Security: Secure Sensitive Data Management
SSD Rules
Cisco Small Business 200 Series Smart Switch Administration Guide 295
22
Default SSD Rules
The device has the following factory default rules:
The default rules can be modified, but they cannot be deleted. If the SSD default rules have been changed,
they can be restored.
SSD Default Read Mode Session Override
The system contains sensitive data in a session, as either encrypted or plaintext, based on the read
permission and the default read mode of the user.
The default read mode can be temporarily overridden as long it does not conflict with the SSD read
permission of the session. This change is effective immediately in the current session, until one of the
following occurs:
• User changes it again.
• Session is terminated.
• The read permission of the SSD rule that is applied to the session user is changed and is no longer
compatible with the current read mode of the session. In this case, the session read mode returns to
the default read mode of the SSD rule.
Table 1
Rule Key Rule Action
User Channel Read
Permission
Default Read Mode
Level
15
Secure XML
SNMP
Plaintext Only Plaintext
Level
15
Secure Both Encrypted
Level
15
Insecure Both Encrypted
All Insecure XML
SNMP
Exclude Exclude
All Secure Encrypted Only Encrypted
All Insecure Encrypted Only Encrypted