Lucent Technologies MERLIN LEGEND Release 5.0 System Planning Manual page 278

Communications system
Hide thumbs Also See for MERLIN LEGEND Release 5.0:
Table of Contents

Advertisement

MERLIN LEGEND Communications System Release 5.0
System Planning 555-650-112
A
Customer Support Information
Toll Fraud Prevention
Preventive Measures
Take the following preventive measures to limit the risk of unauthorized use of the
MERLIN LEGEND Communications System Remote Access feature by hackers:
The Remote Access feature can be abused by criminal toll fraud hackers, if
it is not properly administered. Therefore, this feature should not be used
unless there is a strong business need.
It is strongly recommended that customers invest in security adjuncts,
which typically use one-time passcode algorithms. These security adjuncts
discourage hackers. Since a secure use of the Remote Access feature
generally offers savings over credit-card calling, the break-even period can
make the investment in security adjuncts worthwhile.
If a customer chooses to use the Remote Access feature without a security
adjunct, then multiple barrier codes should be employed, with one per user
if the system permits. The MERLIN LEGEND Communications System
permits a maximum of 16 barrier codes.
The maximum length should be used for each barrier code, and should be
changed periodically. Barrier codes, like passwords, should consist of a
random, hard-to-guess sequence of digits. While MERLIN LEGEND
Communications System Release 3.0 permits a barrier code of up to 11
digits, systems prior to Release 3.0 permit barrier codes of up to only four
digits.
If Remote Access is used, an upgrade to MERLIN LEGEND Communications
System Release 3.0 is encouraged to take advantage of the longer barrier code.
1
Issue 1
June 1997
Page A-16

Advertisement

Table of Contents
loading

Table of Contents