[Top][Contents][Prev][Search]

Index



*SECURE* password


3rd Prompt parameter


3rd prompt parameter (terminal server)

A


access

PPP
Rlogin
SLIP
Telnet

ACE authentication

and PAP-TOKEN-CHAP
described
encryption
user shell settings
without RADIUS

ACE Server


ACE server

shell string structure

Activate service icon


ActivCard (token card)


AIM calls


AIM ports


alarms

coldStart
linkDown
linkUp
SNMP traps
warmStart

All Port Diag parameter


Allow as Client DNS parameter


ANI


AnsOrig parameter


AnsOrig parameter (callback)


Answer profile


APP Host parameter


APP Server parameter


APP Server utility

appsrv31.exe file
configuring the MAX to recognize
defaults
installing
DOS
for Windows95
Windows 3.1
Windows NT
parameters
password prompt
starting automatically
UNIX source file
version selection
xas-nt.exe file for Windows NT
xas-w95.exe for Windows 95

APP server utility

appsrvr.ini file

AppleTalk Remote Access (ARA)


AppleTalk Remote Access, see ARA.


APPServer utility

appsrvds.exe file for DOS

appsrvr source file (UNIX compile)


appsrvr.ini file (App Server utility)


ARA


ARA (AppleTalk Remote Access)

and PAP, CHAP, and MS-CHAP
configuring authentication
system-wide authentication parameters

Ascend-Receive-Secret


Ascend-Require-Auth


Ascend-Third-Prompt attribute


Ascend-Token-Expiry attribute


Assigning Adrs parameter (IP)


AssureNet Pathways


asynchronous PPP


Asynchronous PPP sessions


asynchronous terminal concentrator (PAD)


Auth TS Secure parameter


authentication

ACE
ACE (without RADIUS)
ACE encryption
and Connection profile
and RADIUS user profile
ARA
CACHE-TOKEN with security cards
callback
called-number
CLID
Combinet
configuring security card
definition
direct SecurID ACE (without RADIUS)
incoming calls
IP address
local
name and password
over serial AIM ports
PAP-TOKEN
PAP-TOKEN-CHAP
PAP-TOKEN-CHAP with security cards
remote
security card
setting up called-number
setting up CLID
setting up Combinet
setting up for PPP, MP, and MP+ calls
setting up terminal server
setting up X.25
spoofing
step-by-step process
system-wide parameters
terminal server

authentication servers

ACE
configuring
configuring the MAX to recognize
Defender
parameters
Password Host
RADIUS
TACACS
TACACS+

authenticationFailure trap


autoexec.bat file (App Server utility)


Automatic Number Identification, see ANI.


Aux Send PW parameter (PAP-TOKEN-CHAP)

B


banner text for password prompt


Base Ch Count


Base Ch Count parameter


BitSurfer terminal adapter (ISDN modem)


Block calls


BONDING calls


Bridge parameter


Bridge parameter (Combinet)


Bridging parameter (Combinet)

C


cached passwords (in DBA)


CACHE-TOKEN authentication

and TACACS
described for security cards
dial-out to secure site

call blocking


call filters, see filters


Call Password parameter


Call profiles


call retries


call routing, and ppp-encapsulation


callback

setting up

callback authentication


Callback parameter


callback security

and CLID
and Telnet
Ascend
Callback parameter
Expect Callback parameter
Microsoft (CBCP)

callback, and ping or telnet


Called # parameter


called-number authentication

setting up
using a name, password and called number
using the called number only

called-party number


Calling Line ID, see CLID.


CBCP

Microsoft's Callback Control Protocol

CBCP Enable parameter


CBCP Mode parameter


CBCP negotiation steps


CBCP Trunk Group parameter


CBCP, and LCP negotiation


CCITT V.120 encapsulation


Challenge Handshake Authetication Protocol, see CHAP.


