Digi TransPort CIP Best Practices Guide
■This document outlines configuring Digi TransPort routers to adhere to NERC CIP security requirements. These settings are based on real world configurations observed at electric utilities, discussions with their security consultants and reviewing the CIP standards.
■These major Digi TransPort features should be configured for security and monitoring the router:
▲Configure and enable the stateful inspection (SPI) firewall on WAN interfaces
▲Use encryption and authentication via IPsec VPN, SSL, SSH, SFTP and/or X.509 certificates
▲Segment the network via VLAN or Ethernet port isolation as needed
▲Configure user accounts, admin levels and remote authentication (RADIUS/TACACS+)
▲Monitor and manage the router via SNMP v3 and/or Digi remote management platforms
▲Log events can be stored via Syslog; including event alarm support via SNMP, email and/or SMS.
|
|
User's Guide |
|
|
|
Please see the document for details |
|
|
|
|
|
|
|
English Chinese Chinese and English Japanese |
|
April 2014 |
|
v0.2 |
|
|
|
676 KB |
- +1 Like
- Add to Favorites
Recommend
All reproduced articles on this site are for the purpose of conveying more information and clearly indicate the source. If media or individuals who do not want to be reproduced can contact us, which will be deleted.