Hardening tips for interface modules - Synergis™ Softwire 11.3

Synergis™ Softwire Integration Guide 11.3

Applies to
Synergis™ Softwire 11.3
Last updated
2023-04-03
Content type
Guides > Integration guides
Language
English
Product
Synergis™ Softwire
Version
11.3

If system security is a priority for your organization, we recommend that you follow the hardening advice for interface modules.

This section only presents the hardening tips that apply to all interface modules. Manufacturer-specific hardening tips are tagged with Hardening in each manufacturer's respective integration topics. For hardening guidelines for the entire system, see the Security Center Hardening Guide.

Use the latest interface module firmware

Access control hardware manufacturers frequently update their products and fix security vulnerabilities with new firmware. We continuously test the compatibility of the new firmware published by third-party interface module manufacturers with Synergis™ Softwire. We publish the latest interface module firmware, certified compatible with Synergis™ Softwire, as recommended firmware in the respective Supported <third-party devices> topic of each manufacturer. For certain models of interface module, you can apply the recommended firmware from the Synergis™ Appliance Portal. For more information, see Upgrading interface module firmware through the Synergis™ Appliance Portal.
NOTE: Certification tracking of Synergis™-partner firmware is now done within the scope of Synergis™ Softwire 11.3. If a newly discovered vulnerability is fixed in a more recent firmware than the one certified by us, then apply it using the manufacturer's software.

Never use default passwords

Many access control devices are shipped with their default administrative passwords. These passwords are not private nor secure. Change these passwords on each device's web page before enrolling them on your Synergis™ unit. The most secure way to change the passwords is to set up a separate network over which you can do this; ideally, this should be done over HTTPS.

Delete unused interface modules from your hardware configuration

Delete any unused interface modules from your Synergis™ appliance's hardware configuration. Certain interface modules can leave open ports that make your appliance vulnerable to attacks. You can delete the unused interface modules either from the Synergis™ Appliance Portal or from Config Tool. For more information, see the topics corresponding to each interface module manufacturer.