Using zwa-2, with latest firmware, and Zwave JS UI, I find that Zwave devices are added without security… Not even S0. I’m not sure this is zwa-2 related or just zwave js ui.
Security keys have been filled in (generated by zwave js ui).
Anybody knows how to fix this? I’d like at least S0, no security isn’t very secure, no?
Many thanks!
Are you sure they support Security? Can you provide some models? The “default” inclusion strategy always includes with security when it’s appropriate.
S0 is far worse than no security IMO, very slow and hurts the network performance. Only need it for secure devices like locks, which Z-Wave JS will include with security by default.
Hi,
the devices so far are:
- 1x Steinel GmbH - PIR Sensor with Relay (IS140-2)
- 3x Qubin Din Rail Dimmer (ZMNHSD1)
These indeed do not support S2. So from what you say S0 is not recommended, is it then better to have no security at all ? This feels a bit counter intuitive, you know, isn’t this “unsafe” ?
Is it correct to conclude there’s no situation that has some (efficient) type of security then for my situation: it is either no security, inefficient S0, efficient S2 (but of course only for those supported devices) ?
Is S2 even recommended if it’s not like from something critical like a lock (I have a Shelly Wave 2PM, which is just a switch) ?
Any insights/hints/suggestions are most welcome helping me understand.
Many thanks !
Kind regards,
Discoverer.
For my situation, when choosing between no security and S0, I absolutely always choose no security. The effects of S0 security on network performance can be very negative. You’ll have to decide for yourself if that’s true in your situation. I personally am not worried about someone hacking my Z-Wave lights or switches. They are not operating anything critical, and I’ve never heard of anyone doing this.
Security devices like locks are a different story. The don’t function without Security, so you have no choice.
All new devices support S2 Security and it doesn’t have the flaws that S0 does. Z-Wave JS includes devices by default with S2, and I always choose that.
1 Like