Typeof
connection
When using a LAN (Intranet) within the company When using dialup When using an constant Internet connection
Use
scenarios
•A/CoperationviatheofcePC
•A/CoperationviaPC’soneachoor
•MonitoringofeachofceandsalesbranchfromHQ
• Error messages via e-mail
•A/Coperationandstatusmonitoringfromremotelocations
• Group monitoring by connecting whenever necessary
• Error messages via e-mail
•A/Coperationandstatusmonitoringfromremotelocations
•Groupmonitoringviaaconstantconnection(monitoringofthebuildings
andofces)
• PPD data can be accessed remotely via the internet
• Error messages via e-mail
System
examples
The network
environment and
devicescongured
by excising
environmentof
the target building
and commercially
available products.
Security
levelsfor
the system
example
•AllowsforsecuritywithintheIntranet
•Username/passwordcontrolviaiTCwebfunctions
*Ifinformation/datasuchaspasswordsareleaked,itispossiblethat
individuals(usersoftheIntranet)couldmaliciouslyoperatethesystem
fromwithinthecompany
•Dialuproutersecurityfunction(phonenumber,usernameand
password in general) as well as username/password control via the
iTCwebfunction
*Ifinformation/datasuchaspasswordsareleaked,itispossiblethat
the A/C system could be operated by an intruder.
* When connecting to the Intranet, it is possible that someone could
enter the Intranet unauthorized via a dialup environment
•Username/passwordcontrolviatheiTCwebfunction
•Ifthereisnosecuritywithintheconstantconnectionenvironmentto
the web, available security is only the username/password control via
theiTCwebfunction.
*Ifinformation/datasuchaspasswordsareleaked,itispossiblethat
an intruder could operation the A/C.
Proposals
forbetter
security
• Users can be limited by allowing only limited PCs to be able to acces
thewebviatheuseofrewallsandthelike
•Introductionofsecurityforconstantconnectionenvironmentvia
networkdevicesallowsforahigherlevelofsecurity
(Example)
Introductionofnetworkdevices,suchasdialuprouters,thatfeature
strictauthenticationofaccessesfromoutsidethecompany
Unauthorizedaccesfromoutsidethecompanypreventedwithavirtual
private network (VPN).
•Introductionofsecurityforconstantconnectionenvironmentvia
networkdevicesallowsforahigherlevelofsecurity
(Example)
Unauthorizedaccesfromoutsidethecompanypreventedwithavirtual
private network (VPN).
Bldg. C
Bldg. A
Intranetb/wbuildingsandofces
Screenfor4thoor
(BLDG.B)
Monitoringofofces
fromHQ
Useofarewallis
necessary when
connecting to the
intranet
e-mail transmission
e-mail
transmission
e-mail transmission
The Internet
e-mail
transmission
using an ISP/
mail server
Constant
connection
network using
ADSL and
the like
Group
monitoring
Dialup router
Group
monitoring
Displays all A/Cs. (Bldg.A)
A/C operation/
monitoring via on-line
fromoutsidethe
company 1 on 1
connection:
Allows monitoring/
operationonlyofthe
location to wich the
call was placed
A/C operation/monitoring
viaon-linefromoutsidethe
company
* 1 on many (PSs) connection:
Allowsmonitoring/operationof
multiple locations
In-company mail server
*WhenconnectingalsototheIntranet,useofarewallisnecessaryas
inthecaseofdialup
Public
line
Public
line
In-company mail server
Intranet b/w buildings
Bldg. B
4F
4F
4F
4F
3F
3F
3F
3F
2F
2F
2F
2F
1F
1F
1F
1F