PAGE 27
Aquavar IPC Start-Up Genie
Xylem
Notice - Industrial Control Protocols
Certain Industrial Control Protocols do not offer security protections at protocol level and may be exposed to ad-
ditional Cybersecurity risk. Customer security precautions including physical security measures are an important
layer of defense in such cases. Xylem's Aquavar IPC is designed with the consideration that it would be deployed
and operated in a physically secure location.
• Xylem suggests that physical access to cabinets and/or enclosures containing Aquavar IPC and the associated
system should be restricted, monitored and logged at all times.
• Xylem recommends that customers inventory and document all industrial equipment running on their premises
including model name, software version, and how devices are connected to each other and the local network.
• Xylem recommends creating and maintaining offline copies of configuration backups to all equipment involved
in controlling critical processes.
• In cases where control commands for Xylem equipment are issued from SCADA or building management
systems, Xylem recommends a regular check by operators to ensure the integrity of communications between
these systems and Xylem equipment.
• Physical access to the communication lines should be restricted to prevent any attempts of wiretapping,
sabotage. Best practice is to use metal conduits for the communication lines running between one cabinet to
another cabinet.
• People with unauthorized physical access to the device could cause serious disruption of the device
functionality. A combination of physical access controls to the location should be used, such as locks, card
readers, and/or guards etc.
• Xylem's Aquavar IPC supports the following physical access ports:
o RJ45 connector for removable keypad as well as Modbus RTU communications
o RJ45 for Modbus TCP communications
o Terminal block for Modbus RTU and other Digital IOs
• Xylem suggests access to above physical ports need to be restricted.
Xylem Product Cybersecurity
Xylem values your system security and the availability of your critical services. For more information on Xylem
cybersecurity practices or to contact the cybersecurity team please visit xylem.com/security.