Home
>
Lucent Technologies
>
Communications System
>
Lucent Technologies DEFINITY Enterprise Communication Server Release 8.2 Administrators Guide
Lucent Technologies DEFINITY Enterprise Communication Server Release 8.2 Administrators Guide
Have a look at the manual Lucent Technologies DEFINITY Enterprise Communication Server Release 8.2 Administrators Guide online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 413 Lucent Technologies manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 327 Using busy verify 11 Using busy verify This section shows you how to use Busy Verify (also known as Busy Verification) to help find fraud problems. When you suspect toll fraud, you can interrupt the call on a specified trunk group or extension number and monitor the call in progress. Callers will hear a long tone to indicate the call is being monitored. !SECURITY ALERT: Listening to someone else’s calls may be subject to federal, state, or local laws, rules, or regulations. It may require the consent of one or both of the parties on the call. Familiarize yourself with all applicable laws, rules, and regulations and comply with them when you use this feature. Before you start On the Trunk Group screen, verify the Dial Access field is y. If not, contact your Lucent representative. Instructions To use busy verify: 1. Type change station xxxx and press RETURN, where xxxx is the station to be assigned the busy verify button. For our example, we’ll enter extension 1014. The Station screen appears. Page 3 of X STATION SITE DATA Room: _______ Headset? n Jack: ___ Speaker? n Cable: ___ Mounting: d Floor: _______ Cord Length: 0_ Building: _______ Set Color: _____ ABBREVIATED DIALING List1: ________ List2: _________ List3: _________ BUTTON ASSIGNMENTS 1: call-appr 4: verify__ 2: call-appr 5: ________ 3: call-appr
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 328 Setting up security violations notification 11 2. In the Feature Button Assignments area, type verify. 3. Press ENTER to save your changes. 4. To activate the feature, press the VERIFY button on the phone and then enter the Trunk Access Code and member number to be monitored. Setting up security violations notification This section shows you how to use Security Violations Notification (SVN) to set security-related parameters and to receive notification when established limits are exceeded. You can run reports related to invalid access attempts. You also can disable a login ID or remote access authorization that is associated with a security violation. When a security violation has occurred, there are steps that you can take to be sure that this same attempt is not successful in the future. Refer to the BCS Products Security Handbook for more information. Before you start If you are using ASG, on the System Parameters Customer-Options screen, verify the Access Security Gateway (ASG) field is y. If not, contact your Lucent representative. Instructions To set up security violations notification: 1. Type change system-parameters security and press RETURN. The Security-Related System Parameters screen appears.
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 329 Setting up security violations notification 11 2. In the SVN Login Violation Notification Enabled field, type y. This sets Security Violations Notification login violation notification. 3. In the Originating Extension field, type 3040. This becomes the phone extension for the purpose of originating and identifying SVN referral calls for login security violations. 4. In the Referral Destination field, type attd to send all calls to the attendant. This is the phone extension that receives the referral call when a security violation occurs. 5. In the Login Threshold field, type 3. This is the minimum number of login attempts that are permitted before a referral call is made. More than 3 attempts causes a security violation notification. 6. In the Time Interval field, type 0:03. This the time interval in which the threshold, or number of violations, must occur. 7. Press ENTER to save your changes. NOTE: The following 3 steps are optional. If you are not using Remote Access, go to step 11 . 