User guide

USR4204 User Guide
Page 54 of 69
Suggested Security Guidelines
Creating usernames and passwords
Create Usernames and Passwords that are not easy to guess.
Use at least 8 characters.
Use upper/lowercase letters, numbers, and non-alphanumeric characters.
Consider using 2 spaces instead of 1 between words.
Consider beginning with a space, a number, or a non-alphanumeric character.
o Example: "John Smith" might be better as " J0hn $m!Th"
Hacker protection
If someone tries to hack in with a valid Username three consecutive times, that user
will be locked out until the administrator re-enables the account.
If the hacked Username is the Administrator's, the above procedure (Clearing a
Forgotten or Disabled Administrator Name and Password) will be required on-
site. (i.e. don't use "admin")
Security Features to use or enable
Don't disable the Inactivity Timer. This ensures that the system is available for users
who are actually using it.
Program the Security Banner. Use warning text appropriate for your installation.
What are "displayable characters"?
"Displayable characters" are all ASCII characters from 20h thru 7Eh.
What are programmable characters?
All 4 of the programmable characters (Escape, Menu, Xon, Xoff) can be any of the following
displayable characters:
# $ % ( ) * - . / : ; < > ? @ [ \ ] ^ _ { | } ~
Or any of the following control characters:
A B C D E F G I K L N O P Q R S T U V W X Y Z \ ] ^ _
Temporarily disabling Security
There is no way to temporarily disable security. The Administrator must be deleted using
the "Remove all Accounts" command, which will turn off security and remove all accounts
that were created. To turn security back on, a new Administrator must be created as well as
any other accounts and permissions.