Resolving STEP 7 Safety V15.1 Optional Package Installation Error

David Krause10 min read
SiemensTIA PortalTroubleshooting
Licensed PE Working through this on a live machine? A Maine-licensed engineer can take it from here — included with IMD hardware, by the hour for everything else. Book an engineer

1. Problem Overview

When attempting to install SIMATIC STEP 7 Safety V15.1 on a workstation that already has TIA Portal V15.1 deployed, the Siemens Setup program aborts with the following dialog text:

Error message: "The product 'SIMATIC STEP 7 Safety V15.1' is an optional package, which cannot be installed without the main product. Please install the main product first."

The user typically proceeds to install the Safety option package from the TIA Portal installation media or from the Siemens Software Delivery Service (SDS) and the install wizard halts immediately. The product is recognized in the Setup catalog, but the dependency check fails and the "Next" button on the product selection page becomes disabled (greyed out).

Error 1327 / MSI return code 1603 are commonly written to %TEMP%\Siemens\Automation\SetupLogs alongside this dialog. The root cause is rarely a missing TIA Portal installation: the TIA Portal V15.1 main product is present, but the Setup database has lost the link to its components because of a corrupted package, an incomplete TIA update, or because STEP 7 Safety was launched against the wrong repository key.

2. Root Cause Analysis

STEP 7 Safety V15.1 (article number 6ES7833-1FC02-0YA5) is an optional package within the TIA Portal product matrix. According to the Siemens product structure, it must be installed after at least one of the following main products and at exactly the same Service Pack / Update level:

Main product Article number (example) Minimum level
STEP 7 Professional V15.1 6ES7822-1AA05-0YA5 V15.1 Update 1
STEP 7 Basic V15.1 6ES7822-0AA05-0YA5 V15.1 Update 1
S7-PLCSIM V15.1 6ES7841-0CC05-0YA5 V15.1 Update 1
WinCC Professional V15.1 6AV2103-0AA05-0AA5 V15.1 Update 1
WinCC Comfort/Advanced V15.1 6AV2102-0AA05-0AA5 V15.1 Update 1

The most frequent root causes observed in the field are:

  1. Mixed Update levels. TIA Portal V15.1 with Update 8 (or any update higher than Update 2) is installed, but the Safety V15.1 setup on the DVD / SDS has not been refreshed. The Setup checks the SetupVersion registry value under HKLM\SOFTWARE\Siemens\Automation\InstalledComponents\TIA and rejects V15.1.0.0 components when the base installation is V15.1.8.0.
  2. Corrupted package database. The TIA Package Manager (TIA-PMC) file C:\Program Files\Siemens\Automation\TIAPMC\TIAPackageManager.xml is missing the entry for STEP 7 Safety. This happens after a failed update, an interrupted uninstall, or an antivirus quarantine of TIAPmcService.exe.
  3. Repository mismatch. The user runs Start.exe from a STEP 7 Safety V15.1 folder that belongs to a different TIA DVD (e.g. V15 or V16). The Setup then looks for V15 / V16 main products that are not present.
  4. Missing license / Key. Even when installation is forced, Safety blocks program-open and project compile with "License missing" on every F-CPU. A floating or single license on the USB dongle is required.
  5. User account without elevated rights. The TIA Setup does not silently elevate; UAC is rejected and the Setup rolls back, leaving partial entries that confuse the next attempt.

3. Prerequisites

  • TIA Portal V15.1 installed (any floating license or trial version suffices for the optional package install, but Safety will not be functional without a Safety license).
  • Administrative Windows user with UAC disabled for the duration of the install.
  • STEP 7 Safety V15.1 setup media with the same Update level as the installed TIA Portal. Confirm by checking Help > Installed software > TIA Portal in the project view and comparing with the Setup DVD label "V15.1 Update X".
  • Windows 10 (1607 or higher), Windows Server 2016 / 2019 64-bit. Windows 7 is not supported by V15.1 Update 5 and later.
  • Microsoft .NET Framework 4.7.2 and the Visual C++ 2015-2022 redistributable (x64).
  • At least 10 GB free on the system drive (TIA V15.1 fully expanded consumes 25-30 GB).
  • Antivirus / Windows Defender real-time protection temporarily disabled.

4. Step-by-Step Resolution

4.1 Verify the installed TIA Portal version

  1. Start TIA Portal V15.1.
  2. Switch to the Project view (menu View > Project view).
  3. Open Help > Installed software.
  4. Expand every installed package and capture a screenshot. The entry you need is the exact build string of TIA Portal, e.g. V15.1 Update 8 (build 180525).

