F Certicate Management and
Maintenance
Precongured Certicate Risk Disclaimer
The Huawei-issued certicates precongured on Huawei devices during
manufacturing are mandatory identity credentials for Huawei devices. The
disclaimer statements for using the certicates are as follows:
1. Precongured Huawei-issued certicates are used only in the deployment
phase, for establishing initial security channels between devices and the
customer's network. Huawei does not promise or guarantee the security of
precongured certicates.
2. The customer shall bear consequences of all security risks and security
incidents arising from using precongured Huawei-issued certicates as
service certicates.
3. A precongured Huawei-issued certicate is valid from the manufacturing
date until October 2041.
4. Services using a precongured Huawei-issued certicate will be interrupted
when the certicate expires.
5. It is recommended that customers deploy a PKI system to issue certicates for
devices and software on the live network and manage the lifecycle of the
certicates. To ensure security, certicates with short validity periods are
recommended.
Application Scenarios of Precongured Certicates
File Path and Name
Scenario Replacement
/mnt/log/
tcpmb_server_cert/ca.crt
Authenticates the
validity of the peer
mobile app for
communication through
Modbus-TCP.
Certicate replacement
is not supported.
/mnt/log/
tcpmb_server_cert/
tomcat_client.crt
LUNA2000-(97KWH-1H1, 129KWH-2H1,
161KWH-2H1, 200KWH-2H1) Smart String ESS
User Manual F Certicate Management and Maintenance
Issue 10 (2023-11-07) Copyright © Huawei Digital Power Technologies Co., Ltd. 191