User guide
PTP 800 Series User Guide Managing security
phn-2513_004v000 (Oct 2012)
7-51
Managing security
This section describes how to manage security features such as FIPS 140-2 mode and AES
encryption in operational PTP 800 links.
Exiting FIPS 140-2 mode
To exit from the FIPS 140-2 mode, do one of the following:
• Load a PTP 800 license key that has FIPS operation disabled and reboot. Refer to Task
3: Installing license keys on page 6-21.
• Load PTP 800 software that is not FIPS-validated and reboot. Refer to Task 4:
Upgrading software version on page 6-25.
The critical security parameters (CSPs) are zeroized when the unit is no longer FIPS 140-
2 Capable.
Zeroizing critical security parameters
Critical security parameters (CSPs) are as follows:
• Key of keys.
• AES encryption keys for the wireless interface.
• Private key for the HTTPS/TLS interface.
• Entropy value for the HTTPS/TLS interface.
• User account passwords for the web-based interface.
To zeroize the CSPs, select option Security, Zeroize CSPs and then Select Zeroize CSPs
and Reboot Wireless Unit. Confirm the reboot. Alternatively, select the Zeroize CSPs
option in Recovery mode.