1. Problem Description
An attempt to retrieve a WinCC (TIA Portal) project from a SIMATIC KTP700 Basic panel using the menu Online > Upload from device (software) fails in one of two ways:
- The Upload from device (software) command is grayed out in the Online menu.
- The command is enabled, the Upload preview dialog opens, but no actions are listed, or the upload completes with an empty or non-editable result on the engineering station.
The engineer typically has only the panel in the field, no source archive on the engineering station (PG/PC), and needs to recover, modify, or re-deploy the visualization. This article classifies the failure mode, documents the supported Siemens recovery procedures, and lists every documented workaround for the case where a full back transfer is impossible.
2. KTP700 Basic Panel Variants and Order Numbers
Identify the exact panel variant before any recovery attempt. The KTP700 Basic product family comprises both PROFINET (PN) and PROFIBUS (DP) variants shipped under different MLFB (order) numbers and firmware streams.
| Order number (MLFB) | Variant | Interfaces | Display | Configurable with |
|---|---|---|---|---|
| 6AV2123-2GB03-0AX0 | KTP700 Basic 7" PN | 1 × PROFINET, 1 × USB host | 7" widescreen, 800 × 480, 16 M colors | WinCC Basic V13 SP1 or higher (TIA Portal) |
| 6AV2123-2GB23-0AX0 | KTP700 Basic 7" DP | 1 × PROFIBUS DP/MPI, 1 × USB host | 7" widescreen, 800 × 480, 16 M colors | WinCC Basic V13 SP1 or higher (TIA Portal) |
| 6AV2123-2GA03-0AX0 | KTP700 Basic 7" (legacy) | 1 × PROFINET | 7" widescreen, 800 × 480 | WinCC Basic V11 / V12 / V13 |
| 6AV2123-1GB01-0AX0 | KTP600 Basic 6" mono/color | PROFINET | 6", 320 × 240 | WinCC Basic V11 and higher |
The part number is printed on the rear label in the format 6AV2 123-2GB03-0AX0 and is also reported by the panel's system screen under System > Device > Device Version. Confirm the variant against the SIMATIC HMI Basic Panels operating instructions before proceeding.
3. Root Cause: Why "Upload from Device" Is Disabled
Two conditions must be met simultaneously for the Upload from device (software) command to be enabled in TIA Portal and to return a usable, editable project:
- Device capability. The target HMI runtime must support back transfer. WinCC Basic on the KTP700 Basic does not expose a back-transfer function. The runtime image is compiled to an internal format that does not contain the editable TIA Portal source objects.
- Downloader flag. On devices that do support back transfer (Comfort Panels, WinCC RT Advanced / Professional on PC runtimes), the original project must have been downloaded with the Back Transfer option enabled in the TIA Portal Download to device dialog. The runtime stores an encrypted project copy in the panel file system only when this flag is set.
If either condition is missing, the only supported way to recover a project is a binary backup image, which is non-editable. The panel cannot be coerced to expose an editable project via TIA Portal commands, registry tweaks, or firmware modifications, and any third-party tool claiming to do so is unsupported and may damage the panel file system. See the Siemens FAQ on back transfer of operator panel projects for the canonical statement.
