Cyber security
Product manual 2TMD041800D0018
│
49
11.3
Deployment guideline
All devices need to work in security mode by default and. all devices on one system are to be
signed by a public CA at commissioning stage; normally the management software acts as CA.
It is suggested that compatible mode is only used when the device needs to communicate with
previous generation products. In this mode, data transmission between devices is not
encrypted, may lead to data leaks and involves a risk of attacks.
When user decide to remove the device from system, user shall reset the device to factory
setting in order to remove all the configuration data and sensitive data in the device. This will
prevent sensitive data leak.
It is recommended to apply "MAC filter" and "Rate limiter" in the switch to prevent DOS attack.
11.4
Upgrading
The device supports firmware updates via the management software, where a signature file is
used to verify the authentication and integrity of the firmware.
11.5
Backup/restore
None
11.6
Malware prevention solution
The device H8303 is not susceptible to malware, because custom code cannot be executed on
the system. The only way to update the software is by firmware upgrading. Only firmware
signed by ABB can be accepted.
11.7
Password rule
The user must change the engineering password when accessing the engineering settings for
the first time. This engineering password must not include increasing or decreasing numbers
(e.g. 123456, 654321). Three consecutive identical numbers are similarly not permitted (e.g.
123444, 666888).
Summary of Contents for H8303
Page 1: ...2TMD041800D0018 20 06 2019 Product manual ABB Welcome IP H8303 Guard unit H8303 02 Guard unit ...
Page 10: ...Mounting Installation Product manual 2TMD041800D0018 10 7 2 Mounting ...
Page 12: ...Commissioning Product manual 2TMD041800D0018 12 2 Accept licensing terms ...
Page 13: ...Commissioning Product manual 2TMD041800D0018 13 3 Set date and time ...