11-20
Broadmore 1750 - Release 4.6
Security Management (FIPS Mode)
Disabling FIPS Mode
Disabling FIPS Mode
Only a Superuser (Crypto Officer) can change the security modes. The security
mode can only be changed after successfully logging into the Broadmore, then
performing the following steps.
CAUTION!
D
ISABLING
FIPSMODE
WILL
DELETE
EXISTING
USER
ACCESS
ACCOUNTS
AND
CRYPTOGRAPHIC
KEYS
AND
REVERT
THE
B
ROADMORE
TO
THE
FACTORY
DEFAULT
S
UPER
U
SER
ID
AND
PASSWORD
,
WHICH
CAN
DENY
MANAGEMENT
ACCESS
AND
COMPROMISE
SECURITY
. N
O
ONE
CAN
LOG
IN
REMOTELY
TILL
THE
B
ROADMORE
IS
REBOOTED
.
1. Log into the online CPU (Broadmore primary IP address) with a secure SSH
terminal emulator such as SecureCRT (see
“Logging In” on page
11-9
).
2. Disable FIPS mode by entering the following shell command at the Broadmore
prompt:
fipsmode off
↵
3. Reboot the Broadmore for the change to take effect by entering the following
commands at the Broadmore prompt:
cli
↵
maintain
↵
redundancy
↵
cpu
↵
rebootstandby
↵
releasecpu
↵
NOTE:
The above command sequence reboots the standby CPU (if any)
and then the online CPU. In a redundant system, both CPUs must be
rebooted into the non-FIPS mode. Rebooting the online CPU will terminate
the current management session. After reboot, the previous standby CPU
will normally become the online CPU. It may take several minutes for the
ARP tables in the network to refresh before you can log into the online CPU.
Summary of Contents for Broadmore 1750
Page 1: ...Broadmore TM 1750 USER MANUAL Part Number 770 0020 DC Product Release 4 6 January 2008 ...
Page 24: ...xii Broadmore 1750 Release 4 6 Table of Contents ...
Page 50: ...1 26 Broadmore 1750 Release 4 6 Product Description Alarm Power Module IOM ...
Page 69: ...CHAPTER 3 Receipt of Product In this Chapter Receipt 3 2 Unpacking 3 2 Inspection 3 3 ...
Page 72: ...3 4 Broadmore 1750 Release 4 6 Receipt of Product Damage Reporting ...
Page 82: ...4 10 Broadmore 1750 Release 4 6 Chassis Installation and Grounding AC Power Supply Tray ...
Page 114: ...6 16 Broadmore 1750 Release 4 6 Electrical Installation Software ...
Page 188: ...7 74 Broadmore 1750 Release 4 6 Configuration Help ...
Page 234: ...8 46 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Summary of Front Panel LEDs ...
Page 244: ...9 10 Broadmore 1750 Release 4 6 Command Line Interface About Command ...
Page 266: ...10 22 Broadmore 1750 Release 4 6 Security Management FTP Login ...
Page 302: ...11 36 Broadmore 1750 Release 4 6 Security Management FIPS Mode sshdShow ...
Page 318: ...11 52 Broadmore 1750 Release 4 6 Security Management FIPS Mode Sanitation Procedures ...
Page 362: ...12 44 Broadmore 1750 Release 4 6 SNMP Configuration Notify Profiles ...
Page 370: ...A 8 Broadmore 1750 Release 4 6 Technical Specifications E3 Unstructured Circuit Emulation SAM ...
Page 373: ...APPENDIX C Software Error Messages In this Appendix Overview System Errors Setup Errors ...
Page 383: ...APPENDIX E Chassis Differences ...
Page 386: ...E 4 Broadmore 1750 Release 4 6 Chassis Differences Software Differences ...
Page 394: ...F 8 Broadmore 1750 Release 4 6 IPv6 Support Deleting a Network Route ...
Page 398: ...G 4 Broadmore 1750 Release 4 6 Broadmore Command List Commands Available at the CLI Prompt ...
Page 408: ...Glossary 10 Broadmore 1750 Release 4 6 Glossary ...