User's Manual 514 Document #: LTRT-68822
Mediant 2000
Parameter Description
Note: This parameter is applicable only when using the Web Users
table, where the default value of the 'Password Age' parameter in the
Web Users table inherits this parameter's value.
Web: User inactivity timer
[UserInactivityTimer]
Defines the duration (in days) for which a user has not logged in to the
Web interface, after which the status of the user becomes inactive and
can no longer access the Web interface. These users can only log in to
the Web interface if their status is changed (to New or Valid) by a
System Administrator or Master user.
The valid value is 0 to 10000, where 0 means inactive. The default is
90.
Note: This parameter is applicable only when using the Web Users
table.
Web: Session Timeout
[WebSessionTimeout]
Defines the duration (in minutes) of Web inactivity of a logged-in user,
after which the user is automatically logged off the Web interface.
The valid value is 0-100000, where 0 means no timeout. The default is
15.
Note: This parameter can apply to all users, or per user when set in
the Web Users table.
Web: Deny Access On
Fail Count
[DenyAccessOnFailCou
nt]
Defines the maximum number of failed login attempts, after which the
requesting IP address is blocked.
The valid value range is 0 to 10. The values 0 and 1 mean immediate
block. The default is 3.
Web: Deny Authentication
Timer
EMS: WEB Deny
Authentication Timer
[DenyAuthenticationTim
er]
Defines the duration (in seconds) for which login to the Web interface
is denied from a specific IP address (for all users) when the number of
failed login attempts has exceeded the maximum. This maximum is
defined by the DenyAccessOnFailCount parameter. Only after this time
expires can users attempt to login from this same IP address.
The valid value is 0 to 100000, where 0 means that login is not denied
regardless of number of failed login attempts. The default is 60.
Web: Display Login
Information
[DisplayLoginInformatio
n]
Enables display of user's login information on each successful login
attempt.
ï‚§ [0] = Disable (default)
ï‚§ [1] = Enable
[EnableMgmtTwoFactor
Authentication]
Enables Web login authentication using a third-party, smart card.
ï‚§ [0] = Disable (default)
ï‚§ [1] = Enable
When enabled, the device retrieves the Web user’s login username
from the smart card, which is automatically displayed (read-only) in the
Web Login screen; the user is then required to provide only the login
password.
Typically, a TLS connection is established between the smart card and
the device’s Web interface, and a RADIUS server is implemented to
authenticate the password with the username. Thus, this feature
implements a two-factor authentication - what the user has (the
physical card) and what the user knows (i.e., the login password).
EMS: HTTPS Port
[HTTPport]
Defines the LAN HTTP port for Web management (default is 80). To
enable Web management from the LAN, configure the desired port.
Note: For this parameter to take effect, a device reset is required.
EMS: Disable WEB Determines whether the entire Web interface is read-only.