my motion sensors and door contact sensors, when including, i canāt get them included in secure mode.
suc vs sic
Static Update Controller (SUC)
SUC Identity Server (SIS)
perhaps i donāt understand what iām doing, but i would like the communication of these devices to be encryptedā¦
my yale door locks and linear garage door say: network security level ZWAVE_S0_FAILED
Thatās not what you said in the other thread. So I do think you may be confused.
In your other thread you said that when you had a device which can be paired either securely or insecurely, such as most of the Aeotec devices, that you are now unable to get them to successfully pair securely.
I mentioned to you in the other thread that for most of the aeotec devices there is a physical āZ wave buttonā on the device itself. And that at the time of pairing you can press that button once for an insecure pairing or twice if you want to use security. But I didnāt know if you needed the device to be within 1 hop of the hub in order to exchange security keys with the new S2 format.
SUC and SIS are roles that specific zwave controllers, typically the hub, are assigned for the entire network and have to do with how new network addresses are numbered when they are given out. But thatās not actually the same thing as the insecure versus secure messaging such as the aeotec devices can do.
I believe on the SmartThings platform the hub is always both SUC and SIS, thatās not unusual with hubs designed after 2013.
Vera sometimes assigns the SIS to a secondary hub in a multi hub network. So itās part of the third-party Z wave specification, but it rarely comes up in a smartthings context.
You were just asking how you could get your Aeotec devices to use secure messaging, right? Thatās an entirely different topic.
Thatās been discussed a couple of times in the last few months and has to do with the changes that smartthings is making to the way it handles Zwave security as it gets ready for the rollout of S2 support.
It still doesnāt have anything to do with SUC and SIS, it has to do with secure messaging.
Iām not feeling very well today and this is a pretty complex area, and besides I honestly know very little about how the SmartThings zwave platform has implemented the manufacturer controlled aspects, So hopefully other people will be able to assist you further.
See the following thread for discussion of when people first started seeing this message:
I donāt know much about this, but hereās what I got from various online sources:
S0 Z-Wave Security 0. Relatively secure, yet as easy as non-secure Z-Wave S2 Z-Wave Security 2. Strong encryption and authentication
What is S0 and S2 security?
First thing first, let us learn what these security levels called S0 and S2 are.
S0 and S2 are security layers within the Z-Wave Protocol that are used to encrypt the data that is sent between devices.The initiation of S0/S2 is done during device pairing. The older pairing process is called S0. The latest Z-Wave devices are implemented with a new, more secured, S2. Which is mandatory on devices from April 2nd 2017.
S2 includes āunauthenticated S2ā and āauthenticated S2ā, where the authenticated devices has a unique authentication code on them.
So, an S0 Network Security Failure would seem to mean that establishing secure communication with that device was unsuccessful - even while using the most basic Z-Wave security protocol. If the device joined the mesh at all, itās probably using non-secure Z-Wave.
Again, this is based on my very limited knowledge. Iām sure others with more knowledge will correct me if needed and be happy to provide additional details.
If that is from a device that requires encrypted messages, such as a garage door or a lock, chances are that the device is not working. For any other device, youāre better off without encryption despite @lflorack panic. But thatās just my opinion S2 capable controllers are rare.
I certainly agree with the first part of your response (i.e., if it needs encrypted messages, itās probably broken).and I also agree that S2-capable devices are quite rare. But, in this case, the question was about an S0 failure. So, if itās a secure-type device (Iām currently unsure) and even an S0 connection (not S2) isnāt working, that might be considered an issue.
Well, S0 failure to include an Aeotec multi sensor means that the sensor was paired non-secure. S2 devices are not that rare, as you highlighted, new devices are required to have it, however controllers are rare. So what good does it do to have an S2 device if your controller can only handle s0. Might as well not encrypt the device, because S0 is flawed anyway and creates more problems than it solves. Again, personal opinion of non expert, which I am sure @JDRoberts will debunk when he feels better. See, we need you @JDRoberts, get better soon
Mandatory on new design Devices certified after April 2017. Not mandatory on devices with older certifications. And a lot of new devices, including the SmartThings 2018 V3 hub, got waivers to not implement S2 yet.
Smartthings is just now getting their platform ready to start supporting S2.
The particular message under discussion started occurring in January of this year because of some of those changes they were making. It means that the device attempted a secure pairing and that failed so it fell back to an insecure pairing.
You would think that would be true, but in fact, smartthings just recently, like in the last couple of weeks, made yet another platform change where they are now going to encapsulate everything. Itās requiring some changes to some DTHs, which may be part of whatās going on here.
How timely, mine just started doing this yesterday at 12:30pm EST. Every 2 hours on the button. It was fine until yesterday. Iāve submitted a ticket and PMād a few folks too.
Happening here too. Iāve gotten a notification a time or two, but the hub is usually only off for a few seconds. The longest Iāve seen was three minutes, so Iām not sure why I even got a notification at all. Seems to be at random intervals though, sometimes a couple of hours and others 12 hours or so.
Crap, right on the button. Just had another Disconnect/Active event with my hub. I wish I could see more logging detail besides these simple messages. Damn frustrating.
Iām seeing this tooā¦
Some of the dropouts also triggers an offline notification on my phone, but not all of themā¦
Have never gotten an āOnline againā notification thoughā¦