Datasheet

Table Of Contents
CHAPTER
9-1
Cisco ONS 15454 SDH Reference Manual, R7.0
October 2008
9
Security
This chapter provides information about Cisco ONS 15454 SDH user security. To provision security,
refer to the Cisco ONS 15454 SDH Procedure Guide.
Chapter topics include:
9.1 User IDs and Security Levels, page 9-1
9.2 User Privileges and Policies, page 9-1
9.3 Audit Trail, page 9-7
9.4 RADIUS Security, page 9-8
9.1 User IDs and Security Levels
The CISCO15 user ID is provided with the ONS 15454 SDH system, but this user ID is not prompted
when you sign into Cisco Transport Controller (CTC). This ID can be used to set up other
ONS 15454 SDH users.
You can have up to 500 user IDs on one ONS 15454 SDH. Each CTC or Transaction Language One
(TL1) user can be assigned one of the following security levels:
Retrieve—Users can retrieve and view CTC information but cannot set or modify parameters.
Maintenance—Users can access only the ONS 15454 SDH maintenance options.
Provisioning—Users can access provisioning and maintenance options.
Superuser—Users can perform all of the functions of the other security levels as well as set names,
passwords, and security levels for other users.
See Table 9-3 on page 9-6 for idle user timeout information for each security level.
By default, multiple concurrent user ID sessions are permitted on the node, that is, multiple users can
log into a node using the same user ID. However, you can provision the node to allow only a single login
per user and prevent concurrent logins for all users.
9.2 User Privileges and Policies
This section lists user privileges for each CTC task and describes the security policies available to
Superusers for provisioning.