Managing Login Permissions; Security Overview; Managing Users And Passwords - Avaya G250 Administration

Media gateways
Hide thumbs Also See for G250:
Table of Contents

Advertisement

Accessing the Avaya G250/G350 Media Gateway

Managing login permissions

You can manage login permissions to enable different privilege levels for each user and to
operate the security mechanism.

Security overview

The Avaya G250/G350 Media Gateway includes a security mechanism through which the
system administrator defines users and assigns each user and username and a password.
Each user is assigned a privilege level. The user's privilege level determines which commands
the user can perform.
In addition to its basic security mechanism, the G250/G350 supports secure data transfer via
SSH and SCP.
The G250/G350 can be configured to work with an external RADIUS server to provide user
authentication. When RADIUS authentication is enabled on the G250/G350, the RADIUS server
operates in conjunction with the G250/G350 security mechanism. When the user enters a
username, the G250/G350 first searches its own database for the username. If the G250/G350
does not find the username in its own database, it establishes a connection with the RADIUS
server, and the RADIUS server provides the necessary authentication services.
The G250/G350 also uses the 802.1x protocol in conjunction with EAP within EAPOL and over
RADIUS to provide a means for authenticating and authorizing users attached to a LAN port,
and for preventing access to that port in cases where the authentication process fails.

Managing users and passwords

You must provide a username and password when you perform any of the following actions:
When you access the CLI. For more information, see
When you connect a modem with dialup PPP. For more information, see
CLI via modem
When you open Avaya G350 Manager.
When you use Avaya G350 Manager or the CLI, your username determines your privilege level.
The commands that are available to you during the session depend on your privilege level.
If your network has a RADIUS server, you can use RADIUS authentication instead of a
username and password. A RADIUS server provides centralized authentication service for
many devices on a network.
44 Administration for the Avaya G250 and Avaya G350 Media Gateways
on page 37.
Accessing the CLI
on page 35.
Accessing the

Advertisement

Table of Contents
loading

This manual is also suitable for:

G350

Table of Contents