Technical support

TP-8000 Camera Secure Operation Guide

Rules for administrator account management, day-to-day operation, configuration changes, firmware updates and information security incident response for the NST-TP-8000 camera.

1. Scope

This document guides administrators in the secure operation of the TP-8000 camera via the device’s administration interface. Only persons authorised by the operator may change accounts, configuration or software, or restore the device.

2. Administrator account management

  • When the device has not yet been set up, the administrator creates the first administrator account and password on the device’s interface. Do not use default credentials or credentials shared between devices.
  • The administrator password must be at least 12 characters long and contain upper-case letters, lower-case letters, digits and special characters; do not use the account name, the product name or common passwords.
  • Do not share passwords. When personnel change or a credential compromise is suspected, change the password immediately and review the relevant logs.
  • Only use the administration interface over the operator’s trusted network connection.

3. Day-to-day operation

  1. Check the device’s image, storage and alert status in the administration interface or in an internal VMS approved by the operator.
  2. Only issue integration credentials to the persons or systems that need them; revoke them as soon as they are no longer needed.
  3. Maintain appropriate network segregation between the camera network and the general user network; restrict administrative access in accordance with the operator’s policy.
  4. Check the system logs when there are signs of unusual logins, update errors, storage errors or unexplained configuration changes.

4. Configuration changes

  • Record who is making the change, when and for what purpose before changing any configuration that affects security, networking, accounts or storage.
  • Re-check essential operation after the change and keep a configuration record in accordance with the operator’s internal rules.
  • Do not copy configuration files, logs or image data outside the permitted scope. When exporting data for support purposes, the operator’s approval and data protection procedures must be applied.

5. Software/firmware updates

  1. Only use update packages published by NST or provided through the official support channel.
  2. Confirm the correct TP-8000 model, the applicable version and the release notes before updating.
  3. Ensure a stable power supply; do not power off, restart or disconnect the device while the update is in progress.
  4. When the update is complete, confirm the version, operating status and essential functions; record the results in the operational records.
  5. If the update fails or the device behaves abnormally, stop the rollout to other devices and contact NST’s official support channel.

6. Information security incidents

When unauthorised access, unapproved configuration changes, credential exposure or a security flaw is suspected, the operator needs to:

  1. Restrict access to the device in accordance with the internal incident response procedure.
  2. Preserve logs, version and configuration information for assessment.
  3. Change the relevant credentials where necessary.
  4. Report to the operator’s information security contact point and to the security vulnerability reporting channel published by NST.