
Enhancing System Security
Preventing Toll Fraud
322
Administrator’s Guide for Avaya Communication Manager
November 2003
Preventing Toll Fraud
Top 15 tips to help prevent toll fraud
1
Protect system administration access
Make sure secure passwords exist for all logins that allow System Administration or Maintenance
access to the system. Change the passwords frequently.
Set logoff notification and forced password aging when administering logins. You must assign
passwords for these logins at setup time.
Establish well-controlled procedures for resetting passwords.
2
Prevent voice mail system transfer to dial tone
Activate “secure transfer” features in voice mail systems.
Place appropriate restrictions on voice mail access/egress ports.
Limit the number of invalid attempts to access a voice mail to five or less.
3
Deny unauthorized users direct inward system access (screen)
If you are not using the Remote Access features, deactivate or disable them.
If you are using Remote Access, require the use of barrier codes and/or authorization codes set for
maximum length. Change the codes frequently.
It is your responsibility to keep your own records regarding who is allowed to use which
authorization code.
4
Place protection on systems that prompt callers to input digits
Prevent callers from dialing unintended digit combinations at prompts.
Restrict auto attendants and call vectors from allowing access to dial tone.
5
Use system software to intelligently control call routing
Create Automatic Route Selection or World Class Routing patterns to control how each call is to
be handled.
Use “Time of Day” routing capabilities to limit facilities available on nights and weekends.
Deny all end-points the ability to directly access outgoing trunks.
6
Block access to international calling capability
When international access is required, establish permission groups.
Limit access to only the specific destinations required for business.
7
Protect access to information stored as voice
Password restrict access to voice mail mailboxes.
Use non-trivial passwords and change passwords regularly.
8
Provide physical security for telecommunications assets
Restrict unauthorized access to equipment rooms and wire connection closets.
Protect system documentation and reports data from being compromised.
Содержание Communication Manager
Страница 320: ...Setting Up Telecommuting Training Users 320 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 416: ...Managing Group Communications Observing Calls 416 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 502: ...Administering Media Servers SNMP Agents 502 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 602: ...Phone Reference Internet Protocol IP Softphones 602 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 1338: ...Screen Reference Vector Directory Number 1338 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 1832: ...Glossary and Abbreviations Z 1832 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 1854: ...Index X 1854 Administrator s Guide for Avaya Communication Manager November 2003...