8. Type change remote-access and press RETURN. The Remote Access screen appears. SECURITY-RELATED SYSTEM PARAMETERS SECURITY VIOLATION NOTIFICATION PARAMETERS SVN Login Violation Notification Enabled? y Originating Extension: 3040_ Referral Destination: attd_ Login Threshold: 3_ Time Interval: 0:03 Announcement Extension: _____ SVN Remote Access Violation Notification Enabled? y Originating Extension: 2719_ Referral Destination: 2720_ Barrier Code Threshold: 3 Time Interval: 0:03 Announcement Extension: _____ SVN Authorization Code Violation Notification Enabled? y Originating Extension: 3030_ Referral Destination: 3031_ Authorization Code Threshold: 3 Time Interval: 0:03 Announcement Extension: _____
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 330 Setting up security violations notification 11 9. In the Disable Following A Security Violation field, type y. This disables Remote Access following detection of a remote access security violation. 10. Press ENTER to save your changes. 11. Type change station xxxx and press RETURN, where xxxx is the station to be assigned the notification halt button. The Station screen appears. REMOTE ACCESS Remote Access Extension________ Barrier Code Length____ Authorization Code Required? y Remote Access Dial Tone: n Barrier Code COR TN COS Expiration Date No. of Calls Calls Used 1:________ 1__ 1_ 1__ __/__/__ ______ ______ 2:________ 1__ 1_ 1__ __/__/__ ______ ______ 3:________ 1__ 1_ 1__ __/__/__ ______ ______ 4:________ 1__ 1_ 1__ __/__/__ ______ ______ 5:________ 1__ 1_ 1__ __/__/__ ______ ______ 6:________ 1__ 1_ 1__ __/__/__ ______ ______ 7:________ 1__ 1_ 1__ __/__/__ ______ ______ 8:________ 1__ 1_ 1__ __/__/__ ______ ______ 9:________ 1__ 1_ 1__ __/__/__ ______ ______ 10:_______ 1__ 1_ 1__ __/__/__ ______ ______ Permanently Disable? __ Disable Following A Security Violation? y (NOTE: You must logoff to effect permanent disabling of Remote Access) Page 3 of X STATION SITE DATA Room: _______ Headset? n Jack: ___ Speaker? n Cable: ___ Mounting: d Floor: _______ Cord Length: 0_ Building: _______ Set Color: _____ ABBREVIATED DIALING List1: ________ List2: _________ List3: _________ BUTTON ASSIGNMENTS 1: asvn-halt 4: ________ 2: ________ 5: ________ 3: ________
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 331 Setting up authorization codes 11 12. In the Feature Button Assignments section, type one of the following: nasvn-halt — The Authorization Code Security Violation Notification call is activated when an authorization code security violation is detected. This applies only if you are using authorization codes. nlsvn-halt — The Login Security Violation Notification call is activated a referral call when a login security violation is detected. nrsvn-halt — The Remote Access Barrier Code Security Violation Notification call is activated as a call referral. This applies only if you are using Remote Access barrier codes. nssvn-halt — The Station Code Security Violation Notification call is activated when a station code security violation is detected. This applies only if you are using station codes. NOTE: Any of the above 4 security violations will cause the system to place a notification call to the designated phone. The call continues to ring until answered. To stop notification of any further violations, press the button associated with the type of violation. 13. Press ENTER to save your changes. Setting up authorization codes Authorization codes provide the means for extending control of system users’ calling privileges. They extend calling-privilege control and provide an extra level of security for remote-access callers. NOTE: To maintain system security, Lucent recommends you use authorization codes. Refer to BCS Products Security Handbook for more information. Before you start On the System Parameters Customer-Options screen, verify the Authorization Codes field is y. If not, contact your Lucent representative. This field turns on the feature and permits you to selectively specify levels of calling privileges that override in-place restrictions.