CHAP (Challenge Handshake Authentication Protocol)

and DBA
and RADIUS in DBA
and TACACS
configuring for incoming calls
explained
for outgoing calls
MP encapsulation
MPP encapsulation
Name/Password profile
parameters
PPP encapsulation
requesting for outgoing calls
system-wide parameters

CHAP authentication


CLID (Calling Line ID) authentication

and callback security
general guidelines
parameters
setting up
using a caller ID only
using a name, password, and caller ID

CLID ANI


CLID authentication

Fallback

CLID Fail Busy parameter


CLID Timeout Busy parameter


Client DNS


Client Pri DNS


Client Sec DNS


cold start alarm (SNMP)


COMB parameter (Combinet)


Combinet authentication

and PAP, CHAP, and MS-CHAP
Connection profile
overview
setting up
system parameters

Comm parameter (SNMP)


community name (Comm)


community string

read-write

community string default


Compare parameter

generic filters
IP filters

Configuration Profile

SNMP Options menu
TServ Options menu

configuring


Connection profile


Connection profiles

and ARA authentication
and authentication
and callback security
and CLID authentication
and Combinet
and dial-in calls using ARA
and dynamic IP addresses
and static IP addresses
and X.25
configuring for outgoing calls
configuring for PAP, CHAP, or MS-CHAP
IP addresses
local vs. remote authentication server
terminal server authentication
used as a template
used as a template for Name/Password profile

connections

dialing to a secure site
to remote network from DOS workstation
to remote network from terminal server
to remote network from UNIX workstation
to remote network from Windows workstation

consoleStateChange trap


CryptoCard (token card)


ctl3d.dll (APP Server for Windows 3.1)

D


data filters

sample filter for IP spoofing
specifying on Ethernet interface
specifying on WAN interface

data filters, see filters


DBA


DBA (Dynamic Bandwidth Allocation)

and cached passwords
and dynamic passwords
and MP+
and static passwords
cached dynamic passwords
overview
PAP-TOKEN

default

Read Comm
R/W Comm

default password

full access

Default profile


default read-write string


Default Security profile


default security profile

password

Defender server

and terminal server authentication
configuring

DES security card

Gold
Silver

Dest Node Adrs parameter


Dest Port # to compare filter


Destination Address filter


Destination Mask filter


Destination Port Comparison filter


Destination Port filter


Dial #


Dial # parameter


Dial # parameter (callback)


dial-in access restriction


Dialout OK parameter

Combinet
Immediate Modem
PPP, MP, and MP+

DigiPass (token card)


Digital Pathways Defender server (Defender)


direct ACE authentication

configuring
described

disconnecting a user's Telnet session


DNIS


DNS (Domain Name System)

Client DNS
example configuration
parameters
setting connection-specific parameters
setting up
specifying global parameters
symbolic name

DO commands

restricting usage

Download parameter


Dst Adrs parameter (IP filters)


Dst Mask parameter (IP filters)


Dst Network Adrs parameter


Dst Port # parameter (IP filter)


Dst Port Cmp parameter (IP filters)


Dst Socket Cmp parameter


DTE (Data Terminal Equipment)


dual-port calls


Dynamic Bandwidth Allocation, see DBA.


dynamic IP addressing

E


Edit All Calls parameter


Edit All Ports parameter


Edit Cur Call parameter


Edit Line parameter


Edit Own Call parameter


Edit Own Port parameter


Edit Security parameter


Edit System parameter


Encaps parameter

Combinet
PAP or CHAP
X.25

encapsulation

and ARA
and Combinet
dial-in terminal server calls
in authentication
incoming PAP, CHAP, and MS-CHAP outgoing calls
outgoing PAP, CHAP, and MS-CHAP calls
PPP
PPP and modem calls
PPP modem calls

encrypted password


encryption for ACE authentication


encryption, and CHAP


Enigma Logic


Enigma Logic SafeWord server


Established TCP connections filter


Ethernet filters


events

coldStart
linkDown
linkUp
warmStart

Exp Callback parameter


Expect Callback parameter

F


Fallback (CLID)


field service operations, restricting


Field Service parameter


field service, restricting


filter

generic
IP
IPX

filters

activating
and Ethernet traffic
and Web server
complex security example
conditions and rules
data filters for dropping packets
defining generic conditions
defining IP conditions
defining IPX conditions
Destination Address
Destination Mask
Destination Port
filter profiles
for inbound and outbound packets
generic data filters
how applied
how packets are compared
input and output
IP
IP parameters
linking
overview
parameters
preventing spoofing with
sample
samples
Source Port
specifying for local Ethernet
specifying for WAN interface
specifying in profiles
Valid parameter

filters, and security


filters, and TCP sessions


firewalls


first profile


Forward parameter

IP filters

Forward parameter (generic filters)


