Resolving Siemens Comfort Panel Sm@rtServer Library Download

David Krause10 min read
HMI / SCADASiemensTroubleshooting
Licensed PE Working through this on a live machine? A Maine-licensed engineer can take it from here — included with IMD hardware, by the hour for everything else. Book an engineer

Resolving Siemens Comfort Panel Sm@rtServer Library Download Issue

The Siemens support entry 109476153 ("Remote access to SIMATIC HMI control panels") describes how to wire a TP1200 Comfort panel as a remote target for engineering and operator access. Engineers following that entry sometimes hit a "file not found" error when clicking the linked archive 109476153_Remote_Panels_SmartServer_Library.zip. This reference covers why that download link breaks, the licensing changes introduced with Comfort Panels in TIA Portal V14, and the exact configuration sequence that replaces the legacy library approach with the integrated Sm@rtService workflow.

1. Problem Statement

Symptom reported by engineers: opening the Siemens Industry Online Support (SIOS) entry at the URL pattern

https://support.industry.siemens.com/cs/document/109476153/remote-access-to-simatic-hmi-control-panels

and clicking the attachment 109476153_Remote_Panels_SmartServer_Library.zip returns either "file not found", a redirect to the document overview without a binary download, or a 404 response. The accompanying manual 109476153_Remote_Panels_SmartServer_DOKU_en.pdf still opens, but the .zip component referenced by the manual is missing or temporarily unavailable.

Root-cause summary: Entry 109476153 is a "living" Siemens support document whose linked archive was originally bundled with the application example. When Siemens restructured the SIOS content delivery and consolidated Sm@rtServer tooling into the TIA Portal V14 runtime, the archive was retired and replaced by built-in panel functions. The link can reappear and disappear as Siemens re-issues and re-titles the entry.

2. Scope of Siemens Entry 109476153

Entry 109476153 documents remote-access operation for the SIMATIC HMI Comfort family using the panel-side Sm@rtServer and the engineering-side Sm@rtClient. The reference design in the original PDF covers:

  • Configuring the TP1200 Comfort as a Sm@rtServer target.
  • Establishing an HTTP/HTTPS connection from a Sm@rtClient (engineering station or operator station).
  • Displaying panel screens remotely with operator-level authorization.
  • Performing remote firmware/service downloads.

The companion library archive was a TIA Portal V13 / V13 SP1 example project containing function blocks, HMI tags, and screen templates. That project has been superseded by the integrated Sm@rtService configuration in TIA Portal V14 onward.

3. Why the Download Link Fails

Cause Indicator Resolution
SIOS attachment removed during content migration "File not found" overlay on the download button Use the V14+ integrated workflow; no archive is required
Regional SIOS mirror out of sync Link works from lc=en-WW but fails from a country locale Append &lc=en-WW or strip the locale parameter
Login/session requirement after SIOS re-auth Redirect to sign-in page, then dead link Sign in with a Siemens Industry account and retry
Document re-numbered (e.g., 109766303 successor) Entry loads, but table-of-contents lists only documentation, no archive Cross-reference via SIOS search for "Sm@rtServer Comfort"
Browser cache serving stale redirect "404 Not Found" despite live status Hard reload, clear cache, or open in private window

If the link returns a 200 status code but the file is empty (< 1 KB), it indicates a stub placeholder was uploaded during migration. The functional remedy is to leave the archive alone and use the V14 integrated method described in section 7.

4. Sm@rtServer vs. Sm@rtService Terminology

Siemens documentation uses these terms interchangeably in older entries, but the runtime distinction is important:

Term Layer Function Required from
Sm@rtServer Runtime service inside the panel OS Hosts the web/HMI service on the panel WinCC Comfort V13 SP1+
Sm@rtClient Client application on the engineering/operator PC Connects to a Sm@rtServer and mirrors the panel UI WinCC Comfort/Professional or Sm@rtClient app
Sm@rtService Configuration entry in TIA Portal Enables, secures, and parameterizes the panel-side Sm@rtServer TIA Portal V14+ integrated, no separate license on Comfort V14
Sm@rtServer library TIA Portal V13 example project (legacy) Provided demo blocks and screens V13 / V13 SP1 only; retired after V14

The "library" that engineers cannot download in entry 109476153 is the V13 example project. Its functionality is duplicated by the configuration items described below.