4.2 Acquire the matching Safety media

Download the Safety V15.1 setup that matches the TIA Portal build. From the Siemens Support entry 109769140 (STEP 7 Safety V15.1 downloads) you must pick the "Update 8" package if your TIA Portal reports Update 8. Mixing levels reproduces the original error.

4.3 Repair the TIA Portal package database

  1. Close TIA Portal and stop the Siemens TIA Portal Package Manager service (sc stop TIA_PM from an elevated cmd).
  2. Rename the file C:\Program Files\Siemens\Automation\TIAPMC\TIAPackageManager.xml to TIAPackageManager.xml.bak. The service will rebuild it on next start.
  3. Restart the service: sc start TIA_PM and wait until status is RUNNING.

4.4 Reinstall the TIA Portal main product

Run the TIA Portal V15.1 Start.exe from the matching DVD. Select Repair / Update rather than Uninstall. This operation re-registers the base components, refreshes the package database and clears the dependency lock that the Safety installer evaluates.

Important: Do not uninstall TIA Portal. A clean uninstall removes the HMI tags, libraries and the authorization, and you will lose every installed option package. The repair path rebuilds only the missing metadata.

4.5 Install STEP 7 Safety V15.1

  1. Right-click the Safety Start.exe and choose Run as administrator.
  2. Accept the license agreement and the security settings (allow Siemens.Automation.Portal.exe and S7wsFxxx.exe in the firewall prompt).
  3. The product list now shows "SIMATIC STEP 7 Safety V15.1" as checkable, with a green dependency check on "STEP 7 Professional V15.1".
  4. Click Install. The Safety package deploys in 3-7 minutes depending on disk type (NVMe < 4 min, HDD > 9 min).
  5. Reboot the PC to finalize the COM/DCOM service registrations.

4.6 Transfer the Safety license

Start SINEC NMS or the legacy Automation License Manager V6.0 SP5 (or later). Plug the USB license dongle (6ES7822-1AK00-0YA0) and drag the "STEP 7 Safety" license key to the local drive. Without a valid license the Safety editor opens in read-only mode and every F-block download returns error 33:1:18 (license missing).

5. Verification

  1. Re-open TIA Portal and load any S7-1500 project that contains an F-CPU (e.g. CPU 1516F-3 PN/DP, order number 6ES7516-3AN02-0AB0).
  2. Right-click an FB and select Properties > Safety. The Safety tab must be present; if it is greyed out, the optional package is not registered.
  3. Add a new F-FB and compile the program. The Safety compiler must return no errors and produce a CRC that is logged in the project properties.
  4. From Help > Installed software, confirm the entry "SIMATIC STEP 7 Safety V15.1 Update X (build Y)\" with build Y matching the TIA Portal build.
  5. Open the Windows event viewer, Applications and Services Log > Siemens > Automation > Setup. The last InstallSuccess event must be time-stamped within the last 30 minutes and reference the Safety component GUID {F8D2A4D1-...}.

6. Alternative Workarounds

Symptom Likely cause Workaround
Safety option greyed out, TIA Portal Update 8 installed Setup DVD is Update 2 or older Download the Update 8 Safety package from SDS
Setup aborts with MSI 1603 mid-install Antivirus blocks TIAPmcService.exe Whitelist C:\Program Files\Siemens\Automation in Defender and rerun
Safety installs but F-CPU compile fails with error 33:1:18 License not present Install Safety license via Automation License Manager
"Setup is already running" hangs forever Stale _setup.dll lock Delete %ProgramData%\Siemens\Automation\Setup\*.lock
Error appears after Windows 10 feature update TIAPMC service disabled Set TIA_PM to Automatic (Delayed Start)

7. Update-Level Compatibility Matrix

STEP 7 Safety V15.1 was released in 9 sequential updates between 2018 and 2020. The table below documents the build numbers and the matching TIA Portal V15.1 base. Installing Safety at a lower or higher level than the base is the most common trigger of the optional-package error.

Update Safety build TIA Portal build Released
V15.1 170925 170925 03/2018
V15.1 Update 2 180325 180325 07/2018
V15.1 Update 3 180825 180825 10/2018
V15.1 Update 4 181025 181025 01/2019
V15.1 Update 5 190425 190425 06/2019
V15.1 Update 6 191125 191125 01/2020
V15.1 Update 7 200425 200425 07/2020
V15.1 Update 8 200825 200825 10/2020
TIA Portal V15.1 Update 9 does not exist; Update 8 is the last official V15.1 release. To go higher you must perform a release upgrade to V16, which means uninstalling V15.1 entirely.

8. Registry and File Locations

The following keys are used by Setup to validate the Safety optional package. Backing them up before any repair simplifies roll-back.

