
INTELLIGENT NMC USER MANUAL
74
Section 6
– Security
This product contains software that stores user entered data. All data entered by the
user is stored in non-volatile storage on the system running the software.
Non-volatile Storage
•
The product uses encrypted non-volatile storage to store all configuration
information.
•
The product uses industry standard encryption algorithms to protect non-volatile
data. It uses an AES-XTS algorithm similar to the disk encryption storage
standard IEEE P1619. A 32-byte encryption key and a 32-byte tweak key protect
the data. The keys are stored in an encrypted non-volatile storage.
•
The product uses industry standard encryption algorithms to protect the
executable code stored on the device. The bootloader, partition table, and
firmware update images are stored on encrypted flash. The flash encryption
algorithm is AES-256, where the key is 'tweaked' with the offset address of each
32-byte block of flash. This means that every 32-byte block (two consecutive 16-
byte AES blocks) is encrypted with a unique key derived from the flash
encryption key.
•
The product disables the JTAG debugger.
Authentication Data
•
Usernames are stored in non-volatile memory and
are available to ‘administrator’
role users, for the purpose of managing access to the system.
•
Passwords used for managing the software are stored as a one-way bcrypt hash.
•
Passwords that the user enters are not returned to the customer. (They are ‘write
only’ from a user perspective.)
•
External service authentication credentials (RADIUS, LDAP) that must be
provided in plain-text, are stored on encrypted non-volatile storage.
•
SNMP v1/v2c community strings are stored on encrypted non-volatile storage.
•
SNMP v3 usernames and passwords are stored on encrypted non-volatile
storage.
•
The product only communicates with user configured remote servers/devices.
Содержание Smartzone UPS INTELLIGENT NMC
Страница 1: ...User Manual UPS Network Management Card Version 1 1...
Страница 4: ...INTELLIGENT NMC USER MANUAL 4...
Страница 10: ...INTELLIGENT NMC USER MANUAL 10 Figure 3 Network information from CLI...
Страница 56: ...INTELLIGENT NMC USER MANUAL 56 Figure 58 Enable Role Privileges 4 LDAP authentication is ready to use...
Страница 97: ...INTELLIGENT NMC USER MANUAL 112...