Nortel Networks 5100 manual Enabling the BBI, Generating a temporary certificate if using Https

Models: 5100

1 160
Download 160 pages 34.55 Kb
Page 13
Image 13

Nortel Switched Firewall Browser-Based Interface Users Guide

Enabling the BBI

You can enable the BBI for HTTP, HTTP and HTTPS, or you can fully disable the BBI. TIP: The default setting for the BBI is enabled for HTTP access and disabled for HTTPS access.

NOTE HTTP is not a secure protocol. All data (including passwords) between an HTTP client and the Nortel Switched Firewall is not encrypted and is subject only to weak authentication. If secure remote access is required, use HTTPS.

To explicitly allow remote BBI access, enter the following commands in the CLI:

„To enable HTTP access:

>># /cfg/sys/adm/web/http/ena

„To enable HTTPS access using SSL:

>># /cfg/sys/adm/web/ssl/ena

Generating a temporary certificate if using HTTPS

An SSL server certificate is required for HTTPS access to the BBI. The Firewall can generate a temporary, self-signed certificate. Use the following commands to create a default certificate:

>>SSL configuration# certs/serv/gen Do you want to generate a self-signed Key? y

<Name> <Country code> <Key size> certificate with the generated

where Name is the common name that appears on the certificate, Country code is a two-letter code (US for the United States of America, CA for Canada, JP for Japan, and so on), and Key size is 512, 1024, or 2048 bits. For example:

>>SSL configuration# certs/serv/gen Nortel US 1024

NOTE When you log in to the BBI with the temporary certificate, you are warned that the certificate is not signed or authenticated. Permit use of the temporary certificate only during initial configuration, where the system is not attached to active networks that can be a source of attack. Install a signed and authenticated certificate prior to connecting any untrusted network.

Introduction „ 13

216383-D October 2005

Page 13
Image 13
Nortel Networks 5100 manual Enabling the BBI, Generating a temporary certificate if using Https

5100 specifications

Nortel Networks 5100 is a powerful platform designed for telecommunications and networking, primarily aimed at enhancing the solutions provided to service providers and enterprises. Introduced as part of Nortel's robust portfolio, the 5100 combines various features that cater to the demands of modern network environments.

One of the main features of the Nortel 5100 is its versatile targeting capabilities. It supports multiple applications and can function within various access technologies, ensuring that service providers can tailor their services according to specific market needs. The platform is designed to handle a high volume of concurrent users, which is essential for operators managing large subscriber bases.

The Nortel 5100 also incorporates advanced voice and data functionalities. It supports Session Initiation Protocol (SIP), which allows for efficient voice over IP (VoIP) communications. This interoperability with existing telephony systems ensures a smooth transition for enterprises upgrading from traditional systems to modern VoIP frameworks. Furthermore, it enables unified communications, enhancing collaboration within organizations.

Another distinguishing characteristic of the Nortel 5100 is its scalability. Organizations can easily expand their networks and add new services without the need for a complete overhaul of their existing infrastructure. This feature is particularly beneficial for growing companies that require flexibility in operations to adapt to changing market conditions.

Security is a paramount aspect of the Nortel 5100. It includes features that protect sensitive data and maintain the integrity of communications over the network. This is vital for companies that need to comply with stringent regulatory requirements concerning customer data.

Additionally, the platform is designed with robust redundancy and fault tolerance capabilities, which ensures continuous operation even in the event of hardware failures. This high availability is crucial for service providers that need to guarantee uptime for their customers.

In summary, the Nortel Networks 5100 stands out with its versatility, scalability, advanced VoIP functionalities, and robust security features. It serves as a comprehensive solution for both service providers and enterprises, enabling them to enhance their network capabilities and deliver superior services. By embracing such a platform, organizations can achieve greater operational efficiency and adaptability in an increasingly dynamic communication landscape.