![Cisco 350XG series Скачать руководство пользователя страница 486](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491486.webp)
Security: Secure Sensitive Data Management
SSD Rules
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
467
21
•
Read Permission—The read permissions associate with the rules. These
can be the following:
-
(Lowest) Exclude—Users are not permitted to access sensitive data in
any form.
-
(Middle) Encrypted Only—Users are permitted to access sensitive data
as encrypted only.
-
(Higher) Plaintext Only—Users are permitted to access sensitive data in
plaintext only. Users will also have read and write permission to SSD
parameters as well.
-
(Highest) Both—Users have both encrypted and plaintext permissions
and are permitted to access sensitive data as encrypted and in
plaintext. Users will also have read and write permission to SSD
parameters as well.
Each management channel allows specific read permissions. The following
summarizes these.
•
Default Read Mode—All default read modes are subjected to the read
permission of the rule. The following options exist, but some might be
rejected, depending on the read permission. If the user-defined read
permission for a user is Exclude (for example), and the default read mode is
Encrypted, the user-defined read permission prevails.
-
Exclude—Do not allow reading sensitive data.
-
Encrypted—Sensitive data is presented in encrypted form.
-
Plaintext—Sensitive data is presented in plaintext form.
Each management channel allows specific read presumptions. The
following summarizes these.
Management Channel
Read Permission Options Allowed
Secure
Both, Encrypted Only
Insecure
Both, Encrypted Only
Secure XML SNMP
Exclude, Plaintext Only
Insecure XML SNMP
Exclude, Plaintext Only