Digi 16, TS8 manual Configuring Security Features

Page 59

Chapter 12

Configuring Security Features

In This Chapter

This chapter describes PortServer TS 8/16 security features and discusses how to configure them. It presents the following topics:

Controlling Access to the Digi One/PortServer TS 2/4 Configuration . . . . . . 12-2

Controlling Access to Inbound Ports . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 12-2

Controlling Access to Outbound Ports. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 12-3

Controlling Access to the Digi One/PortServer TS 2/4 Command Line . . . . . 12-3

Using RADIUS to Authenticate Users. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 11-4

Issuing User Passwords . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 12-4

Configuring SSH Version 2 for Secure Communication . . . . . . . . . . . . . . . . . 12-5

Configuring Security Features

12-1

Image 59
Contents PortServer TS 8/16 Configuration and Administration Guide Page Contents Chapter Configuring Users Page This Chapter IntroductionSetup Overview Supported Devices About Entering Commands on the Command LineAbout This Guide Other Documents in the Library Access Resource CD CardDownloading a Configuration File About Configuration MethodsConfiguring the PortServer TS 8/16 from a Telnet Session Configuring the PortServer TS 8/16 from the Web InterfaceAccessing the Configuration from the Web Interface Configuration PrerequisitesLogging On As Root from the Command Line Accessing the Command Line from a Telnet SessionConfiguring the IP Address Options Options for Configuring the IP Address and MaskStarting Point Configuring the Ethernet Interface with DPA-RemoteProcedure Configuring the IP Address Using Ping-ARP Manual Configuration Example Configuring the Ethernet Interface from the Command LineConfiguring an IP Address using Dhcp and Rarp Manual Configuration ProcedureConfiguring an IP Address using Dhcp and Rarp Configuring Ports for RealPort About RealPort What is RealPort?Configuring the RealPort Software Configuration OptionsConfiguring Ports Web Interface Example Configuring Ports for RealPort Command LineConfiguring Ports for Printers Configuration Considerations Related Information Configuring Ports for Printers Web InterfaceConfiguring Printer Connections Command Line Tips for telnet and rsh PrintingConfiguring Printer Connections Command Line Configuring a Port for Direct-Access Printing Configuring a Port for Direct-Access Printing Configuring Ports for Terminals Port Defaults Configuring Ports for Terminals Web InterfaceConfiguring Ports for Terminals Command Line About Computer Connections Configuring Typical PC ConnectionsAbout Computer Connections Configuring Ports for Modems Tips on Configuring a Modem Configuring Ports for Modems Web Interface Before You Begin Configuring PPP Configuring PPP Connections Web Interface Configuring Inbound PPP Connections Command Line Configuring Inbound PPP Connections Example Configuring Outbound PPP Connections Command Line Set user name=name n1=telephone-number Configuring IP Routing Types of Routing What is RoutingIntroduction to Routing About RIP Routing Updates PortServer TS 8/16 Participation in RIP Updates Example Route Using a PPP Link Configuring Static RoutesExample Route Using the Ethernet Interface Example Dynamic Routes Configuring Dynamic Routes Using RIPConfiguring Proxy ARP Configuring Proxy ARP Configuring Autoconnection About Autoconnection Configuring a Port for Autoconnection Web InterfaceConfiguring Autoconnection By Port Command Line Configuring a User for Autoconnection Command Line Configuring a User for Autoconnection Web InterfaceConfiguring a User for Autoconnection Command Line Configuring Console Management About Console Management Configuring Console Management Web InterfaceConfiguring Console Management Command Line Example Alternate IP Addresses Example SSH2 and Menu Access10-4 Configuring Security Features Controlling Access to Inbound Ports Controlling Access to the PortServer TS 8/16 ConfigurationControlling Access to the PortServer TS 8/16 Command Line Controlling Access to Outbound PortsRadius Table Key Using Radius to Authenticate UsersWhat is RADIUS? Radius ComponentsHow Radius Works Configuring Radius Web InterfaceRadius Accounting Attributes RFC Radius Command Line Configuration Example Configuring Radius Command LineIssuing User Passwords Using a Public Key Configuring SSH Version 2 for Secure CommunicationPassword Protection Configuring DNS About the Domain Name System Procedure for Using a Host File Configuration ProceduresProcedure for Using a Name Server 13-4 Configuring Snmp About Snmp and the PortServer TS 8/16 Agent Configuration Example Configuration Procedure Web InterfaceConfiguration Procedure Command Line 14-4 Managing the OS and Configuration Upgrading the OS Firmware Web Interface Prerequisite Task Upgrading the OS Firmware Command LineCopying the Configuration File to a Host Configuring PortServer TS 8/16 from a Remote HostWhen To Use Remote Configuration Rules for Editing a Configuration fileCpconf fromhost=199.250.121.12cnfg-fle Radius Resetting the Configuration to DefaultsConfiguring Users Configuration Methods About Configuring UsersCommon User Features Configuring a User Web Interface Configuring a User Command Line Examples Configuration Examples Illustration Terminal Server Configuration Without RealPortConfiguration Configuration NotesTerminal Server Configuration Using Autoconnection Terminal Server Configuration Using RealPort Dial-In PPP Connection Using Radius Dial-In PPP Connection Using Radius PortServer TS 8/16 Troubleshooting Introduction Symptom PortServer TS 8/16 Does Not BootAssumptions Symptom Cannot Telnet to the PortServer TS 8/16Running PortServer TS 8/16 Hardware Diagnostics Symptom Trouble Accessing a PortRunning PortServer TS 8/16 Post Procedure Running the Post Using the LEDsProcedure Running the Post from a Terminal Verifying Tftp on a Unix System Troubleshooting Tftp ProblemsFront Panel Procedure Resetting PortServer TS 8/16 Configuration to DefaultsCommand Line Procedure Verifying the PortServer TS 8/16 IP Address 17-9 Checking for Duplicate IP Addresses Pinging an IP Address Verifying the Network Cabling Linux Verifying the RealPort Process Verifying the RealPort ProcessAIX Verifying the RealPort Process HP-UX Verifying the RealPort ProcessSolaris Verifying the RealPort Process Windows NT Verifying the RealPort ServiceWindows 2000 Verifying the RealPort Service RealPort Checking and Changing Port ConfigurationDigi International Bren Road East Minnetonka, MN Digi Contact Information

16, TS8 specifications

The Digi TS8 and TS16 are advanced devices within the Digi TransPort series, which are renowned for their versatility in providing robust network connectivity solutions. Designed to cater to the needs of IoT (Internet of Things) applications, these routers are excellent for businesses that require reliable, high-performance communication across various environments.

One of the standout features of the Digi TS8 and TS16 is their cellular connectivity. Both models support multiple cellular bands, including 4G LTE, ensuring that users can maintain a stable and fast internet connection even in remote locations. This makes them ideal for applications like smart grid management, digital signage, and industrial telemetry, where constant connectivity is crucial.

Another significant aspect of the Digi TS8 and TS16 is their dual SIM capability. This feature allows for seamless failover between two cellular networks. In cases where one network experiences an outage, the device automatically switches to the secondary network, thus minimizing downtime and maintaining business continuity. This redundancy is a vital characteristic for mission-critical applications.

The routers also support various WAN technologies, including LTE, Ethernet, and Wi-Fi, providing flexibility for diverse deployment scenarios. With their comprehensive networking capabilities, the Digi TS8 and TS16 can be integrated into existing infrastructures with ease.

In terms of security, these devices offer a robust suite of features designed to safeguard data. They come equipped with advanced firewall capabilities, VPN support, and secure tunneling protocols, ensuring that data transmitted across the network remains protected against unauthorized access.

Additionally, management and monitoring are made easy with Digi’s intuitive web interface and cloud management platform. Users can remotely configure, monitor, and manage their devices, enabling efficient performance tracking and troubleshooting from anywhere in the world.

Both the Digi TS8 and TS16 are built to endure harsh environmental conditions, boasting an industrial-grade design that adheres to rigorous standards. They can operate effectively in extreme temperatures and are resistant to dust and moisture, making them suitable for outdoor and rugged deployments.

Overall, the Digi TS8 and TS16 provide an extensive set of features and characteristics that address the growing demands of modern connectivity. Their reliability, security, and flexible deployment options make them a preferred choice for businesses looking to harness the power of IoT technology. Whether for industrial applications or remote site management, these devices lead the market with their performance and adaptability.