4.7 SECURITY EVENTS MANAGEMENT
To implement NERC-compliant cyber-security, a range of Event records need to be generated. These log security
issues such as the entry of a non-NERC-compliant password, or the selection of a non-NERC-compliant default
display.
Security event values
Event Value Display
PASSWORD LEVEL UNLOCKED
USER LOGGED IN
ON {int} LEVEL {n}
PASSWORD LEVEL RESET
USER LOGGED OUT
ON {int} LEVEL {n}
PASSWORD SET BLANK
P/WORD SET BLANK
BY {int} LEVEL {p}
PASSWORD SET NON-COMPLIANT
P/WORD NOT-NERC
BY {int} LEVEL {p}
PASSWORD MODIFIED
PASSWORD CHANGED
BY {int} LEVEL {p}
PASSWORD ENTRY BLOCKED
PASSWORD BLOCKED
ON {int}
PASSWORD ENTRY UNBLOCKED
P/WORD UNBLOCKED
ON {int}
INVALID PASSWORD ENTERED
INV P/W ENTERED
ON <int}
PASSWORD EXPIRED
P/WORD EXPIRED
ON {int}
PASSWORD ENTERED WHILE BLOCKED
P/W ENT WHEN BLK
ON {int}
RECOVERY PASSWORD ENTERED
RCVY P/W ENTERED
ON {int}
IED SECURITY CODE READ
IED SEC CODE RD
ON {int}
IED SECURITY CODE TIMER EXPIRED
IED SEC CODE EXP
-
PORT DISABLED
PORT DISABLED
BY {int} PORT {prt}
PORT ENABLED
PORT ENABLED
BY {int} PORT {prt}
DEF. DISPLAY NOT NERC COMPLIANT DEF DSP NOT-NERC
PSL SETTINGS DOWNLOADED
PSL STNG D/LOAD
BY {int} GROUP {grp}
DNP SETTINGS DOWNLOADED
DNP STNG D/LOAD
BY {int}
TRACE DATA DOWNLOADED
TRACE DAT D/LOAD
BY {int}
IEC61850 CONFIG DOWNLOADED
IED CONFG D/LOAD
BY {int}
USER CURVES DOWNLOADED
USER CRV D/LOAD
BY {int} GROUP {crv}
Chapter 23 - Cyber-Security P543i/P545i
616 P54x1i-TM-EN-1