5. Licensing Model: Pre-V14 vs. V14

Panel family TIA Portal version Sm@rtServer/Sm@rtService license Notes
Comfort (TP/KP) 1st generation V13 / V13 SP1 Required (per-panel runtime license) Library archive referenced by entry 109476153
Comfort (TP/KP) 1st generation V14+ Required (per-panel runtime license) Configure via "Sm@rtService" entry, not via the legacy library
Comfort (TP/KP) 2nd generation V14 Not required Built-in Sm@rtServer activation; only a password must be set
Basic 2nd generation (KTP400/700/900/1200 Basic) V14 Required (per-panel runtime license) Sm@rt access available but license-bound
Field rule: If your TP1200 Comfort is a 2nd generation device (article number suffix starting with -2, e.g. 6AV2 124-1MC01-0AX0), running panel image V14.0.x or later, no separate Sm@rtService license is required. Define an access password and the service is enabled. First-generation Comfort panels always require the license regardless of TIA version.

6. Prerequisites

  • TP1200 Comfort panel with article number verified as 1st or 2nd generation.
  • TIA Portal V14 or later, with matching WinCC Comfort/Advanced installed.
  • Panel image updated to the same major version as TIA Portal.
  • Ethernet connectivity between the engineering station and the panel (same subnet, or routed with ports 80/443/102 open).
  • For remote (off-LAN) access: panel-side firewall/NAT exposes TCP 443 (HTTPS) to the WAN, and a static public IP or DDNS endpoint.
  • For licensed variants: the Sm@rtServer runtime license key from the Siemens Automation License Manager.

7. Step-by-Step: Enabling Sm@rtService on TP1200 Comfort (TIA Portal V14)

  1. Open the TIA Portal project containing the TP1200 Comfort device.
  2. In the project tree, select the HMI device, then open Properties → Services → Sm@rtService (or Runtime settings → Services depending on TIA version).
  3. Tick Enable Sm@rtServer.
  4. Set the operation mode to Enable Sm@rtService for HTTP/HTTPS remote access.
  5. Define an access password (minimum 8 characters, mixed case + digit recommended). This password authenticates Sm@rtClient connections.
  6. Configure the port: default TCP 80 for HTTP, TCP 443 for HTTPS. Use HTTPS in production environments.
  7. If TLS is required, load the panel certificate under Security → Certificates; the Sm@rtClient must trust this certificate authority.
  8. Compile the HMI project and transfer it to the panel.
  9. On the panel, navigate to Control Panel → Network → Sm@rtService and verify the service status reads "Running".

8. Step-by-Step: Connecting from Sm@rtClient

  1. Launch the Sm@rtClient from the TIA Portal installation directory: %ProgramFiles%\Siemens\Automation\WinCC\WinCC\bin\SmRtClient.exe or the WinCC Comfort start menu entry.
  2. In the connection dialog, enter the panel IP address or DNS hostname (e.g., https://panel.example.com).
  3. Provide the Sm@rtService password defined in step 5 of the previous section.
  4. Select display mode: Monitor (read-only), Operate (operator-level write), or Admin (full access; available only when configured on the panel).
  5. Confirm; the mirrored panel UI appears in the Sm@rtClient window. Latency on a 100 Mbit LAN is typically < 200 ms; WAN latency scales with round-trip time plus a 16–32 ms encoding overhead per screen refresh.

9. Bandwidth and Performance Sizing

Sm@rtServer streams screen updates as JPEG-compressed frames plus runtime tag updates over the configured TCP channel. Use the following sizing relations when provisioning WAN links:

B (kbit/s) ≈ f_hz * (W * H) * bpp_jpg / 1024

Where:

  • f_hz = screen change frequency (typical 1–5 Hz for static HMI, up to 15 Hz for animated trends).
  • W * H = panel pixel grid (TP1200 Comfort: 1280 × 800).
  • bpp_jpg = compressed bits per pixel (typical 0.3–1.5 bpp; Siemens default ≈ 0.6 bpp).

For a TP1200 Comfort at 5 Hz with 0.6 bpp: B ≈ 5 * 1,024,000 * 0.6 / 1024 ≈ 3000 kbit/s (~3 Mbit/s). A static overview screen at 1 Hz typically sits at 600–800 kbit/s. Plan WAN circuits accordingly and enable QoS marking on the Sm@rtServer TCP port.

10. Verification Checklist

  • Service status: Panel Control Panel → Sm@rtService shows "Running".
  • Port reachability: From the engineering station, Test-NetConnection -ComputerName <panel-IP> -Port 443 returns TcpTestSucceeded: True.
  • HTTP probe: Browser opens https://<panel-IP>/ and presents the panel's start page or login dialog.
  • Sm@rtClient login: Password accepted; mirrored screen appears within 3 seconds on LAN.
  • Write access: Operator mode can toggle a known test tag; tag value changes in the engineering PLC.
  • Session timeout: Idle session disconnects after the configured timeout (default 10 minutes) without operator input.
  • Audit log: Panel records the Sm@rtClient connection with timestamp and operator name.

