User's Manual

Table Of Contents
PRODUCT DESCRIPTION
SKF Enlight Collect Manager Android app
16 (92)
SKF Enlight Collect IMx-1 System
User Manual
Revision C
As can be seen above, for each Observer Monitor instance a friendly informative
Name, an Address and a Port number are entered. As these MQTT service
address, port and secure connection settings are critical for connecting to Observer
Monitor, ensure that they correctly reflect the required instance otherwise a log-in
failure can be expected. In general, the address can be entered using domain
naming (DNS) or IP addressing noting that where communication to Monitor will be
across public networks, the address entered here should be the external facing or
public address for the MQTT service.
Multiple connections can be configured, but only one can be active at any time.
Ensure the required connection is selected by the radio button and ‘Use Selected
has been actioned. Note that this button is ‘greyed’ if the currently selected Monitor is
already being used.
Referring back to Figure 3a, it can be seen that when the MQTT connection details
for at least one Monitor instance have been configured, the name of the
active/selected Monitor server instance is shown on the opening screen of the app,
just above ‘Enter system settings’.
1.4.1 Security
Whilst use of Transport Layer Security (TLS) for app communications with the
gateway is automatic, for connection to @ptitude Observer software it is selectable
so as to be able to match the settings there. If the MQTT service is configured with
‘Use TLS’ enabled, the configuration of the monitor connection in the app must
similarly have the ‘Secure Connection’ option enabled, refer to Figure 5 and Figure
4 respectively. The ‘Secure Connection’ option is enabled by default.
As described in 2.1.1, TLS for encrypted communications with @ptitude Observer
software requires the app to check the server security certificate when setting up the
connection. This includes verifying that the certificate is signed by an official
Certificate Authority, known to the phone. If it is not able to verify that, for example
because it is a self-signed certificate, at log in the user will be prompted to confirm if
the certificate is to be trusted, with options for Trust Just This Once, Trust Always or
Do Not Trust (No Log In).
Note that when using TLS and a trusted public Certificate Authority:
The Address specified in the app for the Monitor connection must match the
DNS name used in the certificate. The connection must not be specified by
either an IP address or a DNS naming related, for example, to a web service
provider’s domain.