<<

DATA SHEET

SSU 2000 RADIUS Capable Communication Card Carrier-Class, Enhanced Security Communication Card

Security in Mind automatic updates without further human Key Features The Remote Dial-In intervention. Using a secure FTP (SFTP) • RADIUS client authentication Service (RADIUS) Capable Communications connection, this card can automatically • Secure Shell (SSH) protocol Card was designed for carrier-class download firmware from a remote server • SNMPv2 and SNMPv3 (licensed option) environments, where secure access to to upgrade the SSU 2000 system*. Two • Four user access levels network elements is critical. Using SSH- system images can be stored, giving the • Up to 32 characters user ID and encrypted client authentication and up to user the ability to update or revert to 32 characters for user ID and password a standby image upon a simple command. • Scheduled automatic system firmware update access, it enables communication with Powerful Communication Card • System firmware upgrade via SFTP a centralized server to authenticate dial-in The advanced technology of the SSU 2000 • Stores two system firmware users and authorize their access to the SSU with RADIUS Capable Communication images with fallback protection 2000 system. Card includes a powerful 32-bit processor Key Benefits Four access levels (user, technician, running on LINUX, a widely used and • Powerful remote access security supervisor or administrator) and automatic reliable . The card’s protection logout provide superior security access to operating system power and flexibility • Leverages existing RADIUS sever infrastructure and security processes the system, ideally suited to enterprise and allow the SSU 2000 with RADIUS Capable • Efficient, safe upgrades of system international gateway deployments where Communication Card to integrate future firmware secure remote access is required. features, such as IPv6.

Scheduled Automated Firmware Applications Update • Centralized authentication, authorization System firmware in the master and and access control expansion shelves can be scheduled for • Enterprise and international gateway deployments

SSU 2000 Access Using RADIUS Authentication

1 User requests access to SSU 2000 (using SSH protocol) 2 SSU 2000 requests user authentication from RADIUS Authentication Server RADIUS server 3 RADIUS server authorizes user access 4 User communicates with SSU 2000 (using SSH protocol)

3

Enterprise or International Network 1 2 Remote User 4

SSU 2000 with RADIUS Capable Communication Card

Page 1 of 2 DATA SHEET

SSU 2000 RADIUS Capable Communication Card

Specifications Standard RADIUS Capable COMMS Card COMMS Card

RADIUS Authentication n

Internet Protocols IPv4 n n Management Protocols

SNMPv2 n n

SNMPv3 n n

Management Interface

Transaction Language 1 (TL-1) n n Interactive Command Set (ICS) n n

Hosted on COMMS Modules and NTP Support Carrier-Class NTP Blades Only Carrier-Class NTP Blades

Security

SSH n SFTP (firmware update) n

User ID length up to 20 up to 32

Password length up to 10 up to 32 User Access Levels 4 4

Dual Firmware Images with Fallback n

Scheduled Firmware Update n

Processor Core

Processor Motorola 68360 Freescale 8313 Speed 25 MHz 333 MHz Memory 32 Mb Flash 256 Mb Flash 16 Mb RAM 256 Mb RAM Operating System pSOS (proprietary) LINUX Communication Ethernet n n

Serial (RS-232) n n**

* NTP and PTP blades must be individually updated using their rear connection Ethernet port. ** Secure access via COMMS card faceplate RS-232 port only. Not recommended to connect to auxiliary RS232 ports on the SSU 2000 shelf. Please refer to the SSU 2000 Users Guide for full system specifications.

2300 Orchard Parkway © 2011 Symmetricom. Symmetricom and the Symmetricom logo are registered trademarks San Jose, California 95131-1017 of Symmetricom, Inc. All specifications subject to change without notice. tel: 408.433.0910 fax: 408.428.7896 www.symmetricom.com DS/SSU2000Radius/092311