User`s manual

20
ADD DEVICESTOTHEZIGBEESENETWORK
The Google App sample may be used to send RPC requests to the gateway. (See “iDigi
SE Web Sample, Communicating with Gateway” on page 24.) Please read this section
first if you do not have a means of sending RPC requests to the gateway. Additionally,
the In-Premise Display/Meter Simulator sample may be used to simulate devices to add
to your network. (See “In-Premise Display/Meter Simulator Sample” on page 30.)
Smart Energy Security Overview
Smart Energy imposes security protocols above and beyond a normal ZigBee network.
Devices join the encrypted Smart Energy network using a pre-shared link key or
installation code (installation codes are hashed into link keys). In a Smart Energy
network, each device can have its own link key or installation code. After a device joins
the network it will initiate key establishment.
During key establishment the trust center will establish an APS link key with the device.
This key is used to encrypt critical data between the trust center and the joining device so
that no other device can decrypt the data portion of the message. The trust center can
also establish APS keys for any two authenticated devices so that they can securely
communicate as well.
Key establishment utilizes certificates on both the trust center and joining device to
authenticate that the device has been certified. Generally certificates are either
production certificates or test certificates and all devices on a network must be of the
same type. The X2 gateway is manufactured with a production certificate. See “Appendix
B” on page 131 for instructions on obtaining and installing a test certificate.
The following generic steps need to be taken for a device to join:
1. Install test or production certificate on joining device to match Smart Energy network.
If joining device is already configured with an appropriate certificate this step may not
be necessary.
2. Register link key/installation code of joining device with the trust center.
3. Enable joining on the Smart Energy network.
4. Instruct joining device to join the Smart Energy network.