20
Cisco 2811 and Cisco 2821 Integrated Services Router FIPS 140-2 Non Proprietary Security Policy
OL-8663-01
Cisco 2811 and Cisco 2821 Routers
IPSec encryption key r r
w
d
Configuration encryption key r
w
d
r
w
d
Router authentication key r r
w
d
PPP Authentication key r d r
w
Router authentication key 2 r r
w
d
SSH session key r r
w
d
User password r r
w
d
Enable password r
w
d
Enable secret r
w
d
RADIUS secret r
w
d
TACACS+ secret r
w
d
Table 10 Role and Service Access to CSP (Continued)
Note: An empty entry indicates that a particular SRDI is not accessible by the corresponding service
SRDI/Role/Service Access Policy
Role/Service
User Role
Status Functions
Network Functions
Terminal Functions
Directory Services
Crypto-Officer Role
Configure the Router
Define Rules and Filters
Status Functions
Manage the Router
Set Encryptions/Bypass
Change WAN Interface Cards