Passwords
Wi-Fi Password¶
Access Point¶
When configured as a Wi-Fi Access Point (AP), the CANlink® wireless 4000 allows connections from one or more Wi-Fi Clients.
(More than one connection to a Client requires Multipoint/MultiTalk).
In order to prevent an insecure network, the AP must be configured:
- with WPA2 enabled, and
- with a 'complex' password
The password requirements mandate all of the following:
- length between 24 and 63 characters
- at least 1 lower case
- at least 1 upper case
- at least 1 numerical (0 - 9)
- 1 special character (
!#&, etc)
Tip
If the AP does not accept Client connections, check 0x3001:0x0C [Error Code/ WiFi - Bluetooth].
- If the password is not valid when creating the AP, the error code
0xDEADC0D1will be present. - If the AP was started with Open Authentication selected, the error code
0xDEADC0DEwill be present.
Client Configuration¶
When configured as a Client, any form of connection may be made:
0: Open authentication (None)7: WPA/WPA2 Mixed with whatever password is configured on the Server.
Bluetooth PIN¶
Warning
For security reasons, do not disable the PIN on the Server device.
If disabled, any BT Client will be able to connect!
Disabling the PIN might be acceptable only when other measures ensure that no unauthorized personnel or device can come within connection-distance from the Server device.
For example, when the Server device is located in an area with physical restrictions.
BLE Security¶
The BLE interface 0x3008:0x09 [BLE Enable] is disabled by default.
Additionally, the BLE WhiteList 0x3009:0x0B [BLE Whitelist - Enable] is enabled by default.
Warning
Disabling the BLE whitelist removes access control for incoming BLE connections.
When the whitelist is disabled using 0x3009:0x0B [BLE Whitelist - Enable], any BLE central device can establish a connection.
Disable the whitelist only if other measures ensure that unauthorized devices cannot reach the BLE connection range.
This may be acceptable in environments with physical access restrictions, such as controlled or enclosed areas.
See BLE WhiteList for more details about BLE security.