Wonderware Archestra License Manager

The license structure is easy.
There is a license manager located at Start>Wonderware>Common>License Utility.
This is where you copy license file from the CD to hard disk. You can also just copy of this license disk to a USB drive and you can move it between your PC and the HMI computers.
My recommendation is not to run the development license on a runtime application.
Yes...do the full install (Development and Runtime on the HMI), so you can edit on the HMI and backup. However, use a Runitme license on the HMI and keep the Development license for your pc.
It is easy to swap licenses with the 'License Utility'. Always use 'Overwrite' (not append) when asked on installing a license.
I have had issues with 'Appended' licenses.
You may not need the full Archestra install if you are only using Intouch.
What version of Wonderware are you using?
There are actually 2 licenses that may be required. Both are on the license CD.
If 10.5 or later you may need to load both the the archestra.lic and the wwsuite.lic.
It depends what IO Server you are using that may require wwsuite.lic. However it does not hurt anything if you load both licenses.
..

1. EXECUTIVE SUMMARY

This Tech Notewill show steps to resolve the problem with the Invensys License Manager after a license such as ArchetrA.lic or ArchestrAServer.lic is re-installed. The license might appear in red (Figure 1 below), even though the corresponding Wonderware product using the license might be working fine. When purchasing a license for a Wonderware product that uses Schneider Electric licensing, the deliverable that you will receive for your order will be an E-mail with multiple attachments – two PDF documents and a.zip archive. Select a machine to act as a License Server, then save and extract the.zip archive attachment to a location easily accessible from that server. Pendahuluan Saat ini Wonderware beralih ke sistem license baru yaitu menggunakan ArchestrA License Server. Produk yang menggunakan sistem license baru ini adalah:. Wonderware Information Server 3.0 Portal (aka SuiteVoyager). Wonderware Information Server 3.0 Basic CAL. Wonderware Information Server 3.0 Advanced CAL. ActiveFactory 9.2 (Per Named Device dan Per Named User) Dengan.

  • ATTENTION: Exploitable remotely/Low skill level to exploit
  • Vendor: AVEVA Software, LLC (AVEVA)
  • Equipment: Wonderware License Server
  • Vulnerability: Improper Restriction of Operations within the Bounds of a Memory Buffer

2. RISK EVALUATION

Successful exploitation of this vulnerability may result in remote code execution with administrative privileges.

3. TECHNICAL DETAILS

3.1 AFFECTED PRODUCTS

The following versions of Wonderware License Server use the vulnerable Flexara Imgrd (Versions 11.13.1.1 and prior):

  • Wonderware License Server v4.0.13100 and prior.

Only users with the Counted Licenses feature with “ArchestrAServer.lic” in Wonderware License Server are affected.
Wonderware License Server is delivered by:

  • Wonderware Information Server 4.0 SP1 and prior, and
  • Historian Client 2014 R4 SP2 P02 and prior.

3.2 VULNERABILITY OVERVIEW

3.2.1 IMPROPER RESTRICTION OF OPERATIONS WITHIN THE BOUNDS OF A MEMORY BUFFER CWE-119

Buffer overflows in lmgrd and vendor daemon in Flexera FlexNet Publisher may allow remote attackers to execute arbitrary code via a crafted packet, resulting in remote code execution with administrator privileges.

CVE-2015-8277 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

3.3 BACKGROUND

  • CRITICAL INFRASTRUCTURE SECTORS: Chemical, Critical Manufacturing, Energy, Food and Agriculture, and Water and Wastewater
  • COUNTRIES/AREAS DEPLOYED: Worldwide
  • COMPANY HEADQUARTERS LOCATION: United Kingdom

3.4 RESEARCHER

Wonderware

An anonymous researcher reported this vulnerability to AVEVA, who then reported it to NCCIC.

4. MITIGATIONS

AVEVA recommends affected users install update “Hotfix Wonderware License Server VU-485744” or later, which can be downloaded from:

Wonderware archestra license manager job

Wonderware Archestra Tutorial

https://softwaresupportsp.schneider-electric.com/#/producthub/details?id=5076 (login required)

Wonderware Archestra Ide User Manual

AVEVA has published Security Bulletin LFSEC00000129. It can be found at the following location:

NCCIC recommends users take defensive measures to minimize the risk of exploitation of this vulnerability. Specifically, users should:

  • Minimize network exposure for all control system devices and/or systems, and ensure that they are not accessible from the Internet.
  • Locate control system networks and remote devices behind firewalls, and isolate them from the business network.
  • When remote access is required, use secure methods, such as Virtual Private Networks (VPNs), recognizing that VPNs may have vulnerabilities and should be updated to the most current version available. Also recognize that VPN is only as secure as the connected devices.

Wonderware Archestra License Manager

NCCIC reminds organizations to perform proper impact analysis and risk assessment prior to deploying defensive measures.
NCCIC also provides a section for control systems security recommended practices on the ICS-CERT web page. Several recommended practices are available for reading and download, including Improving Industrial Control Systems Cybersecurity with Defense-in-Depth Strategies.

Additional mitigation guidance and recommended practices are publicly available on the ICS-CERT website in the Technical Information Paper, ICS-TIP-12-146-01B--Targeted Cyber Intrusion Detection and Mitigation Strategies.
Organizations observing any suspected malicious activity should follow their established internal procedures and report their findings to NCCIC for tracking and correlation against other incidents.

No known public exploits specifically target this vulnerability.


Contact Information

For any questions related to this report, please contact the CISA at:
Email: CISAservicedesk@cisa.dhs.gov
Toll Free: 1-888-282-0870

For industrial control systems cybersecurity information: https://us-cert.cisa.gov/ics
or incident reporting: https://us-cert.cisa.gov/report

CISA continuously strives to improve its products and services. You can help by choosing one of the links below to provide feedback about this product.

Wonderware License Cost

This product is provided subject to this Notification and this Privacy & Use policy.

Please share your thoughts.

We recently updated our anonymous product survey; we'd welcome your feedback.