Thinklogical VX Routers Manual User Manual

Page 61

Advertising
background image

®

VX Router Manual Rev. O September, 2014

Page 60

The user must provide a table defining the partitions. This table is in the form of a comma separated value
(CSV) file located in /var/local/router/partition on the VX Router. This file contains the port number and the
partitions to which it belongs. The configuration file for the above scenario looks like this:

1,

2

2,

2

3,

2

4,

2

5,

2,3

6,

2,3

7,

2,3

8,

2,3

9,

2,2

10,

2,3

11,

3

12,

3

13,

3

14,

3

15,

4

16,

4

17,

4

18,

4

19,

4

20,

4

21,

4

22,

4

23,

4

24,

4

“Port,” “Partition”

“Port,” “Partition”

All ports not listed will default to partition 1. Ports can be manually added to partition 1.

Note: When using a Back-up Controller Card configuration, both controllers must have the same

Partition table.

Administration Access

There are only two methods by which the administrator can access the VX Router Controller Configurations:

1. Using the serial console directly connected to the VX Router: It should be noted that, while no

administrator password is required to use the serial console (by default), physical access to the router
is required. Therefore, the router should be stored in a physically secure location to avoid unauthorized
access. The serial console can be configured to require an administrator password that will assume
the same security that is listed below, under “Password Security.”

2. Using SSH access: The router allows SSH connections to the router for management purposes. SSH

sessions are authenticated using an encrypted password file.

3. Password Security: For security purposes, the router defaults to using the Message-Digest Algorithm

(MD5) and shadow passwords. It is highly recommended that you do not alter these settings. If
you select the older Data Encryption Standard (DES) format, passwords will be limited to eight
alphanumeric characters (disallowing punctuation and other special characters) with a modest 56-bit
level of encryption. The single most important thing you can do to protect the router is create a
strong password.

4. Creating Strong Passwords: The password can contain up to 127 characters and cannot contain a

space.

MAKE THE PASSWORD AT LEAST EIGHT CHARACTERS LONG. The longer the password, the
more effective it will be. If you are using an MD5 password, it should be approximately 15 characters
long. With DES passwords, use the maximum eight character length.

MIX UPPER AND LOWER CASE LETTERS. Passwords are case sensitive, so mixing will multiply the
number of possible combinations.

MIX LETTERS AND NUMBERS. Intersperse numbers within the password to enhance its strength.

Advertising