5-18 T60 Transformer Protection System GE Multilin
5.2 PRODUCT SETUP 5 SETTINGS
5
General Security Settings
Confirm RADIUS
Authentication
(Shared) Secret
Confirmation of the shared secret. The
entry displays as asterisks.
See the
Password
Requirement
s section
245 characters N/A - Administrator
SETTING NAME DESCRIPTION MIN MAX DEFAULT UNITS MINIMUM
PERMISSION
Session Lockout Number of failed authentications before the
device blocks subsequent authentication
attempts for the lockout period
0 (lockout
disabled)
99 3 - Administrator
Session Lockout
Period
The period in minutes that a user is prevented
from logging in after being locked out
0 (no period) 9999 3 min Administrator
Syslog Server IP
Address
The IP address of the target Syslog server to
which all security events are transmitted
0.0.0.0 223.255.
255.254
0.0.0.0 - Administrator
Syslog Server Port
Number
The UDP port number of the target syslog server
to which all security events are transmitted
1 65535 514 - Administrator
Device
Authentication
When enabled, local device authentication with
roles is allowed. When disabled, the UR only
authenticates to the AAA server (RADIUS).
NOTE: Administrator and Supervisor (if still
enabled) remain active even after device
authentication is disabled. The only permission
for local Administrator is to re-enable device
authentication when device authentication is
disabled. To re-enable device authentication, the
Supervisor unlocks the device for setting
changes, and then the Administrator can re-
enable device authentication.
Disabled Enabled Enabled - Administrator
Firmware Locked Indicates if the device receives firmware
upgrades. If Yes and the firmware upgrade
attempt is made, the device denies the upgrade
and displays an error message that the lock is
set. On each firmware upgrade, this setting goes
back to the default.
No Yes Yes - Administrator
Factory Service
Mode
When enabled (checkbox selected), the device
can go into factory service mode. To enable,
Supervisor authentication is necessary.
Disabled Enabled Disabled - Supervisor
(Administrator
when Supervisor
is disabled)
Restore to Defaults Sets the device to factory defaults No Yes No - Administrator
Supervisor role When enabled (checkbox selected), the
Supervisor role is active. To enable,
Administrator authentication is necessary. When
disabled, the Supervisor role is inactive. To
disable, Supervisor authentication is necessary.
Disabled Enabled Enabled - Administrator to
enable and
Supervisor to
disable
RADIUS user
names
Ensure that RADIUS user names are not the
same as local/device role names
See RADIUS
server
documents
See
RADIUS
server
documents
- Administrator
Password Local/device roles except for Observer are
password-protected. All RADIUS users are
password-protected.
See the
Password
Requirement
s section
See the
following
password
section for
requireme
nts
Change
Me1#
Text The specified role
and Administrator,
except for
Supervisor, where
it is only itself