XLINK 500/100 Operations & Maintenance Manual page # 67
7.
Security
XLink provides means of protection against unwanted access. Password protection is at the
heart of the security.
Whether accessing the station with a USB cable, an RS-232 cable, via the Wi-Fi hotspot, through
a USB thumb drive, over Iridium SBD messages, over cell TCP/IP, or over cell SMS messages,
password protection guards access to the station. To access the station, the correct password
must be provided.
For remote access over Cell, additional protection is provided over TCP/IP via the use a VPN. To
access the station, one first connects to the appropriate VPN.
For Iridium access, additional protection is provided by the Iridium system itself, which blocks
access from unauthorized sources. Anyone who seeks to send messages to the station must be
on a whitelist provided to Iridium.
Each SMS message sent to the station needs to include the password if the station is to process
it. The same holds true for Iridium SBD messages.
The station’s
Wi-Fi hotspot provides an additional layer of security. It uses WPA2-AES protection,
meaning that a Wi-Fi password must be provided to connect to the hotspot. Additionally, the
Wi-Fi hotspot is generally off until the site is physically visited and the front panel button on the
unit is pressed. Please note that the Wi-Fi hotspot provides access only on site. It does NOT put
the station on the internet.
7.1.
Steps to Take to Protect your Station
Please take the following steps in order to ensure the integrity of your station.
Physical access to the station must be restricted.
Passwords should be setup and enabled. See section
Wi-Fi password protection should be enabled. Wi-Fi enable should be turned off to
prevent Wi-Fi from turning on automatically. Please see section
7.2.
Password Protection
Password protection can be configured to prevent unauthorized access. To setup password
protection, please use LinkComm
’s Change Password menu. Please see the
section for command line access.
XLink provides three tiers of access through a combination of the following settings:
Password Protection
Setup Password
Maintenance Password
Read Password