PXG 900 User's Guide - Firmware Version 4.3 - 1/9/201768Notifications Tab, Email ServerYou should, if possible, require TLS when communicating with an email server. Also, limit the recipient list to thosewho truly need this information.PasswordsOne of the first things that you should do is to change the passwords for both the Admin and User accounts. Youcan change these on the Network tab, under the settings for the PXG itself. When in edit mode, the Security tabunder settings lets you change passwords, add and delete users, and assign roles.When changing passwords, follow good security practices including, but not limited to:Passwords should be in excess of seven characters.Passwords should contain at least one capital letter, number, and special character.Global Password Policy settings are configurable in the PXG, allowing security administrators to define thecomplexity, length, reuse and expiration rules for passwords of all users of the gateway.Individually, User Password Management features allows security administrators to further define password rules ona per-user basis. Additionally, accounts can be locked and unlocked as necessary.: It's always good security practice to only use admin level accounts when performingImportantadmin activities. By only using admin level accounts for such activity, you minimize the risk of anadmin being logged in and leaving their computer unlocked.The Global Password Policy and User Password Management features are further documented in the Users andsection.Access ControlYou can verify who has accessed the PXG through the Choose an Action drop down list in the sidebar on theNetwork tab. Click Edit, select the Power Xpert Insight Gateway gear icon, and then select Audit Logs to downloadthe appropriate logs. The Session log may be of particular interest as it lists login attempts and failures. For moreinformation about the various logs, see .Advanced AdministrationEaton recommends that all products should be installed on a secure network. For more information on how tosecure this product in your environment please refer to the whitepaper "Cybersecurity considerations for electricaldistribution systems" at http://www.eaton.com/Eaton/ProductsServices/Electrical/ThoughtLeadership/WhitePapers/index.htm.Last Login Notification and HistoryThe gateway will warn you of previously failed login attempts. Any time there has been at least one failed loginattempt, you'll be greeted with a warning message on your next successful login.