
Chapter 3: System planning
Security planning
Page 3-57
Table 72 Security Wizard attributes
Item
Description
Quantity required
Key of Keys
An encryption key generated using a
cryptographic key generator. The key length is
dictated by the installed license key. License keys
with AES-128 will require a key of keys of 128-
bits. License keys with AES-256 will require a key
of keys of 256-bits. The key output should be in
ASCII hexadecimal characters.
Two per link. For greater
security, each link end
should be allocated a
unique Key of Keys.
Entropy Input
This must be of size 512 bits (128 hexadecimal
characters), output from a random number
generator.
Two per link. For greater
security, each link end
should be allocated a
unique Entropy Input.
User Defined
Security
Banner
The banner provides warnings and notices to be
read by the user before logging in to the ODU.
Use text that is appropriate to the network
security policy.
Normally one per link.
This depends upon
network policy.
Planning for wireless encryption
AES license
Ensure that both ODUs have an AES license that allows the required key size for wireless
encryption. The 128-bit AES license allows 128-bit encryption. The 256-bit AES license allows
128-bit and 256-bit encryption.
TLS-RSA can be used without an AES license, but this option supports only authentication and
authorization, but not encryption.
Encryption algorithms
Select one of the three supported Encryption Algorithms:
•
TLS-RSA
•
TLS-PSK 128-bit
•
TLS-PSK 256-bit
Configure the same algorithm at both ends of the link.
TLS-RSA provides authentication and authorization in any ODU. This option additionally
provides encryption if both ODUs have an AES license.
TLS-PSK 128-bit provides authentication, authorization and encryption using a 128-bit pre-
shared key. TLS-PSK 128-bit requires the 128-bit or 256-bit AES license.
TLS-PSK 256-bit provides authentication, authorization and encryption using a 256-bit pre-
shared key. TLS-PSK 256-bit requires the 256-bit AES license.
Содержание PTP 670 Series
Страница 1: ...F Cambium PTP 670 Series User Guide System Release 670 02 50 ...
Страница 349: ...Chapter 5 Installation Installing an SFP Ethernet interface Page 5 52 Correct Incorrect ...
Страница 405: ...Chapter 6 Configuration and alignment System menu Page 6 46 Figure 151 LAN Configuration page PTP topology TDM support ...
Страница 406: ...Chapter 6 Configuration and alignment System menu Page 6 47 Figure 152 LAN Configuration page PTP topology SFP support ...
Страница 408: ...Chapter 6 Configuration and alignment System menu Page 6 49 Figure 154 LAN Configuration page HCMP topology ...
Страница 416: ...Chapter 6 Configuration and alignment System menu Page 6 57 Figure 156 QoS Configuration page IP MPLS ...
Страница 445: ...Chapter 6 Configuration and alignment Management menu Page 6 86 Figure 173 Time Configuration page SNTP enabled ...
Страница 551: ...Chapter 7 Operation System statistics Page 7 64 Figure 250 Main Port Counters page when main port is bridging traffic ...