Encrypting with 3des password, 1 select servers > ldap, Encrypting with – Panasonic NN46110-600 User Manual

Page 37

Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".

Advertising
background image

Chapter 2 Configuring servers

27

3DES external LDAP proxy information

If an external LDAP proxy is used, the VPN Router (which has its own internal

LDAP file) does not touch or modify the external LDAP database. However, the

VPN Router modifies the Bind Password that is attached to the Bind Name (under

LDAP Proxy Servers).

Encrypting with 3DES password

The Nortel VPN Router administrator can secure user and application passwords

with Triple Data Encryption Standard (3DES) encryption, which is a more secure

algorithm than the current DES.

If you use an external LDAP, you must upgrade all VPN Routers in the network to

utilize this capability. The first VPN Router to enable 3DES encryption of user
passwords first runs a script against the external LDAP to convert all user
passwords from DES to 3DES.

When you enable 3DES, the LDAP is automatically updated. Each VPN Router
that enables the feature checks the LDAP to ensure that all passwords are in 3DES

(external LDAP only).

Warning: Nortel recommends that you back up your LDAP and Config
before you enable 3DES.

A

You can use the GUI or the CLI to enable 3DES.

To enable 3DES:

1

Select

Servers > LDAP.

The Servers > LDAP window appears. (Figure 4)

Nortel VPN Router Security — Servers, Authentication, and Certificates

Advertising