Cisco Systems D14659.03 Network Router User Manual


 
Configuring security settings
Cisco TelePresence ISDN Gateway 2.1 Online help (Printable format) 88 of 135
Configuring security settings
To configure security settings, go to Settings > Security.
Field
Field description
User authentication settings
Enable
advanced
security mode
Advanced security mode causes the Cisco TelePresence ISDN Gateway to
hash passwords before storing them in the configuration.xml file (see below).
Note that hashing user passwords is an irreversible process.
If you enable advanced security mode, we recommend that you back up your
configuration. The ISDN Gateway gives you the option to do that after you have
enabled Advanced account security mode.
If you enable advanced security mode, all current passwords (created when the
ISDN gateway was not in advanced security mode) will expire and users must
change them.
Advanced security mode is described in greater detail
below.
Redirect HTTP
requests to
HTTPS
Enable this option to have HTTP requests to the ISDN Gateway automatically
redirected to HTTPS.
This option is unavailable if either HTTP (Web) or HTTPS (Secure web) access
is disabled on the Network > Services page.
Idle web session
timeout
The timeout setting for idle web sessions. The user must log in again if the web
sessions expires. The timeout value must be between 1 and 60 minutes. Note
that status web pages that auto-refresh will keep a web session active
indefinitely. You can configure the ISDN Gateway not to auto-refresh those
pages; to do so, go to Settings > User interface.
Serial console settings
Hide log
messages on
console
The serial console interface displays log messages. If that is considered to be a
security weakness in your environment, select this option to hide those
messages.
Disable serial
input during
startup
Select this option for enhanced serial port security.
Require
administrator
login
Select this option to require an administrator login by anyone attempting to
connect to the ISDN Gateway via the console port. If this is not enabled, anyone
with physical access to the MCU (or with access to your terminal server) can
potentially enter commands on the serial console.
Idle console
session timout
If you have enabled Require administrator login, you can configure a session
timeout period. The timeout setting for idle console sessions. The admin must
log in again if the console sessions expires. The timeout value must be between
1 and 60 minutes.
Advanced security mode
You can configure the ISDN Gateway to use advanced security mode. Advanced security mode has
the following features: