Polycom VSX 3000, VSX 5000, VSX 7000s manual Roles and Services, Crypto-Officer Role, User Role

Page 16

Non-Proprietary Security Policy, Version 1.0

June 15, 2007

1.4 Roles and Services

The modules support two authorized roles (as required by FIPS 140-2) that operators may assume: a Crypto Officer role and User role.

1.4.1Crypto-Officer Role

The Crypto-Officer (CO) installs and uninstalls the cryptographic module. Also, the CO is responsible for monitoring and configuring the modules and call settings.

The Crypto-Officer can manage the VSX modules over a Transport Layer Security (TLS) v1 session through a web interface. Through this interface, the Crypto-Officer is able to configure the device and setup a call, change secure mode of operation, monitor current status and perform virtually all of the management of the module. Configuration of the modules and viewing of status can be performed with a Command Line Interface (CLI) over the local serial port or remotely via Telnet over TLS. All the management and configuration capabilities are available via the VSX’s web interface are also available via secure telnet over TLS. The telnet interface includes additional debug commands that are not available over the web. The Crypto-Officer has access to the following services:

Table 7 - Mapping of Crypto-Officer’s Services to Inputs, Outputs, Critical Security Parameters (CSPs), and Access

Control

Service

Description

Input

Output

CSP and Access Control

Install

Assemble the systems

Command

Result of installation

None

 

and setup network

 

 

 

 

configurations

 

 

 

Uninstall

Disassemble the VSX

Command

Uninstalled module

None

 

system

 

 

 

Run Self-Test

Perform the self-test

Command

Status output

None

 

on demand

 

 

 

Room monitoring

Monitor meeting

Command

Status output

x.509 certificate – Read

 

rooms in or out of a

 

 

Session key –Read/Write

 

call using the Web

 

 

CO password – Read

 

Director feature in

 

 

 

 

VSX Web.

 

 

 

Remote diagnostics

Identify and correct

Command

Status output

x.509 certificate – Read

 

issues that affect the

 

 

Session key –Read/Write

 

user’s experience via

 

 

CO password – Read

 

VSX Web interface.

 

 

 

Call Detail Reports

Access the system’s

Command

Modules’ settings and

x.509 certificate – Read

 

call history using local

 

status output

Session key –Read/Write

 

or remote management

 

 

CO password – Read

 

interface.

 

 

 

System configuration

Run the system setup

Command

Modules’ settings and

x.509 certificate – Read

 

wizard locally or

 

status output

Session key –Read/Write

 

remotely to get the

 

 

CO password – Read

 

system up and running.

 

 

 

1.4.2User Role

Users access teleconferencing services via the LAN port (for IP calls) or the Network Interface Bay port (ISDN calls). Services provided for Users are given below in Table 8.

Table 8 - Mapping of User’s Services to Inputs, Outputs, CSPs, and Access Control

Service

Description

Input

Output

CSP and Access Control

Polycom VSX 3000, VSX 5000, and VSX 7000s

Page 16 of 23

© 2007 Polycom, Inc. - This document may be freely reproduced and distributed whole and intact including this Copyright Notice.

Image 16
Contents Polycom, Inc Level 1 Validation Document VersionCorsec Security, Inc Revision History Polycom VSX 3000, VSX 5000, and VSX 7000sPage 2Table of Figures Table of ContentsTable of Tables CSPS, and Access Control Introduction PurposeReferences Document OrganizationVSX 3000, VSX 5000, and VSX 7000s Module SpecificationsOverview VSX 7000s Module Interfaces Security Level Per Fips 140-2 SectionVSX 3000 Connector Panel VSX 5000 Back Panel Non-Proprietary Security Policy, Version VSX 7000e Back Panel VSX 7000s Back Panel Non-Proprietary Security Policy, Version VSX 8000 Back Panel Crypto-Officer Role Roles and ServicesUser Role Authentication Physical SecurityOperational Environment Cryptographic Key ManagementKey Generation Key Input/OutputSelf-Tests Design AssuranceKey Storage Key ZeroizationSecure Operation Crypto-Officer GuidanceInitialization ManagementUser Guidance LED/Power Button Light DescriptionModel Description Modules’ Status BRI Network Interface LEDs LED Status Status DescriptionPRI Network Interface LEDs 35/RS-449/RS-530 Network Interface LEDsAcronyms Acronyms

VSX 7000s, VSX 3000, VSX 5000 specifications

The Polycom VSX series comprises several high-quality video conferencing systems, notably the VSX 3000, VSX 7000s, and VSX 5000. Each model is designed to enhance communication in various settings, offering unique features, technologies, and characteristics tailored to meet diverse user needs.

The Polycom VSX 3000 is a compact, all-in-one video conferencing system ideal for smaller meeting rooms or personal offices. It features a sleek design with an integrated 15-inch LCD display, which provides an immersive visual experience. The VSX 3000 supports a maximum resolution of 640x480 at 30 frames per second, ensuring clear video quality. The system includes a built-in camera with 85-degree field of view, allowing for effective communication among participants. The VSX 3000 supports H.323 and SIP protocols, ensuring compatibility with various networks and systems. Additionally, it incorporates Polycom's Lost Packet Recovery technology, optimizing video quality even in challenging network conditions.

In contrast, the Polycom VSX 7000s is designed for more extensive video conferencing setups. This system features a modular design, allowing users to customize their setups with additional cameras, microphones, and displays. The VSX 7000s supports a higher resolution of up to 1024x768 pixels, providing more detailed visuals. One of the standout features of this model is its ability to integrate with content-sharing applications, enabling users to share documents and presentations seamlessly during meetings. The VSX 7000s also boasts advanced audio features, including StereoSurround technology, which enhances the auditory experience by providing spatial audio that mimics face-to-face interactions.

Lastly, the Polycom VSX 5000 is a versatile video conferencing solution that caters to mid-to-large conference rooms. It offers high-definition video quality with a resolution of up to 1280x720, ensuring clear and crisp visuals. The system supports multiple video outputs, allowing users to connect to various displays. The VSX 5000 is equipped with the advanced Polycom Content Management system, facilitating easy control of shared content and applications during meetings. With its versatile connectivity options, the VSX 5000 is capable of connecting to various video conferencing networks, enhancing its usability across different platforms.

In summary, the Polycom VSX series offers a range of video conferencing solutions that cater to varying needs, from compact setups for small offices with the VSX 3000 to versatile solutions for larger meeting environments with the VSX 7000s and VSX 5000. Each model integrates advanced technologies and features designed to ensure clear video, robust audio, and seamless connectivity, making them ideal choices for enhancing communication and collaboration in today's digital world.