Dell Dell W- 620 Дополнительное руководство - Страница 20

Просмотреть онлайн или скачать pdf Дополнительное руководство для Переключатель Dell Dell W- 620. Dell Dell W- 620 42 страницы. Controllers with arubaos fips firmware non-proprietary security policy fips 140-2 level 2 release supplement

Table 3 Crypto-Officer Services
Service
Description
Configuring
Create management Users and
Network
set their password and privilege
Management
level; configure the SNMP agent
Configuring the
Define the platform subsystem
module Platform
firmware of the module by
entering Bootrom Monitor Mode,
File System, fault report, message
logging, and other platform
related commands
Configuring
Define synchronization features
Hardware
for module
Controllers
Configuring the
Set IP functionality
Internet Protocol
Configuring Quality
Configure QOS values for module Commands and
of Service (QoS)
Configuring the
Configure Public Key
VPN
Infrastructure (PKI); configure the
Internet Key Exchange (IKEv1/
IKEv2) Security Protocol;
configure the IPSec protocol
Configuring DHCP
Configure DHCP on module
Configuring
Define security features for
Security
module, including Access List,
AAA, and firewall functionality
HTTPS over TLS
Secure browser connection over
Transport Layer Security acting as
a Crypto Officer service (web
management interface)
IPSec tunnel
Provided authenticated/
establishment for
encrypted channel to RADIUS
RADIUS protection
server
Self-test
Run Power On Self-Tests and
Conditional Tests
Configuring
Configure bypass operation on
Bypass Operation
the module
18
| FIPS 140-2 Level 2 Features
Input
Output
Commands and
Status of
configuration data
commands and
configuration data
Commands and
Status of
configuration data
commands and
configuration data
Commands and
Status of
configuration data
commands and
configuration data
Commands and
Status of
configuration data
commands and
configuration data
Status of
configuration data
commands and
configuration data
Commands and
Status of
configuration data
commands and
configuration data
Commands and
Status of
configuration data
commands and
configuration data
Commands and
Status of
configuration data
commands and
configuration data
TLS inputs, commands,
TLS outputs,
and data
status, and data
IKEv1/IKEv2 inputs and
IKEv1/IKEv2
data; IPSec inputs,
outputs, status,
commands, and data
and data; IPSec
outputs, status,
and data
None
Error messages
logged if a failure
occurs
Commands and
Status of
configuration data
commands and
configuration data
Aruba 620, 650 and Dell W-620, W-650 | FIPS 140-2 Level 2 Release Supplement
CSP Access
Crypto Officer's password
for CLI (read/write access)
None
None
None
None
RSA and ECDSA keys pair
(read/write access), Pre-
shared key (read/write
access)
None
AAA User password (read/
write access), RADIUS
password (read/ write
access)
RSA key pair for TLS; TLS
Session Key
Preshared key/RSA private
key for IKEv1/IKEv2 (read
access), Diffie-Hellman and
Elliptic curve Diffie-Hellman
key pair for IKEv1/IKEv2
(read/write access), Session
keys for IPSec (read/write
access)
None
None