Datacryptor® Ethernet User Manual 1270A450-005 June 2008
Preface Datacryptor Ethernet User Manual Page 10 THALES Contact Information SALES OFFICES Americas THALES e-Security, INC 2200 North Commerce Pa
Appendix G: Troubleshooting Datacryptor Ethernet User Manual Page 100 THALES Appendix G: Troubleshooting This appendix is provided to aid you
Datacryptor Ethernet User Manual Appendix G: Troubleshooting 1270A450-005 - June 2008 Page 101 Cannot establish a link Check physical connectiv
Appendix H: SNMP MIB Support Datacryptor Ethernet User Manual Page 102 THALES Appendix H: SNMP MIB Support In order to support organizations w
Datacryptor Ethernet User Manual Appendix H: SNMP MIB Support 1270A450-005 - June 2008 Page 103 MIB Name Description DC2K-MIB-RFC1213 RFC 1213
Appendix H: SNMP MIB Support Datacryptor Ethernet User Manual Page 104 THALES MIB Name Description DC2K-MIB-RFC2863 RFC 2863 defines a portio
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 105 Appendix I: Log and SNMP Trap Numbers
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 106 THALES Log Trap Errors Hardware Log Type Code Trap No. Severi
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 107 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 108 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 109 Log Type Code Trap No. Severity Messa
Datacryptor Ethernet User Manual About This Document 1270A450-005 - June 2008 Page 11 2 About This Document Viewing this document in Adobe Acroba
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 110 THALES Key Errors Log Type Code Trap No. Severity Message
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 111 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 112 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 113 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 114 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 115 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 116 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 117 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 118 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 119 Log Type Code Trap No. Severity Messa
About This Document Datacryptor Ethernet User Manual Page 12 THALES This manual is organized into the following sections: Overview provides genera
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 120 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 121 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 122 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 123 Audit Errors Log Type Code Trap No.
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 124 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 125 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 126 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 127 Log Type Code Trap No. Severity Messa
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 128 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 129 Log Type Code Trap No. Severity Messa
Datacryptor Ethernet User Manual Overview 1270A450-005 - June 2008 Page 13 3 Overview The Thales Datacryptor Ethernet is a high speed, high bandw
Appendix I: Log and SNMP Trap Numbers Datacryptor Ethernet User Manual Page 130 THALES Log Type Code Trap No. Severity Message Information
Datacryptor Ethernet User Manual Appendix I: Log and SNMP Trap Numbers 1270A450-005 - June 2008 Page 131 Log Type Code Trap No. Severity Messa
Appendix J: Glossary of Terms Datacryptor Ethernet User Manual Page 132 THALES Appendix J: Glossary of Terms Advanced Encryption Standard (AES
Datacryptor Ethernet User Manual Appendix J: Glossary of Terms 1270A450-005 - June 2008 Page 133 Element Manager (EM) Application used to manag
Appendix J: Glossary of Terms Datacryptor Ethernet User Manual Page 134 THALES Public Key Cryptography In public key cryptography different key
Overview Datacryptor Ethernet User Manual Page 14 THALES Figure 3-3: Thales Datacryptor 1 Gig Ethernet Front Panel Figure 3-4: Datacryptor 1 Gi
Datacryptor Ethernet User Manual Overview 1270A450-005 - June 2008 Page 15 Product Features Installation • Mount in any standard 19” rack or on
Overview Datacryptor Ethernet User Manual Page 16 THALES Element Manager The Element Manager application provides a secure way to configure, manag
Datacryptor Ethernet User Manual Background Information 1270A450-005 - June 2008 Page 17 4 Background Information Datacryptor Ethernet Unit The T
Background Information Datacryptor Ethernet User Manual Page 18 THALES Authenticate Management Data - The Datacryptor Ethernet uses the HMAC keyed
Datacryptor Ethernet User Manual Installation 1270A450-005 - June 2008 Page 19 5 Installation This section will detail the installation of the ha
Datacryptor Ethernet User Manual Preface Page 2 THALES
Installation Datacryptor Ethernet User Manual Page 20 THALES Airflow Make sure that there is sufficient flow of air around the Datacryptor so that
Datacryptor Ethernet User Manual Installation 1270A450-005 - June 2008 Page 21 Port Cabling Supplied By Network and Host Port For the 100 Mb E
Installation Datacryptor Ethernet User Manual Page 22 THALES Figure 5-1: Datacryptor Panel Connectors (The 100 Mb Ethernet unit’s management por
Datacryptor Ethernet User Manual Installation 1270A450-005 - June 2008 Page 23 4. On the Datacryptor’s rear panel, plug the power cords into the
Installation Datacryptor Ethernet User Manual Page 24 THALES • The PC must have a pointing device (mouse), a CD ROM drive, a free serial port, an
Datacryptor Ethernet User Manual Connecting to Datacryptor Ethernet Units 1270A450-005 - June 2008 Page 25 6 Connecting to Datacryptor Ethernet U
Connecting to Datacryptor Ethernet Units Datacryptor Ethernet User Manual Page 26 THALES 2. Open a terminal session through a VT-100 terminal emu
Datacryptor Ethernet User Manual Connecting to Datacryptor Ethernet Units 1270A450-005 - June 2008 Page 27 7. At the IPCONFIG> prompt, type:
Connecting to Datacryptor Ethernet Units Datacryptor Ethernet User Manual Page 28 THALES 5. Click on the shortcut to launch the connection. 6. S
Datacryptor Ethernet User Manual Connecting to Datacryptor Ethernet Units 1270A450-005 - June 2008 Page 29 4. Select the unit type as Datacrypt
Datacryptor Ethernet User Manual Preface 1270A450-005 - June 2008 Page 3 Contents 1 Preface...
