Securit y planning
Chapt er 2: Planning considerat ions
2- 24
phn- 2513_004v000 ( Oct 2012)
Planning for FIPS 140-2 operation
To prepare for FIPS 140-2 secure mode operation, generate the following cryptographic
material using a FIPS-approved cryptographic generator:
•
Key of Keys
•
TLS Private Key and Public Certificates. FIPS 140-2 now recommends 2048 bit keys.
•
Entropy Input
•
Wireless Link Encryption Key for AES
Enable the web browsers for HTTPS/TLS operation using FIPS-approved cipher
specifications.
Configure the following attributes of user accounts for the web-based management
interface to match the network security policy:
•
Auto Logout Period.
•
Maximum Number of Login Attempts.
•
Login Attempt Lockout.
•
Minimum Password Change Period.
•
Password Expiry Period.
•
Webpage Session Control
Configure the following attributes:
•
Password complexity rules reset to ‘best practice’ values.
•
User account passwords compliant with the network security policy.
•
RADIUS authentication = Disabled.
Configure all of the above correctly to ensure that PTP 800 is operating in compliance
with the FIPS 140-2 validation.
FIPS validated software is available from System Release PTP800-04-00. Load standard
(non-FIPS) software from PTP800-04-00 or later before loading a FIPS software image.
Summary of Contents for PTP 800 Series
Page 1: ...Cambium PTP 800 Series User Guide System Release 800 05 02 ...
Page 40: ...Licensing requirements About This User Guide 10 phn 2513_004v000 Oct 2012 ...
Page 232: ...Limit of liability Chapter 3 Legal information 3 22 phn 2513_004v000 Oct 2012 ...
Page 322: ...Radiation hazard assessm ent Chapter 4 Reference information 4 90 phn 2513_004v000 Oct 2012 ...
Page 428: ...Replacing IRFU components Chapter 5 Installation 5 106 phn 2513_004v000 Oct 2012 ...
Page 630: ...Using recovery mode Chapter 7 Operation 7 78 phn 2513_004v000 Oct 2012 ...