Management
6.6 Security Management
All management access to the MINI-LINK TN R3 system is protected by a user
name and a password. The following user types are defined:
• view_user with read only access
• control_user with read and write access
Both user types have an associated password. Passwords can only be
changed by the control_user using the EEM or the SNMP v3 interface.
The following security mechanisms are used on the various O&M interfaces:
• Local and remote EEM access requires a user name and password. A
default password is used for the local USB connection.
• For SNMP v3 access the regular user name and password protection
is used. In addition to this the User-based Security Model (USM) and
View-based Access Model (VACM) are supported. This means that
additional users and passwords might be defined by external SNMP v3
managers. The security level is authentication/no privacy where MD5 is
used as hash algorithm for authentication.
• For SNMP v1/v2c access the regular user name and password protection
does not apply. Instead a community based access protection is used.
As default, a public and a private community are configured. The public
community enables default read-access and the private community
provides read and write access to MIB-II system information. These
privileges can be extended through either the EEM or SNMP v3 interface.
The SNMP v1/v2c interface may by disabled.
• Access to the telnet port using CLI commands is protected by the regular
user name and password protection. The telnet port can be disabled from
the EEM.
113
4/1555-CSH 109 32/1-V1 Uen B 2007-09-14