Figure 1-3: CK721-A/P2000 Server Encrypted Communications
To enab
le encryption between the CK721-A controller and the P2000
Server:
1. At the P2000 Server (see the P2000 Softwa
re User Manual for details):
In the Edit Panel dialog box, under the Encryption tab, enter a value for
the encryption key. The value must be unique for each CK721-A
controller.
After entering the key, enable the encryption.
2. At the CK721-A controller:
Log in with user name CK720 and password master.
In page 3 of the Panel dialog, enter a unique encryption key value.
After entering the key, enable the encryption.
Perform the “write to flash” operation.
NOTES
The FIPS encryption package validation process requires a reboot of the
controller after turning the encryption on or off. The FIPS Encryption
validation process takes about 10-20 additional minutes to complete the
controller reboot. All controller functions are disabled during that time.
For the CK721-A controller to come on-line with the P2000 Server, the
encryption key values at the CK721-A controller and at the P2000 server
must match, and the encryption must be enabled at both sides.
When encryption is enabled, Telnet and FTP network connections are
rejected by the CK721-A controller.
Administrator should change the CK721-A controller login password for
CK721-A controllers that have Encryption enabled.
P2000 ServerCK721-A Controller
Priority Channel
Upload Channel
Download Channel
Priority Service
Upload Service
Download Service
Introduction CK721-A Installation and Operation
1-14 24-10349-8 Rev. B
This document contains confidential and proprietary information of Johnson Controls, Inc.
© 2012 Johnson Controls, Inc.