Security Settings
Configure security features and best practices.
Security Overview
TLS/SSL
yaml
server:
tls:
enabled: true
cert_file: /path/to/cert.pem
key_file: /path/to/key.pem
min_version: TLS1.3JWT Configuration
yaml
auth:
jwt:
secret: your-256-bit-secret
expiry: 24h
refresh_expiry: 7dRate Limiting
yaml
rate_limit:
enabled: true
requests_per_minute: 100
burst: 20Audit Logging
yaml
audit:
enabled: true
log_file: /var/log/fabconnect/audit.log
events:
- login
- logout
- equipment.connect
- equipment.disconnect
- settings.changeBest Practices
- Use strong passwords (min 12 characters)
- Enable TLS for all connections
- Rotate JWT secrets regularly
- Review audit logs periodically
- Use principle of least privilege