S&C Instruction Sheet 1072-530
9
SpeedNet Security Administration
SpeedNet Security
Information
SpeedNet Radios use a comprehensive security suite to prevent unauthorized network
access and to protect sensitive data. The security features include user access controls,
network data encryption, node access revocation, and anti-spoofi ng measures. These
security features should be incorporated as part of a complete security policy, which
should include application-level user authentication and stringent password policies. One
example would be a security policy requiring user-password changes at a defi ned interval.
KeyGen Utility
Administrative control of SpeedNet Radio security confi guration is provided by the
SpeedNet KeyGen Utility, an application that generates security keys, updates user access
and radio revocation lists, and saves updated security profi les within a Security Association
Database (SAD). The KeyGen Utility also allows generation of a common confi guration
fi le to load into multiple radios, easing confi guration overhead.
Creating a Security
Association Database
Use the following procedure to create a security association database:
STEP 1.
Launch the KeyGen application. The
Launch
window will open. See Figure 3.
Figure 3. The KeyGen application launch window.
STEP 2.
Click the
Create
button to create a Security Association Database (SAD). The
SAD dialog box will open. See Figure 4.
Figure 4. The Security Association Database dialog box.
NOTICE
The Security Association Database, stored in a .sad file, is encrypted and protected
by the network name and pass phrase combination specified at the creation of the
database. Loss of the network name and pass phrase combination means the Secu-
rity Association Database becomes unusable. This may imply a new database would
need to be created. Also, all radios would need to be reset to factory settings and re-
programmed with security files derived from a new database. As such, it is vital to keep
track of the network name and pass phrase credentials associated with the database.