Bay Networks 6300 Supplement Manual page 254

Supplement to the remote annex administrator’s guide for unix
Hide thumbs Also See for 6300:
Table of Contents

Advertisement

Chapter 15
Using RA 6300 Security
Remote Annex 6300 Supplement to the Remote Annex Administrator's Guide for UNIX
A-226
If the cli_security parameter is set to N and the port_password
parameter is set ("<set>"), the RA 6300 prompts for the
password specified in port_password.
If cli_security is set to N and the port_password parameter is
not set ("<unset>"), the RA 6300 does not perform a security
check for CLI connections and allows unrestricted access to the
CLI.
Virtual CLI Security
You can set up host-based security for virtual CLI (VCLI) connections
in which users must provide a valid user name and password before they
are granted access to a virtual CLI:
1.
Set the vcli_security parameter to
ACP.
2.
Define a security server using pref_secure1_host,
pref_secure2_host, or security_broadcast parameter (see
Configuring the Security Server
3.
Create entries in the acp_regime file defining the authentication
systems to be used and the conditions under which to use
them.
The install program creates the acp_regime file, prompts you for a
default regime and (in some cases) password file name, and then
enters them into acp_regime. Subsequently, you can add to and/or
change the contents of this file (see
on page 15-245).
4.
Create entries in the appropriate password files (see
User Password Files
5.
(Optional) Configure encryption for security messages (see
Encrypting Security Messages
Y
, so that the RA 6300 will use
on page 15-230).
Configuring the acp_regime File
on page 15-247).
on page 15-232).
Book A
Creating

Advertisement

Table of Contents
loading

Table of Contents