Framed Only parameter


Full Access profile


full access profile

activating
profile
activating full access
changing password

Full Access Security profile

G


generic data filters

defining conditions
parameters

generic filter


get command


Get command (SNMP)


Get Next command (SNMP)


get next command, set command

H


Host #n Addr parameter (terminal server)


Host #n Text parameter (terminal server)


host port diagnostics, restricting


hosts (Telnet)

I


ICMP redirects


ID Auth parameter


Id Auth parameter


Id Auth, and Called #


IETF RFC1356 specification


Imm. Modem Access parameter


Immed Host parameter

terminal server
X.25

Immed Port parameter (terminal server)


Immed Service parameter

terminal server
X.25

Immediate Modem

configuring
description
parameter
password

Immediate Modem feature


Immediate modem process


Immediate Service


incoming calls

and callback security
and CLID authentication
and IP address spoofing
and serial AIM ports
authenticating
configuring PAP
filtering
setting up security card authentication

Initial Scrn parameter


input filters

specifying and activating

inverse multiplexing authentication


IP

defining filter conditions
hosts
password profile
preventing spoofing
routing over X.25

IP address authentication


IP addresses

dynamic
preventing spoofing
requiring that a caller accept from the MAX
static

IP filter


IP filter tests

order, filter tests order, IP

IPX

defining filter conditions

IPX filter


ISDN modems

K


kill command

L


LAN Adrs parameter (IP)


LCP negotiation, and CBCP


Length of packet filter


Length parameter (generic filters)


linkDown alarm (SNMP)


linkUp alarm (SNMP)


List Attempt parameter (DNS)


List Size parameter (DNS)


local authentication


local Connection profile


Local Profile First parameter


Login Prompt parameter (terminal server)


Login Timeout parameter


Login-Service

M


Management Information Base, see MIB


Management Information Base, see MIB.


Mask filter


Mask parameter (generic filters)


Mask parameter (IP filters)


MAX

configuring with Defender server
configuring with TACACS server
configuring with TACACS+ server

Max Call Duration parameter


MAX operations, restricting


MD5 digest


MIB


MIB (Management Information Base)


MIB(Management Information Base)


Microsoft


Microsoft Challenge Handshake Authentication Protocol, see MS-CHAP.


Microsoft Website (for MS-CHAP)


modem calls

and PPP encapsulation
and terminal server security

Modem Dialout parameter


More parameter

generic filters
IP filters

MP


MP multichannel links


MP parameter (PAP or CHAP)


MP+


MP+ authentication

and DBA
explained

MPP

encapsulation
parameter (PAP or CHAP)

MS-CHAP


MS-CHAP (Microsoft Challenge Handshake Authentication Protocol)

configuring for PPP, MP, and MP
Microsoft Website
outgoing calls
parameters
PPP encapsulation
PPP, MP, or MP+
system parameters
system-wide parameters

MultiSync token card authentication

N


name and password authentication


Name parameter

Combinet
for SNMP manager
outgoing PAP, CHAP, or MS-CHAP calls
Password profile

Name/Password profile

PAP or CHAP
preventing dial-in ARA calls
preventing dial-in PPP, MP, and MP+ calls

Name/Passwords profile


NAS (Network Access Secret)


negotiation steps, CBCP


network address


NextCode mode


node address


Normal Call Clearing

O


ODI driver


Offset

data filter
parameter (generic filters)

Operations parameter


outgoing calls

and CACHE-TOKEN
and PAP-TOKEN
filtering
MS-CHAP
PAP-TOKEN-CHAP
parameters
setting up security card authentication
specifying a dial-out connection

Own Port Diag parameter

P


packet filters

described

packet filters, see filters


PAD (Packet Assembler/Disassembler)


PAP (Password Authentication Protocol) authentication

and PPP, MP, and MP+ calls
and TACACS
configuring for incoming calls
explained
MP encapsulation
MPP encapsulation
Name/Password profile
parameters
requesting for outgoing calls
system-wide parameters