Path Value Purpose
HKLM\SOFTWARE\Siemens\Automation\InstalledComponents\TIA Version Current TIA build string
HKLM\SOFTWARE\Siemens\Automation\InstalledComponents\Safety\V15.1 Installed (DWORD=1) Safety installed flag
HKLM\SOFTWARE\Siemens\Automation\InstalledComponents\Safety\V15.1 Update (DWORD) Safety update level
C:\Program Files\Siemens\Automation\TIAPMC\TIAPackageManager.xml XML list Optional package database
C:\ProgramData\Siemens\Automation\SetupLogs log files Last Setup traces

9. Field Commissioning Notes

After the Safety package is successfully installed, a number of items must be checked on a real F-system before sign-off:

  • Generate a Safety signature time stamp on the project and archive it together with the project CRC. The signature is required for SIL 2 / SIL 3 acceptance per Siemens FAQ 26409135.
  • Validate the F-runtime group cycle time with the worst-case safety program. F-cycles above 50 ms require an explicit operator acknowledgment per IEC 61508 SIL 3.
  • Run the "Acceptance test" wizard in TIA Portal (Project > Safety > Acceptance test) and document the report.
  • Update the F-library version of the LDrvSafe / F-CPU blocks. Mixing F-library V15.1 with TIA Portal V15.1 Update 8 base is supported, but mixing F-library V14 with V15.1 base is not.
  • Confirm that the Safety printout of the F-FB / F-DB matches the as-built cabinet wiring. Differences are the most common cause of TÜV rejection.

10. Related Installation Errors

  • Error 1335 — the Safety cabinet file S7Safety.cab is corrupt. Re-download from SDS.
  • Error 1706 — Setup cannot find the TIA Portal base installation. Verify that C:\Program Files\Siemens\Automation\Portal V15.1 exists.
  • Error 1904 — module Siemens.S7Safety.MFCTools.dll failed to register. Re-register with regsvr32 /u followed by regsvr32.
  • Error 0x80070005 (access denied) — UAC or anti-virus blocked the install. Re-run elevated with AV disabled.
  • MSI warning 1946 — property S7SafetyShortcut could not be created. Cosmetic only, install proceeds.

11. Reverting a Failed Install

If the repair path is not possible (for example, the TIA Portal DVD is no longer available), the official de-install path is:

  1. Open Control Panel > Programs and Features.
  2. Select SIMATIC STEP 7 Safety V15.1 and click Uninstall.
  3. If the entry is missing, run msiexec /x {GUID} with the GUID listed in HKLM\SOFTWARE\Siemens\Automation\InstalledComponents\Safety\V15.1\ProductCode.
  4. Remove the orphaned registry keys with regedit and delete the folder C:\Program Files\Siemens\Automation\Safety V15.1.
  5. Reboot and verify with sc query TIA_PM that the Package Manager service is running before the next install attempt.

12. Frequently Asked Questions

Why does TIA Portal V15.1 Update 8 reject the STEP 7 Safety V15.1 setup from the original DVD?

The original V15.1 DVD ships Safety at build 170925 (no update). The dependency check requires the Safety build to be at least equal to the TIA Portal build, so Update 8 (build 200825) refuses the older Safety component. Download the matching Update 8 Safety package from Siemens SDS (Support entry 109769140) and run that instead.

Can I install STEP 7 Safety V15.1 without a valid Safety license?

Yes, the install will succeed but the Safety editor opens read-only and every download to an F-CPU returns error 33:1:18 ("License for the optional package STEP 7 Safety is missing"). To run F-programming you need the Safety license on a USB dongle (6ES7822-1AK00-0YA0) or a floating license server entry.

Do I have to uninstall TIA Portal to fix this error?

No. A repair (also called "update in place") of the TIA Portal V15.1 base product from the same Update media is sufficient. The repair rebuilds the TIA Package Manager database and re-registers the optional package slots, after which Safety installs without the dependency error.

Is STEP 7 Safety V15.1 compatible with Windows 11?

Officially no. Siemens certifies STEP 7 Safety V15.1 up to Windows 10 (build 21H2) and Windows Server 2019. Windows 11 can be used with TIA V16/V17/V18, but V15.1 may install on Windows 11 21H2 with .NET 4.8; expect TIA_PM service warnings in the event log.

What is the difference between STEP 7 Safety and the F-FB libraries?

STEP 7 Safety is the engineering tool option (F-editor, F-signature, acceptance test). The F-FB libraries (Distributed Safety, F-IO, F-CPU blocks) are the actual program blocks added to a project. You need the tool option to develop, compile, and download F-blocks; without it, the libraries cannot be instantiated.

Back to blog