Alcatel-Lucent OmniAccess 3500 Manuale Utente

Pagina di 137
Chapter 3. Runtime Administration Functions 
 
 
 
 
Figure 46 - Tamper Proofing Settings - Get One Time Password 
4.  Click Get PW.  A window appears displaying a new one-time password. The end-
user must type this password (including any hyphen it may include) into the 
Password field on the window on the laptop to unlock the laptop. (They must 
uncheck the Hide Password box if they want the password to display on the 
window as they are typing it.) 
Encrypted Volume Management 
An encrypted volume can be created in the laptop hard disk for storage of sensitive 
data. While the selection of the files to be included in the encrypted volume is left to 
the end user, the OmniAccess 3500 NLG assumes exclusive administrative control over 
the encrypted volume. Through the management system GUI, the administrator sets 
the configuration parameters of the encrypted volume (some of the parameters, such 
as the encryption algorithm and the hash algorithm, are set per user group, while 
other parameters, such as the drive identifier, the maximum size, and the secret 
password needed for encryption/decryption of the volume contents, are set per 
individual user). The end user can access neither the configuration parameters, nor 
the secret password, which is stored in the OmniAccess 3500 NLG card and never 
accessible from the laptop. If the laptop is stolen, the contents of the encrypted 
volume can be protected from malicious access by remotely deleting the secret 
password from the card. The management system retains the last password used to 
encrypt the data, so that it can be utilized to retrieve the data if the laptop is ever 
recovered. 
This section describes the configuration of the encrypted volume, the management of 
the secret password, and the monitoring of the volume status. 
  
 
 
59