
Enhancing System Security
System Security Checklist
324
Administrator’s Guide for Avaya Communication Manager
November 2003
7
Keep the attendant console and supporting documentation in an office that is secured with a
changeable combination lock. Provide the combination only to those individuals who need to
enter the office.
8
Keep any documentation pertaining to Communication Manager operation secure.
9
Label all backup tapes or flash cards with correct dates to avoid using an outdated one when
restoring data. Be sure that all backup media have the correct generic software load.
System Security Checklist
Here’s some of the steps required for indemnification. Use these to analyze your system security.
1
Remove all default factory logins of
cust
,
rcust
,
browse
,
nms
, and
bcms
and assign unique
logins with 7-character alphanumeric passwords and a 90-day password aging. Use the
list
logins
command to find out what logins are there.
2
If you do not use Remote Access, be sure to disable it permanently.
Tip:
You can use the
display remote-access
command to check the status of your remote
access.
To disable Remote Access, on the Remote Access screen, in the Permanently Disable field, type
y
. See
QSIG to DCS TSC Gateway
on page 1114 for more information on remote access.
NOTE:
Avaya recommends that you permanently disable Remote Access using the
change
remote-access
command. If you do permanently disable Remote Access, the code is
removed from the software. Avaya charges a fee to restore the Remote Access feature.
3
If you use Remote Access, but only for internal calls, change announcements or remote service
observing.
a
Use a 7-digit barrier code.
b
Assign a unique COR to the 7-digit barrier code.
The unique COR must be administered where the
FRL
is 0, the
Calling Party Restriction
field is
outward
, the
Calling Permissions
field is n on all unique Trunk Group COR.
c
Assign
Security Violation Notification Remote
to
10
attempts in
2
minutes.
d
Set the aging cycle to 90 days with 100 call limit per barrier code.
See
QSIG to DCS TSC Gateway
on page 1114 for more information.
4
If you use Remote Access to process calls off-net or in any way access the public network:
a
Use a 7-digit barrier code.
b
Assign a unique COR to the barrier code.
c
Restrict the COR assigned to each barrier code by FRL level to only the required calling
areas to conduct business.
d
Set the aging cycle to 90 days with 100 call limit per barrier code.
e
Suppress dial tone where applicable.
Содержание Communication Manager
Страница 320: ...Setting Up Telecommuting Training Users 320 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 416: ...Managing Group Communications Observing Calls 416 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 502: ...Administering Media Servers SNMP Agents 502 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 602: ...Phone Reference Internet Protocol IP Softphones 602 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 1338: ...Screen Reference Vector Directory Number 1338 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 1832: ...Glossary and Abbreviations Z 1832 Administrator s Guide for Avaya Communication Manager November 2003...
Страница 1854: ...Index X 1854 Administrator s Guide for Avaya Communication Manager November 2003...