How can I improve security?
139
User’s Guide: Version 1.2
Login access via X.25 PAD calls
Remote login on the V!CAS is possible using PAD applications such as
minipad. To disable login access via PAD calls enter the following from
the shell:
x25LocalPadCall=dont_accept
Detecting Intruders
Though it’s hard to catch intruders in the act, there are a few places to
look for clues. One place to look is in the SysLog Messages.
The V!CAS stores a limited number of messages. The best way is to
setup an external Log Host and have the V!CAS forward all messages to
it. A LogHost can be a UNIX host (using Syslogd) or a PC (using BRICK-
ware). Configuring the V!CAS to forward messages to a LogHost is de-
scribed on page 134.
Examine your SysLog Messages from time to time to see what’s hap-
pening on your system (access list violations, problems, charging infor-
mation, etc).
While the V!CAS is routing you can track external connections by the
type of connection (ISDN or X.25 Call), interface, or by IP protocol using
the
menus. See Chapter 4 beginning
on page 89.
CAPI Port
You can also control access to the V!CAS’ CAPI port by changing the TCP
port number (default 6000) or by disabling CAPI altogether. To disable
CAPI
From the SNMP shell enter:
biboAdmCAPItcpPort=0
Under Setup Tool see the
menu.
Alternatively you can configure a separate access list to protect this
port. See page 111 for configuring Access Lists.
M
ONITORING AND
D
EBUGGING
IP
S
TATIC
S
ETTINGS