
Enable FIPS mode
▲
Select the Enabled option.
CAUTION: The enable conguration fails if the following non-FIPS protocols are congured on the device:
●
SNMP Version Access Control conguration option: MD5 authentication protocol and DES privacy
protocol
●
Kerberos setting on the IPsec/Firewall Policy conguration option: DES-CBC-MD5 algorithm
●
Upload Jetdirect Certicate conguration option: Certicates that are signed by using MD5 or earlier
(MD2 or MD4)
●
Upload CA Certicate conguration option: Certicate that are signed by using MD5 or earlier (MD2 or
MD4)
●
Mgmt Protocol conguration option: SSL 3.0 or earlier
Disable FIPS mode
▲
Select the Disabled option.
Get Community Name
The Get Community Name password can be set to prevent unauthorized people from using SNMP utilities to
access a device and get the device settings.
Use the following steps to congure this option:
1. Type the password and then repeat it for conrmation.
2. To disable the public Get Community Name, select Disable SNMPv1/v2 default Get Community Name of
'public'. If a device does not support this option, it will ignore it in batch congurations or when applying
template
s.
Group 1 PIN
This option enables you to force users to use a pin to access a device. You can then use the Authentication
Manager function to s
pecify what features (such as walk-up, copy, send, fax) are restricted by this. You can have
two dierent groups, each with a unique pin.
To set this option, type the PIN and then type it again for conrmation.
Group 2 PIN
This option enables you to force users to use a pin to access a device. You can then use the Authentication
Manager function to s
pecify what features (such as walk-up, copy, send, fax) are restricted by this. You can have
two dierent groups, each with a unique pin.
To set this option, type the PIN and then type it again for conrmation.
ENWW Device Conguration Options for Security 425
Komentarze do niniejszej Instrukcji