4. Operation Comparison: Back Transfer vs. Backup vs. Restore
| Attribute | Back Transfer (Upload from device) | Backup (image) | Restore |
|---|---|---|---|
| Editable in TIA Portal? | Yes – returns a full TIA Portal project that can be opened, modified, re-compiled, and re-downloaded | No – produces a panel-specific backup file (.tzip / .bck / .brk depending on panel and TIA version). Cannot be opened in TIA Portal as a project | N/A – writes an existing backup to a panel, not the other way around |
| Source required on PG/PC? | No – pulls from panel | No – pulls from panel to USB / SD / ProSave | Yes – a backup file is supplied to the panel |
| Supported on KTP700 Basic? | No | Yes (to external storage / ProSave) | Yes (from external storage / ProSave) |
| Trigger location | TIA Portal Online menu on the PG/PC | Panel control panel, ProSave, or TIA Portal | Panel control panel, ProSave, or TIA Portal |
| Output file | Editable TIA Portal project (HMI station in project tree) | *.tzip (V14+) or *.bck / *.brk (V11–V13) | None (writes panel flash directly) |
The backup format depends on the panel generation:
- KTP700 Basic 2nd Generation, V14 and higher:
*.tziparchive, password-protected by default - Older KTP700 Basic, V11–V13:
*.bckor*.brkfile
5. Required Cables and Physical Connection
The physical link between the engineering PG/PC and the panel must be established before any of the recovery procedures can run.
| Panel variant | Required cable | Siemens order number (if proprietary) | Notes |
|---|---|---|---|
| KTP700 Basic PN (6AV2123-2GB03-0AX0) | Standard Ethernet patch cable (Cat 5e or higher) – straight-through | 6XV1850-2Hxxx (PROFINET cable) or off-the-shelf patch | Connect to PG/PC Ethernet port or via PN switch; configure the PG/PC IP in the same subnet as the panel |
| KTP700 Basic DP (6AV2123-2GB23-0AX0) | PROFIBUS cable with D-sub connectors and bus terminators | 6XV1830-0EH10 (PROFIBUS cable), 6ES7972-0BA12-0XA0 (terminator) | Set the PG/PC interface to PROFIBUS via the PC adapter (CP 5611 / CP 5711 / USB MPI adapter 6ES7972-0CB20-0XA0) |
| All KTP700 Basic (legacy configuration port) | USB-A cable to the panel's rear service USB | Standard USB-A cable | The service USB on Basic panels is for backup/restore only; it does not expose the engineering port |
For PN variants, the panel's default IP address (when unset) is 0.0.0.0 and the device obtains an address via DCP. Use TIA Portal's Online > Accessible devices to discover the panel by PROFINET name; if the name is unknown, set the PG/PC adapter to "PN/IE" and let DCP resolve it. If the panel's IP is fixed, set the PG/PC in the same subnet (e.g. 192.168.0.1/24 for a panel at 192.168.0.10). See the Siemens FAQ on connector cables for SIMATIC Panels for cable details.
6. Procedure A – Backup a KTP700 Basic Project Image (Always Supported)
Backup is the only operation that always succeeds on a KTP700 Basic, regardless of how the project was originally downloaded. The image is non-editable but is sufficient for: cloning the panel to identical hardware, recovering to the same panel after a fault, or handing the runtime to a colleague for re-imaging.
6.1 Prerequisites
- USB stick formatted FAT32 (panel host USB supports USB 2.0 sticks up to 32 GB; exFAT is not supported on older firmware)
- For DP variants: PROFIBUS connection to PG/PC with the SIMATIC PC adapter drivers installed
- For PN variants: Ethernet connection and the panel's IP address or PROFINET device name
- TIA Portal V14 or higher (matching the panel firmware) with WinCC Basic installed
6.2 Step-by-step via the panel control panel
- Insert the USB stick into the panel's host USB port.
- Open the panel's control panel: Start (the Start button on the HMI) > Settings > Control Panel, or the system menu on devices without a Start button.
- Open Backup / Restore.
- Select the path:
USB Storage\Siemens– create the\Siemensdirectory if it does not exist. - Select Backup.
- Choose the contents: include the project file, recipe data, alarm logs, and any optional add-ons as needed.
- Enter a backup password (recommended; required for tzip archives on V14+ panels). Use a password you can recover; there is no backdoor.
- Confirm with OK. The panel writes a timestamped file of the form
<panelname>_<yyyy-MM-dd HHmm>.tzip(or.bckon older firmware). - Wait for the "Backup successful" dialog. Do not remove the USB stick before the dialog closes.
