CHAPTER 5: SETTINGS PRODUCT SETUPB90 LOW IMPEDANCE BUS DIFFERENTIAL SYSTEM – INSTRUCTION MANUAL 5-95The B90 provides a means to raise an alarm upon failed password entry. If password verification fails while accessing apassword-protected level of the relay (either settings or commands), the UNAUTHORIZED ACCESS FlexLogic operand isasserted. The operand can be programmed to raise an alarm via contact outputs or communications. This feature can beused to protect against both unauthorized and accidental access attempts.The UNAUTHORIZED ACCESS operand is reset with the COMMANDS CLEAR RECORDS RESET UNAUTHORIZED ALARMScommand. Therefore, to apply this feature with security, password-protect the Command level. The operand does notgenerate events or targets.If events or targets are required, the UNAUTHORIZED ACCESS operand can be assigned to a digital element programmed withevent logs or targets enabled.The following table outlines access level timeout settings.SETTINGS PRODUCT SETUP SECURITY ACCESS SUPERVISION ACCESS LEVEL TIMEOUTSThese settings allow the user to specify the length of inactivity required before returning to the Restricted access level.Note that the access level is set to Restricted when control power is cycled.COMMAND LEVEL ACCESS TIMEOUT — This setting specifies the length of inactivity (no local or remote access) required toreturn to Restricted access from the Command password level.SETTING LEVEL ACCESS TIMEOUT — This setting specifies the length of inactivity (no local or remote access) required to returnto Restricted access from the Command password level.Dual-permission security accessSETTINGS PRODUCT SETUP SECURITY DUAL PERMISSION SECURITY ACCESSThis feature provides a mechanism to prevent unauthorized or unintended upload of settings to a relay through the localor remote interface.The following settings are available through the local (front panel) interface only.• LOCAL SETTING AUTH — This setting is used for local (front panel or RS232 interface) setting access supervision. Validvalues for the FlexLogic operands are either “On” (default) or any physical “Contact Input ~~ On” value.If this setting is “On,“ then local setting access functions as normal; that is, a local setting password is required. If thissetting is any contact input on FlexLogic operand, then the operand must be asserted (on) prior to providing the localsetting password to gain setting access.If setting access is not authorized for local operation (front panel or RS232 interface) and the user attempts to obtainsetting access, then the UNAUTHORIZED ACCESS message displays on the front panel.If this setting is "Off," firmware upgrades are blocked. If this setting is "On," firmware upgrades are allowed.• REMOTE SETTING AUTH — This setting is used for remote (Ethernet or RS485 interface) setting access supervision.If this setting is “On” (the default setting), then remote setting access functions as normal; that is, a remote password isrequired. If this setting is “Off,” then remote setting access is blocked even if the correct remote setting password isprovided. If this setting is any other FlexLogic operand, then the operand must be asserted (set as on) prior toproviding the remote setting password to gain setting access.If this setting is "Off," firmware upgrades are blocked. If this setting is "On," firmware upgrades are allowed. ACCESS LEVEL TIMEOUTS COMMAND LEVEL ACCESSTIMEOUT: 5 minRange: 5 to 480 minutes in steps of 1 SETTING LEVEL ACCESSTIMEOUT: 30 minRange: 5 to 480 minutes in steps of 1 DUAL PERMISSION SECURITY ACCESS LOCAL SETTING AUTH:OnRange: selected FlexLogic operands (see below) REMOTE SETTING AUTH:OnRange: FlexLogic operand ACCESS AUTHTIMEOUT: 30 minRange: 5 to 480 minutes in steps of 1