5.7.1 Changing password
GUID-C36A2E99-0BA8-42BA-A73E-77CC28DCDE65 v1
The user can also change the own password from PCM600 or LHMI. The
following process is used:
• A change password dialog is presented for the user in PCM600 or LHMI
• The IED will forward this to the Central Account Management server
• Password can only be changed if the IED has contact with Central
Account Management server
• The Central Account Management server verifies the password towards the
password policies
• If it fails an error code will be sent back to the user
• An acknowledgement is sent back to the IED and forwarded to PCM600 or
LHMI
• The user gets an acknowledge that the password has changed
As soon as the IED get feedback from the Central Account Management server that
the password is about to expire or that the password need to be changed, the user
will be forced to change the password. The actual change will be according to
above. The SDM600 server will issue a warning message that the password is
going to expire (for instance in 5 days) if this feature in configured in SDM600. If
the password has expired or is not valid for other reasons, a new password must be
set in the Central Account Management server.
A change of password for any user, via PCM600 or LHMI, will force a replication
of the users to the IED. Otherwise, if the communication to the Central Account
Management server is lost shortly after the passwords is changed, the old password
must be used until the connection to Central Account Management server is
restored. All other IEDs in the system need to wait until next cyclic replication.
Changing password
1. Right click on the IED in plant structure and select IED users tool.
2. Go to General Tab.
3. Click on Change Own Password, then following dialog will appear
1MRK 511 399-UEN B Section 5
Central Account Management
670 series 2.2 IEC 69
Cyber security deployment guideline