Network security
Figure 142: Terminal servers/modem access
When it is an absolute necessity for you to access the switch, Avaya recommends that you use this
configuration. The switch is always reachable, even if an issue occurs with the in-band network
management interface.
Important:
Connection of the Out-of-Band (OOB) Ethernet Management port to an In-Band I/O port is not
recommended, as erroneous behavior on the network, such as a loop, can cause issues with
the operation of the SF/CPU module. The most common issues seen are a loss of file
management and inability to access the /pcmcia directory. To clear the condition, you must
reboot or reset the SF/CPU.
To maintain a true OOB management network, do not include the switch In-Band I/O ports as
part of the management network design. Rather than connect the OOB port to an In-band I/O
port, you can achieve the same desired functionality by creating a management VLAN and
assigning a management IP address to the VLAN.
Management access control
The following table shows management access levels. For more information, see Avaya Ethernet
Routing Switch 8800/8600 Security, NN46205-601.
June 2016
Planning and Engineering — Network Design
Comments on this document? infodev@avaya.com
280