Configuring SGM User-BasedAccess
Configuring SGM User-BasedAccess, page
Creating Secure Passwords, page 18-5 Required
Implementing SSL Support in SGM, page
18-2
Implementing SGM User-BasedAccess Solaris Only
#cd /opt/CSCOsgm/bin #./sgm useraccess enable
sgm disablepass -sgm passwordage -sgm userpass
sgm adduser -sgm disableuser -sgm enableuser
sgm updateuser
#./sgm authtype local
18-4
# ./sgm authtype solaris
# ./sgm sgm adduser username
Creating Secure Passwords
18-5
Basic User Level 1 Access, page
Power User Level 2 Access, page
Network Operator Level 3 Access, page
Network Administrator Level 4 Access, page
Basic User Level 1 Access
18-7
18-8
Power User Level 2 Access
Network Operator Level 3 Access
18-9
Network Administrator Level 4 Access
System Administrator Level 5 Access
18-10
System Messages and Logs
# ./sgm badloginalarm number-of-attempts
# ./sgm badloginalarm clear
# ./sgm badlogindisable number-of-attempts
# ./sgm badlogindisable clear
# ./sgm passwordage number-of-days
# ./sgm inactiveuserdays number-of-days
# ./sgm inactiveuserdays clear
18-12
# ./sgm passwordage clear
#./sgm clitimeout number-of-minutes
# ./sgm clitimeout clear
18-13
# ./sgm disablepass username
# ./sgm deluser username
18-14
# cd /opt/CSCOsgm/bin
# ./sgm disableuser username
18-15
# ./sgm enableuser username
# ./sgm userpass username
page
18-16
# ./sgm updateuser username
18-17
18-18
Displaying a Message of the Day
# ./sgm newlevel username
Last Updated
Field or Button
Description
Message of the Day
#cd /opt/CSCOsgm/bin #./sgm motd enable
Decline
# ./sgm motd edit
18-20
Manually Synchronizing Local SGM Passwords
# ./sgm motd disable
Listing All Currently Defined Users
# ./sgm motd cat
Disabled
# ./sgm listusers username
#cd /opt/CSCOsgm/bin #./sgm seclog
18-22
#cd /opt/CSCOsgm/bin #./sgm restore security
Restoring Security-RelatedSGM Data
# ./sgm seclog clear
18-23
Disabling SGM User-BasesAccess
#cd /opt/CSCOsgm/bin #./sgm useraccess disable
Specifying a Super User Solaris Only
# ./sgm restart
sgm backup -sgm browserpath -sgm certgui
sgm certtool -sgm clean -sgm cleanall
sgm cleandb -sgm cw2ksetup -sgm evilstop
sgm reboot -sgm restore -sgm restoreprops
Implementing SSL Support in SGM
sgm webport -sgm xtermpath
Enabling SSL Support in SGM, page
Launching the SGM Certificate Tool for SSL, page
Enabling SSL Support in SGM
Exporting an SSL Certificate, page
Managing SSL Support in SGM, page
Disabling SSL Support in SGM, page
18-28
opt/CSCOsgm/etc/ssl/server.csr is a CSR
# ./sgm keytool import cert cert filename
18-29
Step 5 Restart the SGM client
18-30
SGM displays the SGM Server Home page
18-31
Launching the SGM Certificate Tool for SSL
#cd /opt/CSCOsgm/bin #./sgm certgui
Issued to
Issued by
Expiration Date
Import
Importing an SSL Certificate to an SGM Client
Details
Exit
Help
Cancel
Exporting an SSL Certificate
Look In
File Name
Save In
18-35
Field or Button
Description
Save
18-36
Cancel
Field or Button
18-37
Chapter 18 Configuring SGM Security
Cisco Signaling Gateway Manager User Guide
Figure 18-5Certificate Information Dialog
Issuer
Subject
Version
Serial number
18-39
Managing SSL Support in SGM
Disabling SSL Support in SGM
# cd /opt/CSCOsgm/bin
18-40
Step 2 Enter the following command
18-41
#./sgm ipaccess add
#./sgm ipaccess edit
18-42
Any changes you make to the ipaccess.conf file take effect when you restart the SGM server