ATIS 0300033-2011 Next Generation Interconnection Interoperability (NGIIF) Reference Document Part X Interconnection Between LECS Operations Handbook C Local Interconnection Servic.pdf
《ATIS 0300033-2011 Next Generation Interconnection Interoperability (NGIIF) Reference Document Part X Interconnection Between LECS Operations Handbook C Local Interconnection Servic.pdf》由会员分享,可在线阅读,更多相关《ATIS 0300033-2011 Next Generation Interconnection Interoperability (NGIIF) Reference Document Part X Interconnection Between LECS Operations Handbook C Local Interconnection Servic.pdf(8页珍藏版)》请在麦多课文档分享上搜索。
1、 ATIS-0300033 Next Generation Interconnection Interoperability (NGIIF) Reference Document Part X, Interconnection Between LECS Operations Handbook Local Interconnection Service Arrangement Attachment A Security Guidelines Version 12.0 ATIS is the leading technical planning and standards development
2、organization committed to the rapid development of global, market-driven standards for the information, entertainment and communications industry. More than 200 companies actively formulate standards in ATIS Committees, covering issues including: IPTV, Cloud Services, Energy Efficiency, IP-Based and
3、 Wireless Technologies, Quality of Service, Billing and Operational Support, Emergency Services, Architectural Platforms and Emerging Networks. In addition, numerous Incubators, Focus and Exploratory Groups address evolving industry priorities including Smart Grid, Machine-to-Machine, Connected Vehi
4、cle, IP Downloadable Security, Policy Management and Network Optimization. ATIS is the North American Organizational Partner for the 3rd Generation Partnership Project (3GPP), a member and major U.S. contributor to the International Telecommunication Union (ITU) Radio and Telecommunications Sectors,
5、 and a member of the Inter-American Telecommunication Commission (CITEL). ATIS is accredited by the American National Standards Institute (ANSI). For more information, please visit www.atis.org. Notice This document was developed by the Alliance for Telecommunications Industry Solutions (ATIS) spons
6、ored Next Generation Interconnection Interoperability Forum (NGIIF). The NGIIF addresses next-generation network interconnection and interoperability issues associated with emerging technologies. Specifically, it develops operational procedures which involve the network aspects of architecture, disa
7、ster preparedness, installation, maintenance, management, reliability, routing, security, and testing between network operators. In addition, the NGIIF addresses issues which impact the interconnection of existing and next generation networks and facilitate the transition to emerging technologies. A
8、ll changes to this document shall be made through the NGIIF issue resolution process . Note Regarding Previous Versions The NIIF Reference Document was formerly known as the Network Operations Forum (NOF) Reference Document. The NOF Reference Document was published and maintained by Bellcore. The la
9、st version of the NOF Reference Document is Issue 13. Disclaimer and Limitation of Liability The information provided in this document is directed solely to professionals who have the appropriate degree of experience to understand and interpret its contents in accordance with generally accepted engi
10、neering or other professional standards and applicable regulations. No recommendation as to products or vendors is made or should be implied. NO REPRESENTATION OR WARRANTY IS MADE THAT THE INFORMATION IS TECHNICALLY ACCURATE OR SUFFICIENT OR CONFORMS TO ANY STATUTE, GOVERNMENTAL RULE OR REGULATION,
11、AND FURTHER NO REPRESENTATION OR WARRANTY IS MADE OF MERCHANTABILITY OR FITNESS FOR ANY PARTICULAR PURPOSE OR AGAINST INFRINGEMENT OF INTELLECTUAL PROPERTY RIGHTS. ATIS SHALL NOT BE LIABLE, BEYOND THE AMOUNT OF ANY SUM RECEIVED IN PAYMENT BY ATIS FOR THIS DOCUMENT, WITH RESPECT TO ANY CLAIM, AND IN