11. Troubleshooting Matrix

Symptom Likely cause Corrective action
"File not found" on SIOS attachment Archive retired (entry 109476153 lives, archive dead) Use V14 integrated Sm@rtService; do not chase the .zip
Sm@rtClient reports "License missing" on 2nd gen Comfort Panel image older than V14 Update panel image to V14.0.0.0 or later via ProSave
Sm@rtClient reports "License missing" on 1st gen Comfort Runtime license not transferred Transfer license via Automation License Manager; verify "Yes" under panel Diagnostics → Licenses
Connection refused on TCP 443 Firewall/NAT blocks the port, or HTTPS not enabled Enable HTTPS under Sm@rtService settings; open TCP 443 on the path
Login accepted but screen is blank Project not compiled with runtime active, or service not started Recompile HMI; transfer; restart panel; confirm service status "Running"
Periodic disconnect every < 60 s Router/firewall drops idle TCP sessions Enable Sm@rtServer keep-alive (default 30 s); configure NAT TCP idle timeout > 120 s
Slow / pixelated remote view JPEG quality too low, or WAN bandwidth undersized Raise bpp_jpg setting on the panel; upgrade WAN link; reduce screen change rate
TLS handshake fails Client does not trust panel certificate Install panel CA certificate on the Sm@rtClient workstation

12. Security Hardening Notes

  • Always use HTTPS (TCP 443) for Sm@rtService when crossing network boundaries. Plain HTTP exposes the password and tag values.
  • Use a strong Sm@rtService password (12+ chars, mixed case, digits, symbols). The password is the only barrier between an attacker and operator-level write access.
  • Restrict source IPs on the firewall to known engineering/operator networks. Sm@rtServer itself does not provide IP allow-listing.
  • Place the panel behind a VPN or jump host; do not expose TCP 443 directly to the public internet without additional controls.
  • Apply Siemens security patches to the panel image on the schedule defined in the Siemens Security Advisories feed.
Operational rule: Disable Sm@rtService when remote access is not required. The integrated TIA Portal configuration lets you schedule service hours via project scripts if remote sessions are only needed during commissioning or specific shifts.

13. Migrating from the V13 Library to V14 Integrated Configuration

Engineers who already imported the legacy library into a V13 project and now upgrade to V14 should perform the following migration:

  1. Upgrade the TIA Portal project to V14; remove the legacy library references from the HMI device.
  2. Re-create Sm@rtService configuration through Properties → Services as described in section 7.
  3. Map any HMI tags referenced by the legacy library to runtime tags in the V14 project; legacy block instances are no longer needed.
  4. Recompile and transfer; verify with the checklist in section 10.

The legacy library blocks duplicated standard TIA Portal functionality in V13; in V14 the standard configuration items supersede them, so no behavioral regression is expected after migration.

14. Related Siemens Documentation


FAQ

Where can I download the Sm@rtServer library archive referenced by entry 109476153?

The legacy archive is no longer distributed. TIA Portal V14 and later integrate Sm@rtServer activation into the panel's Services configuration under HMI device Properties. Configure the service there and set an access password; no separate library is required.

Do I still need a Sm@rtService license on a TP1200 Comfort with TIA Portal V14?

Second-generation Comfort panels running panel image V14.0.0.0 or later do not require a license; just enable the service and define a password. First-generation Comfort panels always require a per-panel runtime license regardless of TIA version. Basic 2nd generation HMI devices still require a license at V14.

Which TCP ports must be open between the Sm@rtClient and the panel?

Open TCP 80 for HTTP-based Sm@rtService, TCP 443 for HTTPS-based Sm@rtService. Siemens recommends HTTPS in production. Ensure intermediate firewalls and NAT devices permit long-lived idle TCP sessions; configure TCP keep-alive to 30 s and idle timeouts above 120 s.

How do I verify that Sm@rtService is actually running on the panel?

On the panel itself, open Control Panel → Network → Sm@rtService and confirm the status reads "Running". From the engineering station, run Test-NetConnection -ComputerName <panel-IP> -Port 443 for a TCP probe, or browse to https://<panel-IP>/ for an HTTPS probe.

My Sm@rtClient connection drops every minute; what causes this?

Intermediate firewalls or NAT devices are likely terminating idle TCP sessions. Enable the panel-side TCP keep-alive (default 30 s) and raise the NAT/firewall idle TCP timeout above 120 s. If drops persist, check for ISP transparent proxying that strips long-lived sessions and route around it via VPN.

Back to blog