Authorization With Central Account Management Enabled Ied - ABB RES670 Technical Manual

Relion 670 series, phasor measurement unit
Hide thumbs Also See for RES670:
Table of Contents

Advertisement

1MRK 511 408-UUS A
21.1.3.1
Phasor measurement unit RES670 2.2 ANSI
Technical manual

Authorization with Central Account Management enabled IED

The users, their roles and rights are created, deleted and edited only in the Central
Account Management server (SDM600). However, the user rights can be edited in the
IED by using the PCM600 user tool.
One user can have one or several user roles. By default, the users in Table
created in the IED, and when creating new users in the SDM600 server, the predefined
roles from Table
576
can be used.
At delivery, the IED user has full access as SuperUser when using the
LHMI and as Administrator when using FTP or PCM600 until Central
Account Management is activated.
Table 575:
Default users
User name
User rights
SuperUser
Full rights, only presented in LHMI. LHMI is logged on by default until other users are
defined
Guest
Only read rights, only presented in LHMI. LHMI is logged on by default when other
users are defined (same as VIEWER)
Administrator
Full rights. Password: Administrator. This user has to be used when reading out
disturbances with third party FTP-client.
Table 576:
Predefined user roles according to IEC 62351-8
User roles
Role explanation
VIEWER
Viewer
OPERATOR
Operator
ENGINEER
Engineer
INSTALLER
Installer
SECADM
Security
administrator
SECAUD
Security auditor
RBACMNT
RBAC
management
ADMINISTRATOR
Administrator
rights
User rights
Can read parameters and browse the menus from LHMI
Can read parameters and browse the menus as well as
perform control actions
Can create and load configurations and change settings for
the IED and also run commands and manage disturbances
Can load configurations and change settings for the IED
Can change role assignments and security settings. Can
deploy certificates.
Can view audit logs
Can change role assignment
Sum of all rights for SECADM, SECAUD and RBACMNT
This User role is vendor specific and not
defined in IEC 62351–8
Section 21
Security
GUID-1A836989-5D89-4F3D-B3A2-3BABCDFFB440 v1
575
are
747

Advertisement

Table of Contents
loading

Table of Contents