PAP authentication


PAP-TOKEN

and TACACS
authentication
dial-out to secure site
parameters

PAP-TOKEN-CHAP

and ACE server
and ACE/Server
and TACACS
authentication with security cards
parameters
requesting

parameters

3rd Prompt (remote terminal server)
3rd prompt (terminal server)
Allow as Client DNS
AnsOrig (callback)
APP Host
APP Server
ARA authentication
Assigning Adrs (IP)
Assigning Adrs parameter
Auth
authentication server
Aux Send PW (PAP-TOKEN-CHAP)
Bridge (Combinet)
Bridging (Combinet)
CACHE-TOKEN
Call Password (serial port)
Callback
Client Pri DNS
Client Sec DNS
COMB (Combinet)
Combinet authentication
Comm (SNMP)
community name (Comm)
Compare (generic filters)
Compare (IP filters)
Dest (SNMP)
Dial # (callback security)
Dialout OK (Combinet)
Dialout OK (Immediate Modem)
Dialout OK (PPP, MP, and MP+)
DNS
Dst Adrs (IP filters
Dst Adrs (IP filters)
Dst Mask (IP filters)
Dst Port # (IP filters)
Dst Port Cmp (IP filters)
Encaps (PAP or CHAP)
Encaps (X.25)
Encaps parameter
Combinet
Exp Callback
Expect Callback
for called-number authentication
for CLID authentication
for incoming connections using PAP or CHAP
for outgoing calls using PAP or CHAP
Forward (generic filters)
Forward (IP filters)
Host #n Addr (terminal server)
Host #n Text (terminal server)
Imm. Modem Access
Immed Host (terminal server)
Immed Host (X.25)
Immed Port (terminal server)
Immed Service (terminal server)
Immed Service (X.25)
Immediate Modem
IP address
LAN Adrs (IP)
Length (generic filters)
Length (IP filters)
List Attempt parameter (DNS)
List Size (DNS)
Login Prompt
Login Prompt (terminal server)
Mask (generic filters)
Mask (IP filters)
Max Call Duration (Combinet)
More (generic filters)
More (IP filters)
MP (PAP or CHAP)
MPP (PAP or CHAP)
Name (Combinet)
Name (for PAP, CHAP, or MS-CHAP calls)
Name (Password profile)
Offset (generic filters)
Offset (IP filters)
Passwd (terminal server)
Password Host (authentication server)
Password Host (DNS)
Password Port (authentication server)
Password profile address restriction
Password Prompt
Password Prompt (terminal server)
Password Reqd (Combinet)
Password Server
Password Server (authentication server)
Pool #n Count (IP)
Pool #n Start (IP)
Pool Only (IP spoofing)
Pool Only (IP)
Pool Only (PAP or CHAP)
Pool#1 Count (IP spoofing)
Pool#1 Count (PAP or CHAP)
Pool#1 Start (PAP, CHAP, or MS-CHAP)
Pri DNS parameter
Profile Reqd (Combinet)
Profile Reqd (PAP, CHAP, or MS-CHAP)
Profile Reqd (X.25)
Protocol (IP filters)
Recv Auth (PAP or CHAP)
Recv Auth (X.25)
Recv PW (address restriction)
Recv PW (Combinet)
Recv PW (PAP or CHAP)
Recv PW (X.25)
Remote Conf (remote terminal server)
Route IP
Sec DNS parameter
Security (SNMP)
Security (terminal server)
Send Auth (CACHE-TOKEN)
Send Auth (outgoing MP, MP+ or MS-CHAP calls)
Send Auth (PAP-TOKEN)
Send Auth (PAP-TOKEN-CHAP)
Send PW (CACHE-TOKEN)
Send PW (Combinet)
Send PW (outgoing MP, MP+ or MS-CHAP calls)
Send PW (PAP-TOKEN-CHAP)
SNMP security
Src Adrs (IP filters)
Src Mask (IP filters)
Src Port # (IP filters)
Src Port (IP filters)
Src Port Cmp (IP filters)
Src Port Comp (IP filters)
Station (Combinet)
Station (PAP or CHAP)
Station (X.25)
TCP Estab (IP filters)
terminal server security
TS Enabled (terminal server)
Type (IP filters)
Valid (data filters)
Value (generic filter)
Value(IP filters)
X.25 authentication
X25/IP
X25/PAD

Passwd parameter


Passwd parameter (terminal server)


password

*SECURE*
changing full access
default full access
default security profile
encrypted
Telnet

Password Authentication Protocol, see PAP.


