Cisco Systems 200 Switch User Manual


 
Security: Secure Sensitive Data Management
Menu CLI and Password Recovery
301 Cisco Small Business 200 Series Smart Switch Administration Guide
19
Menu CLI and Password Recovery
The Menu CLI interface is only allowed to users if their read permissions are Both
or Plaintext Only. Other users are rejected. Sensitive data in the Menu CLI is always
displayed as plaintext.
Password recovery is currently activated from the boot menu and allows the user
to log on to the terminal without authentication. If SSD is supported, this option is
only permitted if the local passphrase is identical to the default passphrase. If a
device is configured with a user-defined passphrase, the user is unable to activate
password recovery.
Configuring SSD
The SSD feature is configured in the following pages:
SSD properties are set in the Properties page.
SSD rules are defined in the SSD Rules page.
SSD Properties
Only users with SSD read permission of Plaintext-only or Both are allowed to set
SSD properties.
To configure global SSD properties:
STEP 1 Click Security > Secure Sensitive Data Management > Properties. The
following field appears:
Current Local Passphrase Type—Displays whether the default
passphrase or a user-defined passphrase is currently being used.
STEP 2 Enter the following Persistent Settings fields:
HTTP based file transfer Insecure HTTPS-based file transfer
HTTPS based file transfer Secure