Bridge GUI Guide: Security Configuration
117
Chapter 4
Security, Access, and
Auditing Configuration
4.1 Fortress Security
NOTE:
Fortress
MSP is not sup-
ported on an ES210
Bridge in
Station Mode
(refer to Section 3.3.5).
The
Security Settings
frame provides controls for various
aspects of the Bridge’s overall network security provisions:
Fortress MSP (Mobile Security Protocol) functions including
key establishment, data encryption and network Access ID;
FIPS operation; global session timeouts; and several additional
management and network access settings.
A number of Fortress
Security
Settings
are available only in
ADVANCED
VIEW
. Table 4.1 shows which settings are available
in each view.
Figure 4.1. Simple View, Fortress
Security Settings
frame, all platforms
In addition, administrative password requirements and the
retry, timeout and lockout parameters for administrative
accounts are set on the
Security
screen, in the
Logon Settings
frame (as described in Section 2.2.1).
4.1.1
Operating Mode
The Fortress Bridge can be operated in either of two modes:
Normal
or
FIPS
(the default).
The rigidly enforced administrative requirements of
FIPS
operating mode are
required
by deployments and applications
that must comply with the Federal Information Processing
Standards (FIPS) for cryptographic modules. However, the
high levels of security that can be implemented in
Normal
operating mode generally meet or exceed the needs of virtually