device library

Honeywell UDC2500/3200/3300 controller (Modbus comms option)

Register map(s) for this device, with a note of how far each has been checked. Addresses are 0-based, as on the wire. Scale and byte order are confirmed only at the hardware-verified rung.

coherence-checked

Round-trips through a real Modbus stack with no overlapping addresses and a word-order-sensitive codec — the map is internally coherent and wire-decodable. Does NOT prove byte-order or scaling match a real device: the emulator is seeded from the map's own types, so a uniformly wrong byte-order still round-trips. Only hardware-verified confirms byte-order/scale on the wire.

pointaddress (0-based)typescaleunit
PV0I160.1
RV; Remote Set Point; SP21I160.1
Working Set Point2I160.1
Output3I160.1
Input #14I160.1
Input #25I160.1
Gain #1 (Prop Band #1 if active)6I160.1
Direction7I160.1
Reset #18I160.1
Rate #19I160.1
Cycle Time #110I160.1
PV Low Range11I160.1
PV High Range12I160.1
Alarm #1 SP #113I160.1
Alarm #1 SP #214I160.1
Alarm #1 Action15I160.1
Gain #216I160.1
Deadband17I160.1
Reset #218I160.1
Rate #219I160.1
Cycle Time #220I160.1
SP1; LSP #121I160.1
LSP #222I160.1
Alarm #2 SP #123I160.1
Alarm #2 SP #224I160.1
Alarm #2 Action25I160.1
SP Low Limit26I160.1
SP High Limit27I160.1
Working Set Point28I160.1
Output Low Limit29I160.1
Output High Limit30I160.1
Output Working Value31I160.1
PV Override Value32I160.1
SP Override Value33I160.1
Output Override Value34I160.1
Ratio35I160.1
Bias36I160.1
Deviation37I160.1
LSP #338I160.1
Percent Carbon Monoxide - CO39I160.001
Decimal Point40I161
Alg1 Bias41I160.1
Alg2 Bias42I160.1
LSP #443I160.1
Current Output #244I160.1
Current Output #345I160.1
Fuzzy Enable56U161
Shed Enable57U161
Auto/Manual State58U161
Set Point State59U161
Remote/Local Set Point State60U161
Tune Set State61U161
Loop Status62U161
Device Status63U161
PV64F32BE1
RV; Remote Set Point; SP266F32BE1
Working Set Point68F32BE1
Output70F32BE1
Input #172F32BE1
Input #274F32BE1
Gain #176F32BE1
Direction78F32BE1
Reset #180F32BE1
Rate #182F32BE1
Cycle Time #184F32BE1Seconds
PV Low Range86F32BE1
PV High Range88F32BE1
Alarm #1 SP #190F32BE1
Alarm #1 SP #292F32BE1
Gain #296F32BE1
Deadband98F32BE1
Reset #2100F32BE1
Rate #2102F32BE1
Cycle Time #2104F32BE1Seconds
LSP #1106F32BE1
LSP #2108F32BE1
Alarm #2 SP #1110F32BE1
Alarm #2 SP #2112F32BE1
SP Low Limit116F32BE1
SP High Limit118F32BE1
Working Set Point120F32BE1
Output Low Limit122F32BE1
Output High Limit124F32BE1
Output Working Value126F32BE1
PV Override Value128F32BE1
SP Override Value130F32BE1
Output Override Value132F32BE1
Ratio134F32BE1
Bias136F32BE1
Deviation138F32BE1
LSP #3140F32BE1
LSP #4142F32BE1
Gain #3144F32BE1
Reset #3146F32BE1
Rate #3148F32BE1
Gain #4150F32BE1
Reset #4152F32BE1
Rate #4154F32BE1
PV/SP Switch 3 to 4156F32BE1
ALG1 Bias158F32BE1
ALG2 Bias160F32BE1
Aux Output162F32BE1
Setpoint Ramp Time164F32BE1
Setpoint Ramp Setpoint166F32BE1
Input 1 Ratio168F32BE1
Input 1 Bias170F32BE1
Input 2 Ratio172F32BE1
Input 2 Bias174F32BE1
SP/PV Switch 1 to 2176F32BE1
SP/PV Switch 2 to 3178F32BE1
Input 3 Ratio180F32BE1
Input 3 Bias182F32BE1
Input 4 Ratio184F32BE1
Input 4 Bias186F32BE1
Input 5 Ratio188F32BE1
Input 5 Bias190F32BE1
Current 1 Output192F32BE1
Current 3 Output194F32BE1
Chart Speed2048F32BE1Hours/rev
# Chart Divisions2050F32BE1
Chart Status2052F32BE1
Pen 12054F32BE1
Pen 1 High Value2056F32BE1
Pen 1 Low Value2058F32BE1
Pen 22060F32BE1
Pen 2 High Value2062F32BE1
Pen 2 Low Value2064F32BE1
Pen 32066F32BE1
Pen 3 High Value2068F32BE1
Pen 3 Low Value2070F32BE1
Pen 42072F32BE1
Pen 4 High Value2074F32BE1
Pen 4 Low Value2076F32BE1
Analog Input #16144F32BE1
Analog Input #26146F32BE1
Analog Input #36148F32BE1
Analog Input #46150F32BE1
Analog Input #56152F32BE1
Analog Input #66154F32BE1
Analog Input #76156F32BE1
Analog Input #86158F32BE1
Analog Input #96160F32BE1
Analog Input #106162F32BE1
Analog Input #116164F32BE1
