Roles:
● Crypto Admin:
Can change the HTTPS security certificate configuration and configure
IPsec connections.
● Audit Admin:
Can purge audit log records.
● Security Admin:
Can do everything except Crypto Admin and Audit Admin actions.
When you login, you will automatically be placed in the Read Only Role, even if you are
assigned other roles. When you need to make a configuration change, select the appropriate
role.
You can change a users password by clicking on
Change Password
. Passwords are restricted
according to the settings found in the Bandura Cyber TIG Configuration General Settings. If
you
are
unfamiliar
with
the
Bandura Cyber TIG's
password
policy,
you
may
want
to
review the
settings
before
creating a new password.
You can also
Edit Access Restrictions
for a user. You can restrict the use of an account to
specific internet networks, or specify days and times when an account can be used.
Allowed
Networks
restricts login to specific trusted networks listed here. By default, login is
allowed from all networks.
Day/Time Restrictions
limits when an account can be used. Login attempts outside of the
specified days or times will be denied. By default, login is allowed anytime.
You can limit the use of an administrator account by only allowing login from trusted local
internet addresses. This mechanism will deny login attempts from outside intruders, even if a
password is compromised.
By default, administrator accounts can be used from anywhere on the internet. This unrestricted
access is specified by the IPv4 address of 0.0.0.0/0 and the IPv6 address of ::/0. If these
addresses are not already present, you can add them by clicking
Allow For All
.
If you do not want general access, add specific computers or networks to the Allowed Networks
lists. Identify local trusted networks, and add them to this list by clicking on
Add Network
. Even
if you add networks to this list, general internet access is still granted until you delete the "Allow
All" addresses.
47