342-86400-498PS
Issue 1.2
April 2012
Page 43
Copyright
GE Multilin Inc. 2010-2012
Unit Security
The unit security mode can be set to
High
(default) or
Low
. The unit in High
Security mode will allow non-administrators to configure/modify only the SONET-
path related settings. They will not be allowed to change any other configurable
parameters. Only VistaNET administrators can change the unit security from
High to Low.
Port Security
The following features can be used to ensure port security:
-
Remote port enable/disable
-
Automatic port disabling on cable disconnect
-
Blocking of unknown MAC addresses
-
Intrusion detection
-
Security status monitor
All unused access ports are disabled by default. The user enables only the used
ports.
The “Off On Disconnect” feature, ensures that the port will be disabled
automatically as soon as cable disconnect (loss of input signal) is detected. An
alarm will be reported to the NMS (if Enable Alert feature for the port is on). The
alarm will remain latched until either the cable is re-connected and the port is re-
enabled or the “Off On Disconnect” feature for the port is disabled.
Ports in the
Secure
mode are blocking all unknown ingressing MAC addresses.
The Secure mode operation is explained in the MAC Address Management
section.
If an unknown ingressing MAC address is detected on a secured port with
intrusion detection feature enabled, the MAC address will be treated as an
intruder MAC and an alarm will be reported to the NMS (if Enable Alert feature
for the port is on). The alarm will remain latched until acknowledged by the user.
Passing Ethernet Traffic Across Multiple JungleMUX Networks
Ethernet traffic may be passed between contiguous ring/linear JungleMUX
networks. In general, at a site with collocated nodes, Ethernet traffic can be
passed across using: