SINEMA Remote Connect - Client
Operating Instructions, 11/2017, C79000-G8976-C395-04
11
Installation and commissioning
2
2.1
Security recommendations
Keep to the following security recommendations to prevent unauthorized access to the
system.
General
●
You should make regular checks to make sure that the device meets these
recommendations and other internal security guidelines if applicable.
●
Evaluate your plant as a whole in terms of security. Use a cell protection concept with
suitable products (
https://www.industry.siemens.com/topics/global/en/industrial-
security/pages/default.aspx
).
●
Do not connect the device directly to the Internet. Operate the device within a protected
network area.
Physical access
Restrict physical access to the device to qualified personnel. Use the security mechanisms
of the operating system.
Security functions of the software
●
Keep the software up to date. Check regularly for security updates for the product. You
will find information on this at
(
https://support.industry.siemens.com/cs/ww/en/ps/21713/dl
):
●
Keep the operating system up to date. Check regularly for security updates of the
operating system and use them.
Use the options of the Windows firewall and the configuration options of the product.
Keys and certificates
This section deals with the security keys and certificates you require to establish a
connection.
●
We recommend that you use certificates with a key length of 4096 bits.
●
The product supports RSA 1024 - 8192 bits key length.
Automation License Manager (ALM)
Turn off remote access to the ALM service. This option can be found in the "Connections"
tab in the ALM settings.