HOTSPOT GATEWAY
136 System Administration
Enabling Secure Management {VPN Tunnel}
There are many different ways to configure, manage and monitor the performance and
up-time of network devices. SNMP, Telnet, HTTP and ICMP are all common
protocols to accomplish network management objectives. And within those objectives
is the requirement to provide the highest level of security possible.
While several network protocols have evolved that offer some level of security and
data encryption, the preferred method for attaining maximum security across all
network devices is to establish an IPSec tunnel between the NOC (Network
Operations Center) and the edge device (early VPN protocols such as PPTP have been
widely discredited as a secure tunneling method).
As part of Nomadix’ commitment to provide outstanding carrier-class network
management capabilities to its family of public access gateways, we offer secure
management through the NSE’s standards-driven, peer-to-peer IPSec tunneling with
strong data encryption. Establishing the IPSec tunnel not only allows for the secure
management of the Nomadix gateway using any preferred management protocol, but
also the secure management of third party devices (for example, WLAN Access
Points and 802.3 switches) on private subnets on the subscriber side of the Nomadix
gateway.
The advantage of using IPSec is that all types of management traffic are supported,
including the following typical examples:
z ICMP - PING from NOC to edge devices
z Telnet - Telnet from NOC to edge devices
z Web Management - HTTP access from NOC to edge devices
z SNMP
z SNMP GET from NOC to subscriber-side device (for example, AP)
z SNMP SET from NOC to subscriber-side device (for example, AP)
z SNMP Trap from subscriber-side device (for example, AP) to NOC