CHAPT ER
9-1
Cisco ONS 15454 Reference Manual, R7.0
78-17191-01
9
Security
This chapter provides information about Cisco ONS 15454 users and security. To provision security,
refer to the Cisco ONS 15454 Procedure Guide.
Chapter topics include:
9.1 User IDs and Security Levels, page 9-1
9.2 User Privileges and Policies, page 9-1
9.3 Audit Trail, page 9-7
9.4 RADIUS Security, page 9-8

9.1 User IDs and Security Levels

The CISCO15 user ID is provided with the ONS 15454 for initial login to the node, but this user ID is
not supplied in the prompt when you sign into Cisco Transport Controller (CTC). This ID can be used
to set up other ONS 15454 user IDs.
You can have up to 500 user IDs on one ONS 15454. Each CTC or Transaction Language One (TL1)
user can be assigned one of the following security levels:
Retrieve—Users can retrieve and view CTC information but cannot set or modify parameters.
Maintenance—Users can access only the ONS 15454 maintenance options.
Provisioning—Users can access provisioning and maintenance options.
Superuser—Users can perform all of the functions of the other security levels as well as set names,
passwords, and security levels for other users.
See Table 9-3 on page 9-6 for idle user timeout information for each security level.
By default, multiple concurrent user ID sessions are permitted on the node; that is, multiple users can
log into a node using the same user ID. However, you can provision the node to allow only a single login
per user ID and prevent concurrent logins for all users.

9.2 User Privileges and Policies

This section lists user privileges for each CTC action and describes the security policies available to
Superusers for provisioning.