Modifying Siemens OP7 Programs: ProTool Edit and ProSave Restore
The SIMATIC OP7 is a small, text-oriented operator panel from Siemens used widely on older machines (S7-200, S7-300, LOGO!, and third-party PLCs over MPI/PPI). When a screen object such as an hours counter overflows its configured field width, or when a label, value range, or screen layout must be corrected, the project source file must be edited in ProTool and reloaded to the panel. If the editing site does not have a physical OP7 on the bench, the workflow requires transferring the edited project back to a known-good OP7 once, then exporting a ProSave backup file that the customer can restore at the machine using only a serial cable.
This reference consolidates the complete workflow: opening the legacy *.pdb / *.ldf project, modifying the hours-counter field width from 4 to 8 digits, reconciling MPI/PPI communication parameters, generating a ProSave *.ps7 backup, building the DB15↔DB9 serial cable, executing the restore on the customer side, and verifying that the corrected display matches the controller tag.
1. Workflow Overview
There are two viable paths for delivering a modified OP7 program to a customer:
| Path | Edit site | Customer action | Required tools | Outcome |
|---|---|---|---|---|
| A — Send edited ProTool project + cable | Has OP7 | Install ProTool, restore project | ProTool, ProSave, serial cable, OP7 | Editable at customer site |
| B — Deliver ProSave backup file | Has OP7 (for backup generation) | Restore backup via ProSave only | ProSave, serial cable, no ProTool required | Plug-and-restore, no edit rights needed |
| C — Edit-only without OP7 at edit site | No OP7 available | Not deliverable as a backup | ProTool only | Cannot produce restore image |
Path B is the lowest-friction option when the customer is non-technical. It requires that the integrator owns or borrows one compatible OP7 panel long enough to receive the edited ProTool project, then create the backup. The resulting *.ps7 (or older *.brf) backup file is then shipped to the customer on any medium (USB stick, email if file size permits, CD). Restore on the customer side takes 2–5 minutes including serial-cable hookup.
2. Prerequisites
2.1 Software stack
| Component | Version | Order number (MLFB) | Purpose |
|---|---|---|---|
| ProTool/Pro | V6.0 SP3 or later (latest = V6.0 SP5) | 6ES7 198-8XC00-8BA0 | Project editing |
| ProTool/Lite (free) | V6.0 | 6ES7 198-8XC00-8BB0 | Project editing, runtime-limited |
| ProSave | V9.0 or later (bundled with SIMATIC ProTool/Pro) | included | Backup creation and restore |
| Windows OS | Windows XP SP3 / 7 / 10 (32-bit recommended) | — | Host for ProTool/ProSave |
2.2 Hardware requirements
- One OP7 panel at the editing site (DP/PN variant acceptable, must match the customer's panel type byte-for-byte in the project).
-
Original ProTool project archive (
*.pdbstandalone, or*.zipcontaining the integrated*.pdb+*.ldf+ bitmap/font resources). - Siemens MPI/PC adapter (USB or RS-232) — order number 6ES7 972-0CB35-0XA0 (USB, CP 5711-compatible legacy driver) or 6ES7 972-0CA23-0XA0 (RS-232 PC-Adapter).
- Serial cable OP7 (DB-15 male) ↔ PC (DB-9 female) — pinout detailed in Section 7.
- Customer-side cable (identical to above) for the ProSave restore.
3. OP7 Hardware and Communication Interface
The OP7 exposes a single 15-pin Sub-D female connector on the rear, carrying RS-232 (PtP), PPI, and MPI signals. Pin assignment follows the Siemens HMI convention used across the OP3/OP5/OP7/OP15/OP17 families:
| Pin | Signal | Direction | Notes |
|---|---|---|---|
| 1 | Shield | — | Connect to chassis at one end only |
| 2 | RS-232 TxD (OP7 → external) | Output | +/-12 V levels |
| 3 | RS-232 RxD (external → OP7) | Input | |
| 4 | RTS (OP7) | Output | |
| 5 | CTS (OP7) | Input | |
| 6 | +24 V field supply | Input | Powers OP7 from external 24 VDC |
| 7 | +24 V field supply | Input | Tied in parallel with pin 6 |
| 8 | RS-485 A (PPI/MPI) | Bidirectional | |
| 9 | RS-485 B (PPI/MPI) | Bidirectional | |
| 10 | GND signal | — | |
| 11 | GND 24 V | — | Return for pins 6/7 |
| 12…15 | Reserved / n.c. | — | Older OP7 DP variants: pin 12 = PROFIBUS shield |
The DB-9 connector on the PC follows the EIA/TIA-574 standard: pin 2 = RxD (PC), pin 3 = TxD (PC), pin 5 = GND, pin 7 = RTS, pin 8 = CTS. The DB15↔DB9 cable is a 1:1 cross for data lines with the substitutions shown in Section 7.
