Menu List

<
Additional Information
Specifications
Cautions on Use
Care and Storage
Safety Precautions
Trademarks
Security Threats

Security Threats

Necessary preparations

Images and video files saved on the RICOH THETA X are important information assets, and appropriate security measures are necessary to reduce the risk of information leaks and unauthorized use. To ensure safe use, the operating environment and device must be properly configured in accordance with the user’s information security policy.

Control Measures

The THETA can be operated via Wi-Fi, Ethernet, an LTE dongle, USB, Bluetooth®, and the device’s buttons and touch panel. The security risks associated with each method are as follows.

Specifications
Control Methods Default Settings Risks Startup Procedure
Wireless LAN AP (Access Point) Mode OFF Since remote connection and control are possible using the SSID and encryption key, proper management is required. Enable this feature before connecting from a device.
Wireless LAN CL (Client) Mode OFF Even if digest authentication is configured, if the username and Password are compromised, the device can be controlled via the Web API; therefore, proper management is required. Use the API to configure the necessary connection settings before enabling this feature.
Wired LAN OFF As with wireless LAN (CL mode), proper management is required. A wired LAN adapter must be connected to the USB port.
LTE dongle OFF Remote control via WebAPI is not available. You must connect the LTE dongle to a USB port.
USB (MTP) ON By connecting to a PC via a USB cable, you can retrieve image and Video files saved on the THETA. You can also control the Camera via MTP. Please be mindful of your operating environment. You must connect using a USB cable capable of data transfer.
USB (UVC) OFF By connecting the THETA to a PC via a USB cable, you can capture video and audio from the THETA. Please be mindful of your operating environment. You must enable this feature and connect using a USB cable capable of data transfer.
Bluetooth®
(Low Energy)
OFF (up to v1.41)
ON (v2.00 and later)
Communication via NumericComparison or a custom authentication procedure is available. Since connections can be authorized via device controls and information can be retrieved using the BLE API, please be mindful of the usage environment. Connect from the device.
Bluetooth®
(Classic)
OFF (up to v1.41)
ON (v2.00 and later)
You can connect to devices with specific profiles. You must register via the unit’s touch panel.
Control buttons No Lock You can turn the power on and off using the power button, and turn Wi-Fi and Bluetooth® on and off using the touch panel. You can also reset the Settings. Please be mindful of the operating environment. Power ON

The scope of settings and procedures related to each method of operation are as follows.

Wi-Fi

Wi-Fi settings can be set to OFF, AP mode, or CL mode.
Wi-Fi is turned OFF in Sleep Mode.

  • Starting with v2.40, if the device is registered with RICOH360 Cloud, is being powered via USB, and transitions from a state where Wi-Fi is ON, Wi-Fi will not turn OFF.
  • Starting with v2.93, if you transition from a state where the device is registered with RICOH360 Cloud, has remaining uploads, and is connected in CL mode, Wi-Fi will not turn off until the following conditions are met.
    • The battery level dropped by 3% before the device entered Sleep Delay mode.
    • The number of uploads remaining reached 0.
    • The CL mode connection was lost.
How to Use Wi-Fi Settings

Swipe down from the top of the camera screen and tap the Wi-Fi icon to toggle Wi-Fi on or off.
Select [Client Mode] to enable client mode. You can also select the mode using the API.
Select [Wi-Fi Power Saving Settings] to choose between [Speed Priority (MIMO)] and [Power Saving Priority (SISO)].

Settings
Settings Default Settings Explanation
Network Type OFF Web API Options._networkType Type of network to use
MTPAPI 0xD81D NetworkType
BLEAPI Set network type
Set Options
Wi-Fi Antenna Settings MIMO (v2.71 and later)
SISO (up to v2.63)
Web API Options._wlanAntennaConfig
SISO/MIMO Switching
MTPAPI N/A
BLE API Set Options

