Bosch PRAESENSA Release Notes page 19

Public address and voice alarm system
Hide thumbs Also See for PRAESENSA:
Table of Contents

Advertisement

PRAESENSA
Bosch Security Systems B.V.
The system controller webserver uses secure HTTPS with SSL. The web server in the
system controller uses a self‑signed security certificate. When you access the server via
https, you will see a Secure Connection Failed error or warning dialog indicating that the
certificate was signed by an unknown authority. This is expected and to avoid this
message in the future you have to create an exception in the browser.
Make sure that new user accounts for system configuration access use sufficiently long
and complex passwords. The user name must have between 5 and 64 characters. The
password must have between 4 and 64 characters.
The PRAESENSA system controller provides an Open Interface for external control.
Access via this interface requires the same user accounts as for system configuration
access. In addition, the system controller generates a certificate to setup the TLS
(secure) connection between the system controller and the Open Interface client.
Download the certificate and open/install/save the crt‑file. Activate the certificate on the
client PC. Refer to System security in the PRAESENSA configuration manual.
System access to the devices of this system is secured via the OMNEO security user name
and passphrase of the system. The system uses a self-generated user name and long
passphrase. This can be changed in the configuration. The user name must have between
5 and 32 characters and the passphrase must have 8 to 64 characters. To update the
firmware of the devices, the firmware upload tool requires this security user name and
passphrase to get access.
In case a PC for event logs is used (PRAESENSA logging server and viewer), make sure
that the PC is not accessible by unauthorized persons.
Do not leave unprotected call stations that can address a wide area on public accessible
places. Use a locked cabinet or configure the call station with user authentication. Use
secure VoIP protocols (SIPS) whenever possible, including verification through VoIP
server certificate. Only use non-secure protocols when the SIP server (PBX) does not
support secure VoIP. Only use VoIP audio in the protected sections of the network,
because the VoIP audio is not encrypted.
Anyone with the ability to dial one of the extensions of the system controller can make an
announcement in the PRAESENSA system. Do not allow external numbers to dial the
system controller extensions.
Release notes
Security precautions | en
2023-05 | V1.81 |
19

Advertisement

Table of Contents
loading

Table of Contents