RUGGEDCOM ROX II
CLI User Guide
Chapter 4
Device Management
Monitoring Firmware Integrity
89
The other partition was imaged successfully.
A reboot is required to boot the other partition.
6. If the software downgrade is successful, reboot the device. For more information, refer to
Section 4.13
Monitoring Firmware Integrity
RUGGEDCOM ROX II can perform an integrity check to verify the integrity of running programs and installed files.
The integrity check can be invoked in the following ways:
• automatically at system start-up
• as a scheduled job
• on demand via the user interface
If an unauthorized/unexpected modification is detected during the integrity check, an alarm is triggered and each
offending file or program is logged.
NOTE
RUGGEDCOM ROX II validates the authenticity and integrity of the firmware. Software upgrades are
cryptographically signed at the factory by Siemens and cannot be falsified. The firmware upgrade
package is validated cryptographically at the time of the upgrade. During operation, the integrity of the
installed files is verified and all running programs are verified to be part of the validated installation.
CAUTION!
Security hazard – risk of unauthorized access and/or exploitation. For the firmware integrity check to
be meaningful, appropriate care must be taken to protect the device. Make sure physical access to
the device is restricted to authorized personnel only and that administrator login credentials are kept
secure.
IMPORTANT!
The firmware integrity check only analyzes RUGGEDCOM ROX II operating system files. It does not
detect additional files that may have been placed by a malicious user, unless they are program binary
files that are running at the time of the integrity check.
CONTENTS
•
Section 4.13.1, “Enabling/Disabling the Boot Time Firmware Integrity”
•
Section 4.13.2, “Checking the Firmware Integrity”
•
Section 4.13.3, “Scheduling a Recurring Firmware Integrity Check”
•
Section 4.13.4, “Viewing the Status of the Firmware Integrity Check”
Section 4.13.1
Enabling/Disabling the Boot Time Firmware Integrity
The boot time integrity check is disabled by default. When enabled though, the check occurs whenever the device
is restarted or powered on.
Содержание RUGGEDCOM ROX II
Страница 2: ...RUGGEDCOM ROX II CLI User Guide ii ...
Страница 4: ...RUGGEDCOM ROX II CLI User Guide iv ...
Страница 39: ...RUGGEDCOM ROX II CLI User Guide Table of Contents xxxix 19 5 VLANs 752 ...
Страница 40: ...Table of Contents RUGGEDCOM ROX II CLI User Guide xl ...
Страница 46: ...Preface RUGGEDCOM ROX II CLI User Guide xlvi Customer Support ...
Страница 96: ...Chapter 2 Using RUGGEDCOM ROX II RUGGEDCOM ROX II CLI User Guide 50 Accessing Maintenance Mode ...
Страница 170: ...Chapter 5 System Administration RUGGEDCOM ROX II CLI User Guide 124 Deleting a Scheduled Job ...
Страница 256: ...Chapter 6 Security RUGGEDCOM ROX II CLI User Guide 210 Enabling Disabling a Firewall ...
Страница 402: ...Chapter 11 Wireless RUGGEDCOM ROX II CLI User Guide 356 Managing Cellular Modem Profiles ...
Страница 646: ...Chapter 13 Unicast and Multicast Routing RUGGEDCOM ROX II CLI User Guide 600 Deleting a Multicast Group Prefix ...
Страница 732: ...Chapter 15 Network Discovery and Management RUGGEDCOM ROX II CLI User Guide 686 Viewing NETCONF Statistics ...
Страница 790: ...Chapter 17 Time Services RUGGEDCOM ROX II CLI User Guide 744 Deleting a Broadcast Multicast Address ...