Connecting to Datacryptor Ethernet Units Datacryptor Ethernet User Manual Page 30 THALES 5. Select the connection type for the Datacryptor Ethern
Datacryptor Ethernet User Manual Connecting to Datacryptor Ethernet Units 1270A450-005 - June 2008 Page 31 8. Now, double-click on the new Datac
Connecting to Datacryptor Ethernet Units Datacryptor Ethernet User Manual Page 32 THALES 10. You can login to it by using the Login button, and ma
Datacryptor Ethernet User Manual Connecting to Datacryptor Ethernet Units 1270A450-005 - June 2008 Page 33 This provides a mechanism for another
Element Manager Reference Datacryptor Ethernet User Manual Page 34 THALES 7 Element Manager Reference The Element Manager consists of the followin
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 35 Main Window Pull-down Menus The pull-down menus are:
Element Manager Reference Datacryptor Ethernet User Manual Page 36 THALES Tools The following options are available from the Tools pull-down menu
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 37 To connect to a Datacryptor unit: 1. Double-click it
Element Manager Reference Datacryptor Ethernet User Manual Page 38 THALES Front Panel Viewer A splash screen is displayed when you attempt to conn
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 39 100 Mb Ethernet Front Panel Viewer 1 Gig Ethernet F
Preface Datacryptor Ethernet User Manual Page 4 THALES Configure Dialog ...
Element Manager Reference Datacryptor Ethernet User Manual Page 40 THALES 10 Gig Ethernet Front Panel Viewer The management facilities are provi
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 41 • Beneath the front panel diagram are five large but
Element Manager Reference Datacryptor Ethernet User Manual Page 42 THALES Fast Flash Link Down Slow Flash Not used Off Loss of Signal, Loss of
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 43 • Help: The Help button launches the help applicatio
Element Manager Reference Datacryptor Ethernet User Manual Page 44 THALES Extended files, including those that have been automatically upgraded, s
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 45 The user will be blocked from further attempts for th
Element Manager Reference Datacryptor Ethernet User Manual Page 46 THALES When the directory is set to read-only the Front Panel Viewer will disab
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 47 2. Click the Commission button at the top of the dia
Element Manager Reference Datacryptor Ethernet User Manual Page 48 THALES Step 1: Installing a new Certificate Authority (CA) Units are normally
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 49 Step 2: Installing the authenticating CA: Insert the
Datacryptor Ethernet User Manual Preface 1270A450-005 - June 2008 Page 5 1 Preface Trademark Acknowledgements Datacryptor is a trademark of Thale
Element Manager Reference Datacryptor Ethernet User Manual Page 50 THALES Step 3: Setting the unit name: Each Datacryptor Ethernet unit within a
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 51 Step 4: Generating a Certificate: 1. Enter the path
Element Manager Reference Datacryptor Ethernet User Manual Page 52 THALES 1. Click Finish to begin the commissioning process, which will take a
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 53 Login Dialog This dialog is displayed when you select
Element Manager Reference Datacryptor Ethernet User Manual Page 54 THALES Logs Window The Datacryptor Ethernet monitors network operations and rec
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 55 • Trace: A report of internal software conditions de
Element Manager Reference Datacryptor Ethernet User Manual Page 56 THALES Properties Dialog The Properties dialog is displayed when you select the
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 57 Each of the tabs will now be described in turn. The G
Element Manager Reference Datacryptor Ethernet User Manual Page 58 THALES Cable detected: the types of cable connected to the unit. Save: stores t
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 59 The Diagnostics Tab The Diagnostics tab will provide
Preface Datacryptor Ethernet User Manual Page 6 THALES License Agreement and General Information THALES e-SECURITY LTD. ("THALES") COMPU
Element Manager Reference Datacryptor Ethernet User Manual Page 60 THALES Erase: click this button to erase the unit’s Key material. Basic unit Co
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 61 Note: The loopback mode is regarded as a transient f
Element Manager Reference Datacryptor Ethernet User Manual Page 62 THALES Configuring SNMP Datacryptor units record all significant management and
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 63 − Enter the Location and Contact information for thi
Element Manager Reference Datacryptor Ethernet User Manual Page 64 THALES 5. Click OK to add the community. To edit an SNMP community: Select the
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 65 Traps Tab The Traps tab lists the details of each SN
Element Manager Reference Datacryptor Ethernet User Manual Page 66 THALES − Trap Address: Type the IP address of the SNMP trap manager. − Commu
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 67 Adding SNMPv3 Trap Managers: When using SNMPv3 you ar
Element Manager Reference Datacryptor Ethernet User Manual Page 68 THALES
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 69 To edit an SNMP trap manager: 1. Select the entry to
Datacryptor Ethernet User Manual Preface 1270A450-005 - June 2008 Page 7 LIMITED WARRANTY The following limited warranty applies only to the Soft
Element Manager Reference Datacryptor Ethernet User Manual Page 70 THALES IP Route Config Selecting this button on the Properties - IP Management
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 71 The Security Tab The properties on the Security tab c
Element Manager Reference Datacryptor Ethernet User Manual Page 72 THALES • Disable Key Exchanges: check this box to disable all key exchanges ot
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 73 The RIP Tab The RIP tab sets up the properties of the
Element Manager Reference Datacryptor Ethernet User Manual Page 74 THALES • RIP 2 (broadcast) - this sets the Datacryptor to be compatible with R
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 75 The Ethernet Comm Tab for 1 and 10 Gigabit Datacrypto
Element Manager Reference Datacryptor Ethernet User Manual Page 76 THALES The unit can be rebooted using the option available on the Diagnost
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 77 The Ethernet Comm Tab for 100 Mb Datacryptor The prop
Element Manager Reference Datacryptor Ethernet User Manual Page 78 THALES The unit can be rebooted using the option available on the Diagnost
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 79 The Ethernet Encryption Tab The Ethernet Encryption
Preface Datacryptor Ethernet User Manual Page 8 THALES The government agrees that it shall be bound by the terms and conditions of this license ag
Element Manager Reference Datacryptor Ethernet User Manual Page 80 THALES The Expert Tab The Ethernet Expert tab allows to Enable CTS Mode. The Et
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 81 The Ethernet Tunneling Tab The Ethernet Tunneling ta
Element Manager Reference Datacryptor Ethernet User Manual Page 82 THALES This is entered by selecting the Change button, the following dialog is
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 83 This gives the option of setting a maximum of four ru
Element Manager Reference Datacryptor Ethernet User Manual Page 84 THALES MAC Address The destination and source addresses are standard MAC addres
Datacryptor Ethernet User Manual Element Manager Reference 1270A450-005 - June 2008 Page 85 The permissible range for Fragmentation Size is: • G
Appendix A: Device Maintenance Datacryptor Ethernet User Manual Page 86 THALES Appendices Appendix A: Device Maintenance Periodically perform ma
Datacryptor Ethernet User Manual Appendix A: Device Maintenance 1270A450-005 - June 2008 Page 87 a locked equipment closet provides a more secur
Appendix B: Loading Datacryptor Unit Software Datacryptor Ethernet User Manual Page 88 THALES Appendix B: Loading Datacryptor Unit Software Data
Datacryptor Ethernet User Manual Appendix B: Loading Datacryptor Unit Software 1270A450-005 - June 2008 Page 89 3. Select the COM port that the
Datacryptor Ethernet User Manual Preface 1270A450-005 - June 2008 Page 9 Security Advisory This unit is being shipped with a Universal Certificat
Appendix B: Loading Datacryptor Unit Software Datacryptor Ethernet User Manual Page 90 THALES 4. The Image Loader may also perform other "
Datacryptor Ethernet User Manual Appendix B: Loading Datacryptor Unit Software 1270A450-005 - June 2008 Page 91 Operations during Ethernet Code
Appendix B: Loading Datacryptor Unit Software Datacryptor Ethernet User Manual Page 92 THALES 2. Once the hardware has been validated, select t
Datacryptor Ethernet User Manual Appendix B: Loading Datacryptor Unit Software 1270A450-005 - June 2008 Page 93 3. Image Loader will begin upl
Appendix B: Loading Datacryptor Unit Software Datacryptor Ethernet User Manual Page 94 THALES Completing the Upload 1. Progress of the load is s
Datacryptor Ethernet User Manual Appendix C: Product Specifications 1270A450-005 - June 2008 Page 95 Appendix C: Product Specifications System
Appendix D: Environmental & Regulatory Datacryptor Ethernet User Manual Page 96 THALES Appendix D: Environmental & Regulatory Environ
Datacryptor Ethernet User Manual Appendix D: Environmental & Regulatory 1270A450-005 - June 2008 Page 97 Interference-Causing Equipment Stan
Appendix E: SFP and XFP Interfaces Datacryptor Ethernet User Manual Page 98 THALES Appendix E: SFP and XFP Interfaces The Datacryptor 1 Gig E
Datacryptor Ethernet User Manual Appendix F: Preventing Electrostatic Discharge 1270A450-005 - June 2008 Page 99 Appendix F: Preventing Electro
Komentáře k této Příručce