User Guide

Category Description
Secure Maintenance
The device includes SSH remote connection to allow a service engineer with help from site administrator to trouble shoot
the device functionality.
This connection allows service engineer to perform following tasks. The SSH port is disabled by default and shall only be
enabled if strictly necessary.
Open TCP port 22 to allow the SSH connection to be established when the service engineer requests it. Instructions
will be provided by Eaton field service engineer how to enable SSH.
The Eaton field service engineer will then be able to log into the system using a maintenance account to perform the
requested support activities.
Once the maintenance is over, the service engineer will log off the device and ask to disable the SSH port.
ote: N Enabling of TCP port 22 is provided for diagnostic purposes only and shall not be left enabled.
Best Practices
Update device firmware prior to putting the device into production. Thereafter, apply firmware updates and software
patches regularly.
Eaton publishes patches and updates for its products to protect them against vulnerabilities that are discovered. Eaton
encourages customers to maintain a consistent process to promptly monitor for and install new firmware updates.
Firmware updates shall be managed and installed exclusively through the Eaton Charging Network Manager, which
ensures that you are using trusted firmware files.
For offline devices the following process must be followed:
1. Connect through serial
2. Enable Webserver
3. Login to Webserver (to be implemented)
4. Select firmware GM package and press upload
5. The device download the package and check the signature
6. Once signature verified, shell script update the firmware on the machine
Local webserver can also be used to update firmware securely. The package is verified before any update with the
Eaton secure key.
Sensitive Information Disclosure
Eaton recommends that sensitive information (i.e. connectivity, log data, personal information) that may be stored by
Eaton Green Motion Home or Building be adequately protected through the deployment of organizational
security practices.
Potential sensitive information stored in the chargers are the RFID serial of the last user of the charging station.
5
EATON Cybersecurity recommendations - Green Motion AC EV chargers