Dnp3 Security Options - Siemens SIMATIC TeleControl DNP3 Configuration Manual

Hide thumbs Also See for SIMATIC TeleControl DNP3:
Table of Contents

Advertisement

– CP 1243-1 / CP 1243-8 IRC
– TIM 3V-IE DNP3 / TIM 4R-IE DNP3
– CP 1542SP-1 IRC
If you have configured a redundant connection to a partner, the parameters can be set
separately for both connection paths.
3.19.5.3

DNP3 security options

Secure Authentication
If the security function is enabled, the DNP3 master and station authenticate themselves with
a secret key, the pre-shared key.
With the help of the common pre-shared key, after the first connection establishment
between master and station, session keys are agreed that are then renewed cyclically.
Renewal of the session keys is initiated by the master. The criteria for renewing the key are
specified in the following parameters.
● Key exchange interval
● Authentication requests before key exchange
As soon as one of these conditions is met, the session key is renewed.
Parameters
● Enable DNP3 security options
Select the option if you want to use Secure Authentication.
● IKE mode
Selection of the mode for key exchange. Range of values:
– Aggressive Mode
– Main Mode
Default setting: Aggressive Mode
Configuration - DNP3
Configuration Manual, 11/2018, C79000-G8976-C508-01
0...65535 s
1...255 s
0...32767 s
The Aggressive Mode is somewhat faster but transfers the identity unencrypted.
The Main Mode is the standard mode.
Configuration
3.19 Telecontrol connections
99

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents