EASG-based authentication of Web Administrative Interfaces for Avaya Oceana

Last Updated : Apr 25, 2025 |

EASG overview

Enhanced Access Security Gateway (EASG) is a challenge-response authentication and authorization solution that service engineers can use to access Web-based applications of Avaya Oceana®. Avaya service engineers can access these applications without redirection to Avaya Breeze® Authorization Service or System Manager (SMGR).

EASG configuration

EASG is already configured with SMGR and SSH-Login. You need to install Avaya Breeze platform with EASG enabled option.

EASG supports the following login IDs: craft, init, inads, and sroot.

Prerequisites for EASG authentication

  • You should be able to log in to Avaya Oceana® Oceana Manager and DataViewer.

  • Authentication implementation must be compatible with Avaya SAL Policy Manager, which is based on point-to-point access to the end systems.

Using EASG to access applications

Application

Access Procedure

SMGR

You can enable or disable EASG authorization in SMGR. In the EASG authentication config section, you can select true or false in the Effective Value column to enable or disable EASG Authentication. You can disable EASG authorization only for Oceana Manager and Oceana DataViewer.

  1. Use the appropriate URL to open the SMGR login page. For example:

    https://{SMGR_FQDN}/services
  2. In the Username field, type init or craft and then click Next.

  3. Copy the Product ID, Login Name, and Challenge one by one to the corresponding fields on the EASG Web Mobile Response page.

  4. Click Query to generate the Response token.

  5. Click Copy Response to Clipboard to copy the Response token.

  6. Go back to the SMGR login page to enter the token in the Response field.

  7. Click Login to successfully log in to SMGR.

OceanaMonitor

  1. Use the appropriate URL to open the OceanaMonitor login page. For example:

    https://{cluster_fqdn}/services/ 
    OceanaMonitorService/services-login.html
  2. In the Username field, type one of the following login names: init, inads, sroot, or craft. Then click Next.

  3. Copy the Product ID, Login Name, and Challenge one by one to the corresponding fields on the EASG Web Mobile Response page.

  4. Click Query to generate the Response token.

  5. Click Copy Response to Clipboard to copy the Response token.

  6. Go back to the OceanaMonitor login page to enter the token in the Response field.

  7. Click Login to successfully log in to OceanaMonitor.

Oceana DataViewer

  1. Use the appropriate URL to open the DataViewer login page. For example:

    https://{Cluster_OCP_FQDN}/services/ 
    OceanaDataViewer/easgLogin.jsp
  2. In the Username field, type one of the following login names: init, inads, sroot, or craft. Then click Next.

  3. Copy the Product ID, Login Name, and Challenge one by one to the corresponding fields on the EASG Web Mobile Response page.

  4. Click Query to generate the Response token.

  5. Click Copy Response to Clipboard to copy the Response token.

  6. Go back to the DataViewer login page to enter the token in the Response field.

  7. Click Login to successfully log in to DataViewer.

Limitations

  • You should have access to EASG Web Mobile.

  • You must know the full URL path of the EASG login page.