Safety instructions
2.1 Security recommendations
SIMATIC Ident CB Gate
8
Operating Instructions, 08/2022, C79000-G8976-C671-01
•
The configuration files of the reader are available in XML format for simple use. Make sure
that the configuration files outside the device are suitably protected. You can, for
example, encrypt the files, store them at a safe location and transfer them only via secure
communications channels.
•
The reader provides options for backing up and restoring the configuration. For security
reasons, neither the IP address of the network interface nor data of the local user
administration are backed up. We recommend that you use the network management
system "SINEC NMS" to manage this data.
Passwords
•
Always use the user management of the reader and create new user profiles.
•
Change all default passwords for users before operating the device.
•
Only use passwords with high password strength. Avoid weak passwords, e.g. password1,
123456789, abcdefgh.
•
Define rules for using devices and assigning passwords.
•
Make sure that all passwords are protected and inaccessible to unauthorized personnel.
•
Do not use the same password for different users and systems.
•
Update passwords and keys regularly to improve security.
Keys and certificates
This section deals with the security keys and certificates that you need to set up SSL for the
reader.
•
We urgently recommend creating your own SSL certificates and making them available.
Preset certificates and keys are present in the reader.
The preset and automatically created SSL certificates are self-signed. We recommend
using certificates signed either by a reliable external certification authority or an internal
certification authority.
The reader has an interface via which you can import certificates and keys.
•
We recommend that you use certificates with a key length of at least 4096 bits.
•
If protocols support both certificates and keys, you should favor certificates.
•
With operation via OPC UA, always use the "Sign and encrypt" security method.
Содержание SIMATIC Ident CB Gate
Страница 20: ...Description SIMATIC Ident CB Gate 20 Operating Instructions 08 2022 C79000 G8976 C671 01 ...
Страница 62: ...Alarm error and system messages SIMATIC Ident CB Gate 62 Operating Instructions 08 2022 C79000 G8976 C671 01 ...
Страница 64: ...Maintenance and service SIMATIC Ident CB Gate 64 Operating Instructions 08 2022 C79000 G8976 C671 01 ...
Страница 70: ...Service Support SIMATIC Ident CB Gate 70 Operating Instructions 08 2022 C79000 G8976 C671 01 ...