AP (Access Point) Mode

Specifications
Network Interface Wireless LAN
1. WPA2-Personal
2. Encryption method: AES
3. Wireless LAN mode: Access Point
The default settings are as follows.
SSID: "THETA" + "Serial No." + ".OSC"
Encryption key (passphrase): A random 8-character string (for some models version 3.50 and later)
Encryption key (passphrase): The last 8 digits of the Serial No.
You can check the encryption key by enabling AP mode and viewing it under [App Information].
Service Protocol HTTP
Service Protocol Authentication Method None
Service Protocol Encryption Method None
Provided Services The Web API specifications are public at the following URL.
https://docs-theta-api.ricoh360.com/web-api/index.html
How to Use Connect in AP Mode
  1. Turn on the THETA and operate the touch panel to switch to AP mode.
  2. Search for the THETA’s SSID (by default, the THETA’s Serial No. (2 letters + 8 digits) + .OSC) from your device.
  3. Connect to the THETA’s SSID from the device you are using. You will need to enter the encryption key at this time.
Settings
Settings Default Settings Explanation
SSID Serial No. (2 letters + 8 digits) + .OSC Web API Options._ssid
Can be set or retrieved in WLAN AP mode for settings
A name used to identify the THETA’s Wi-Fi network
MTPAPI N/A
BLEAPI Set Options
Encryption Key (Passphrase) Settings per device WebAPI Options.wifiPassword
You can set the encryption key
Options._defaultWifiPassword
You can retrieve the factory-default encryption key
The encryption key used when connecting in AP mode
You can change this in the RICOH360 smartphone APP.

While you can set the password to 8 digits, this makes it weak against brute-force attacks. Please take measures such as increasing the length of the password or selecting a combination of different character types.
MTPAPI 0xD806 Passphrase
BLEAPI Set Options
You can set the encryption key
Get Options
You can retrieve the factory-default encryption key
Read WLAN Password Status
You can retrieve the encryption key update status
Frequency Settings 2.4 GHz Web API Options._wlanFrequency
Can be set/retrieved in WLAN AP mode for settings
Can be retrieved in WLAN CL mode
Frequency settings used in AP mode
MTPAPI 0xD821 Wlan Frequency
BLEAPI Set Options

CL (Client) Mode: Control via WebAPI

Specifications
Network Interface Wireless LAN
1. Authentication Method: WPA/WPA2-PSK (up to v2.92)
1. Authentication Method: WPA/WPA2-PSK, WPA3-SAE (v2.93 and later)
2. Encryption Method: AES
3. Wireless LAN Mode: Client (Station)
You must configure the SSID and Password for the access point you wish to connect to.
Wired LAN (USB-LAN adapter)
Service Protocol HTTP
Detect the camera's IP address using mDNS
Service Protocol Authentication Method HTTP Digest Access Authentication
Service Protocol Encryption Method None
Provided Services The Web API specifications are public at the following URL.
https://docs-theta-api.ricoh360.com/web-api/index.html
How to Use Connecting in Wi-Fi CL Mode

When controlling the device via the API, you must configure digest authentication. You must also configure settings appropriate for the network you are using.
When using Wi-Fi CL mode, you must register the information for the router you are connecting to. These settings must be configured using Wi-Fi, BLE, or MTP. You can also register the router information directly on the device.

・When configuring via Wi-Fi (AP mode)

  1. Connect in AP mode.
  2. Set the username and password for Digest authentication.
  3. Set the frequency band to be used.
  4. Register the router you want to connect to.

・When setting up via Bluetooth® (standard specification)

  1. Turn on the THETA.
  2. Search for nearby devices that support Bluetooth® (8-digit alphanumeric code) from the device you are using.
  3. When you attempt to connect from your device, a 6-digit PIN code will be displayed on both your device and the THETA; verify that the codes match and select OK.
    • Depending on the device, you may be asked to authorize the connection before the PIN code is displayed.
  4. Set the username and password for digest authentication.
  5. Register the router you want to connect to.
    A) Register router information directly (using Camera Control Command v2)
    B) Detect the router with THETA (using WLAN Control Command v2)

・When configuring via MTP

  1. Turn on the THETA
  2. .
  3. Connect it to your PC via USB
  4. .
  5. Set the username and password for Digest authentication.
  6. You cannot register a router via MTP
  7. .

