User guide
•
Secondary DNS server address (optional)
•
Default DNS domain name (for example, acmegizmo.com)
•
WINS server name or address (optional)
•
Administrator username
•
Administrator password
•
Common machine name (for example, connect.acmegizmo.com)
•
Organization name (for example, Acme Gizmo, Inc .)
NOTE: Secure Access uses the common machine and organization names
to create a self-signed digital certificate for use during product evaluation
and initial setup. We strongly recommend that you import a signed digital
certificate from a trusted certificate authority (CA) before deploying Secure
Access for production use. For more information, see Certificates.
5. (FIPS only) The Secure Access FIPS appliances utilize FIPS 140-2 certified Hardware
Security Modules (HSM) and require the following pieces of information to initialize
the HSM and manage the HSM protected storage:
•
When prompted by the serial console, enter the security officer name and password.
Save these credentials as they are required for creating new restore passwords and
for changing the security officer password.
•
Enter the key store restore or HSM master key backup password.
•
Enter the username and password for the HSM private key storage.
Security officer names, usernames and key store names must adhere to the following
requirements in Table 4 on page 38:
Table 4: Security Requirements
DescriptionRequirement
At least one character.Minimum length
63 characters for security officer names and user names. 32 characters for
keystore names.
Maximum length
Alphanumeric, underscore (_), dash (-) and period (.)Valid characters
Must be alphabetic.First character
Passwords must be at least six characters. Three characters must be alphabetic and
one character must be non-alphabetic.
Copyright © 2012, Juniper Networks, Inc.38
SA Series 4500, 6500, and FIPS Appliances










