Recommendation |
---|
Following are the recommendations for safe usage of Pro-face product that connects to network. - Prior confirmation with the network administrator about how mobile devices can connect to HMI without compromising network security. - Create or update of an access point that is configured for strong network authentication & encryption. - Access point is combined with a firewall configured to block access to all devices except the HMI with mobility, and to block all ports except those needed for Pro-face Remote HMI. See the details about the port. - If the mobile device connects to the HMI using the cellular network then in addition to the above firewall configuration, it is important that the cellular modem which provides a gateway to the cellular network has also enabled functions for VPN & authentication. These functions will stop other unknown devices on the same cellular network from connecting to the industrial network via the cellular modem without a password. a. VPN functionality is provided by the Mobile device's OS and must also be activated & required on the cellular modem. b. VPN is also recommended for use with other GP-Pro EX tools off-site, such as GP-Viewer EX, etc... |