Configuration and operation
4.5 Telecontrol communication (CP 1542SP-1 IRC)
CP 1542SP-1, CP 1542SP-1 IRC, CP 1543SP-1
84 Operating Instructions, 01/2017, C79000-G8976-C426-03
●
Enable DNP3 security options
Method with which the CP authenticates itself to the master.
– Disabled
Non-secure authentication. If this option is selected the CP logs on only using its
station address.
– Enabled
Secure authentication. If this option is selected, the CP and master use the DNP3
Security mechanisms. The parameters are configured as follows.
●
Selection of the mode for key exchange (IKE)
– The Main Mode is the default mode.
– The Aggressive Mode is somewhat faster but transfers the identity unencrypted.
●
Specifies whether the statistics of security events are sent to the master. Security events
are authentication requests to the CP. If the option is enabled, authentication requests
with date, time and result are saved on the CP and sent to the master for further
evaluation.
●
Setting to select whether the CP may use the secure hash algorithm SHA-1 if "SHA-256"
was configured as the Secure hash algorithm and the master does not support SHA-256.
Meaning of the options:
– SHA-1 mode allowed
The CP can use SHA-1 if the master does not support SHA-256.
– SHA-1 mode not allowed
The CP may not use SHA-1.
Note: If the master does not support SHA-256, no connection will be established if this
option is selected.
●
Selection of the Secure Hash Algorithm (SHA). Possible selections:
– SHA-1
– SHA-256
●
Selection of the Advanced Encryption Standard (AES). Possible selections:
– AES-128
– AES-256