Ultra Secure Mode

ULTRA_SECURE_MODE Flag Value – Effect on System Flags

 

 

ULTRA_SECURE_MODE Value

 

 

 

 

 

 

Flag

 

YES

 

NO

 

 

 

 

 

 

 

 

Range

 

Default

Range

 

Default

 

 

 

 

 

 

 

NUM_OF_NUMERIC

1-2

 

2

0-2

 

0

 

 

 

 

 

 

 

NUMERIC_CHAIR_PASS_MIN_LEN

9-16

 

9

0-16

 

0

 

 

 

 

 

 

 

NUMERIC_CONF_PASS_MIN_LEN

9-16

 

9

0-16

 

0

 

 

 

 

 

 

 

PASS_EXP_DAYS_MACHINE

 

 

365

 

 

 

 

 

 

 

 

 

 

PASSWORD_EXPIRATION_DAYS

7-90

 

60

0-90

 

0

 

 

 

 

 

 

 

PASSWORD_EXPIRATION_WARNING_DAYS

7-14

 

7

0-14

 

0

 

 

 

 

 

 

 

PASSWORD_HISTORY_SIZE

10-16

 

10

0-16

 

0

 

 

 

 

 

 

 

Cyclic File Systems

 

 

 

 

 

 

 

 

 

 

 

 

 

ENABLE_CYCLIC_FILE_SYSTEM_ALARMS

YES/NO

 

YES

YES/NO

 

NO

 

 

 

 

 

 

 

Certificate Management

(PKI) Public Key Infrastructure

PKI (Public Key Infrastructure) is a set of tools and policies deployed to enhance the security of data communications between networking entities.

The implementation of PKI on the Collaboration Server has been enhanced to ensure that all networked entities are checked for the presence of unique certificates by implementing the following rules and procedures during the TLS negotiation:

The Collaboration Server identifies itself with the same certificate when operating as a server and as a client.

The Collaboration Server’s management applications: Collaboration Server Web Client and RMX Manager, identify themselves with certificates.

While establishing the required TLS connection, there is an exchange of certificates between all entities.

Entities such as the DMA that function as both client and server within the Management Network identify themselves with the same certificate for both their client and server functions.

A single Certificate Repository is maintained for:

The Management Network Service.

SIP TLS Personal Certificates for each defined IP Network Service.

Trusted (CA) certificate for all TLS connections.

CRL for all TLS connections.

SIP TLS certificates are validated against the CA.

SIP TLS certificates are managed using CRL and Online Certificate Status Protocol (OCSP).

Polycom®, Inc.

818

Page 849
Image 849
Polycom 1500/1800/2000/4000 Certificate Management, PKI Public Key Infrastructure, Range Default, Cyclic File Systems