・When configuring router information using the device controls

  1. Turn on the THETA.
  2. Swipe down from the top of the shooting screen.
  3. Select [Client Mode], then select [ON].
  4. Select the router you want to connect to.
    • You can also register the router by selecting [Add network] and scanning the QR code.
  5. Enter the password. Tap [Aa1#] in the lower-left corner to switch the input mode. Use <> to move to the next character.
  6. Once you have finished entering (or selecting) the information, tap [Connect] in the upper-right corner.
Settings
Settings Default Settings Explanation
Authentication Method digest Web API N/A Authentication methods used in CL mode
MTPAPI N/A
BLE API N/A
Digest Authentication Username THETA+Serial No. (2 letters + 8 digits) WebAPI Options._username
Can be configured in WLAN AP mode for settings
Username used for digest authentication
MTPAPI 0xD815 Username
BLEAPI Set Options
Digest Authentication Password Not Configured or the 8-digit portion of the Serial No. (2 letters + 8 digits) WebAPI Options._password
Can be configured in WLAN AP mode for settings
Password used for digest authentication
Cannot be used if Not Configured.

While you can set the password to 8 digits, this makes it vulnerable to brute-force attacks. Please take measures such as increasing the length of the password or selecting a combination of different character types.
MTPAPI 0xD816 Password
BLEAPI Set Options
Access Point App Information Not Configured WebAPI camera.setAccessPoint
Can be configured in WLAN AP mode for settings
App Information about the access point (router) to which the device connects in Wi-Fi CL mode
MTPAPI N/A
BLEAPI Set Access Point
Proxy App Information Not Configured WebAPI camera.setAccessPoint
Proxy information for connecting in Wi-Fi CL mode
MTP API N/A
BLEAPI N/A

Wired LAN

Usage Connecting via Wired LAN

When controlling the device via the API, you must configure digest authentication. You must also configure settings appropriate for the network you are using.
These settings must be configured using Wi-Fi, BLE (standard or proprietary), or MTP.
Also, swipe down from the top of the camera screen and set [USB Power Settings] to [Auto].
Once the settings are completed, connect the wired LAN adapter and connect it to the router using a wired LAN cable.

・When setting up using Wi-Fi (AP mode)

  1. Connect in AP mode.
  2. Set the username and Password for Digest authentication.
  3. Configure the wired LAN connection settings as needed.

・When setting up via Bluetooth® (standard specification)

  1. Turn on the THETA.
  2. Search for Bluetooth® (8-digit alphanumeric code) from the device you are using.
  3. When you connect from your device, a 6-digit PIN code will display on both your device and the THETA; verify that the codes match and select OK.
    • Depending on the device, you may be asked to authorize the connection before the PIN code is displayed.
  4. Set the username and password for digest authentication.
  5. Configure the wired LAN connection settings as needed.

・When configuring via MTP

  1. Turn on the THETA.
  2. Connect it to your PC via USB.
  3. Set the username and password for digest authentication.
  4. You cannot configure wired LAN connection settings via MTP.
Settings
Settings Value Default Settings Explanation
Wired LAN Connection Settings ipAddressAllocation="dynamic" Web API Options._ethernetConfig
Can be set or retrieved in WLAN AP/CL mode for settings
Connection settings for Wired LAN Connections
MTPAPI N/A
BLEAPI N/A
Authentication Method digest Web API N/A Authentication method used in CL mode
MTPAPI N/A
BLE API N/A
Digest Authentication Username THETA+Serial No. (2 letters + 8 digits) WebAPI Options._username
Can be configured in WLAN AP mode for settings
Username used for digest authentication
MTPAPI 0xD815 Username
BLEAPI Set Options
Digest Authentication Password Not Configured or the 8-digit portion of the Serial No. (2 letters + 8 digits) WebAPI Options._password
Can be configured in WLAN AP mode for settings
Password used for digest authentication
Cannot be used if Not Configured.

While you can set the password to 8 digits, such as a numeric code, this makes it weak against brute-force attacks. Please take measures such as increasing the length of the password or selecting a combination of different character types.
MTPAPI 0xD816 Password
BLEAPI Set Options

CL (Client) Mode: Controlled by RICOH360 Cloud

Specifications
Network Interface Wireless LAN
1. Authentication Method: WPA/WPA2-PSK (up to v2.92)
1. Authentication Method: WPA/WPA2-PSK, WPA3-SAE (v2.93 and later)
2. Encryption Method: AES
3. Wireless LAN Mode: Client (Station)
You must set the SSID and password for the access point you wish to connect to.
Wired LAN (USB-LAN adapter)
4G LTE (USB-LTE adapter)
Tethering connection
Service Protocol MQTT
Service Protocol Authentication Method MQTT connection with mutual TLS (mTLS) authentication
Service Protocol Encryption Method TLS
Usage

https://support.ricoh360.com/ja/manual/x-ricoh360-app-upload-02?apps=ricoh360-app

