Security: Secure Sensitive Data Management
Configuring SSD
Configuring SSD
STEP 1
STEP 2
STEP 3
STEP 1
Cisco Small Business 200, 300 and 500 Series Managed Switch Administration Guide (Internal Version)
Password recovery is currently activated from the boot menu and allows the user
to log on to the terminal without authentication. If SSD is supported, this option is
only permitted if the local passphrase is identical to the default passphrase. If a
device is configured with a user-defined passphrase, the user is unable to activate
password recovery.
The SSD feature is configured in the following pages:
•
SSD properties are set in the Properties page.
•
SSD rules are defined in the SSD Rules page.
SSD Properties
Only users with SSD read permission of Plaintext-only or Both are allowed to set
SSD properties.
To configure global SSD properties:
Click Security > Secure Sensitive Data Management > Properties. The
following field appears:
•
Current Local Passphrase Type—Displays whether the default
passphrase or a user-defined passphrase is currently being used.
Enter the following Persistent Settings fields:
•
Configuration File Passphrase Control—Select an option as described in
Configuration File Passphrase
•
Configuration File Integrity Control—Select to enable this feature. See
Configuration File Integrity
Select a Read mode for the current session (see
To change the local passphrase:
Click Change Local Passphrase, and enter a new Local Passphrase:
•
Default—Use the devices default passphrase.
Control.
Control.
Elements of an SSD
21
Rule).
453