
● Include at least two types of characters; character types include upper and lower case
letters, numbers and symbols;
● Do not use the account name or the account name in reverse order;
● Do not use continuous characters, such as 123, abc, etc.;
● Do not use overlapped characters, such as 111, aaa, etc.;
2.
Update Firmware and Client Software in Accordingly
● According to the standard procedure in Tech-industry, we recommend to keep your
equipment (such as NVR, DVR, IP camera, etc.) firmware up-to-date to ensure the NVR
is equipped with the latest security patches and fixes.
● We suggest that you download and use the latest version of client software.
“Nice to have” recommendations to improve your equipment network security
1.
Physical Protection
We suggest that you perform physical protection to equipment, especially storage devices. For
example, place the equipment in a special computer room and cabinet, and implement well-done
access control permission and key management to prevent unauthorized personnel from
performing physical contacts such as damaging hardware, unauthorized connections of other
equipment (such as USB flash disk, serial port), etc.
2.
Change Passwords Regularly
We suggest that you change passwords regularly to reduce the risk of being guessed.
3.
Set and Update Passwords Reset Information Timely
The NVR supports the password reset function. Set up related information for password reset
and password protection questions. If the information changes, please modify accordingly. Do
not use password questions that may be easy to guess.
4.
Enable Account Lock
The account lock feature is enabled by default, we recommend you to keep it enabled to
guarantee account security. If an attacker attempts to log in with the wrong password several
times, the corresponding account and the source IP address will be locked.
5.
Change Default HTTP and Other Service Ports
We suggest you to change default HTTP and other service ports into any set of numbers
between 1024~65535, reducing the risk of unauthorized access
6.
Enable HTTPS
We suggest you to enable HTTPS, so to allow a more secure web interface connection.
7.
Enable Whitelist
We suggest you to enable the whitelist function to prevent everyone, except those with specified IP
addresses, from accessing the NVR. If doing so, please be sure to add your computer’s IP
address and the accompanying equipment’s IP address to the whitelist.
8.
MAC Address Binding
We recommend you to bind the IP and MAC address of the gateway to the equipment, thus
reducing the risk of ARP spoofing.
9.
Assign Accounts and Privileges Reasonably
Add users and assign a minimum set of permissions according to business and management
requirements.
10.
Disable Unnecessary Services and Select Secure Modes
If not needed, it is recommended to turn off some services such as SNMP, SMTP, UPnP, etc., to
277
Summary of Contents for 1U POE NVR Series
Page 1: ...User s Manual V4 1 1 ...
Page 106: ...Figure 4 92 Figure 4 93 Step 2 Configure parameters See Table 4 26 95 ...
Page 291: ...280 ...