Enabling Transport Layer Security (TLS) will encrypt the traffic between SCP and the Access It! Universal.NET server. By using TLS, there is no longer a need to send master keys to the SCP, nor manage the keys on the Server machine. The certificate that is loaded in the controller will be what is used to generate the session keys that are used for encryption. By default, all LP panels are configured to use TLS if available.
LP/EP Web Browser
- Navigate to the LP/EP's internal web browser and log in (default credentials are admin/password)
- Select Host Comm from the left hand menu
- Within the Data Security pick list, select TLS Required or TLS if available
- Click Accept
- Click Apply Settings from the left hand menu
- Click Apply Settings, Reboot
The web browser will close.
Access It! Universal.NET
The following steps are only required if the LP/EP web browser was configured to use the setting TLS Required.
- Within Access It! Universal.NET, navigate to the Hardware Tree (Go | Main | Hardware)
- Select Channels
- Edit the Channel that will be using TLS encryption
- Select the Advanced tab
- Select (Check) the option Transport Layer Security Required
- Click Save
- If successful, the SCP will report the communication status Normal/Encrypted