Logic Machine Forum
security question - Printable Version

+- Logic Machine Forum (https://forum.logicmachine.net)
+-- Forum: LogicMachine eco-system (https://forum.logicmachine.net/forumdisplay.php?fid=1)
+--- Forum: Gateway (https://forum.logicmachine.net/forumdisplay.php?fid=10)
+--- Thread: security question (/showthread.php?tid=685)



security question - Thomas - 19.03.2017

Hi
Can I secure the connection to LM somehow? Now everybody who get access to my network can use his own ETS and modify my KNX devices.
I set "encryption key" in "KNX connection" dialogue and "Enable only secure connection" but I'm still able to connect to KNX bus throw LM from ETS 5.5 via unsecured channel only.
Maybe the problem is I use LM in TP-UART mode?


What is the best practice?

FYI when I unchecked "KNX IP features" my LM got completely frozen. No led lighted. Reset button didn't work. I had to disconnect power supply for turning it on.


RE: security question - admin - 20.03.2017

There's an issue in your FW where tunneling is not disable once "Enable only secure connection" is enabled. This will be fixed in the next version.


RE: security question - CHOUAIBOU - 20.03.2017

(20.03.2017, 07:52)admin Wrote: There's an issue in your FW where tunneling is not disable once "Enable only secure connection" is enabled. This will be fixed in the next version.

Hi admin,
Please, the KNX connection mode is a bit confusing taking in account security issues. We have 01 TP-UART connection mode and 03 IP connection modes.
What is be best choice and for which specific application. The security problem is a real burden for KNX based systems.

B.R,
Chouaibou.


RE: security question - admin - 21.03.2017

IP features enable telegram exchanged via Routing (multicast) and Tunneling connections to LM. When "Enable only secure connection" is set Routing will still work, but only with encrypted telegrams, but Tunneling will be disabled.


RE: security question - CHOUAIBOU - 21.03.2017

(21.03.2017, 07:13)admin Wrote: IP features enable telegram exchanged via Routing (multicast) and Tunneling connections to LM. When "Enable only secure connection" is set Routing will still work, but only with encrypted telegrams, but Tunneling will be disabled.

Hi admin,
Thank you for your reply. 

B.R,
Chouaibou.