![Siemens ST950 Скачать руководство пользователя страница 125](http://html.mh-extra.com/html/siemens/st950/st950_user-manual_1265504125.webp)
ST950 Plus+ User Manual
ST950 Plus+ User Manual
Page 125 of 176
667/HE/53000/000
Issue 2
Unrestricted
6.9.10
Connection to Systems Other than Stratos
Security
When set to the Stratos profile and connected to Stratos only, the unit provides suitable security
to allow it to be connected to the Internet. If either of these conditions is not met (i.e. the Stratos
profile isn’t selected and / or the unit is connected to systems other than Stratos e.g. UTC systems)
then a suitable analysis should be performed to ensure that there are no security vulnerabilities in
the network configuration and / or equipment used. The details of this will depend on the
networks and connections involved and is outside the scope of this document but the following
are examples of what should be considered:
•
General:
•
Has the system (including all equipment and interconnections) been reviewed for
vulnerability / susceptibility weakness appropriate to the environment in which it is
used?
•
Has a plan been drawn up to ensure that the findings of this analysis are implemented
and maintained?
•
Configuration:
•
Is configuration of equipment suitably protected?
•
Are only the services & features which are necessary enabled?
•
Is encryption used where privacy is required?
•
Is authentication used where trust is required?
•
Are firewalls in place to ensure traffic only flows as expected?
•
Maintenance:
•
Is there a plan and means to apply security fixes to firmware used in all elements of the
system?
•
Are secrets (e.g. passwords, encryption / authentication keys) held securely?
•
Is there a plan and means to update secrets as required (e.g. password update &
strength)?
•
Disposal: