• No results found

Adding a Profile

The administrator can define a Text or PPP profile for use by an appropriate modem in the system. To add a profile:

1. On the menu, click Configuration > Network Settings > Modem Management > Modem Profiles, and then click the Add New Profile button. The following page opens:

Modem Mode The format in which the data flows back and forth:

Text: In this mode, the vSLM 2 secure management software assumes that the modem is for remotely logging into the CLI. Text mode is only for dialing in.

PPP: This mode establishes an IP-based link over the modem. Dial-out mode uses PPP connections (e.g., the vSLM 2 software connects to an external network). You can dial out from both the CLI and the web interface.

Timeout Indicates whether the connection times out logins after the connection is inactive for a specified number of minutes (1-30).

Negotiate If Yes, the remote device or PC specifies the local (vSLM 2 secure management software) IP and remote addresses.

If No, the vSLM 2 software assigns the local (vSLM 2 secure management software) IP and remote IP addresses.

Local IP IP address of the vSLM 2 software.

Remote IP IP address of the remote device or remote PC.

Modem Authentication

Indicates whether the vSLM 2 secure management software uses PAP or CHAP to authenticate modem logins.

Host/User Name Username for dial-ins or dial-outs between the vSLM 2 software and a remote system.

NAT If Yes, the vSLM 2 secure management software uses Network Address Translation (NAT) for dial-in PPP connections. Users dialing into the vSLM 2 software access the network connected to Eth1 and/or Eth2.

Note: This does not apply to dial-out PPP. Modem Profiles

Setting

7: Network and Modem Settings

Figure 7-38 New Profile-Configure Tab

2. Enter the following information:

Table 7-39 New Profile - Configure Tab - Profile

New Profile Setting Description

Profile Name A name identifying the specific profile.

Mode The format in which the data flows back and forth:

Text: In this mode, the vSLM 2 secure management software assumes that the modem is for remotely logging into the CLI. Text mode is only for dialing in. Enabled by default.

PPP: This mode establishes an IP-based link over the modem. Dial-out mode uses PPP connections (e.g., the vSLM 2 software connects to an external network). You can dial out from both the CLI and the web interface.

Timeout Logins For both Text and PPP modes, you can enable logins to time out after the connection is inactive for a specified number of minutes (1-30).

Call Back Select to enable this security feature. When the vSLM 2 secure management software user calls an SLC console manager and logs in, the SLC device hangs up and calls the user back. The vSLM 2 software then logs in again. This feature is currently available in text mode only.

Auto Login If you select the check box, when the vSLM 2 software attempts to connect to an SLC console manager via a text mode connection, it automatically uses the Login and Password specified on the SLC Device page. If you do not select it, the user will have to enter the password and login manually.

7: Network and Modem Settings

vSLM™ 2 Secure Management Software User Guide 87

Table 7-40 New Profile - Configure Tab - Text Mode

Table 7-41 New Profile - Configure Tab - PPP Mode

Text Mode Setting Description

Dial-Back Only Select to grant a local user dial-back access. Users with dial-back access can dial into the vSLM 2 secure management software and enter their login and password. Once the vSLM 2 software authenticates them, the modem hangs up and dials them back. Disabled by default.

Following are the rules the vSLM 2 software follows concerning Dial-Back Only in Text mode.

If both Dial-Back Only and Use User Profile are not selected, users can dial in text mode. (Regular usage).

If Dial-Back Only is not selected and Use User Profile is selected:

 If Enable Dial-back is selected on the Manage Account page, the user can only dial in using dial-back with the number defined on the Manage Account page.

 If Enable Dial-back is not selected, the user can dial in using text mode. If Dial-Back Only is selected and Use User Profile is not selected, users can only dial in using dial-back. vSLM 2 secure management software dials back to the number defined on the Modem Connection.

If Dial-Back Only is selected and Use User Profile is selected

 If Enable Dial-back on the Manage account page is selected, the user can only dial in using dial-back with the number defined on the Manage account page.

 If Enable Dial-back on the Manage account page is not selected, the user can only dial in using dial-back. vSLM 2 software dials back to the number defined on the Modem connection page.

Dial-Back Number Enter the phone number the modem dials back on. It can be a fixed number or a number associated with the user's login. If you select Fixed Number, enter the number in the format 2123456789.

Employ User Account Settings

Select to indicate that the vSLM 2 secure management software takes dial-back rules from the local user account on the Manage Account page (see Accounts on page 125).

PPP Mode Setting Description

Negotiate IP Address For the remote device or PC to specify the local (vSLM 2 software) IP and remote addresses, select Yes. Defaults to Yes.

For the vSLM 2 secure management software to assign the local (vSLM 2 software) IP and remote IP addresses, select No, and enter the local IP (IP address of the vSLM 2 software) and remote IP (IP address of the remote device or PC).

Local IP IP address of the vSLM 2 secure management software.

Remote IP IP address of the remote device or remote PC.

Enable NAT Select to enable Network Address Translation (NAT) for dial-in PPP connections. Users dialing into the vSLM 2 software access the network connected to Eth1 and/ or Eth2.

Note: This does not apply to dial-out PPP.

Authentication Enables PAP or CHAP authentication for modem logins. PAP is the default.

 With PAP, if you do not specify username and password, users are authenticated by means of the Local Users and any of the remote authentication methods that are enabled.

 With CHAP, the CHAP Handshake fields authenticate the user. You must specify the username and password.

7: Network and Modem Settings

Updating and Deleting a Profile