CL (Client) Mode: LIVE Streaming

Specifications
Network Interface Wireless LAN
1. Authentication Method: WPA/WPA2-PSK (up to v2.92)
1. Authentication Method: WPA/WPA2-PSK, WPA3-SAE (v2.93 and later)
2. Encryption Method: AES
3. Wireless LAN Mode: Client (Station)
You must configure the SSID and set the password for the access point you wish to connect to.
Wired LAN (USB-LAN adapter)
4G LTE (USB-LTE adapter)
Tethering connection
Service Protocol WebRTC
WebSocket-TLS
Service Protocol Authentication Method JWT
Service Protocol Encryption Method DTLS, SRTP, TLS
Usage

Pending

Mobile network (LTE dongle)

How to Use Connecting via Mobile Network

Connect the LTE dongle and configure the mobile network settings using the device menu as needed.

Bluetooth®

Bluetooth® Low Energy (BLE) and Bluetooth® Classic are controlled simultaneously. They are enabled by default. To control the THETA, you must connect via BLE.
Note that Bluetooth® Classic is turned off in Sleep Mode.

Specifications
InterfaceBluetooth® Low Energy
1. Profile: GATT
2. Security: Some models support multiple connections.
BLE (standard)
- BLE Security Mode 1
- BLE Security Connections Level 4
- Numeric Comparison Pairing (Bluetooth® standard 4.2 or higher)
* Supports characteristics corresponding to BLE Security Mode 1 and BLE Security Connections Level 4.
BLE (proprietary): Used only by RICOH smartphone apps
- BLE Security Mode 1
- RICOH proprietary pairing
3. BLE mode: Peripheral
Service Protocol GATT
Service Protocol Authentication Method BLE (standard)
&nbsp &nbsp FIPS, Numeric Comparison Pairing
BLE (proprietary): Used only by RICOH smartphone apps
&nbsp &nbsp RICOH proprietary pairing
Service Protocol Encryption Method BLE (standard)
&nbsp &nbsp AES-CCM
BLE (proprietary): Used only by RICOH smartphone apps
&nbsp &nbsp None
Provided Services The Bluetooth® API specifications are public at the following link.
https://docs-theta-api.ricoh360.com/bluetooth-api/
Camera Control Command v2 Service
WLAN Control Command service
WLAN Control Command v2 Service
Registering with RICOH360 Cloud can only be performed using the RICOH APP.
How to Use Connect via Bluetooth®: BLE (standard)

By default, BLE/Bluetooth® Classic is enabled (v2.00 and later).
If it is disabled, you must enable it using the API or via the device controls. Follow the steps below to connect and control the device as a peripheral.

  1. Turn on the THETA.
  2. Swipe down from the top of the shooting screen, tap the Bluetooth® icon, and enable Bluetooth®.
  3. Search for the THETA (the last 8 digits of the Serial No.) via Bluetooth® on your device.
  4. When you attempt to connect from your device, a 6-digit PIN code will display on both your device and the THETA; verify that the codes match and select OK.
    • Depending on the device, you may be asked to authorize the connection before the PIN code is displayed.

When connecting external devices such as headsets or remote controllers, you must connect the device using the camera’s controls.


Connecting via Bluetooth®: BLE (proprietary)

By default, BLE/Bluetooth® Classic is enabled (v2.00 and later).
If it is disabled, you must enable it using the API or via the device controls

  1. .

Follow the steps below to connect and control the device as a peripheral

    .


  1. Turn on the THETA.
  2. Swipe down from the top of the shooting screen, tap the Bluetooth® icon, and enable Bluetooth®.
  3. Connect via the RICOH smartphone APP.
  4. A connection permission request will display in the APP; grant permission.

When connecting external devices such as headsets or remote controllers, you must connect the device using the camera’s controls.


