverse the WLAN transparently at layer 2.

Step 6 - Verify and Save the Configuration

After the W720 associates, its WBM shows a green WLAN link LED symbol, and the Information > WLAN > Associated clients page lists the active client(s) with signal strength (RSSI in dBm) and link rate (in Mbit/s). On the W720 wired side, the port LED to the S7-1200 should be solid green. From the S7-1200, you can run an online diagnostic in TIA Portal V13 SP1 with Online > Accessible nodes; the CPU should appear with the IP you assigned.

Save before every restart. Unsaved WBM changes are lost on power cycle. Use System > Save followed by System > Restart, never rely on auto-save on a 6.1 firmware build.

S7-1200 Configuration in TIA Portal V13 SP1

Inside TIA Portal V13 SP1 Update 9, the S7-1200 CPU is added to the project tree with the standard procedure. The key items to set are:

  • PROFINET interface IP: must match the subnet of the SCALANCE wired port it is plugged into. For the W720 client, use an address on the same subnet as 192.168.0.11, e.g. 192.168.0.20 with mask 255.255.255.0.
  • PROFINET device name: required for IO controllers. For pure S7-communication (PUT/GET, BSEND/BRCV), the device name is optional, but the S7-1200 must still be reachable on TCP/IP. Use a fixed, meaningful name such as plc-floor1-cell2.
  • Permit PUT/GET access: under Properties > Protection > Connection mechanisms, enable Permit access with PUT/GET from remote partner. This is the most common cause of an S7 connection that opens but stalls at the first read.
  • Firewall rules: leave the S7-1200 firewall on its default "low" profile unless the cell is exposed to an untrusted network.

Once compiled and downloaded, the S7-1200 is online and the S7 connection can be tested from the second CPU with a small PUT/GET or TSEND/TRCV pair.

Configuration Limits Relevant to V13 SP1 Projects

The SCALANCE W760/W720 configuration limits page defines ceilings that affect WBM, CLI, and TIA-managed projects equally:

Limit Value Effect
Max. clients per AP 16 (W760-1 RJ45 / W760-1 M12) Higher client counts are silently dropped at association.
Max. SSIDs per AP 1 (W760-1) / up to 4 (W760-1 with multi-SSID FW) Single SSID is the most common plant setting.
VLANs per device 8 (VLAN ID 1-4094) Limit applies to WBM and CLI equally.
MAC ACL entries 256 Used to lock the AP to known client MACs.
Preferred BSSIDs (client) 16 Pin the client to specific APs to accelerate roaming.
Config file size 512 KB WBM-driven export; fleet provisioning tool.

Troubleshooting Matrix

Symptom Likely root cause Diagnostic step Corrective action
SCALANCE does not appear in TIA hardware catalog Firmware 6.1 not covered by V13 SP1 HSP Open WBM, read firmware banner Do not downgrade; use WBM for SCALANCE, TIA only for S7-1200
W720 cannot associate to W760 Country code mismatch or wrong WPA2 passphrase WBM > Information > WLAN > Event log Set both AP and client to same country, re-enter passphrase, restart
Association succeeds, no PROFINET communication IP subnet mismatch between S7-1200 and W720 wired port ping from S7-1200 to W720 IP and to peer S7-1200 Align subnets, disable proxy ARP on the SCALANCE, check VLAN tagging
High latency, low throughput 2.4 GHz co-channel interference or 40 MHz channel width WBM > WLAN > Spectrum analyzer (W760-1 only) Switch to 5 GHz DFS-free channel, drop to 20 MHz width, lower transmit power
WBM page throws a 404 on a sub-menu Firmware 6.1.0 vs 6.1.1 UI differences Cross-check with the WBM PDF in this article Apply the latest 6.1.x patch from Siemens, then test
Client roams too often, link flaps Roaming threshold too sensitive WBM > WLAN > Roaming (iPCF mode) Enable iPCF, raise threshold to -75 dBm
Save fails in WBM Internal flash full or SSL cert issue WBM > System > Log Clear old log files, regenerate self-signed cert, retry save

Verification Checklist

  1. AP W760 is reachable on its wired IP via HTTPS and WBM login succeeds with the new password.
  2. Client W720 is reachable on its wired IP and WBM login succeeds.
  3. W720 Information > WLAN > Clients page shows the W720 in Associated state with RSSI stronger than -75 dBm.
  4. S7-1200 connected to the W720 is listed as an accessible node in TIA Portal V13 SP1 Online > Accessible nodes.
  5. A small PUT/GET round-trip between the two S7-1200 stations completes in under 50 ms on a quiet RF channel.
  6. Configuration on both SCALANCE devices is saved with System > Save and survives a power cycle test of at least 10 seconds.

Field-Proven Tips

  • Disable 802.11b on the W760 if the plant has no legacy clients. 802.11b forces the AP to add long preambles and OFDM/CCK mixing, which roughly halves throughput in mixed mode.
  • For deterministic, sub-10 ms roaming in moving cells, enable iPCF (industrial Point Coordination Function) on both the W760 and the W720. iPCF is a Siemens-specific extension to 802.11n that is enabled through the WBM under WLAN > iPCF.
  • Always set the SCALANCE clock to an NTP source. Logs are unsorted and nearly useless without time sync.
  • Export the configuration file from each device and store it in the TIA project folder under /Documentation/Wireless/. This makes it possible to rebuild a cell in minutes if a device fails.
  • If you ever upgrade to a TIA Portal version that supports the 6.1 HSP, you can import the SCALANCE into the project at that point; the WBM configuration is preserved.

Why does the SCALANCE W720/W760 not show in TIA Portal V13 SP1 HSP 5.2 even with the latest update installed?

TIA Portal V13 SP1 Update 9 was released before the SCALANCE W 6.1 firmware branch. The Hardware Support Package that ships with V13 SP1 only contains the device description files for SCALANCE W firmware up to version 5.2. Newer device descriptions for the 6.1 family are delivered with TIA Portal V15, V15.1, V16, V17, and V18. The fix is to commission the SCALANCE through Web Based Management instead of through the TIA project tree.

Can I downgrade the SCALANCE firmware from 6.1 to 5.2 to make it appear in the V13 SP1 catalog?

No. Siemens does not support downgrading to a discontinued firmware branch, and a 5.2 firmware image is not a published download. Treat 6.1.x as the supported branch and keep the TIA catalog gap.

How do I assign the first IP address to a SCALANCE W720/W760 out of the box?

Use the Primary Setup Tool, available on the product CD and from Siemens Knowledge Base entry 19440762. Search the network, right-click the SCALANCE row, and assign IP, mask, and gateway. After the reboot, the device is reachable on HTTPS.

What is the maximum number of clients a SCALANCE W760-1 supports?

Up to 16 simultaneous client associations per W760-1 access point, in firmware 5.2 and 6.1. The full configuration limit table is published in the SCALANCE W760/W720 configuration limits reference.

Do I need to import the SCALANCE W into the TIA project if the S7-1200 uses PROFINET?

No. PROFINET runs transparently over the SCALANCE WLAN at layer 2. The S7-1200 stations are configured in TIA Portal V13 SP1; the SCALANCE devices are configured in WBM. The PROFINET device name and IP of the S7-1200 are independent of the SCALANCE, so no catalog import is required.

Back to blog