6.3 Step-by-step via ProSave / TIA Portal
- Connect the panel to the PG/PC (PN or DP cable as above).
- Open Start > Siemens Automation > ProSave on the PG/PC, or open the panel in the TIA project tree and select Online > Backup.
- Select the device type: KTP700 Basic.
- Set the connection: PN/IE for PN panels, PROFIBUS for DP panels.
- Select the panel by IP / PROFIBUS address. The panel's transfer password (set during image commissioning) is required for protected panels.
- Choose the destination:
USB stickon the panel, orLocal file systemon the PG/PC if a remote backup is required. - Set the file name and password.
- Click Start Backup. The progress bar updates in real time; a 5 MB project typically takes 30–90 s on PROFINET, 1–3 min on PROFIBUS at 1.5 Mbit/s.
7. Procedure B – Back Transfer (Editable Upload) When the Original Project Was Prepared for It
If the original download was performed with the Back Transfer option enabled and the panel runtime is a WinCC RT Advanced / Professional on a Comfort Panel (or a PC-based runtime), the TIA Portal Upload from device (software) command is the recommended path. On a KTP700 Basic, this option is grayed out by design; the runtime does not contain the back-transfer shadow project. The procedure below is included for completeness when working on a Comfort Panel or PC-based runtime in the same TIA project, and to allow a quick verification that a different panel on the same site is recoverable.
- Open the TIA Portal project on the engineering station, or create an empty project with the matching HMI device added.
- From the project tree, expand the HMI device and select the device name node (not the project root).
- Click Online > Upload from device (software).
- If the command is grayed out, the panel does not support back transfer – switch to Procedure A.
- If the command is enabled, the Upload preview dialog lists detected mismatches. Accept the proposed actions and click Upload from device.
- When the upload completes, the device tree in TIA Portal is populated with the back-transferred project. Compile, save, and re-download as required.
8. Procedure C – Diagnose a Grayed-Out Upload Command
When Online > Upload from device (software) is grayed out, walk through the following checklist before declaring the panel unsupported:
- Select the correct device node. The command is enabled only when an HMI device is selected in the project tree. Selecting the project root or the PLC node disables the command.
- Establish a successful online connection first. The Online menu is context-sensitive. If the panel is offline (yellow triangle in the project tree), the upload is disabled.
- Check the panel's transfer mode. On the panel, open the control panel and confirm that Transfer is enabled. If Transfer is set to Off or the panel is in commissioning mode with transfer disabled, TIA Portal cannot start a project transfer.
- Match the device type. An upload from a KTP700 Basic returns grayed-out controls when the project tree contains a different HMI device (e.g. a TP700 Comfort). The MLFB must match.
- Verify TIA Portal version. Each TIA Portal major release (V14, V15, V16, V17, V18, V19) maintains its own device description pool. If the project was created in V17 and you attempt to upload from a panel whose image was built in V14, the device descriptor may not be installed. Run the TIA Portal Device description repository update or install the matching HSP (Hardware Support Package).
9. Workarounds When Back Transfer Is Not Available
The following workarounds recover functionality without an editable TIA Portal source project. None of them re-creates the original project file.
9.1 Rebuild from the runtime image
Open the panel in TIA Portal's project view, attach a new HMI device of the same MLFB, then use Online > Backup to clone the existing image. The clone has the same screens, tags, and alarms but is bound to the new device name. Edit screens via the offline / online compare tool (TIA Portal V16+) or rebuild manually from the documentation.
9.2 Read the backup file as a flat directory
Rename the .tzip to .zip, supply the panel's backup password, and extract. The archive contains a structured set of XML and binary files (*.fwx, *.log, *.ldb) that can be inspected with a text editor for tag names, alarm texts, and screen layouts. This is for forensic recovery only – the files are not a TIA Portal source.
