Security Policies - HP MSM3xx Management And Configuration Manual

Msm3 series/msm4 series
Hide thumbs Also See for MSM3xx:
Table of Contents

Advertisement

Management
Management tool

Security policies

Security policies affect both manager and operator accounts. Select from one of the following
options:
Follow FIPS 140-2 guidelines: When selected, implements the following requirements
from the FIPS 140-2 guidelines:
For more information on these guidelines, refer to the Federal Information Processing
Standards Publication (FIPS PUB) 140-2, Security Requirements for Cryptographic
Modules.
Follow PCI DSS 1.2 guidelines: When selected, implements the following
requirements from the PCI DSS 1.2 guidelines:
For more information on these guidelines, refer to the Payment Card Industry Data
Security Standard v1.2 document.
Security
The management tool is protected by the following security features:
Allowed IP address: You can configure a list of subnets from which access to the
management tool is permitted.
Active interfaces: You can enable or disable access to the management tool for each of
the following:
Note
These security settings also apply when SSH is used to access the command line interface.
2-6
Passwords must be at least six characters long.
Passwords must contain at least four different characters.
Passwords must be at least seven characters long.
Passwords must contain both numeric and alphabetic characters.
The settings under Login control must be configured as follows:
Lock access after nn login failures must be set to 6 or less.
Lock access for nn minutes must be set to 30 minutes or more.
The settings under Account inactivity logout must be configured as follows:
Timeout must be set to 15 minutes or less.
Port 1
Port 2 (on products that have a second Ethernet port)
Wireless port
VPN
VLAN/GRE/Mesh

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents