11-50
Broadmore 1750 - Release 4.6
Security Management (FIPS Mode)
Residual Data and Memory Volatility
Residual Data and Memory Volatility
Non-Volatile Memory
... 11-50
Network Interfaces
... 11-51
Sanitation Procedures
... 11-51
This notice summarizes relevant security concerns associated with the movement of
sensitive data through any Broadmore ATM Multiplexer and subsequent re-
deployment of these products into open environments. Should there be any questions
or concerns regarding this notice, please contact Carrier Access Corporation customer
support at 800-786-9929.
Non-Volatile Memory
The modules used in the Broadmore each contain one or more of the following
types of non-volatile memory: removable Disk-on-Chip, removable and non-
removable Flash memory. There is no internal data path or mechanism provided in
a Broadmore to permit network data streams to be recorded onto non-volatile
media. Such unintended or hostile actions on the part of the Broadmore could only
be enabled by the surreptitious alteration of the device’s embedded firmware and
hardware. Thus, adequate physical security and access controls are required to
prevent hostile implementation of “other” (non-Carrier Access provided) firmware
and hardware.
With Release 4.0, Broadmore received FIPS 140-2 validation (see certificate #478
posted under the Validation Lists at
http://csrc.nist.gov/cryptval/
).
When operated
properly, this version of software contains “zeroize” commands that reformats the
Disk-on-Chip and destroys all stored configuration and sensitive data. It also
contains a start-up routine that verifies that no surreptitious software has been
loaded. See the
Broadmore/SSHield Management Module Security Policy
for
more information.
The Broadmore also has a limited amount of cell buffering implemented via
random access memory (RAM). This memory implementation is entirely volatile
and will be immediately lost upon power-down. Data that has been buffered in the
Broadmore RAM cannot be recovered under any circumstances after power-down.
Содержание Broadmore 1750
Страница 1: ...Broadmore TM 1750 USER MANUAL Part Number 770 0020 DC Product Release 4 6 January 2008 ...
Страница 24: ...xii Broadmore 1750 Release 4 6 Table of Contents ...
Страница 50: ...1 26 Broadmore 1750 Release 4 6 Product Description Alarm Power Module IOM ...
Страница 69: ...CHAPTER 3 Receipt of Product In this Chapter Receipt 3 2 Unpacking 3 2 Inspection 3 3 ...
Страница 72: ...3 4 Broadmore 1750 Release 4 6 Receipt of Product Damage Reporting ...
Страница 82: ...4 10 Broadmore 1750 Release 4 6 Chassis Installation and Grounding AC Power Supply Tray ...
Страница 114: ...6 16 Broadmore 1750 Release 4 6 Electrical Installation Software ...
Страница 188: ...7 74 Broadmore 1750 Release 4 6 Configuration Help ...
Страница 199: ...Broadmore 1750 Release 4 6 8 11 Maintenance and Troubleshooting Slot Statistics for NIM SAM Cards ...
Страница 200: ...8 12 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Slot Statistics for NIM SAM Cards ...
Страница 234: ...8 46 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Summary of Front Panel LEDs ...
Страница 244: ...9 10 Broadmore 1750 Release 4 6 Command Line Interface About Command ...
Страница 266: ...10 22 Broadmore 1750 Release 4 6 Security Management FTP Login ...
Страница 302: ...11 36 Broadmore 1750 Release 4 6 Security Management FIPS Mode sshdShow ...
Страница 311: ...Broadmore 1750 Release 4 6 11 45 Security Management FIPS Mode Logging in with SecurID Disabled ...
Страница 314: ...11 48 Broadmore 1750 Release 4 6 Security Management FIPS Mode Logging in with SecurID Enabled ...
Страница 318: ...11 52 Broadmore 1750 Release 4 6 Security Management FIPS Mode Sanitation Procedures ...
Страница 362: ...12 44 Broadmore 1750 Release 4 6 SNMP Configuration Notify Profiles ...
Страница 363: ...APPENDIX A Technical Specifications In this Appendix Broadmore 1750 Platform A 2 Broadmore Modules A 6 ...
Страница 370: ...A 8 Broadmore 1750 Release 4 6 Technical Specifications E3 Unstructured Circuit Emulation SAM ...
Страница 373: ...APPENDIX C Software Error Messages In this Appendix Overview System Errors Setup Errors ...
Страница 383: ...APPENDIX E Chassis Differences ...
Страница 386: ...E 4 Broadmore 1750 Release 4 6 Chassis Differences Software Differences ...
Страница 394: ...F 8 Broadmore 1750 Release 4 6 IPv6 Support Deleting a Network Route ...
Страница 398: ...G 4 Broadmore 1750 Release 4 6 Broadmore Command List Commands Available at the CLI Prompt ...
Страница 408: ...Glossary 10 Broadmore 1750 Release 4 6 Glossary ...