9.3 Restore to an identical panel and edit online
If a second KTP700 Basic of the same order number is available, restore the backup to the second unit, then open it in TIA Portal's Online mode and edit screens in place. Changes are written back to the panel only, not to a TIA Portal project on disk. Persist the changes by repeating Procedure A immediately after every edit session.
9.4 Procure the original TIA Portal archive
If the panel was commissioned by a system integrator, the integrator is the canonical source of the editable project. Request the most recent .zap15 / .zap16 / .zap17 / .zap18 / .zap19 archive (TIA Portal project file) from the integrator's version control system. The panel image is derived from this archive, not the other way around. Restoring this archive to a version control repository (e.g. Git LFS) is the only sustainable way to maintain a HMI project over the panel's life cycle.
10. Firmware, TIA Portal, and HSP Compatibility
| Panel firmware | Minimum TIA Portal version | Recommended TIA version | Image format | Back transfer |
|---|---|---|---|---|
| V13.0.1.0 (Basic) | TIA V13 SP1 | TIA V14 SP1 | *.bck / *.brk | No |
| V14.0.1.0 (Basic) | TIA V14 | TIA V15.1 | *.tzip | No |
| V15.1.0.0 (Basic) | TIA V15.1 | TIA V16 | *.tzip | No |
| V16.0.0.0 (Basic) | TIA V16 | TIA V17 | *.tzip | No |
| V17.0.0.0 (Basic) | TIA V17 | TIA V18 | *.tzip | No |
| V18.0.0.0 (Basic 2nd Gen) | TIA V18 | TIA V19 | *.tzip | No |
Install the latest Hardware Support Package (HSP) matching the panel variant via TIA Portal > Options > Support Packages. A missing HSP is the most common reason an otherwise-supported panel is not listed in the TIA Portal Add new device dialog. Each TIA major release is tied to a specific HSP set; do not assume an HSP installed for V17 is present in V18.
11. Troubleshooting Matrix
| Symptom | Probable cause | Diagnostic | Resolution |
|---|---|---|---|
| Upload menu grayed out | Panel is Basic, not Comfort / RT Advanced | Check the MLFB on the rear label | Use Procedure A (Backup) – back transfer is not supported on Basic |
| Upload menu grayed out | Wrong TIA Portal project node selected | Click the HMI device node, not the project root | Re-select the HMI device node |
| Upload menu grayed out | No online connection | Accessible nodes is empty | Verify cable, IP / PROFIBUS address, transfer mode on the panel |
| "Upload preview" lists no actions | Original download lacked the "Back Transfer" flag | Compare with integrator's project archive | Use Procedure A and rebuild from backup |
| Backup fails with "Password incorrect" | Panel's transfer password is unknown | Try the integrator's commissioning password; default is "100" | Reset the panel to factory defaults (clears all data) or obtain a recovery password from Siemens support |
| Backup fails with "Storage media write-protected" | USB stick has a physical write-protect switch or is NTFS / exFAT | Re-format as FAT32 | Use a different USB stick formatted FAT32 |
| "Accessible devices" returns no panel | Wrong PG/PC interface, firewall, or PROFINET name mismatch | Ping the panel IP; check Windows firewall for UDP 34964 | Set PG/PC interface to PN/IE, assign the panel's PROFINET name via the panel's control panel |
| Upload succeeds but produces an empty project | Panel's runtime image was generated without the "Back Transfer" flag | Compare the source archive (if available) with the upload | Use Procedure A and rebuild from the backup |
| TIA Portal crashes on upload | Mismatched TIA Portal version or missing HSP | Check Options > Installed software for the device description | Install the matching HSP, restart TIA Portal |
| Backup file is named *.bck but panel is V16 firmware | Panel was downgraded or TIA Portal version mismatch | Read the panel firmware on the system screen | Re-image the panel with the matching firmware using ProSave restore |
| Restore fails: "Incompatible firmware version" | Backup taken on a V16 panel, restored to a V14 panel | Compare the firmware in System > Device | Match firmware versions when cloning; update the target panel first or take a new backup on a matching unit |
12. Verification Checklist
After any recovery operation, perform the following to confirm the project is intact:
- Open the recovered project in TIA Portal (if Procedure B succeeded) or open the panel in online mode (if Procedure A was used).
