Instruction manual
Multipoint Conferencing Unit /Conference Reservation 
and Control System
Issue 9 May 2003
17-47
Customer Education
System manager/administrator has 
copy of Avaya™ Toll Fraud and 
Security Handbook (this document)
System security policy established 
and distributed
System security policy reviewed 
periodically
Security policy included in new-hire 
orientation
Employees know how to detect 
potential toll fraud
Employees know where to report 
suspected toll fraud
Authorization codes not sequential
Remote access phone number(s) 
not published
Barrier codes and passwords are 
chosen to be difficult to guess
Barrier codes, passwords (including 
ESM and CRCS) and authorization 
codes are removed/changed when 
employees are terminated
Authorization codes, account 
codes, and passwords are not 
written down or translated on 
auto-dial buttons
HackerTracker thresholds 
established
Social engineering explained
1. If “NO” (N), provide Note reference number and explain
Table 17-17. MCU/CRCS security checklist — Continued 
Y/N
1
Note N/A
Continued on next page