Password Host parameter (DNS)


Password Port parameter (authentication server)


Password profile

address restriction
address restriction parameters
and Connection profiles
and RADIUS user profiles
configuring

Password Prompt parameter (terminal server)


Password Reqd parameter


Password Server parameter


password,default


passwords

and DBA
and RADIUS
banner text for
cached (in DBA)
CHAP-encrypted in DBA
dynamic
dynamic (in DBA)
dynamically generating in DBA
Immediate Modem
NextCode mode
serial port
SNMP
specifying
Telnet

PIN (ACE server)

New PIN mode
requiring new
server-chosen
user-chosen

PIN, and passcode


PIN, changing


Pool #n Count parameter (IP)


Pool #n Start parameter (IP)


Pool Only parameter

(PAP or CHAP)
IP

Pool#1 Count parameter

IP spoofing
PAP or CHAP

Pool#1 Start parameter

PAP, CHAP or MS-CHAP
preventing IP spoofing

port 5000, and Immediate Modem


Port Diag menu, menu, Port Diag


port diagnostics, restricting


ports

serial inverse multiplexing (AIM)
source port for remote authentication
TACACS/TACACS+ Auth port

portUseExceeded trap


PPP

asynchronous
authentication
encapsulation
encapsulation (modem calls)
parameter (PAP, CHAP, or MS-CHAP)
restricting access

PPP parameter


Pri DNS


priviledges, read-only


profile

Answer
configuring Security
default
default security
Security
see also specific authentication types

Profile Reqd parameter

PAP, CHAP, or MS-CHAP

Profile Reqd parameter (Combinet)


Profile Reqd parameter (X.25)


profiles

and filters
Answer used in authentication
Call
full access
how used in authentication
incoming sessions
Local and Remote authentication
Name/Password used in authentication
Security

profiles, Call


Prompt Format parameter


prompts

3rd Prompt parameter (terminal server)
examples
Login Prompt parameter (terminal server)
Password Prompt parameter
terminal server

Protocol

filter (IP)
parameter (IP filters)

Protocol parameter (IP filters)


PSPDN (private packet-switched network)

R


RADIUS

and Host #n Addr parameter
and PAP, CHAP, or MS-CHAP in DBA
and PAP-TOKEN authentication in DBA
and passwords
Auth parameter
authentication server
retrieving updates
terminal server connections
user profile
user profile description
user profile passwords in DBA
user profiles (PAP, CHAP, and MS-CHAP)

RADIUS daemon


RADIUS user profile


RADIUS user profile, and filters


raw TCP (TCP-clear)


Read Comm


read community string (Read COMM)


read-only priviledges


read-write


read-write community string (R/W Comm)

default
setting

Recv Auth parameter

PAP or CHAP
X.25

Recv PW parameter

Combinet
IP address restriction
PAP or CHAP
X.25

remote authentication types supported


Remote Conf parameter (Telnet, raw TCP, or RLogin)


remote management, disabling access


remote management, restricting


remote profile


Remove service icon


Restore Cfg command


restricting access

Rlogin
TCP
Telnet

retries

call

RFC 1570 (CBCP)


Rlogin

restricting access

Rlogin access


Rlogin access restriction


Rlogin parameter


Rlogin session


Route IP parameter


R/W Comm

S


SafeWord MultiSync (token card)


SafeWord server


SafeWord SofToken (token card)


Save Cfg command


Sec DNS


SecureNet Key (token card)


SecurID ACE authentication without RADIUS


security

ACE/Server authentication
and filters
and PAP-TOKEN-CHAP
and spoofing
callback
configuring basic
qualifying hosts by IP address
restricting access
Rlogin
SNMP
TCP
Telnet
terminal server
terminal server parameters
token card

security card authentication

ActivCard
and RADIUS
and SecurID ACE
CACHE-TOKEN
configuring
CryptoCard
DES Gold
DES Silver
DigiPass
explained
for outgoing calls
methods
PAP-TOKEN
PAP-TOKEN-CHAP
parameters
SafeWord MultiSync
SafeWord SofToken
SecureNet Key
security cards
types
WatchWord

