5-5
Cisco ONS 15600 SDH Reference Manual, Release 9.0
78-18400-01
Chapter 5 Security
5.2.2 Security Policies
5.2.2 Security Policies
Users with Superuser security privileges can provision security policies on the ONS 15600 SDH. These
security policies include idle user timeouts, password changes, password aging, and user lockout
parameters.
5.2.2.1 Superuser Privileges for Provisioning Users
Superusers can grant permission to Provisioning users to perform a set of tasks, including retrieving the
audit log, restoring a database, clearing performance monitoring (PM) parameters, activating a software
load, and reverting a software load. These privileges can only be set using CTC network element (NE)
defaults, except the PM clearing privilege, which can be granted using the CTC Provisioning >
Security > Access tabs. For more information about setting up Superuser privileges, refer to the
Cisco ONS 15600 SDH Procedure Guide
.
Provisioning Security
Users: Create/Delete
—
—
—
X
Users: Change
Same User
Same User
Same User
All Users
Active logins: Logout/Retrieve
Last Activity Time/View
—
—
—
X
Policy: Edit/View
—
—
—
X
Alarm Profiles
Store/Delete
1
—
—
X
X
New/Load/Compare/Available/
Usage
X
X
X
X
MS-SPRing
Create/Edit/Delete/Upgrade
—
—
X
X
Overhead
Circuits
Create/Delete/Edit/Merge
—
—
X
X
Search
X
X
X
X
Provisionable
Patchcords (PPC)
Create/Delete
—
—
X
X
Server Trails
Create/Edit/Delete
—
—
X
X
VLAN DB
Profile
Load/Store/Merge/Circuits
X
X
X
X
Add/Remove Rows
—
—
X
X
Maintenance Software
Download/Cancel
—
X
X
X
Diagnostic
Retrieve/Clear
X
X
X
X
APC
Run APC/Disable APC
—
—
—
X
Refresh
X
X
X
X
1.
The action buttons in the subtab are active for all users, but the actions can be completely performed only by the users assigned with the required security
levels.
Table 5-2
ONS 15600 SDH Security Levels—Network View (continued)
CTC Tab
Subtab
Actions
Retrieve
Maintenance
Provisioning
Superuser