NOTICESecurity risk due to data manipulation and data sniffingAnonymous access can be a security risk. Anonymous access should therefore be strictlylimited to commissioning.● For normal operation authentication via username and password or based oncertificates should be used (see chapter Certificate handling (Page 22)).NOTICESecurity risk due to data manipulation and data sniffingIf no message encryption to the client is established, there will be a security risk of datamanipulation and data sniffing. It is therefore highly recommended to establish a messageencryption to the client.● Use the highest possible encryption standard (256 bit) to ensure a secure messagetransfer.NoteAssigning secure passwordsObserve the following rules when creating new passwords:● When assigning new passwords, ensure that you do not assign passwords that can beguessed, e.g. simple words, key combinations that can be easily guessed, etc.● Passwords must always contain a combination of upper-case and lower-case letters aswell as numbers and special characters. Passwords must comprise at least eightcharacters. The server does not support passwords comprising less than eightcharacters. PINS must comprise an arbitrary sequence of digits.● Wherever possible and where it is supported by the IT systems, a password must alwayshave a character sequence as complex as possible.The German Federal Office for IT Security (BSI) (https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Grundschutz/International/GSK_15_EL_EN_Draft.pdf?__blob=publicationFile&v=2) provides additional rules for creating secure passwords.Programs are available that can help you to manage your passwords. Using theseprograms, you can encrypt, save and manage your passwords and secret numbers – andalso create secure passwords.NoteIf you want to change the administrator password later, you can do this via the OPC UAmethod "ChangeMyPassword" or in the SINUMERIK Operate screen.Setting up of OPC UA server3.3 CommissioningSINUMERIK Integrate for Engineering Access MyMachine / OPC UA20 Configuration Manual, 12/2017, 6FC5397-1DP40-6BA1