Version 5.8 133 October 2009
SIP User's Manual 3. Web-Based Management
3.4.4 Security Settings
The Security Settings menu allows you to configure various security settings. This menu
contains the following page items:
îš„ Web User Accounts (refer to ''Configuring the Web User Accounts'' on page 133)
îš„ WEB & Telne
t Access List (refer to ''Configuring the Web and Telnet Access List'' on
page 135)
îš„ Certificates
(refer to ''Configuring the Certificates'' on page 137)
îš„ Gene
ral Security Settings (refer to ''Configuring the General Security Settings'' on
page 141)
3.4.4.1 Configuring the Web User Accounts
To prevent unauthorized access to the Web interface, two Web user accounts are available
(primary and secondary) with assigned user name, password, and access level. When you
login to the Web interface, you are requested to provide the user name and password of
one of these Web user accounts. If the Web session is idle (i.e., no actions are performed)
for more than five minutes, the Web session expires and you are once again requested to
login with your user name and password. Up to five Web users can simultaneously open
(log in to) a session on the device's Web interface.
Each Web user account is composed of three attributes:
îš„ User name and password: enables access (login) to the Web interface.
îš„ Access level: determines the extent of the access (i.e., availability of pages and read /
write privileges). The available access levels and their corresponding privileges are
listed in the table below:
Table 3-10: Web User Accounts Access Levels and Privileges
Access Level
Numeric
Representation*
Privileges
Security
Administrator
200 Read / write privileges for all pages.
Administrator
100
read / write privileges for all pages except
security-related pages, which are read-only.
User Monitor
50
No access to security-related and file-loading
pages; read-only access to the other pages.
This read-only access level is typically applied
to the secondary Web user account.
No Access
0 No access to any page.
* The numeric representation of the access level is used only to define accounts in a RADIUS server
(the access level ranges from 1 to 255).