Analog Input #126166F32BE1
Analog Input #646270F32BE1
Communication Value #16272F32BE1
Communication Value #26274F32BE1
Communication Value #36276F32BE1
Communication Value #46278F32BE1
Communication Value #56280F32BE1
Communication Value #66282F32BE1
Communication Value #76284F32BE1
Communication Value #86286F32BE1
Communication Value #96288F32BE1
Communication Value #106290F32BE1
Communication Value #116292F32BE1
Communication Value #126294F32BE1
Communication Value #136296F32BE1
Communication Value #146298F32BE1
Communication Value #156300F32BE1
Communication Value #166302F32BE1
Communication Value #326334F32BE1
Math Value #16336F32BE1
Math Value #26338F32BE1
Math Value #36340F32BE1
Math Value #46342F32BE1
Math Value #56344F32BE1
Math Value #66346F32BE1
Math Value #76348F32BE1
Math Value #86350F32BE1
Math Value #96352F32BE1
Math Value #106354F32BE1
Math Value #116356F32BE1
Math Value #126358F32BE1
Math Value #136360F32BE1
Math Value #146362F32BE1
Math Value #156364F32BE1
Math Value #166366F32BE1
Math Value #176368F32BE1
Math Value #186370F32BE1
Math Value #196372F32BE1
Math Value #206374F32BE1
Math Value #216376F32BE1
Math Value #226378F32BE1
Math Value #236380F32BE1
Math Value #246382F32BE1
Math Value #256384F32BE1
Math Value #266386F32BE1
Math Value #276388F32BE1
Math Value #286390F32BE1
Math Value #296392F32BE1
Math Value #306394F32BE1
Math Value #316396F32BE1
Math Value #326398F32BE1
Math Value #2566846F32BE1
Position6864F32BE1
Input6866F32BE1
Output6868F32BE1
Remote Setpoint6870F32BE1
Input Low Range6872F32BE1
Input High Range6874F32BE1
Relay #1 SP16876F32BE1
Relay #1 SP26878F32BE1
Relay #2 SP16880F32BE1
Relay #2 SP26882F32BE1
Relay #3 SP16884F32BE1
Relay #3 SP26886F32BE1
Relay #4 SP16888F32BE1
Relay #4 SP26890F32BE1
Deadband6892F32BE1
Deviation6894F32BE1
Totalizer Value #16912F32BE1
Totalizer Value #26914F32BE1
Totalizer Value #36916F32BE1
Totalizer Value #46918F32BE1
Totalizer Value #56920F32BE1
Totalizer Value #66922F32BE1
Totalizer Value #647038F32BE1
Hours7136U161
Minutes7137U161
Seconds7138U161
Month7139U161
Day7140U161
Year7141U161
Week Day7142U161
Alarm Status #1 - #167152U161
Alarm Status #17 - #327153U161
Alarm Status #33 - #487154U161
Alarm Status #49 - #647155U161
Alarm Status #65 - #807156U161
Alarm Set Point Value #17168F32BE1
Alarm Set Point Value #27170F32BE1
Alarm Set Point Value #37172F32BE1
Alarm Set Point Value #47174F32BE1
Alarm Set Point Value #57176F32BE1
Alarm Set Point Value #67178F32BE1
Alarm Set Point Value #77180F32BE1
Alarm Set Point Value #87182F32BE1
Alarm Set Point Value #97184F32BE1
Alarm Set Point Value #107186F32BE1
Alarm Set Point Value #117188F32BE1
Alarm Set Point Value #127190F32BE1
Alarm Set Point Value #137192F32BE1
Alarm Set Point Value #147194F32BE1
Alarm Set Point Value #157196F32BE1
Alarm Set Point Value #167198F32BE1
Alarm Set Point Value #2567678F32BE1
Set Point Programmer Output7680F32BE1
Current Segment Number7682F32BE1
Program Elapsed Time7684F32BE1
Program Active Time7686F32BE1
Segment Time Remaining7688F32BE1
Start7692I161
Hold7693I161
Advance7694I161
Reset7695I161
Temperature7744F32BE1degrees F
Temperature Hi7746F32BE1degrees F
Temperature Lo7748F32BE1degrees F
Cycles7750F32BE1counts
Relay1 Cycles7752F32BE1counts
Relay2 Cycles7754F32BE1counts
Relay3 Cycles7756F32BE1counts
Relay4 Cycles7758F32BE1counts
Region0 Counts7760F32BE1counts
Region1 Counts7762F32BE1counts
Region2 Counts7764F32BE1counts
Region3 Counts7766F32BE1counts
Region4 Counts7768F32BE1counts
Region5 Counts7770F32BE1counts
Region6 Counts7772F32BE1counts
Region7 Counts7774F32BE1counts
Region8 Counts7776F32BE1counts
Region9 Counts7778F32BE1counts
Total Degrees Travelled7780F32BE1degrees
Accumulated Stall Time7782F32BE1minutes
Alarm Set Point Value #5768318F32BE1
Tag Name10192U161
Date of Manufacture10195U161
Date Last Repaired10198U161
Date Last Calibrated10201U161
Actuator Serial Number10204U161
Actuator Model Number10221U161

