Security: Secure Sensitive Data Management
SSD Management Channels
452 Cisco Small Business 200, 300 and 500 Series Managed Switch Administration Guide (Internal Version)
21
SSD Management Channels
Devices can be managed over management channels such as telnet, SSH, and
web. SSD categories the channels into the following types based on their security
and/or protocols: secured, insecure, secure-XML-SNMP, and insecure-XML-SNMP.
The following describes whether SSD considers each management channel to be
secure or insecure. If it is insecure, the table indicates the parallel secure channel.
Menu CLI and Password Recovery
The Menu CLI interface is only allowed to users if their read permissions are Both
or Plaintext Only. Other users are rejected. Sensitive data in the Menu CLI is always
displayed as plaintext.
Management Channel SSD Management
Channel Type
Parallel Secured
Management Channel
Console Secure
Telnet Insecure SSH
SSH Secure
GUI/HTTP Insecure GUI/HTTPS
GUI/HTTPS Secure
XML/HTTP Insecure-XML-
SNMP
XML/HTTPS
XML/HTTPS Secure-XML-SNMP
SNMPv1/v2/v3 without
privacy
Insecure-XML-
SNMP
Secure-XML-SNMP
SNMPv3 with privacy Secure-XML-SNMP
(level-15 users)
TFTP Insecure SCP
SCP (Secure Copy) Secure
HTTP based file transfer Insecure HTTPS-based file transfer
HTTPS based file transfer Secure