User Guide

Table Of Contents
Bridge GUI Guide: Security Configuration
117
Chapter 4
Security, Access, and
Auditing Configuration
4.1 Fortress Security
NOTE: Fortress
MSP is not sup-
ported on an ES210
Bridge in
Station Mode
(refer to Section 3.3.5).
The Security Settings frame provides controls for various
aspects of the Bridge’s overall network security provisions:
Fortress MSP (Mobile Security Protocol) functions including
key establishment, data encryption and network Access ID;
FIPS operation; global session timeouts; and several additional
management and network access settings.
A number of Fortress
Security Settings are available only in
ADVANCED VIEW. Table 4.1 shows which settings are available
in each view.
Figure 4.1. Simple View, Fortress
Security Settings
frame, all platforms
In addition, administrative password requirements and the
retry, timeout and lockout parameters for administrative
accounts are set on the
Security screen, in the Logon Settings
frame (as described in Section 2.2.1).
4.1.1 Operating Mode
The Fortress Bridge can be operated in either of two modes:
Normal or FIPS (the default).
The rigidly enforced administrative requirements of
FIPS
operating mode are required by deployments and applications
that must comply with the Federal Information Processing
Standards (FIPS) for cryptographic modules. However, the
high levels of security that can be implemented in
Normal
operating mode generally meet or exceed the needs of virtually