4.4 Security Setup Utility
The Gateway provides significant flexibility by offering many different interface options.
Users should be aware that with this flexibility comes certain risks. Opening the non-
secure versions of an industrial protocol can expose significant information, some of it
sensitive, about the wireless network. For this reason, Emerson encourages end users to
use Emerson’s Security Setup Utility to secure the industrial protocols. Users running non-
secure versions of the industrial protocols are encouraged to make sure the Gateway is
running on a secure network and following security best practices.
The Security Setup Utility enables secure communications between the Gateway and host
system, asset management software, data historians, or other applications. This is done by
encrypting the standard data protocols (AMS Wireless Configurator, Modbus
®
TCP, and
OPC) used by the Gateway and making them available through various proxies within the
Security Setup Utility. These proxies can function as a data server for other applications on
the control network. The Security Setup Utility can support multiple Gateways at once and
each proxy can support multiple client application connects. Figure 4-1 shows a typical
system architecture using the Security Setup Utility.
Figure 4-1: Typical Host System Architecture Using Security Setup
D
E
F
G
H
I
A
B
C
Security Setup Utility
A
AMS proxy
B
Modbus proxy
C
OPC proxy
D
Data server
E
Engineering station
F
Asset management
G
Historian
H
Control network
I
Encrypted data
Reference Manual Commissioning
00809-0200-4410 September 2020
Emerson.com/Rosemount 27