2
System security and hardware overview
Page 16
CELLX box 17.1/002
2.2.14 CDR
files
Call Detail Records are intended for analysis of the CELLX Box’s activity only. They are not de-
signed to be used for billing purposes, as the times they record are not always exact.
2.2.15 Network
security
Every day hackers develop new ways to break into systems through the Internet. While we
takes great care to ensure the security of its systems, any system with access through the In-
ternet is only as secure as its user makes it. Therefore, to avoid unwanted security breaches
and resulting system malfunctions, you must take the following steps to secure your CELLX
Box if you connect it to the Internet:
Use an application gateway or a packet firewall.
To limit access to the CELLX Box to secure remote devices, delete the default route and
add individual secure network segments.
Access to the CELLX Box via Telnet, FTP or GATE Manager must be password protected.
Do not use obvious passwords (anything from
sesame
to your mother-in-laws maiden
name). Bear in mind: the password that is easiest to remember is also likely to be easiest
to crack.
The firewall must support the following features:
Protection against IP spoofing
Logging of all attempts to access the CELLX Box
The firewall must be able to check the following information and only allow trusted users to
access the CELLX Box:
IP source address
IP destination address
Protocol (whether the packet is TCP, UDP, or ICMP)
TCP or UDP source port
TCP or UDP destination port
ICMP message type
For operation and remote administration of your CELLX Box, open the following ports only
when the indicated services are used:
Inaccuracies in the generation of CDRs may occur for active connections if traffic is flowing on
the system while modifications in configuration or routing files are activated.
i
i
Table 2.1
Default ports used for specific services
Service
Protocol
Port
FTP
TCP
21 (default, can be set)
Telnet (for debug access only)
TCP
23 (default, can be set)
SMTP
TCP
25
DNS forward
UDP
53
HTTP
TCP
80 (default, can be set)
NTP
UDP
123
Содержание CellX 3G-4
Страница 1: ...CELLX Box Systems Manual Software version 17 1 ...
Страница 7: ...1 Overview ...
Страница 12: ...2 System security and hardware overview ...
Страница 19: ...3 CELLX Box installation ...
Страница 23: ...4 Configuration ...
Страница 43: ...5 Adapting the config files ...
Страница 57: ...6 Maintenance ...
Страница 63: ...6 Maintenance Page 63 CELLX box 17 1 002 11 Send the trace to customer service 1 2 3 ...