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 332 Setting up authorization codes 11 Instructions 1. Type change system-parameters features and press RETURN. The Feature-Related System Parameters screen appears. 2. In the Authorization Code Enabled field, type y. This enables the Authorization Codes feature on a system-wide basis. 3. In the Authorization Code Length field, type 7. This defines the length of the Authorization Codes your users need to enter. To maximize the security of your system, Lucent recommends you make each authorization code the maximum length allowed by the system. 4. In the Authorization Code Cancellation Symbol field, leave the default of #. This is the symbol a caller must dial to cancel the 10-second wait period during which your user can enter an authorization code. 5. In the Attendant Time Out Flag field, leave the default of n. This means a call is not to be routed to the attendant if a caller does not dial an authorization code within 10 seconds or dials an invalid authorization code. 6. In the Display Authorization Code field, type n. This prevents the authorization code from displaying on phone sets thus maximizing your security. 7. Press ENTER to save your changes. Page 3 of 8 FEATURE-RELATED SYSTEM PARAMETERS Reserved Slots for Attendant Priority Queue: 5_ Time Before Off-Hook Alert: 10__ Emergency Access Redirection Extension: _____ Number of Emergency Calls Allowed in Attendant Queue: __ Call Pickup Alerting? n Temporary Bridged Appearance on Call Pickup? y Call Pickup on Intercom Calls? y Directed Call Pickup? n Deluxe Paging and Call Park Timeout to Originator? n Controlled Outward Toll Restriction Intercept Treatment: tone _______ Controlled Termination Restriction (Do Not Disturb): tone _______ Controlled Station to Station Restriction: tone _______ AUTHORIZATION CODE PARAMETERS Authorization Code Enabled? y Authorization Code Length: 7 Authorization Code Cancellation Symbol? # Attendant Time Out Flag? n Display Authorization Code? _ Controlled Toll Restriction Replaces: station-station Controlled Toll Restriction Intercept Treatment: extension 3000
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 333 Setting up authorization codes 11 8. Type change authorization-code nnnn and press RETURN, where nnnn is the authorization code. The Authorization Code — COR Mapping screen appears. 9. In the AC field, enter the authorization code your users must dial. In our example, type 4285193. The number of digits entered must agree with the number assigned in the Feature-Related System Parameters screen, Authorization Code Length field. NOTE: Remember, all authorization codes used in the system must be the same length. 10. In the COR field, enter the desired Class of Restriction number from 0 through 95. In our example, type 1. 11. Press ENTER to save your changes. Related topics Refer to ‘‘ Class of Restriction’’ on page 520 for more information on setting up dialing out restrictions. Refer to DEFINITY ECS Administration for Network Connectivity for more information on using trunk access codes. Page 1 of 1 Authorization Code - COR Mapping Note: XX codes administered. Use “list” to display all codes. AC COR AC COR AC COR AC COR AC COR AC COR 4285193 1_ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __ _______ __
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 334 Dealing with security violations 11 Refer to ‘‘Facility restriction levels and traveling class marks’’ on page 1338 and ‘‘ Route Pattern’’ on page 865 for more information on assigning Facility Restriction Levels. Refer to ‘‘ Call Detail Recording’’ on page 1221 and ‘‘Station’’ on page 882 for more information on using Call Detail Recording on station phones. Refer to ‘‘ Class of Restriction’’ on page 520 and ‘‘Station’’ on page 882 for more information on using Class of Restriction on station phones. Refer to ‘‘ Remote Access’’ on page 1466 for more information on allowing authorized callers to access the system from remote locations. Refer to‘‘ Barrier codes’’ on page 1172 or ‘‘Remote Access’’ on page 857 for information on barrier codes. Dealing with security violations When a security violation occurs, there are steps that you can take to be sure that this same attempt is not successful in the future. Disabling a login ID There may be occasions when you have to disable a login for one of your users because of a security violation. 1. Log in to the switch using a login ID with the correct permissions. 2. Type disable login ge0rg3 and press RETURN. Enabling a login ID You may have to enable a login ID that has been disabled by a security violation, or disabled manually with the disable login command. 1. Log in to the switch using a login ID with the correct permissions. 2. Type enable login ge0rg3 and press RETURN. Enabling remote access You may have to enable Remote Access that has been disabled following a security violation, or disabled manually. 1. Log in to the switch using a login ID with the correct permissions. 2. Type enable remote-access and press RETURN.
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 335 Dealing with security violations 11 Disabling remote access There may be occasions when you have to disable remote access for one of your users because of a security violation. 1. Log in to the switch using a login ID with the correct permissions. 2. Type disable remote-access and press RETURN.
DEFINITY ECS Release 8.2 Administrator’s Guide 555-233-506 Issue 1 April 2000 Enhancing system security 336 Dealing with security violations 11