User Manual

MDS 05-4055A01, Rev. A MDS entraNET 900 System Guide (Preliminary) 11
1.4.1 Intrusion Detection via SNMP Traps
In addition to the operative tools and techniques, the MDS entraNET
900 can provide SNMP-based network management systems with traps
(alarms) that represent potentially suspicious activities or events. These
include:
Unauthorized AP MAC address detected at Remote
Unauthorized Remote MAC address detected at AP
Login attempt limit exceeded
(Accessed via: Telnet, HTTP, or local)
Successful login/logout
(Accessed via: Telnet, HTTP, or local)
1.5 ACCESSORIES
The transceiver can be used with one or more of the accessories listed in
Table 1-3. Contact the factory for ordering details.
Denial of service, where Remote radios
could be reconfigured with bad
parameters bringing the network down.
Remote login
Local console login
Disabled HTTP & Telnet to allow
only local management services
Airsnort and other war-driving hackers in
parking lots, etc.
900 MHz FHSS does not talk over
the air with standard 802.11b cards
The transceiver cannot be put in a
promiscuous mode
Proprietary data framing
Eavesdropping, intercepting messages
128-bit encryption
Key cracking
Automatic Rotating Key algorithm
Replaying messages
128-bit encryption with rotating
keys
Unprotected access to configuration via
SNMPv1
Enable/disable SNMPv1 operation
Potential, ongoing attacks
Provides early warning via SNMP
through critical event reports
(unauthorized, logging attempts,
etc.)
Table 1-2. Security Risk Management
Security Risk The MDS entraNET 900 Solution