Instructions and recommendations for periodic security maintenance activities. Troubleshooting package and reporting security incidents to ABB....Secure disposal guidelines (SG-4) ............
It contains cyber security recommendations for its service life. This document refers to the product as the EGW-02 gateway or gateway. Target audience This document is intended for persons responsible for the cyber security of the EGW-02 gateway. Personnel definitions ■...
Customer Identity and Access Management. Another name for DMS. ABB Ability™ Condition Monitoring for drives. CMD is a cloud service to re- motely store, monitor and analyse drive data. It is also a part of the ABB Abil- ity™ Digital Powertrain offering.
ABB approach to cyber security 9 ABB approach to cyber security This is information on the ABB approach to cyber security. For more information, go to https://global.abb/group/en/technology/cyber-security. Cyber security of the drive system Refer to Cyber Security for ABB Drives White Paper (3AXD10000492137 [English]) the cyber security of the drive system.
An Authorized Person can access the ABB Device Management System (DMS) to do actions such as examine the gateway status, update the gateway, and make an access token (JWT) for the local Web user interface. Access to the DMS is controlled by ABB, and the credentials are available only from ABB.
12 Cyber security in the EGW-02 gateway EGW-02 gateway connectivity The EGW-02 gateway can be connected to: • ABB drives for monitoring • ABB Device Management System • ABB Condition Monitoring for drives (over the Internet) • A PC with the Drive Composer start-up and maintenance PC tool •...
Access control mechanisms to limit and monitor user access ABB supplies firmware updates and security patches to address vulnerabilities and maintain a secure environment. The Asset Owner prepares a policy to schedule the updates and agrees with ABB to receive information on the available updates.
ABB and its affiliates are not liable for damages and/or losses related to such security breaches, any unauthorized access, interference, intrusion, leakage and/or theft of...
Security guidelines 15 Security guidelines These are the security guidelines of the EGW-02 gateway. Product defense in depth (SG-1) The cyber security capabilities of the EGW-02 gateway: • Certificate-based authentication for communication • Modern encryption algorithms (TLS/mTLS) towards the Internet. The key lengths were chosen in conformance with IEC 62443.
• Physical installation location of the EGW-02 gateway, and the correct wiring. The EGW-02 gateway is typically installed when the drives are not in use, so it may be necessary to schedule downtime and other resources for the installation. •...
[English]). Installation checklist for the End User: ☐ All of the wiring of the EGW-02 gateway is secure, and the correct networks are connected. ☐ If the cloud server connection LED is visible, it is green. The LED is not visible when the EGW-02 gateway is installed in a cabinet that must be closed during operation.
EGW-02 Connectivity Edge Gateway user's manual (3AXD50000929719 [English]). Note: A change in the network settings can have an effect on the security of the EGW-02 gateway. Other configuration changes do not have an effect on security. Instructions and recommendations for periodic security maintenance ■...
Connectivity Edge Gateway user's manual (3AXD50000929719 [English]). To make sure that the EGW-02 gateway is on, but is removed from the ABB DMS: Make sure that the EGW-02 gateway is connected to the Internet, the power LED is on, and the green LED is off (no cloud connection). For a full check or if the LEDs are not visible due to security or otherwise, you can connect to the local Web user interface.
If the environmental sensor is replaced, you can connect the new sensor to the existing EGW-02 gateway. Secure operation guidelines (SG-5) Do not try to open the enclosure of the EGW-02 gateway or remove its seals. If CMD/Powertrain is in use, the End User does these tasks: •...
Security guidelines 21 Documentation review (SG-7) ABB has a user documentation review process, and a process to get feedback on user documentation, including cyber security issues. If you find a cyber security-related or other issue in the user documentation, send an e-mail to the ABB cyber security mailbox: cybersecurity@ch.abb.com or contact an...
Product and service inquiries Address any inquiries about the product to your local ABB representative, quoting the type designation and serial number of the unit in question. A listing of ABB sales, support and service contacts can be found by navigating to new.abb.com/contact-centers.
Need help?
Do you have a question about the EGW-02 and is the answer not in the manual?
Questions and answers