Settings
Settings Default Settings Explanation
Bluetooth® Status OFF (up to v1.41)
ON (v2.00 and later)
WebAPI Options._bluetoothPower
Can be set or retrieved in WLAN AP/CL mode for settings
Toggle Bluetooth® on/off
MTPAPI N/A
BLEAPI Set Options

USB

Specifications
InterfaceCompliant with the following standards:
&nbsp &nbsp USB Spec. 3.2 SuperSpeed standard
&nbsp &nbsp USB 2.0 High-Speed Standard
Service Protocol MTP (Media Transfer Protocol)
UVC (USB Video Class)
Service Protocol Authentication Method None
Service Protocol Encryption Method None
Provided Services The MTP API specifications are public at the following link.
https://docs-theta-api.ricoh360.com/usb-api/
How to Use Connecting via

USB When controlling the device via USB, you must decide whether to use it as an MTP device or a UVC device.

・To operate the settings using the buttons

  1. Turn on the THETA.
  2. Connect it to your PC using a USB cable.
  3. Press the Mode button to cycle through images, Video, and LIVE streaming (UVC).
    • Swipe down on the shooting screen and set [Auto Switch to LIVE Streaming] to [On] to automatically switch to UVC mode when connected to a PC.

Control Devices

You cannot disable the power button, Mode button, or touch panel on this device

.


Device Settings

Location and date/time information are recorded with photos and Videos. These settings affect the integrity of this information.

Location Information

You can specify whether to add location information to photos and videos. If the built-in GPS cannot determine your location, you can set the location information using an API.
Direction information obtained using the electronic compass is recorded in Magnetic North.
If the icon is white, the built-in GPS is determining your location.

Settings
Settings Value Default Settings Explanation
Location Not Configured Web API Options.gpsInfo
Can be set or retrieved in WLAN AP/CL mode for settings
Location
MTPAPI 0xD801 GpsInfo
BLEAPI Set Options
Assigning Location on WebAPI Options._gpsTagRecording
Can be set or retrieved in WLAN AP/CL mode for settings
Select whether to include Location information
MTPAPI 0xD832 GPStagRecording
BLEAPI Set Options

Date

and Time

Information

You can set the date and time on this device.
If you obtain the date and time from NTP, the time will be corrected, but the time zone will not be adjusted.
You can also configure these settings via the device interface. Swipe down from the top of the camera screen and select [Date & Time Settings] to configure them.

Settings
Settings Value Default Settings Explanation
Date, Time, and Time Zone Information January 1, 2021, 12:00:00 AM
Web API Options.dateTimeZone
Can be set or retrieved in WLAN AP/CL mode for settings
Date, Time, and Time Zone Information
MTPAPI 0x5011 DateTime
BLE API Set Options

Power State Settings

You can use the API to control the Camera’s power. However, you cannot start the Camera from the powered-off state.
You can use the Camera’s buttons to control power on, Sleep Delay, and power off.

Settings Value
Settings Value Default Settings Explanation
Power Status OFF Web API Options._cameraPower
Can be set or retrieved in WLAN AP/CL mode for settings
Power state settings
MTPAPI 0x1013 Power Down
0xD80E Sleep Mode
BLEAPI Set Options
Power Saving Mode Settings ON WebAPI Options._powerSaving
Can be set or retrieved in WLAN AP/CL mode for settings
Power Saving Mode on/off settings
MTPAPI N/A
BLE API Set Options
Sleep Mode Transition Time 180 (secs)
WebAPI Options.sleepDelay
Can be set or retrieved in WLAN AP/CL mode for settings
The period of inactivity (in seconds) before entering Sleep Mode
MTPAPI 0xD803 SleepDelay
BLEAPI Set Options
Power-off transition time (hours) 43,200 (secs) (up to v2.92)
28,800 (secs) (v2.93 and later)
Web API Options.offDelay
Can be set or retrieved in WLAN AP/CL mode for settings
The period of inactivity (in seconds, 60 seconds or more) before the device transitions from Sleep Delay mode to power-off
MTPAPI 0xD81B AutoPowerOffDelaySec
BLEAPI Set Options

Device Log

This device records at least 1,000 event logs for critical information assets, such as image and Video files.
This log can be accessed via the WebAPI.

