InteliLite4 AMF20 Global Guide
173
PIN protection
If a user performs
ten consecutive attempts
to login using UID/PIN, providing
correct UID
but
incorrect
PIN
, the user account is permanently blocked for login using this UID/PIN. The user must login with
username/password and change the PIN to unblock this login method again.
Interface protection
If anyone performs
twenty consecutive attempts
to login via one particular interface and does not provide
either a valid username nor a valid uid the respective interface is blocked for 2 minutes.
During this period it is not possible to use that interface for any login. The blocking period is not progressive in
this case.
5.6.5 Access to controller data
Every request for reading data from the controller or writing data into it requires a user to be logged.
This
user must have an access level higher or equal to the access level defined for the particular object
and operation.
There are 4 access levels available (level 0 to level 3).
Level 3 is administrator level
and users who have
this level have full control over the controller.
Reading data
The access level required for reading data from controller is fixedly adjusted to 0. That means
reading of
data
(except some system objects)
is available for any user
.
Writing data
The access level required to
write
(modify)
application setpoints or invoke application commands is
configurable
via InteliConfig.
Special situations
There are several operations that require administrator level:
Programming firmware
Programming configuration
Managing user accounts
5.6.6 Cybernetic security
The cybernetic security is formed by:
Protection against a brute-force attack to the password
Secure method to reset the password
A new technology of encryption of the remote communication
Web interface can be disabled
Note:
Cybernetic security was designed according to ISA 62443, level 2.
Protection against the brute force attack
Protection against a brute force attack will take place when an invalid password is entered repeatedly.