
Security Profile
82 Chapter 8
Sniff session display mode
• server output - View all data to a serial port from a remote connection
• user input - View all data from a serial port to a remote connection
• both - See all data transmitted or received through a serial port
Display data direction arrows
• Enable/Disable - Displays arrows to indicate the direction of data to or
from the server. When the second user accesses the port, the global
"Port escape menu" is displayed. See "Port Escape Menu" on page 21.
Permit monitor only mode
• Enable: A user with “Monitor" permissions can only connect to the port
in read only mode any time.
• Disable: A user with “Monitor" permissions can connect if a read/write
user has a connection to the port. A read-only session is automatically
disconnected if the main user (read/write session) disconnects from the
port.
Security Profile
The Security Profile tab, available under System Administration > Security
Profile, provides a centralized access for enforcing site-appropriate, minimum
security parameters on the CM. These are the available control mechanisms:
• System Security
• Password Security (Force heightened)
System Security
•SNMP
The CM allows you to use Get and Set commands for easy remote
configuration and monitoring. You can configure Get and Set individually
using the Network > SNMP Configuration interface.
This option gives you a simple method for globally disabling any SNMP
queries. (Traps always can be sent if they are configured). In the Default
configuration, SNMP is disabled.
• Discovery (ADDP)
Enables/disables the discovery protocol. While this is convenient for initial
discovery of units on the network, this service is often disabled when the
system is ready for production, unless the system is deployed on a
controlled LAN.
• Telnet
Disabled by default, this feature can be enabled afterward if the customer
does not plan to use network security.
•SSH
Usually remains enabled; in some environments, however, access is
allowed only by a totally out-of-band connection (hard-wired serial, dial-up
modem, or both). In such situations, the Ethernet connection is used only
for reports and alerts.
Comentarios a estos manuales