|
|
Security Hardening Guide |
Kantech recommends the following setup, configuration, and installation measures to ensure the highest level of security for EntraPass. Failure to comply with the following security configuration may result in a weakened operational state with related security vulnerabilities. For further information, see your product installation guide for specific instructions. To comply with recommended security standards, complete the following steps:
1 - Deploy EntraPass on a Virtual Local Area Network (VLAN).
2 - For an encrypted layer of security during data transit, use Hypertext Transfer Protocol Secure (HTTPS) instead of HTTP. You must obtain a Secure Socket Layer (SSL) certificate from a certificate authority (CA), and generate it for the EntraPass Web website. Refer to how to implement SSL in IIS (Internet Information Services) on Microsoft’s website. https://support.microsoft.com/en-nz/help/299875/how-to-implement-ssl-in-iis
NOTE: This link is for reference only, contact Microsoft for support on how to implement SSL.
3 - Change default passwords during installation.