4. Editing the Project in ProTool
4.1 Open the archived project
- Launch ProTool/Pro → Project → Open and select the original
*.pdbfile. If the project was delivered as a*.zip, extract to a path without spaces (e.g.C:\PT_Projects\OP7_MachineA\) before opening. - Verify the project header matches the customer's hardware: Target system must show
OP7, and the Image version must be ≤ the firmware on the panel. Use File → Properties → OP7 to confirm. - Confirm the Integrator tab shows the original integrators' MPI/PPI/Profibus address of the panel — this is the byte that ProSave will check on restore.
4.2 Change the hours-counter field width from 4 to 8 characters
- In the project tree, expand Screens → [target screen] containing the hours counter.
- Click the counter field to select it; the Properties dialog opens.
- Switch to the Representation tab. Locate Number of characters (German UI: Stellenanzahl).
- Change the value from
4to8. The visible field width auto-resizes; verify on the layout grid that no neighbouring object is overlapped. - Open the Variable tab and confirm the field is bound to the correct PLC tag (typically a DWORD counter at a known DB address; e.g.
DB10.DBD0for an S7-300). Verify the tag's data type accepts values up to 99 999 999 (DWORD = 4 294 967 295 max). - If the bound tag is currently a WORD (16-bit, max 65 535) or INT (max 32 767), changing the display width alone will display overflow characters (
####) above those values. Adjust the controller tag's data type as well; document this change for the customer.
MW10 (WORD, 16-bit) and the machine accumulates hours continuously, 65 535 hours equals ~7.5 years. If service records show the counter is already near or above 16 384 hours, retag to DB10.DBD0 as DWORD. Update the PLC project (STEP 7 / Micro/WIN) and rebuild the OP7 project against the new tag. Both sides must be reloaded.4.3 Save and compile
-
File → Save — ProTool writes
*.pdband refreshes the integrated runtime files. -
File → Compile → Incremental then Compile → All (Rebuild). Inspect the Output window for warnings such as
W300 — character width too small for max value. Resolve all warnings before transferring. - File → Download → OP7 — this writes the project into the panel connected on the active channel.
5. Matching Communication Parameters Exactly
The customer's restore will fail with error 1700 — checksum mismatch or 1710 — image version mismatch if any of the following parameters differ between the edit site's OP7 and the customer's OP7. Document every parameter before transferring:
| Parameter | Where set | Edit-site value | Customer value (read from panel) |
|---|---|---|---|
| Panel MPI/PPI address | OP7 system menu → Set → Address | e.g. 1 | e.g. 1 |
| Baud rate | OP7 system menu → Set → Baud | 187.5 kbps (MPI default) or 9.6 kbps (PPI default) | Must match |
| Highest MPI address (bus) | OP7 system menu → Set → Highest Address | 31 (MPI) or 31 (PPI) | Must match |
| Image version | ProTool: Properties → Image | e.g. V1.4.2 | ≤ panel firmware |
| Project CRC | ProTool: File → Properties → Statistics | Computed at compile | Will be recomputed on restore |
If the customer cannot navigate the OP7 system menu, ask them to read the four-digit identifier shown on power-up (e.g. OP7 V1.4.2 ADDR=1 BAUD=187.5). These four data points are sufficient for parameter reconciliation.
6. Building the Restore Backup with ProSave
- Connect the edit-site OP7 to the PC running ProSave via the MPI/PC adapter. Power up the panel.
- Launch ProSave. In the Device type dropdown select
OP7. - In the Connection tab choose the PC adapter and the COM port (e.g.
COM3for the USB CP 5711 legacy driver). - Click Connect. ProSave establishes an MPI/PPI session and reads the panel's identification block.
- Switch to the Backup tab. Set the destination path (e.g.
