13.07.2015 Views

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

OverviewTable 14: Roles and required identification and au<strong>the</strong>ntication 1 <strong>of</strong> 2RoleType <strong>of</strong>au<strong>the</strong>nticationAu<strong>the</strong>ntication dataDescriptionCryptographic-Officer(Admin User)Identity-based operatorau<strong>the</strong>nticationUsername andPassword. The modulestores user identityinformation internallythrough <strong>the</strong> use <strong>of</strong> anexternal Radius Serverdatabase.The owner <strong>of</strong> <strong>the</strong>cryptographic modulewho has full access to <strong>the</strong>module’s servicesUser(Read/Write User)Identity-based operatorau<strong>the</strong>nticationUsername andPassword. The modulestores user identityinformation internallythrough <strong>the</strong> use <strong>of</strong> anexternal Radius Serverdatabase.An assistant to <strong>the</strong> AdminUser who has read/writeaccess to a subset <strong>of</strong>configuration and statusindicationsRead-only UserIdentity-based operatorau<strong>the</strong>nticationUsername andPassword. The modulestores user identityinformation internallythrough <strong>the</strong> use <strong>of</strong> anexternal Radius Serverdatabase.An assistant to <strong>the</strong> AdminUser who has read-onlyaccess to a subset <strong>of</strong>module configuration andstatus indicationsRADIUS ServerRole-based operatorau<strong>the</strong>nticationShared Radius secret.<strong>Gateway</strong> au<strong>the</strong>nticatesRadius serverresponse by examining<strong>the</strong> MD5 hash <strong>of</strong> <strong>the</strong>shared secret, <strong>the</strong>request Au<strong>the</strong>nticator,and o<strong>the</strong>r responsevalues in a responsemessage.An entity au<strong>the</strong>nticates to<strong>the</strong> module for <strong>the</strong>purpose <strong>of</strong> permitting/denying access toservicesOSPF Router PeerRole-based operatorau<strong>the</strong>nticationRouter peer Secret.Au<strong>the</strong>ntication <strong>of</strong>OSPF protocolexecuted by examining<strong>the</strong> au<strong>the</strong>ntication fieldin OSPF packetcarrying MD5 hash <strong>of</strong><strong>the</strong> packet and <strong>the</strong>secret.An entity au<strong>the</strong>nticates to<strong>the</strong> module for <strong>the</strong>purpose <strong>of</strong> permitting/denying access toservices1 <strong>of</strong> 2Issue 3 January 2005 295

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!