- Compare the screen count, tag count, and alarm count with the documentation: Project tree > HMI device > Properties > Cross-references.
- Run an Online > Compile > Software (rebuild all) to confirm no orphaned references.
- Perform a full panel download to a spare panel of the same order number, power-cycle, and verify boot to the configured start screen.
- Document the recovered project path, the source panel serial number, the operator who performed the recovery, and the date – in the project README and on the cabinet door.
13. Field-Proven Caveats
- Always use the same TIA Portal major version for the original download and the upload. A project downloaded with TIA V15.1 cannot be uploaded with TIA V16 without the matching HSP installed, and even with the HSP, internal device-description deltas may cause compile errors that mask the original project.
- The panel's transfer password (configured at first commissioning) is independent of the backup password. Resetting the transfer password requires a factory reset of the panel and erases all data.
- Backups taken on a V16 panel cannot be restored to a V14 panel – the runtime is incompatible. Match firmware versions when cloning.
- Do not interrupt a backup or restore by removing the USB stick. A partial file leaves the panel in an undefined state; recovery requires ProSave Restore with the original file path.
- The PG/PC Ethernet adapter used for PROFINET must be on a subnet that can reach the panel. If the panel is at
192.168.0.10/24and the PG/PC is on a different subnet, add a secondary IP to the PG/PC adapter or use a switch with routing. - The USB host port on the panel supplies 500 mA maximum. Bus-powered USB sticks larger than 32 GB sometimes fail to enumerate; use a self-powered hub or a smaller stick.
- Antivirus software on the PG/PC can intercept PROFINET DCP frames (UDP 34964) and break Accessible devices. Add a permanent exception for the TIA Portal and ProSave executables.
- Project source files stored only on the engineering station are a single point of failure. Archive the TIA Portal project (and any referenced HMI device-specific add-ons) to a version control repository on every download to the panel.
FAQ
Can I upload a project from a KTP700 Basic panel in TIA Portal?
No. The Upload from device (software) command is disabled because WinCC Basic on KTP700 Basic panels does not support back transfer. Use a backup (Procedure A) to recover a non-editable project image, or obtain the original TIA Portal project archive from the system integrator.
What is the difference between a backup and a back transfer?
A backup is a non-editable image of the panel's runtime, saved as a .tzip (V14+) or .bck archive. A back transfer is a full, editable TIA Portal project uploaded from the panel. Back transfer is not supported on Basic panels; it is available on Comfort Panels and PC-based WinCC RT Advanced / Professional runtimes when the original download used the "Back Transfer" flag.
Why is the "Upload from device" command grayed out even though my panel is online?
The most common reasons are: the project tree is not on the HMI device node, the panel runtime is a Basic panel (which does not support back transfer), the original download did not enable the "Back Transfer" flag, or the TIA Portal version does not match the panel's firmware and the matching HSP is not installed.
Which cable do I need to connect a KTP700 Basic to TIA Portal?
For PN variants, use a standard Ethernet patch cable (Cat 5e or higher). For DP variants, use a PROFIBUS cable with D-sub connectors and bus terminators, plus a SIMATIC PC adapter (CP 5611, CP 5711, or USB MPI adapter 6ES7972-0CB20-0XA0) on the PG/PC. The front USB port on the panel is for image / mouse emulation only and is not the configuration port.
What file format is a KTP700 Basic backup?
On TIA Portal V14 and higher, the backup is a .tzip archive, password-protected. On V11–V13, the format is .bck or .brk. The backup file can be restored to a panel of the same firmware generation but cannot be opened as a TIA Portal project.