D:\Backups\OP7_MachineA_v1_4_2.ps7). - Click Start Backup. The transfer takes 30–90 seconds at 187.5 kbps. Progress bar must reach 100 % without retry counters incrementing.
- Close ProSave and copy the
*.ps7file to portable media.
*.brf instead of *.ps7. Both formats are restored identically by the modern ProSave. Do not rename the extension. Compress with pkzip if email transfer is required; do not use 7z — the customer's ProSave expects a single-file .ps7.7. OP7-to-PG Serial Cable Construction (DB15/DB9)
The OP7 uses a DB-15 female connector for both PPI/MPI and PtP RS-232 operation. The customer's PC uses a DB-9 male for RS-232 (COM port) or, more commonly today, a USB↔RS-232 adapter (e.g. FTDI FT232-based). The minimum cable for ProSave restore over MPI is:
| DB-15 (OP7 side) | Signal | DB-9 (PC side) | Notes |
|---|---|---|---|
| 1 | Shield | Shell only | Bond shield at one end |
| 8 | RS-485 A | — (driven by MPI adapter) | When using Siemens PC-Adapter, A/B are looped through the adapter |
| 9 | RS-485 B | — | |
| 10 | GND signal | 5 (GND) | Mandatory return |
| 2 | RS-232 TxD (OP7) | 2 (RxD, PC) | Crossed for PtP only |
| 3 | RS-232 RxD (OP7) | 3 (TxD, PC) | Crossed for PtP only |
| 4 | RTS (OP7) | 8 (CTS, PC) | Optional hardware handshake |
| 5 | CTS (OP7) | 7 (RTS, PC) | Optional hardware handshake |
For the more common MPI/PC-Adapter configuration, the customer simply needs the standard Siemens cable 6ES7 901-0BF00-0AA0 (DB-15 ↔ sub-D for the PC-Adapter). For a PtP-only restore path, the cable above plus a USB↔RS-232 adapter is sufficient.
8. Customer-Side Restore Procedure
- Customer installs ProSave on a Windows PC (XP/7/10). Driver for the USB↔RS-232 adapter must be installed first; verify in Device Manager that the COM port appears.
- Power down the machine's OP7, plug the DB-15 cable into the panel, plug DB-9 into the PC.
- Launch ProSave → Device type = OP7 → select the correct COM port → baud 187.5 kbps for MPI or 9.6 kbps for PPI.
- Click Connect. The status line should read
Connection established — OP7 V1.x.x ADDR=n. - Switch to the Restore tab, browse to the shipped
*.ps7file, click Start Restore. - ProSave displays Transferring image — please wait. Do not disconnect during transfer. Duration: 45–120 seconds depending on backup size.
- When Restore completed successfully appears, click Disconnect, power-cycle the OP7, and verify the boot screen shows the corrected project.
9. Verification and Acceptance Test
After the customer confirms the panel is back online, run the following checks before signing off the change:
- Field width visual: Navigate to the hours counter screen. The field must display 8 character positions and the existing value must appear right-aligned without truncation.
- Increment test: Force the underlying PLC tag to increment by 1 every second from the STEP 7 watch table for 30 seconds; observe the OP7 display update in real time (refresh ~250 ms).
-
Over-10 000-hour test: Preset the tag to
12345; confirm display reads00012345with leading zeros as configured (or12345if leading-zero suppression is set in the field properties). -
Communication health: From the OP7 system menu select Diagnostics → Connection status; the controller must show
OKand the configured MPI/PPI partner must match the actual PLC rack address. - Other screens regression: Step through every screen in the original project — ProTool rebuild may have shifted a screen-by-screen object if the field width change cascaded.
