Potential risks and compensating controls
Address potential risks using these compensating controls:
Area | Issue | Risk | Compensating control |
---|---|---|---|
Secure protocols | ION, Modbus, DNP, IEC 61850 and some IT protocols are unsecure. Power Operation does not have the capability to transmit data encrypted using these protocols. | If a malicious user gained access to your network, they could intercept communications. |
For transmitting data over an internal network, physically or logically segment the network. For transmitting data over an external network, encrypt protocol transmissions over all external connections using a Virtual Private Network (VPN) or a similar solution. See Protected environment assumptions for information on compensating controls. |
warning
data in transit is potentially unencrypted and could be altered
When transmitting data using ION, Modbus, DNP, IEC 61850 and some IT protocols:
-
Physically or logically segment the network.
-
Encrypt protocol transmissions over all external connections using a Virtual Private Network (VPN) or a similar solution.
Failure to follow these instructions can result in death, serious injury, equipment damage, or permanent loss of data.