Requirements for Identification and Authorization

Requirements for Identification and Authorization
Security Component
Required to Meet IEC-62443-4-2 SL 1
Details
FactoryTalk® Security
software
Studio 5000 Logix Designer®
application
Yes
Configure
FactoryTalk® Security
to define policies, user groups, and other permission sets.
  • The Logix Designer application enforces the policy based on the access policies that are provided to it by
    FactoryTalk® Security
    for the software authenticated user. Once authenticated, the Logix Designer application acts as your interface to the controller. This applies to all protected
    CIP
    communications to the controller, whether from Ethernet, backplane, or USB.
  • The FactoryTalk Services Platform offers feature access control to manage user access to product features such as controller download, project import, project create, and firmware update.
For more information, see Configure System Security Features User Manual, SECURE-UM001 .
(Safety-enabled controllers only). Access control to generate and delete the safety signature
May be required based on system design, threat model, and risk assessment.
Configure
FactoryTalk® Security
to restrict access to generate and delete the safety signature.
To configure FactoryTalk Security permissions, see the Configure System Security Features User Manual, SECURE-UM001.
(Safety-enabled controllers only). Access control to safety-lock and safety-unlock actions
May be required based on system design, threat model, and risk assessment.
Configure
FactoryTalk® Security
to restrict access to safety-lock and safety-unlock actions.
To configure FactoryTalk Security permissions, see the Configure System Security Features User Manual, SECURE-UM001.
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.
Normal