Avaya Configuring Data Encryption Services Manuel d'utilisateur Page 23

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 70
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 22
Data Encryption Overview
117386-B Rev 00
1-7
The easiest way to enter the NPK is to use a text editor in read-only mode to
display the contents of the file that contains your NPKs. Examples of editors
include vi or emacs on a UNIX platform and EDIT on a PC. Copy the value of the
appropriate NPK, and paste it into the Technician Interface command line.
The NPK is stored in the routers nonvolatile memory. You cannot access the NPK
or the password by means of the MIB or by using normal Technician Interface
debug commands. Nor can you invoke the secure shell in a TELNET session.
Choosing a Secure Shell Password
The Secure Shell password protects all of the secret data in the router that WEP
uses. Select a password of at least 10 to 12 characters. Do not use anything
obvious, like your nickname, family birthdates, or your social security number.
Change this password often and randomly.
Entering the NPK into Site Manager
You must also enter the NPK into Site Manager using the PPP or frame relay
Node Protection Key parameter. When you enter an NPK, its value is visible only
until you click on the Apply button. When you modify the security configuration
for a router, you must enter the NPK exactly as you entered it when you first
configured encryption; otherwise, you cannot make changes.
Long-Term Shared Secret (LTSS)
The LTSS is the source for the Master Encryption Key (MEK). It consists of 128
to 248 bits of secret data that each end of a secure link shares. The LTSS resides in
the MIB, encrypted by the NPK, which you must have previously entered into Site
Manager. You need a different LTSS for each circuit that you configure to use
encryption.
Note:
You should never use a terminal server to enter the NPK. Instead, you
should enter the NPK in each router using a laptop computer that you attach
directly to the router.
Vue de la page 22
1 2 ... 18 19 20 21 22 23 24 25 26 27 28 ... 69 70

Commentaires sur ces manuels

Pas de commentaire