Security Dynamics


Security Dynamics ACE Server


Security Dynamics ACE server


Security menu


Security parameter

SNMP
terminal server

Security profile


Security profile password


Security profile, activating


Security profiles


Send Auth parameter

CACHE-TOKEN
outgoing MP, MP+ or MS-CHAP calls
PAP-TOKEN
PAP-TOKEN-CHAP

Send PW parameter

CACHE-TOKEN
outgoing MP, MP+ or MS-CHAP calls
PAP-TOKEN
PAP-TOKEN-CHAP

Sercurity profile


Serial Line IP, see SLIP.


serial port

authentication
password

serial port passwords


set command


set password command


shell settings

ACE authentication

shell string, limits


SLIP


SLIP (Serial Line IP) session


SLIP parameter


SNMP

alarm
alarms
community name
destination manager
disabling traps
MIB
Options menu
qualifying IP source
Read Comm parameter
read-write community
restricting the hosts that can issue SNMP commands
security parameters
set command
setting up password protection
setting up SNMP traps
traps
Traps menu

SNMP security setup


SNMP SET REQUEST packets


socket number


SofToken authentication


Source Address filter (IP)


Source Mask filter


Source Port Comparison filter (IP)


Source Port filter


Source Port to compare filter (IP)


spoofing

preventing with filters
preventing with Password profiles
preventing with Pool Only on PPP, MP, and MP+

Src Adrs parameter (IP filters)


Src Mask parameter (IP filters)


Src Network Adrs parameter


Src Node Adrs parameter


Src Port # parameter (IP filters)


Src Port Cmp parameter (IP filters)


Src Port parameter (IP filters)


Src Socket # parameter


Src Socket Cmp parameter


static passwords in DBA


Station parameter

Combinet
PAP or CHAP
X.25

status polling


string errors


super-user


super-user profile


support for V.34, V.42, V.120, and V.110


symbolic name


Sys Diag parameter


sysConfigRadiusCmd


sysConfigRadiusStatus


Syslog


system diagnostics, restricting


systemUseExceeded trap

T


TACACS


TACACS server

and CACHE-TOKEN
and CHAP
and PAP
and PAP-TOKEN
and PAP-TOKEN-CHAP
configuring with MAX

TACACS+


TACACS+ server

configuring with MAX

TCP

restricting access

TCP Estab filter


TCP Estab parameter (IP filters)


TCP sessions, and filters


TCP-clear


TCP-clear (raw TCP)


Telnet

and callback security
disconnecting a user session
host access
restricting access

Telnet access password protection


Telnet parameter


Telnet password

assigning

Telnet PW


Telnet session


template built from Answer or Connection profiles


terminal adapters (ISDN modems)


terminal server

3rd Prompt parameter
authentication
connecting to remote network
connection
disconnecting a user session
Host #n Addr parameter
hosts
kill command
Login Prompt parameter
modem call security
parameters
Host #n Addr
kill (user session)
Password Prompt parameter
per-user authentication
prompts
RADIUS connections
restricting Telnet, raw TCP, and Rlogin access
restricting use of command and protocols
security parameters
setting up authentication
setting up security
specifying passwords
TServ Options
turning operation on or off

terminal server authentication


terminal server session, disconnecting user


token passwords


traps

SNMP
SNMP Traps parameters

traps-PDU


TS Enabled parameter

(terminal server)

TS Enabled parameter (terminal server)


Type parameter (IP filters)

U


UDP protocol


Uninstall service icon


UNIX APP server installation


Upd Rem Cfg


Upload parameter


User Busy response from MAX


user shell settings (ACE)


users

authenticating
RADIUS user profile

V


V.110


V.120


V.34


V.42


Valid parameter (filters)


Value filter (IP)


Value parameter

generic filters
IP filters

W


WAN

data filters
filters

warm start alarm (SNMP)


WatchWord (token card)


Windows NT MS-CHAP support


Windows NT, APP server utility


WWW filters

X


X.25

and IP routing
authentication parameters
DTE (Data Terminal Equipment)
PAD (Packet Assembler/Disassembler)
setting up authentication

X25

IP parameter
PAD parameter

xas-nt.exe (APP Server for Windows NT)


xas-w95.exe (APP Server for Windows 95)



[Top][Contents][Prev][Search]

techpubs@eng.ascend.com

Copyright © 1998, Ascend Communications, Inc. All rights reserved.