CLI Guide - WatchGuard Technologies
CLI Guide - WatchGuard Technologies
CLI Guide - WatchGuard Technologies
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
CHAPTER 2: Administration Mode Commands<br />
crypto self-test, and random number generation<br />
can be tested.<br />
- Object reuse is avoided. Keys are zeroed out<br />
when they are no longer in use.<br />
Common Criteria (CC) mode<br />
Common Criteria (CC) defines a language for<br />
defining and evaluating information technology<br />
security systems and products. The framework<br />
provided by Common Criteria allows US<br />
government agencies and other groups to define<br />
sets of specific requirements.<br />
IT security products purchased by the US<br />
Government for National Security Systems, which<br />
handle Classified and some non-Classified<br />
information, are required to be Common Criteria<br />
certified.<br />
Common Criteria mode conforms to EAL4 level.<br />
Common Criteria mode disables or changes the<br />
following functionality:<br />
- HTTPS uses 3DES-SHA1 encryption only.<br />
- User login failure count can be configured, and<br />
users can be locked out after the failure count is<br />
met. See “account command” on page 28 for<br />
more information.<br />
passwd command<br />
WG#admin<br />
WG(admin)#passwd <br />
Effect<br />
Replaces the current “admin” super user access<br />
password text with a new entry. This command<br />
initiates a several-step process in which you will be<br />
prompted to enter the new password twice, before<br />
it takes effect. See “Process” immediately following<br />
for details.<br />
36 <strong>WatchGuard</strong> Vclass 5.1