Find answers to your technical questions and learn how to use our products
Search suggestions:
Find answers to your technical questions and learn how to use our products
Search suggestions:
Security > Security Settings > General
Security Administrator
The security administrator is a special account that cannot be deleted or disabled. It can be used to access the system's security settings but cannot access the system's configuration settings.
Field |
Description |
|---|---|
Unique Security Administrator |
Default = Off This setting is no longer used. It is greyed out and set to off, meaning that permission to access ad change security settings can also be assigned to other service user accounts through their rights groups memberships. |
Name |
Default = 'security'. Range = 6 to 31 characters. The name for the security administrator. |
Change Password |
Range = 9 to 31 characters. The password for the security administrator. In order to change the security administrator password, the current password must be known. The user's original password is set during the initial configuration of the system. |
Minimum Password Complexity |
Default = Medium. The password complexity requirements. The options are:
|
Previous Password Limit (Entries) |
Default = 24. Range = 0 (Off) to 24 records. The number of previous password to check for duplicates against when changing the password. When set to 0, no checking of previous passwords takes place. This setting is active for attempted password changes on both Security Manager and the system. |
Phone Registration
Field |
Description |
|---|---|
Block Default IP Phone Passcodes |
Default = On If selected, existing IP phone registrations with default passcodes are not allowed in the system. Administrators must type in passwords for registering the existing phones. If not checked, existing IP phone registrations with default passcodes are allowed for registration with the system. Allowing existing phones to register with default passcodes pose a security risk as outsiders can access the system using those passcodes. |
Service User Details
These settings control service user names and password/account policies. This setting is active for attempted password changes on all administration interfaces.
Field |
Description |
|---|---|
Minimum Name Length |
Default = 6, Range 1 to 31 characters. This field sets the minimum name length for service user names. |
Minimum Password Length |
Default = 9, Range 1 to 31 characters. This field sets the minimum password length for service user passwords. |
Password Reject Limits (Attempts) |
Default = 3, Range 0 (Off) to 255. Sets how many times an invalid name or password is allowed within a 10 minute period before the Password Reject Action is performed. |
Password Reject Action |
Default = Log and Temporary Disable. The action performed when a user reaches the Password Reject Limit. The options are:
|
Minimum Password Complexity |
Default = Medium. The password complexity requirements. The options are:
|
Previous Password Limit (Entries) |
Default = 24. Range = 0 (Off) to 24 records. The number of previous password to check for duplicates against when changing the password. |
Account Password Change Period (days) |
Default = 0 (Off). Range 0 to 999 days. Sets how many days a password is valid following a password change. Note that the user must be a member of a rights group that has the option Write own service user password enabled.
|
Account Idle Time (days) |
Default = 0 (Off). Range 0 to 999 days. Sets how many days a service user account can be inactive before it becomes disabled. The idle timer is reset whenever a service user successfully logs in.
|
Expiry Reminder Time (days) |
Default = 10. Range 0 (Off) to 999 days. Sets the period before password or account expiry during which a reminder indication is shown when the service user logs in. Reminders are sent, for password expiry due to the Account Password Change Period (days) (above) or due to the individual service user's Account Expiry date – whichever is the sooner. Currently Manager displays reminders but System Status does not. |
IP Office User Details
These settings control IP Office user password/account policies.
Field |
Description |
|---|---|
Password Enforcement |
Default = On. When enabled, password settings are enforced. When disabled, password requirements are not enforced and the remaining settings are not editable |
Minimum Password Length |
Default = 9, Range 1 to 31 characters. This field sets the minimum password length for user passwords |
Minimum Password Complexity |
Default = Medium. The password complexity requirements. The options are:
|
Password Reject Limits (Attempts) |
Default = 5, Range 0 (Off) to 255 failures. Sets how many times an invalid name or password is allowed within a 10 minute period before the Password Reject Action is performed. |
Password Reject Action |
Default = Log and Temporary Disable. The action performed when a user reaches the Password Reject Limits (Attempts). The options are:
|