Honeywell | 7
2 Security Guidelines
2 Security Guidelines
This section provides security guidelines for CloudLink 5G Modem.
2.1 Device Security Recommendations
Following are the recommendations to prevent malicious users from accessing the device and its
data:
• Install the device where physical access to the device is restricted.
• Avoid using the self-signed certificates, always install the certificates from Honeywell or reputed
CA.
• Change the default password on first use, and ensure that user passwords are changed on a
regular basis and securely stored.
• Unauthorized people should be kept away from the loading bay area.
• Use an earth connection interlock to prevent loading from starting without the driver physically
present.
2.2 Implementing stringent password guidelines
Password attacks of various kinds occur, so the following password management procedure must
be followed:
a. Change standard password.
b. Use secure password for CloudLink 5G device.
c. Change password immediately in case someone has tried to attack the system.
Note: A Complex password must:
-Be at least 8-15 characters in length.
-Contain both upper and lowercase alphabetic characters. (e.g: A-Z & a-z).
-Have at least one numerical character. (e.g: 0-9).
-Have at least one special character. (e.g: ~!@#$%^&*()_+=).
2.3 How to report a security vulnerability
A vulnerability is defined as an error or weakness in the software which can be exploited to adversely
affect or reduce the operation or security of the parameterization or device software.
Honeywell reviews all reports about vulnerabilities relating to Honeywell products and services. You
can find further information about the Honeywell Security Policy at:
https://www.honeywell.com/us/en/product-security.
If you would like to report a possible vulnerability in a Honeywell product, follow the instructions on
the Honeywell website at: https://www.honeywell.com/us/en/product-security.
You can find information about current malware threats at: https://process.honeywell.com