SECURITY FOR GXV3370 SERVICES
Provisioning via Configuration File
GXV3370 supports downloading configuration file via HTTP/HTTPS/TFTP. Below figure shows the options
for config file provisioning.
Figure 19: GXV3370 Config File Provisioning
We recommend users to consider the following options for added security when deploying the GXV3370
with provisioning.
- Config Upgrade Via: HTTPS:
By default, HTTPS is selected. This is recommended so the traffic is encrypted while travelling through
the network.
- HTTP/HTTPS User Name and Password:
This can be set up as required on the provisioning server when HTTP/HTTPS is used. Only when the
GXV3370 has the correct username and password configured, it can be authenticated by the
provisioning server and the config file can be downloaded.
- Authenticate Config file:
This sets the GXV3370 to authenticate configuration file before applying it. When set to “Yes”, the
configuration file must include P value P1 with GXV3370’s administration password. If it is missed or
does not match the password, the GXV3370 will not apply the config file.