How to get/Retrieval Method
API Name getEventLog
URL /log/eventLog
Content-Type Text/plain;
charset Charset=UTF-8
method GET

Vulnerability Mitigation

To address software vulnerabilities, we recommend updating the firmware. Firmware update information will be posted on our website, smartphone apps, and other channels.
https://support.ricoh360.com/system-information

How to Update Firmware

Please refer to the Instructions for Use for instructions on how to update the firmware.

Update Using the RICOH360 Smartphone APP

https://support.ricoh360.com/manual/x-ricoh360-app-firm-update-01

Update Using the Basic PC App

https://support.ricoh360.com/manual/x-update-02?apps=ricoh-theta

Updating via RICOH360 Cloud

https://support.ricoh360.com/manual/ricoh360-web-08

Updating via the THETA Device

Itself If connected via Wi-Fi CL mode, Ethernet, or an LTE dongle, the THETA can check for Update Firmware. If updated Firmware is found, you can perform the update.
To check for Update Firmware

,

swipe down from the top of the shooting screen and select [Update Firmware]

.


Deleting Registration Information and Resetting

You can reset the connection information stored on the THETA device by following the steps below.
To remove the RICOH360 registration from the THETA device, please delete it from the app.
You can also delete images and videos stored on the THETA device from a PC via a USB connection.

[THETA X]
Register Information Reset to Factory Settings Reset Settings Reset Connect App Information Format Storage
API Swipe down from the top of the camera screen to select / API Swipe down from the top of the camera screen to select / API Swipe down from the top of the camera screen to select / API
Network Type Initialize (OFF) Initialize (OFF) N/A N/A
Wireless LAN Antenna Settings Initialize (MIMO) N/A N/A N/A
SSID Initialize Initialize N/A N/A
Encryption Key (Passphrase) Initialize Initialize N/A N/A
Frequency Settings (AP Mode) Initialize (2.4 GHz) Initialize (2.4 GHz) N/A N/A
Digest Authentication Username Initialize Initialize N/A N/A
Digest Authentication Password Initialize Initialize N/A N/A
Access Point App Information Initialize (delete) Initialize (delete) N/A N/A
Proxy App Information Initialize (delete) Initialize (delete) N/A N/A
Wired LAN Connection Settings Initialize Initialize N/A N/A
Mobile Network Settings Initialize N/A N/A N/A
Bluetooth® Status Initialize Initialize N/A N/A
Connect Information for Bluetooth® Peripherals Initialize (delete) N/A Initialize (delete) N/A
Connect Information for Bluetooth® Devices Initialize N/A Initialize N/A
Location settings set via the API delete N/A N/A N/A
Assign Location Initialize (ON) Initialize (ON) N/A N/A
Date, Time, and Time Zone Information Initialize Initialize N/A N/A
Power Saving Mode Settings Initialize (ON) Initialize (ON) N/A N/A
Sleep Mode Transition Time (hours) Initialize Initialize N/A N/A
Time to Power Off (hr.s) Initialize Initialize N/A N/A
Images/Video Files Initialize (delete) N/A N/A Initialize (delete)
Device Log Initialize (delete) N/A N/A N/A
RICOH360 Register Information Initialize (delete) N/A N/A N/A

Setpoint
Process Type How to Use Settings (API)
Reset to Factory Defaults N/A Web API camera._initializeDevice
Can be set or retrieved in WLAN AP/CL mode for settings
MTP API N/A
BLEAPI N/A
Reset Settings Swipe down from the top of the camera screen
Select [Reset Settings]
Web API camera.reset
Can be set or retrieved in WLAN AP/CL mode for settings
MTPAPI 0x1017 ResetDevicePropValue [*1]
BLEAPI N/A
Initialize Connection Information Swipe down from the top of the camera screen and
Select [Reset Connection Information]
Web API camera._deleteAccessPoint [*2]
Can be set or retrieved in WLAN AP/CL mode for settings
MTPAPI N/A
BLEAPI N/A
Format Swipe down from the top of the camera screen and select
select [Initialize: Internal Memory] or
[Reset: Card] Select
Web API camera.delete
Can be set or retrieved in WLAN AP/CL mode for settings
MTPAPI 0x100B DeleteObject
BLEAPI N/A

[*1] Resets the DeviceProperties defined in MTP.
[*2] Deletes the access point information configured via the API.

Supplementary Information