Maintenance Manual

Unsecured FTP
service is
enabled
Disable FTP in network TCP
services
Information sent using FTP is unencrypted and sent in plain text;
therefore, it is possible for people to discover usernames and
passwords easily.
To disable FTP, go to Network > Services and deselect the FTP
check box.
Unsecured
HTTP service
is enabled
Disable HTTP in network
TCP services
Information sent using HTTP (Web) is unsecured and not
encrypted.
To disable HTTP, go to Network > Services and deselect Web. We
recommend that you enable Secure web.
Unsecured
SNMP service
is enabled
Disable SNMP in network
UDP services
Information sent using SNMP is unencrypted and sent in plain text;
therefore, it is possible for people to discover usernames and
passwords easily.
To disable SNMP, go to Network > Services and deselect SNMP.
Auto-refresh
of web pages
is enabled
Change auto-refresh
interval to "No auto-
refresh"
If your MCU is set to auto-refresh it could mean that on an idle
MCU a session will never time out.
To turn off auto-refresh, go to Settings > User interface and
change Status page auto-refresh interval to No auto-refresh.
Audit logging
of
configuration
changes is
disabled
Enable the audit log If the audit log is disabled, the MCU will not create an audit log. To
enable audit logs, go to Logs > Audit log and select Enable
auditing.
For more information on the audit log, refer to Configuring security
settings.
Audit logs
dropped due
to lack of
compact flash,
audit system
integrity
compromised
MCU 4200 Series, MCU
4500 Series and MCU MSE
8420 only: Check system
configuration for possible
security changes
If no compact flash card is installed in the MCU, logs are only
stored up to a maximum of 200 events. The 200 events do not
'wrap', and therefore when the maximum is reached the log is
deleted and started over again. To rectify this problem, insert a
compact flash card.
For more information on the audit log, refer to Configuring security
settings.
Audit logs hash
check failed,
audit system
integrity
compromised
Check system configuration
for possible security
changes
If audit logs checks fail, it is possible that your MCU has been
compromised. For example, someone may have taken the compact
flash card out and deleted some audit logs.
For more information on the audit log, refer to Configuring security
settings
Compact flash
card not
present, audit
and CDR logs
will not be
saved
MCU 4200 Series, MCU
4500 Series and MCU MSE
8420 only: Insert a compact
flash card or check whether
the existing compact flash
card is functional
If no compact flash card is installed in the MCU, logs are only
stored up to a maximum of 200 events. The 200 events do not
'wrap', and therefore when the maximum is reached the log is
deleted and started over again.
The MCU will give you this warning when you are nearing the 200
maximum. To rectify this problem, insert a compact flash card.
207
Cisco TelePresence MCU Series Online Printable Help