MERLIN LEGEND Communications System Release 6.1 | Issue 1 |
Network Reference | August 1998 |
|
|
ACustomer Support Information
Toll Fraud Prevention | Page |
NOTE:
In most cases these are
Security Risks Associated with the Remote |
|
Access Feature | 1 |
Remote Access allows the MERLIN LEGEND Communications System owner to access the system from a remote telephone and make an outgoing call or perform system administration, using the network facilities (lines/trunks) connected to the MERLIN LEGEND Communications System. Hackers, scanning the public switched network by randomly dialing numbers with war dialers (a device that randomly dials telephone numbers, including 800 numbers, until a modem or dial tone is obtained), can find this feature, which will return a dial tone to them. They can even employ war dialers to attempt to discover barrier codes.
Preventive Measures | 1 |
Take the following preventive measures to limit the risk of unauthorized use of the MERLIN LEGEND Communications System Remote Access feature by hackers:
■The Remote Access feature can be abused by criminal toll fraud hackers, if it is not properly administered. Therefore, this feature should not be used unless there is a strong business need.
■It is strongly recommended that customers invest in security adjuncts, which typically use
■If a customer chooses to use the Remote Access feature without a security adjunct, then multiple barrier codes should be employed, with one per user if the system permits. The MERLIN LEGEND Communications System permits a maximum of 16 barrier codes.