D Certicate Management and
Maintenance
Initial Certicate Risk Disclaimer
Huawei's initial certicates precongured on Huawei devices during
manufacturing are mandatory identity credentials for Huawei devices. The
disclaimer statements for using the certicates are as follows:
1. Huawei's initial certicates are used only in the deployment phase, for
establishing initial security channels between devices and the customer's
network. Huawei does not promise or guarantee the security of the initial
certicates.
2. Customers shall bear consequences of all security risks and security incidents
arising from using Huawei's initial certicates as service certicates.
3. Huawei's initial certicates are valid from the manufacturing date until
October 2099.
4. Services using an initial certicate will not be interrupted when the certicate
expires.
5. It is recommended that customers deploy a PKI system to issue certicates for
devices and software on the live network and manage the lifecycle of the
certicates. To ensure security, certicates with short validity periods are
recommended.
Application Scenarios of Initial Certicates
File Path and Name
Scenario Replacement
f:/sun_ca.crt Two-way certicate
authentication is
performed when the
Smart PCS
communicates with the
SACU through Modbus-
TCP.
For details about how to
replace a certicate,
contact technical support
engineers to obtain the
corresponding security
maintenance manual.
f:/sun_tomcat_client.crt
f:/sun_tomcat_client.key
LUNA2000-213KTL-H0 Smart Power Control System
User Manual D Certicate Management and Maintenance
Issue 04 (2024-12-30) Copyright © Huawei Technologies Co., Ltd. 103