![ABB XIO-00 Скачать руководство пользователя страница 124](http://html.mh-extra.com/html/abb/xio-00/xio-00_user-manual_3045261124.webp)
124
| XIO USER MANUAL | 2106424MNAB
IMPORTANT NOTE:
TCP port numbers from 0 to 1023 are universally reserved for well-known
ports. Never use these port numbers.
7.3
Denial of service (DOS) threshold rates
Protection of ports used for TCP/IP communication, such as Ethernet, is very important. Cybersecurity
threats can make a device unavailable for connection.
If the Totalflow device has a Denial of Service (DOS) attack, the device cannot grant requests for
connection. It stops responding. The following table provides the DOS threshold rates per packet type.
The device stops responding at these thresholds.
Table 7-5: Denial of Service (DOS) threshold rates
Packet type
Description
Ethernet
9 Mbps (13393 packets/sec)
ARP
9 Mbps (13393 packets/sec)
IP
9 Mbps (13393 packets/sec)
ICMP
27 Mbps (40179 packets/sec)
UDP
10 Mbps (14881 packets/sec)
TCP
10 Mbps (14881 packets/sec)
7.4
Security guidelines
The following table contains recommended guidelines to secure access to the XIO. Find procedures for
secure configuration throughout this manual, in Quick Start Guides, and in online PCCU help files.
Table 7-6: XIO security guidelines
Recommendation
Description
Secure physical
access to the device
Control access to the device, internal components, and connected peripherals.
Secure access with
security switch
Turn the onboard security switch on to enforce authentication through bi-level
security codes or RBAC.
See
section 7.5.
Configure bi-level
security codes
Change default security codes to private codes (the default security code for both
level 1 and level 2 is 0000).
See
section 7.5.
Enable Role-Based
Access Control
(RBAC)
Configure RBAC. See
section 7.6.
Enable role-based access and enable authentication for each of the communication
ports.
Change the default RBAC passwords and security codes.
Secure network
connection
The device only connects to a firewall-protected private network. Do not connect
directly to the Internet.
Содержание XIO-00
Страница 54: ...54 XIO USER MANUAL 2106424MNAB Figure 4 24 Default XIO Interface configuration ...
Страница 115: ...XIO USER MANUAL 2106424MNAB 115 Figure 6 17 Configure attached device type Figure 6 18 Configure COM port ...
Страница 131: ...XIO USER MANUAL 2106424MNAB 131 Figure 7 7 RBAC select XIO Figure 7 8 RBAC confirm XIO selection ...
Страница 132: ...132 XIO USER MANUAL 2106424MNAB Figure 7 9 Add User in Security Editor Figure 7 10 Type user name and password ...
Страница 140: ...140 XIO USER MANUAL 2106424MNAB Figure 7 18 PuTTYgen Key Generator Key blank field Figure 7 19 New public key ...
Страница 146: ...146 XIO USER MANUAL 2106424MNAB Figure 7 28 Type private key passphrase password Figure 7 29 Unknown host key warning ...
Страница 147: ...XIO USER MANUAL 2106424MNAB 147 Figure 7 30 FileZilla New Site window ...
Страница 148: ...148 XIO USER MANUAL 2106424MNAB Figure 7 31 Open the Flash AppData ssh directory ...
Страница 149: ...XIO USER MANUAL 2106424MNAB 149 Figure 7 32 Upload public key from laptop to device ...
Страница 150: ...150 XIO USER MANUAL 2106424MNAB Figure 7 33 Verify public key upload is complete ...