link settings as documented (unverified): RTU; baud 300/600/1200/2400/4800/9600/19200/38400; FC 01,02,03,04,05,06,08,16,17,20,21

bench facts as documented (unverified)
wiring notesThe Modbus RTU allows the instrument to be a citizen on a data link shared with other devices that subscribe to the Modbus RTU RS-485 specification.
max registers/read22
broadcastnot supported
protocol notesRequest delay time is 20 ms (or 3.5 characters for newer versions).
identification notesUses Function Code 17 (11h) to report Device ID.
FC 43 device IDnot supported
doc revisionRevision T
field reports — community-sourced, unverified (checked 2026-06-11)
  • The standard UDC2500/3200 product manuals only document registers for Function Codes 20 and 21, which are proprietary and unsupported by most commercial Modbus masters. Users must refer to the separate Modbus RTU Serial Communications User Manual (51-52-25-66) to obtain the standard operational register map (FC03/FC04/FC06/FC16). [source]
  • The Ethernet IP address on the UDC2500/3200 Ethernet option card cannot be configured via the front keypad; it can only be configured using Honeywell's proprietary PIE (Process Instrument Explorer) software. The default IP address is 10.0.0.2. [source]
  • Writing setpoints or parameters continuously to the UDC controller via Modbus will cause premature EEPROM memory fatigue and eventual hardware failure. Setpoints should only be written on change or at the start of a segment. [source]
  • Writing to UDC2500 controllers using Function Code 6 can trigger Modbus Exception Code 3 (Illegal Data Value) due to High Limit FM approval constraints or incorrect register mapping. [source]
  • confirmed: comms defaults (baud rates up to 38400, 8-N-1 framing) — confirmed by Honeywell Modbus RTU Serial Communications User Manual (51-52-25-66, Rev T) and field integration notes on Control.com
  • confirmed: Function Code 17 (11h) used for Device ID — confirmed by Honeywell Modbus RTU Serial Communications User Manual
  • confirmed: pv_integer @ 0 (40001) and pv_float @ 64 (40065) — confirmed by Honeywell Modbus RTU Serial Communications User Manual and Control.com forum threads
  • confirmed: analog_input_1 @ 6144 (1800h) — confirmed by Honeywell Modbus RTU Serial Communications User Manual

The trust ladder

Each rung states what it proved and what it did not. Gray until proven; green is earned by hardware only.

Device not here? Upload its manual and get a checked map back. It's free.

Want it confirmed against your own device? Order hardware verification. If it doesn't check out, you don't pay.

Building on a lot of devices? License the library — machine-readable maps, the firmware matrix, and API access.