Siemens ET 200SP Operating Instructions Manual page 84

Industrial ethernet
Hide thumbs Also See for ET 200SP:
Table of Contents

Advertisement

Configuration and operation
4.5 Telecontrol communication (CP 1542SP-1 IRC)
DNP3 security options
● Enable DNP3 security options
Method with which the CP authenticates itself to the master.
– Disabled
– Enabled
● IKE mode
Selection of the mode for key exchange (IKE)
– The Main Mode is the default mode.
– The Aggressive Mode is somewhat faster but transfers the identity unencrypted.
● Security statistics
Specifies whether the statistics of security events are sent to the master. Security events
are authentication requests to the CP. If the option is enabled, authentication requests
with date, time and result are saved on the CP and sent to the master for further
evaluation.
● SHA-1 interlock
Setting to select whether the CP may use the secure hash algorithm SHA-1 if "SHA-256"
was configured as the Secure hash algorithm and the master does not support SHA-256.
Meaning of the options:
– SHA-1 mode allowed
– SHA-1 mode not allowed
● Secure hash algorithm
Selection of the Secure Hash Algorithm (SHA). Possible selections:
– SHA-1
– SHA-256
● Key wrap algorithm
Selection of the Advanced Encryption Standard (AES). Possible selections:
– AES-128
– AES-256
84
Non-secure authentication. If this option is selected the CP logs on only using its
station address.
Secure authentication. If this option is selected, the CP and master use the DNP3
Security mechanisms. The parameters are configured as follows.
The CP can use SHA-1 if the master does not support SHA-256.
The CP may not use SHA-1.
Note: If the master does not support SHA-256, no connection will be established if this
option is selected.
CP 1542SP-1, CP 1542SP-1 IRC, CP 1543SP-1
Operating Instructions, 01/2017, C79000-G8976-C426-03

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Cp 1542sp-1Cp 1542sp-1 ircCp 1543sp-1

Table of Contents