VESDA-EVEP-A00-P Product Guide
www.xtralis.com v
Product Security Advice
Warning: Failure to comply with the requirements below exposes the system to malicious interference
which could disable smoke reporting.
Scan the QR code to access the latest security advice available from: https://xtralis.com/33252
Commissioning Requirements
l All VESDAnet wiring and connection ports must be secured against unauthorized access.
l Ethernet and Wi-Fi ports must ONLY be connected to networks which are secure and physically or
logically separate from business IT infrastructure.
l VESDA devices including HLIs must not be accessible from the Internet. Any provision of remote
access to VESDA devices must be subjected to a full cyber security risk assessment and regular
review.
l WPA-2 encryption must be used whenever Wi-Fi is enabled.
l Restrict access to HLI devices to authorized personnel only.
l Passwords must be chosen in line with the guidelines in the detector user guide and provided to trusted
users only.
l Default PIN codes must be changed as part of the initial configuration.
System Maintenance Requirements
l Do NOT use the USB port for long-term monitoring or allow it to be permanently wired to building
infrastructure. It is only to be used for configuration and maintenance by authorized personnel.
l If a detector requires firmware upgrade, ensure that the upgrade package is genuine and obtained directly
from Xtralis.
l Access to PCs on which VSC or VSM configuration software and system configuration information are
installed must be restricted to authorized persons if saved passwords are used.
l Xtralis PC software such as VSC or VSM, must only be installed on PCs with current active Windows
support from Microsoft.