Troubleshooting guide

3 — NE user and device security
Alcatel-Lucent 5620 Service Aware Manager 3-9
5620 SAM
System Administrator Guide
5 Create NE DoS protection policies, as required to control the amount of
subscriber-based control-plane traffic that the NE interfaces receive; see
Procedure 3-3.
6 View NE DoS protection violations, as required; see Procedure 3-4.
7 Create NE DDoS protection policies, as required to isolate protocols from each
other and isolate subscribers so that attacks or misconfigurations affect only the
source SAP or protocol; see Procedure 3-5.
8 Create site user profiles based on job classifications and the access needed to the
managed devices; see Procedure 3-6.
9 Create individual site user accounts based on the configured profiles; see
Procedure 3-7.
10 Specify password policies for access to managed devices and users; see
Procedure 3-8.
11 Create RADIUS, TACACS+, or LDAP access or security policies for user
authentication on the managed device; see Procedures 3-9, 3-10, or 3-11.
12 View or configure the system security settings on managed NEs; see
Procedure 3-12.
13 As required, configure X.509 authentication or a PKI certificate authority profile;
see Procedure 3-13 or 3-14.
14 Perform PKI CMPv2 actions, as required, to obtain or assign keys from a CA; see
Procedure 3-15.
15 Configure an NE firewall on the 7705 SAR-H using the firewall manager; see
Procedure 3-16.
16 Configure an NE management access firewall on the 7705 SAR-H using the firewall
manager; see Procedure 3-17.
17 Configure an NE CPM firewall on the 7705 SAR-H using the firewall manager; see
Procedure 3-18.
18 Perform the following NE system security tasks, as required:
a Delete security policies; see Procedure 3-19.
b Unlock user accounts that are locked due to failed login attempts; see
Procedure 3-20.
c Clear the password history for a user on a managed object; see
Procedure 3-22.
d Perform CPMv2 certificate administration actions; see Procedure 3-15.
e Clear collected statistics information on a CPM filter; see Procedure 3-21.
Release 12.0 R6 | November 2014 | 3HE 08861 AAAF TQZZA Edition 01