10. Troubleshooting Matrix
| Symptom | Probable cause | Fix |
|---|---|---|
ProSave: Error 1700 — checksum mismatch
|
Image version on backup does not match panel firmware | Re-build backup from an OP7 whose firmware ≥ customer panel firmware |
ProSave: Error 1603 — connection timeout
|
Wrong baud or wrong COM port | Match baud from customer panel system menu; verify COM port in Device Manager |
ProSave: Error 1907 — panel address conflict
|
Edit-site panel MPI address ≠ project address | Reconcile OP7 system menu address with project's Integrator → Address |
OP7 boots to NO PROJECT after restore |
Restore aborted mid-write | Re-run restore; if flash corrupted, recover via ProTool direct download (requires ProTool at customer site) |
Hours counter shows ####
|
PLC tag is WORD, value > 65 535 | Retag to DWORD in STEP 7 and reload both PLC and OP7 |
| Field is 8 chars but only 4 are visible | ProTool: Number of characters was not changed; only font/zoom was | Re-edit, set Number of characters = 8 explicitly, recompile, retransfer |
Restore file rejected as unknown format
|
File was renamed to .ps7 from .7z, or zip wrapper still present | Re-export from ProSave as flat .ps7; do not zip |
Panel locks up on boot with CRC Error
|
Power loss during restore; flash CRC failed | Re-attempt restore; if persistent, send panel to repair center for EPROM reflash |
11. Field-Proven Caveats and Best Practices
-
Always clone the project archive before editing. ProTool overwrites the
*.pdbon save; an undo chain does not span sessions. - Document every parameter change. A field-width change can mask a deeper tag-width bug — write the change into the machine's Functional Safety / Change Log and update the SIMATIC HMI documentation portal references.
- Validate on a bench OP7 first. Restore the new backup to the integrator's own OP7, run it against a simulated PLC (PLCSIM or a real S7-200/300 with test firmware), then ship.
- Keep two backups per panel: one before the change (the customer's last-known-good image) and one after. This gives a 60-second rollback path if the customer reports a regression.
-
If the customer has no PC at all: ship a pre-configured laptop with ProSave installed, the
.ps7file, and the cable. Label every connector with a printed wiring diagram taped to the laptop lid. - Avoid migrating from OP7 to a newer COM panel (e.g. KTP700) in the same change window. A type swap requires re-authoring every tag, alarm, and screen; combining it with a counter fix multiplies the regression risk.
12. FAQ
Can I produce a ProSave backup without owning an OP7 panel?
No. ProSave reads the runtime image directly from the panel's flash; it cannot synthesise one from a *.pdb alone. To produce a deliverable backup you must have at least one OP7 on the bench long enough to receive the edited project via ProTool and run Backup.
What is the difference between ProTool/Pro and ProTool/Lite?
ProTool/Lite is the free runtime-restricted editor Siemens distributed for evaluation; it supports the same *.pdb format but limits project size. ProTool/Pro is the unrestricted engineering version, ordered under MLFB 6ES7 198-8XC00-8BA0. Either can edit and transfer the project — only ProSave is required for the customer's restore step.
Which serial cable do I need for the ProSave restore?
The standard Siemens PC-Adapter cable 6ES7 901-0BF00-0AA0 (DB-15 ↔ sub-D for the PC-Adapter) covers MPI/PPI restore at the panel. For PtP-only restore from a PC COM port, a hand-built DB-15 ↔ DB-9 cable with Tx/Rx crossed (pins 2↔3, GND 10↔5) plus a USB↔RS-232 adapter is sufficient. Refer to Section 7 for the full pinout.
Will changing the hours counter from 4 to 8 characters affect PLC program behaviour?
No, the OP7 is a pure display device. The PLC tag type and the STEP 7 logic are unaffected. However, if the bound tag is currently a 16-bit WORD or INT, the display will overflow above 65 535 or 32 767 respectively. Migrate the tag to a 32-bit DWORD before relying on the wider display.
Why does ProSave reject my backup with "unknown format"?
The most common cause is renaming or zipping the file before transfer. ProSave expects a single flat .ps7 or legacy .brf archive. Re-export the backup from ProSave with the default extension and ship it uncompressed; if email size is a constraint, use pkzip but instruct the customer to extract before restore.
My OP7 shows "NO PROJECT" after the restore. What happened?
Almost certainly the restore was interrupted (power loss, cable disconnect) during the final flash-write window. Re-run the restore with a stable power supply; if the panel then boots to the same message, the flash is corrupted and the panel must be re-imaged via ProTool direct download, which requires ProTool at the customer site.
Is it possible to edit the OP7 project at the customer site instead of shipping a backup?
Yes — Path A in Section 1. The customer needs a licensed ProTool/Pro, the original *.pdb, and a working serial cable. This gives them ongoing edit rights. For one-off changes such as a counter-width fix, Path B (deliver a pre-built backup) is faster and removes the risk of an accidental edit corrupting the project.