viii
Broadmore 1750 - Release 4.6
Table of Contents
11
Security Management (FIPS Mode)
Security Features . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-2
Security Guidance . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-3
Authentication and Identification . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-6
Authorized Services . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-7
Key Management . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-8
Default DSA Key . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-8
Generating DSA Key Pairs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-8
Installing the DSA Key . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-8
Logging In . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-9
Logging in with SecurID Disabled . . . . . . . . . . . . . . . . . . . . . . . . . 11-9
Logging in with SecurID Enabled . . . . . . . . . . . . . . . . . . . . . . . . . 11-11
Log-in Banner . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-13
System Clock. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-14
Network Time Protocol . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-15
Changing Security Modes . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-17
Help About Security. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-17
Enabling FIPS Mode . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-18
Disabling FIPS Mode. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-20
Enabling SecurID . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-21
Disabling SecurID . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-24
IP ICMP Messages. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-24
SNMP Messages . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-25
User Administration and Audit Trails . . . . . . . . . . . . . . . . . . . . . . . . . . 11-26
User ID Rules. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-26
Change User ID . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-27
User Audit Trails . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-30
Shell Commands (FIPS Mode) . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-34
fipsmode. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-34
selftest . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-34
settimeout . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-35
sshdShow . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-35
sshdSessionShow . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-37
scp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-38
resetSecurID. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-39
Содержание Broadmore 1750
Страница 1: ...Broadmore TM 1750 USER MANUAL Part Number 770 0020 DC Product Release 4 6 January 2008 ...
Страница 24: ...xii Broadmore 1750 Release 4 6 Table of Contents ...
Страница 50: ...1 26 Broadmore 1750 Release 4 6 Product Description Alarm Power Module IOM ...
Страница 69: ...CHAPTER 3 Receipt of Product In this Chapter Receipt 3 2 Unpacking 3 2 Inspection 3 3 ...
Страница 72: ...3 4 Broadmore 1750 Release 4 6 Receipt of Product Damage Reporting ...
Страница 82: ...4 10 Broadmore 1750 Release 4 6 Chassis Installation and Grounding AC Power Supply Tray ...
Страница 114: ...6 16 Broadmore 1750 Release 4 6 Electrical Installation Software ...
Страница 188: ...7 74 Broadmore 1750 Release 4 6 Configuration Help ...
Страница 199: ...Broadmore 1750 Release 4 6 8 11 Maintenance and Troubleshooting Slot Statistics for NIM SAM Cards ...
Страница 200: ...8 12 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Slot Statistics for NIM SAM Cards ...
Страница 234: ...8 46 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Summary of Front Panel LEDs ...
Страница 244: ...9 10 Broadmore 1750 Release 4 6 Command Line Interface About Command ...
Страница 266: ...10 22 Broadmore 1750 Release 4 6 Security Management FTP Login ...
Страница 302: ...11 36 Broadmore 1750 Release 4 6 Security Management FIPS Mode sshdShow ...
Страница 311: ...Broadmore 1750 Release 4 6 11 45 Security Management FIPS Mode Logging in with SecurID Disabled ...
Страница 314: ...11 48 Broadmore 1750 Release 4 6 Security Management FIPS Mode Logging in with SecurID Enabled ...
Страница 318: ...11 52 Broadmore 1750 Release 4 6 Security Management FIPS Mode Sanitation Procedures ...
Страница 362: ...12 44 Broadmore 1750 Release 4 6 SNMP Configuration Notify Profiles ...
Страница 363: ...APPENDIX A Technical Specifications In this Appendix Broadmore 1750 Platform A 2 Broadmore Modules A 6 ...
Страница 370: ...A 8 Broadmore 1750 Release 4 6 Technical Specifications E3 Unstructured Circuit Emulation SAM ...
Страница 373: ...APPENDIX C Software Error Messages In this Appendix Overview System Errors Setup Errors ...
Страница 383: ...APPENDIX E Chassis Differences ...
Страница 386: ...E 4 Broadmore 1750 Release 4 6 Chassis Differences Software Differences ...
Страница 394: ...F 8 Broadmore 1750 Release 4 6 IPv6 Support Deleting a Network Route ...
Страница 398: ...G 4 Broadmore 1750 Release 4 6 Broadmore Command List Commands Available at the CLI Prompt ...
Страница 408: ...Glossary 10 Broadmore 1750 Release 4 6 Glossary ...