HP (Hewlett-Packard) M111 Network Router User Manual


 
Working with the M111
Management tool
3-6
Security policies
Security policies affect both manager and operator accounts. Select from one of the following
options:
Follow FIPS 140-2 guidelines: When selected, implements the following requirements
from the FIPS 140-2 guidelines:
Passwords must be at least six characters long.
Passwords must contain at least four different characters.
For more information on these guidelines, refer to the Federal Information Processing
Standards Publication (FIPS PUB) 140-2, Security Requirements for Cryptographic
Modules.
Follow PCI DSS 1.2 guidelines: When selected, implements the following
requirements from the PCI DSS 1.2 guidelines:
Passwords must be at least seven characters long.
Passwords must contain both numeric and alphabetic characters.
The settings under Login control must be configured as follows:
Lock access after nn login failures must be set to 6 or less.
Lock access for nn minutes must be set to 30 minutes or more.
The settings under Account inactivity logout must be configured as follows:
Timeout must be set to 15 minutes or less.
For more information on these guidelines, refer to the Payment Card Industry Data
Security Standard v1.2 document.
Security
The management tool is protected by the following security features:
Allowed addresses: You can configure a list of subnets from which access to the
management tool is permitted.
Active interfaces: You can enable or disable access to the management tool for each of
the following:
Port 1
Wireless port