12、NO EVENT SHALL ATIS BE LIABLE FOR LOST PROFITS OR OTHER INCIDENTAL OR CONSEQUENTIAL DAMAGES. ATIS EXPRESSLY ADVISES THAT ANY AND ALL USE OF OR RELIANCE UPON THE INFORMATION PROVIDED IN THIS DOCUMENT IS AT THE RISK OF THE USER. ATIS-0300033, NGIIF Reference Document, Part X, Interconnection Between L
13、ECS Operations Handbook Local Interconnection Service Arrangement, Attachment A, Security Guidelines, Formerly NIIF 5029 The NGIIF Reference Document, Part X, Interconnection Between LECS Operations Handbook Local Interconnection Service Arrangement, Attachment A, Security Guidelines is an ATIS stan
14、dard developed by the NGIIF. Published by Alliance for Telecommunications Industry Solutions 1200 G Street, NW, Suite 500 Washington, DC 20005 Copyright 2011 by Alliance for Telecommunications Industry Solutions All rights reserved. No part of this publication may be reproduced in any form, in an el
15、ectronic retrieval system or otherwise, without the prior written permission of the publisher. For information contact ATIS at 202.628.6380. ATIS is online at . Printed in the United States of America. 2 INTERCONNECTION BETWEEN LECs OPERATIONS HANDBOOK, ATTACHMENT A NETWORK SECURITY BASE GUIDELINES
16、Table of Contents 1 GENERAL 3 2 DATA SECURITY FEATURES OF CRITICAL SWITCHING NODES . 3 2.1 IDENTIFICATION 3 2.2 AUTHENTICATION . 3 2.3 SYSTEM ACCESS CONTROL . 3 2.4 RESOURCE ACCESS CONTROL 4 2.5 SECURITY LOG (AUDIT) 4 2.6 SECURITY ADMINISTRATION 5 2.7 DOCUMENTATION . 5 3 SYSTEMS ENGINEERING APPROACH
17、 TO SECURITY BASELINE FOR TELECOMMUNICATIONS NETWORK NODES, LOGICAL SECURITY CHECKLIST 6 3 1 General The following Network Security Base Guidelines should be used at a minimum as a set of guidelines to be adopted by the Local Service Providers as they interconnect and on an ongoing basis. 2 Data Sec
18、urity Features of Critical Switching Nodes This section specifies the desirable security features that all LSP should have for any Network Element (NE), Network System (NS), Operations System (OS) or Data Communications Network (DCN) in order to reduce the risk of potentially service affecting secur
19、ity compromises. 2.1 Identification The LSP node should not allow an existing user-ID to be assigned to another active user (i.e., user-IDs should be unique). Each operations related process running in a switching node should be associated with the corresponding user-ID (so that an audit trail can b
20、e established if there is a need). The node under query should disable a user-ID if it has remained inactive (i.e., never used) over a specific time period. 2.2 Authentication All remote input ports of a node (including direct, dial-up and network access) should require authentication of a session r
21、equester, without any provision for a bypass mechanism. A single stored password entry (e.g., in a password file) should not be allowed to be shared by multiple user-IDs. However, the node should not prevent a user from choosing (unknowingly) a password that is already being used by some other user.
22、 Nor should the node volunteer this information to either user. Passwords should be stored in a one-way encrypted form, and should not be retrievable by any user including managers or administrators (of system and security). Also, there should be no clear text display (on a device such as a screen,
23、typewriter, or printer) of a password at any time (e.g., login, file dump, etc.). The node should allow passwords to be user changeable (requiring re-authentication), and should require that the user change it the first time he/she establishes a session with the password assigned to him/her. The def
24、ault should be non-trivial in nature. The password should have an “aging“ feature, and it should have a complexity requirement to make it not easily determined. The node should not accept common words or names as valid passwords. Also, it should not allow a recently obsolete password to be readily r
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- ATIS03000332011NEXTGENERATIONINTERCONNECTIONINTEROPERABILITYNGIIFREFERENCEDOCUMENTPARTXINTERCONNECTIONBETWEENLECSOPERATIONSHANDBOOKCLOCALINTERCONNECTIONSERVICPDF

链接地址:http://www.mydoc123.com/p-540946.html