Datatek UMI User Manual
Page 30

U N I V E R S A L M E D I A T I O N I N T E R F A C E ( U M I ) U S E R M A N U A L
04/30/09
30
FLOW CONTROL OF DEVICE BY SAM [xon/xoff, eia, none: +(none)]:
↵
NODE ECHOES USER INPUT [yes, no: +(yes)]:
↵
CALL HOLD [on, off: +(off)]:
on
↵
AT&T VDM ON THIS PORT [yes, no: +(no)]:
↵
PERMANENTLY ACTIVATED PORT [yes, no: +(no)]:
↵
DCD/DTR LEADS ALWAYS HIGH [yes, no: +(no)]:
↵
CONNECT-TIME BILLING [on, off: +(off)]:
↵
ATTENTION CHARACTER [none, 1brk, 2brk, del, a character: +(2brk)]:
↵
ATTENTION ACTION [command_mode, disconnect: +(command_mode)]:
↵
BITS PER CHARACTER [5, 6, 7, 8: +(8)]:
↵
NUMBER OF STOP BITS [1, 2: +(1)]:
↵
INITIAL SERVICE STATE [in, out: +(out)]:
in
↵
After restoring the SAM at module address 2, we observe that the new virtual ports are in service:
<UMI>
vfy vport all
↵
(virtual ports 1 – 32 and 65 – 504 omitted)
Virtual Ports 33 - 64 :
Type ==> TCP Port 26 w/Call Listen.
Service State ==> In Service.
Protocol ==> Asynchronous.
NULL after CR Operation ==> Transparent.
When a TCP/IP connection is made to the UMI’s IP address and TCP port 26, the next available
virtual port is selected by round robin. If the SAM port corresponding to the chosen virtual port
had been configured with PDD information, the call would automatically progress to the specified
endpoint within the BNS network. In this case, the calling user will receive a BNS
Destination>
prompt, and would then enter a valid destination address within the BNS network. See Appendix
E for a typical user scenario.
4.4 CLOSED
USER
GROUPS
CUGs can be established within the BNS network via node administration to control access to
BNS endpoints from UMI virtual ports (represented by their corresponding SAM504 ports), and
vice versa (see Data Networking Products Commands Reference).
The UMI also has its own implementation of closed user groups to control access between its
virtual ports and endpoints on the IP network. The module administration command
cug
is used
to create a closed user group as a single IP address or range of addresses in a sub net. The
vport
command allows up to 128 CUGs to be associated with a group of virtual ports. The
console
command allows up to 128 CUGs to be associated with the telnet administrative console
of the UMI. The
snmp
command allows up to 128 CUGs to be associated with the SNMP
interface to the UMI as a security feature. Calls in either the IP->BNS direction are restricted as
follows:
4.4.1 IP-to-BNS
Calling
A call to the TCP port number corresponding to a hunt group of rcv-type virtual ports will be
blocked unless the calling IP address belongs to at least one of the CUGs associated with the
selected virtual port. End-to-end security could be accomplished with node administration, by