Configuring SGM User-BasedAccess, page
Configuring SGM User-BasedAccess
Creating Secure Passwords, page 18-5 Required
Implementing SSL Support in SGM, page
#cd /opt/CSCOsgm/bin #./sgm useraccess enable
Implementing SGM User-BasedAccess Solaris Only
18-2
sgm adduser -sgm disableuser -sgm enableuser
sgm disablepass -sgm passwordage -sgm userpass
sgm updateuser
#./sgm authtype local
# ./sgm sgm adduser username
# ./sgm authtype solaris
18-4
18-5
Creating Secure Passwords
Power User Level 2 Access, page
Basic User Level 1 Access, page
Network Operator Level 3 Access, page
Network Administrator Level 4 Access, page
18-7
Basic User Level 1 Access
Network Operator Level 3 Access
Power User Level 2 Access
18-8
System Administrator Level 5 Access
Network Administrator Level 4 Access
18-9
System Messages and Logs
18-10
# ./sgm badloginalarm clear
# ./sgm badloginalarm number-of-attempts
# ./sgm badlogindisable number-of-attempts
# ./sgm badlogindisable clear
# ./sgm inactiveuserdays number-of-days
# ./sgm passwordage number-of-days
# ./sgm inactiveuserdays clear
18-12
#./sgm clitimeout number-of-minutes
# ./sgm passwordage clear
# ./sgm clitimeout clear
18-13
# ./sgm deluser username
# ./sgm disablepass username
18-14
# cd /opt/CSCOsgm/bin
18-15
# ./sgm disableuser username
# ./sgm userpass username
# ./sgm enableuser username
page
18-16
18-17
# ./sgm updateuser username
# ./sgm newlevel username
Displaying a Message of the Day
18-18
Field or Button
Last Updated
Description
Message of the Day
Decline
#cd /opt/CSCOsgm/bin #./sgm motd enable
# ./sgm motd edit
18-20
# ./sgm motd disable
Manually Synchronizing Local SGM Passwords
Listing All Currently Defined Users
# ./sgm motd cat
# ./sgm listusers username
Disabled
#cd /opt/CSCOsgm/bin #./sgm seclog
18-22
Restoring Security-RelatedSGM Data
#cd /opt/CSCOsgm/bin #./sgm restore security
# ./sgm seclog clear
18-23
#cd /opt/CSCOsgm/bin #./sgm useraccess disable
Disabling SGM User-BasesAccess
Specifying a Super User Solaris Only
# ./sgm restart
sgm certtool -sgm clean -sgm cleanall
sgm backup -sgm browserpath -sgm certgui
sgm cleandb -sgm cw2ksetup -sgm evilstop
sgm reboot -sgm restore -sgm restoreprops
sgm webport -sgm xtermpath
Implementing SSL Support in SGM
Enabling SSL Support in SGM, page
Launching the SGM Certificate Tool for SSL, page
Exporting an SSL Certificate, page
Enabling SSL Support in SGM
Managing SSL Support in SGM, page
Disabling SSL Support in SGM, page
# ./sgm keytool import cert cert filename
opt/CSCOsgm/etc/ssl/server.csr is a CSR
18-28
Step 5 Restart the SGM client
18-29
SGM displays the SGM Server Home page
18-30
#cd /opt/CSCOsgm/bin #./sgm certgui
Launching the SGM Certificate Tool for SSL
18-31
Issued by
Issued to
Expiration Date
Import
Details
Importing an SSL Certificate to an SGM Client
Exit
Help
Exporting an SSL Certificate
Cancel
Look In
File Name
18-35
Save In
Field or Button
Description
18-36
Save
Cancel
Field or Button
Chapter 18 Configuring SGM Security
18-37
Cisco Signaling Gateway Manager User Guide
Figure 18-5Certificate Information Dialog
Subject
Issuer
Version
Serial number
Disabling SSL Support in SGM
Managing SSL Support in SGM
18-39
Step 2 Enter the following command
18-40
# cd /opt/CSCOsgm/bin
#./sgm ipaccess edit
#./sgm ipaccess add
18-41
Any changes you make to the ipaccess.conf file take effect when you restart the SGM server
18-42