758703
8
Zoom out
Zoom in
Previous page
1/59
Next page
Cybersecurity Recommendations VII
Change ONVIF Password
Older IP camera firmware does not automatically change the ONVIF password when
the system credentials are changed. Update the camera’s firmware to the latest
revision or manually change the ONVIF password.
Forward Only Ports You Need
Forward only the HTTP and TCP ports that are requited. Do not forward a wide range
of numbers to the device. Do not DMZ the device's IP address.
Do not forward any ports for individual cameras if they are all connected to a recorder
on site. Simply forward the NVR port.
Disable Auto-Login on SmartPSS
Disable the Auto-Login feature on SmartPSS installed on a computer that is used by
multiple people. Disabling auto-login prevents users without the appropriate
credentials from accessing the system.
Use a Different Username and Password for SmartPSS
Do not a username/password combination that you have in use for other accounts,
including social media, bank account, or email in case the account is compromised.
Use a different username and password for your security system to make it difficult for
an unauthorized user to gain access to the IP system.
Limit Features of Guest Accounts
Ensure that each user has rights to features and functions they need to perform their
job.
Disable Unnecessary Services and Choose Secure Modes
Turn off specific services, such as SNMP, SMTP, and UPnP, to reduce network
compromise from unused services.
It is recommended to use safe modes, including but not limited to the following
services:
SNMP: Choose SNMP v3 and set up strong encryption passwords and authentication
passwords.
SMTP: Choose TLS to access a mailbox server.
FTP: Choose SFTP and use strong passwords.
AP hotspot: Choose WPA2-PSK encryption mode and use strong passwords.
Multicast
Multicast is used to share video streams between two recorders. Currently there are
no known issues involving Multicast. Deactivate this feature if not in use to enhance
network security.
Check the Log
The information stored in the network log file is limited due to the equipment’s limited
storage capacity. Enable the network log function to ensure that the critical logs are
synchronized to the network log server if saving log files is required.
Check the system log if you suspect that someone has gained unauthorized access to
the system. The system log shows the IP addresses used to login to the system and
the devices accessed.
Physically Lock Down the Device
Perform physical protection to equipment, especially storage devices. For example,
place the equipment in a special computer room and cabinet, and implement access
control permission and key management to prevent unauthorized personnel from
accessing the equipment.
8


Need help? Post your question in this forum.

Forumrules


Report abuse

Libble takes abuse of its services very seriously. We're committed to dealing with such abuse according to the laws in your country of residence. When you submit a report, we'll investigate it and take the appropriate action. We'll get back to you only if we require additional details or have more information to share.

Product:

For example, Anti-Semitic content, racist content, or material that could result in a violent physical act.

For example, a credit card number, a personal identification number, or an unlisted home address. Note that email addresses and full names are not considered private information.

Forumrules

To achieve meaningful questions, we apply the following rules:

Register

Register getting emails for Dahua VTH Series at:


You will receive an email to register for one or both of the options.


Get your user manual by e-mail

Enter your email address to receive the manual of Dahua VTH Series in the language / languages: English as an attachment in your email.

The manual is 3,84 mb in size.

 

You will receive the manual in your email within minutes. If you have not received an email, then probably have entered the wrong email address or your mailbox is too full. In addition, it may be that your ISP may have a maximum size for emails to receive.

The manual is sent by email. Check your email

If you have not received an email with the manual within fifteen minutes, it may be that you have a entered a wrong email address or that your ISP has set a maximum size to receive email that is smaller than the size of the manual.

The email address you have provided is not correct.

Please check the email address and correct it.

Your question is posted on this page

Would you like to receive an email when new answers and questions are posted? Please enter your email address.



Info