EasyManua.ls Logo

GE T35 - Page 20

GE T35
610 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
2-6 T35 TRANSFORMER PROTECTION SYSTEM – INSTRUCTION MANUAL
SECURITY CHAPTER 2: PRODUCT DESCRIPTION
2
Table Notes:
RW = read and write access
R = read access
Supervisor = RW (default), Administrator = R (default), Administrator = RW (only if Supervisor role is disabled)
NA = the permission is not enforced by CyberSentry security
CyberSentry user authentication
The following types of authentication are supported by CyberSentry to access the UR device:
Device Authentication (local UR device authenticates)
Server Authentication (RADIUS server authenticates)
The EnerVista software allows access to functionality that is determined by the user role, which comes either from the local
UR device or the RADIUS server.
The EnerVista software has a device authentication option on the login screen for accessing the UR device. When the
"Device" button is selected, the UR uses its local authentication database and not the RADIUS server to authenticate the
user. In this case, it uses its built-in roles (Administrator, Engineer, Supervisor, Observer, Operator, or Administrator and
Supervisor when Device Authentication is disabled) as login names and the associated passwords are stored on the UR
device. As such, when using the local accounts, access is not user-attributable.
In cases where user-attributable access is required especially to facilitate auditable processes for compliance reasons, use
RADIUS authentication only.
When the "Server" Authentication Type option is selected, the UR uses the RADIUS server and not its local authentication
database to authenticate the user.
No password or security information is displayed in plain text by the EnerVista software or UR device, nor is such
information ever transmitted without cryptographic protection.
CyberSentry server authentication
The UR has been designed to direct automatically the authentication requests based on user names. In this respect, local
account names on the UR are considered as reserved and not used on a RADIUS server.
Commands RW RW RW R R
|---------- Virtual Inputs RW RW RW R R
|---------- Clear Records RW RW RW R R
|---------- Set Date and Time RW RW RW R R
User Displays R R R R R
Targets R R R R R
Actual Values R R R R R
|---------- Front panel labels designer R R R R R
|---------- Status R R R R R
|---------- Metering R R R R R
|---------- Transducer I/O R R R R R
|---------- Records R R R R R
|---------- Product Info R R R R R
Maintenance RW RW R R R
|---------- Modbus Analyzer NA NA NA NA NA
|---------- Change front panel RW RW RW R R
|---------- Update firmware Yes No No No No
|---------- Retrieve file Yes No No No No
Roles Administrator Engineer Operator Supervisor Observer

Table of Contents

Related product manuals