User`s guide
Security
Polycom, Inc. 8–9
To view the configuration settings for your Security Profile:
>> Do one of the following:
— In the local interface, go to System > Admin Settings > General
Settings > Security > Security Settings (select if necessary).
— In the web interface, go to Admin Settings > General Settings >
Security > Security Settings.
Configuring Security Mode
You can configure Polycom HDX systems to use Security Mode, which
provides secure access to the system. Security Mode utilizes TLS, HTTPS, AES,
digital signatures, and other security protocols, algorithms, and mechanisms
to put the system into a secure mode. These protocols encrypt management
communication over IP, preventing access by unauthorized users.
Every time you enable Security Mode, you must configure new passwords for
the Admin, User, and Meeting passwords that are currently configured. The
passwords cannot be blank and they cannot be the default value (the HDX
system’s serial number).
Security Mode requires secure access and a configured Admin password.
Points to note about Security Mode:
• When you use the Maximum or High security profile, Security Mode is enabled
by default and cannot be disabled. Security Mode is also enabled by default for
the Medium security profile, but it can be disabled. Security Mode is disabled by
default for the Low and Minimum security profiles, but can be enabled.
• Security profiles that require user logon or use the security banner are not
supported when the Polycom HDX system is paired with a Polycom Touch
Control.
• SNMP access is not available in Security Mode.
• Global Management System and ReadiManager SE200 systems cannot
monitor Polycom HDX systems in Security Mode.
• The web interface allows only HTTPS connections using TLS when Security
Mode is enabled. Make sure that your web browser has TLS capabilities
enabled.
• An Admin Room password is required (min length 1).
•Telnet remote access is disabled (read-only).
•SNMP remote access is disabled (read-only).
• The HTTP web access port is disabled (read-only).
• The HTTPS port is fixed at 443 (read-only).
• The Sessions list is enabled (read-only).
• Intrusion detection (NIDS) is enabled.