
Securing the Router
308654-14.00 Rev 00
7-7
Configuring Data Encryption Services
Nortel Networks data encryption services enable you to protect sensitive traffic on
your network. Encryption prevents unauthorized persons from reading, changing,
or replaying data that travels between Nortel Networks routers.
Data encryption services include:
• Software-based encryption for PPP dedicated links for the BN, AN, ARN, and
ASN routers; System 5000 router modules; and all serial interfaces. This
includes encryption on multiline and multilink.
• Software-based encryption for frame relay circuits that have one permanent
virtual circuit (PVC) per service record. This includes encryption on
multiline.
• Software-based encryption for dial-on-demand, dial backup, and
bandwidth-on-demand services, allowing you to protect sensitive data across
switched circuits. If you configure encryption to work with dial backup
service, encrypted data travels over the backup circuit if the primary line fails.
• Encryption configurable on a line or circuit basis.
• Encryption with or without data compression.
See Configuring Data Encryption Services for more information.
Configuring RADIUS
Remote Authentication Dial-In User Service (RADIUS) defines a method of
centralizing authentication and accounting information for networks with many
remote dial-in users. By placing authentication and accounting functions in one
central location, you can improve security and better manage large networks.
In a network using RADIUS, the router is the RADIUS client. The client is the
connection point between remote users and a RADIUS server. The server has the
information that it needs to identify remote users and to keep accounting
information for each call.
For more information, see Configuring RADIUS.
Kommentare zu diesen Handbüchern