582 CN4093 Application Guide for ENOS 8.4
SIOM Overview
Innetworkingsolutions,anewapproachaboutadoptingasecuritylevelon
Input/Outputmoduleshasbeendeveloped.Thissecuritylevelencompasses
securedauthenticationmanagementandonlyallowssecuretrafficandprotocols.
IOMscanbeclassifiedintotwosecuritycategories:
LegacyInput/OutputModules(LIOMs)
LIOMsarenotcapableofprovisioninganysecuritypolicysetting.AllIOMs
developedbeforetheSIOMfeaturewasintroducedareoftypeLIOM.
SecureInput/Output Modules(SIOMs)
SIOMshavesecuritycharacteristicsthatallowthemtointegratethenetwork
assignedsecuritypolicy.
ForIOMtobeinSIOMmode,boththeIOMandtheCMM(ChassisManagement
Module)containingitmustberunningSIOM‐capablesoftware,andtheIOMmust
haveSIOMenabled.Inallother
cases,theIOMoperatesinLIOMmode.
WhentheIOMisinSIOMmode,thesecuritycharacteristicsconfiguredonthe
CMMaresenttotheIOM.Thesecharacteristicscanbedividedintothefollowing
categories:
Policysetting
UserAccountManagement
SecureLDAP(LDAPS)authentication
ToseewhetherSIOMisenabledontheIOM,usethefollowingcommand:
ThisshowsboththecurrentSIOMsettingandthesavedsettingthatwillbeapplied
afterreboot.
SIOMisdisabledbydefault.ToenableSIOMontheswitch,inGlobal
Configurationmode,enter:
TodisableSIOM,
enter:
Note: YoumustreboottheswitchforSIOMsettingstotakeeffect.
CN 4093(config)# show boot siom
Current SIOM setting: disabled
Saved SIOM setting: disabled
CN 4093(config)# boot siom enable
CN 4093(config)# no boot siom enable