
893-741-B
A15-13
Using Model 5390 Security
Encrypting Security Messages
Messages between the security server and the Model 5390 server are encrypted if the Model 5390
enable_security and acp_key parameters are set. The parameters do not take effect until the Model
5390 server is either rebooted or reset.
The acp_key parameter specifies the encryption key the Model 5390 server uses to exchange
messages with the security server. The security server maintains the encryption key for each Model
5390 server in the acp_keys file (see Creating the acp_keys File below and Configuring Hosts and
Servers starting on page A14-1).
The encryption key also validates the security host: the host must know the Model 5390 ACP key
for the Model 5390 server to consider the host valid. Without the appropriate key, the Model 5390
server denies the user’s request even if the host is defined as a preferred security host.
Creating the acp_keys File
The security server maintains the encryption key for each Model 5390 server in the acp_keys file.
Each entry in this file contains a list of Model 5390 names or IP addresses separated by commas
and an encryption key for those Model 5390 servers. The Model 5390 server or the list of Model
5390 servers and the key are separated by a colon. The order of placement in the file is important,
as the file is read sequentially.
When the security server receives an encrypted message from the Model 5390 server, the server
tries to match that key against the key assigned to the Model 5390 server in the file. If no match
exists, the Model 5390 server and the server cannot communicate.
NOTE:
The show annex command does not display the value of the
acp_key parameter. Instead, it displays “<set>” or “<unset>”.
Содержание 5390
Страница 28: ...893 741 B Figures xxviii ...
Страница 44: ...893 741 B Preface xliv ...
Страница 45: ......
Страница 48: ......
Страница 60: ...A1 12 893 741 B Introduction to the Model 5390 Server ...
Страница 106: ...A3 18 893 741 B Configuring Ports ...
Страница 142: ...A5 12 893 741 B Printers ...
Страница 152: ...A6 10 893 741 B Modems ...
Страница 168: ...A7 16 893 741 B Serial Line Internet Protocol SLIP ...
Страница 224: ...A9 38 893 741 B Internetwork Packet Exchange IPX Protocol ...
Страница 258: ...A11 12 893 741 B Dial up Networking ...
Страница 289: ...893 741 B A12 31 Internet Protocol IP Routing that are possible ...
Страница 506: ...A15 86 893 741 B Using Model 5390 Security ...
Страница 507: ......
Страница 508: ... Chapter B1 Network Administration Chapter B2 Simple Network Management Protocol SNMP Part B Network Administration ...
Страница 544: ...B1 36 893 741 B Network Administration ...
Страница 574: ...B2 30 893 741 B Simple Network Management Protocol SNMP ...
Страница 575: ......
Страница 606: ...C1 30 893 741 B na Commands ...
Страница 676: ...C2 70 893 741 B Configuration Parameters ...
Страница 772: ...C3 96 893 741 B Using the CLI Commands ...
Страница 794: ...C5 12 893 741 B Network Protocols ...
Страница 795: ......
Страница 796: ... Appendix D1 Software Reference Part D Appendixes ...