LAN security

Last Updated : Jul 20, 2023 |

Customers do not want users to access the switch by using the INADS line. When users use the INADS line, users continue to PROCR and then gain access to a customer LAN. However, the Avaya architecture prevents users from accessing the customer LAN.Figure : 1 shows a high-level switch schematic with a TN799 (PROCR).

Figure : 1. Security-related system architecture




Logging in through the INADS line, customers can access software. Software communicates with firmware over an internal bus through a limited message set. The two main reasons why a user cannot go to the customer LAN through the INADS line are:

  • A user logging into software cannot get direct access to the PROCR firmware.

    The user can only enter SAT commands that request PROCR information or configure PROCR connections.

  • Communication Manager disables the PROCR application TFTP and cannot enable the application.

    TELNET only interconnects PROCR Ethernet clients to the system management application on the switch. FTP exists only as a server and is used only for firmware downloads. FTP cannot connect to the client network.