210-065 · Question #91
The command xCommand Security FIPSMode Activate is issued to a Cisco TelePresence C- Series codec. Management wants to reverse the effects of this command. Which two methods could be used for this…
The correct answer is B. From the touch screen, perform a factory reset from the Administrator Settings menu. F. Use SSH to connect to the system and enter the xCommand SystemUnit FactoryReset Confirm. FIPS mode activation on a Cisco TelePresence C-Series codec cannot be reversed with a toggle command and instead requires a full factory reset, achievable either from the touch screen or via SSH.
Question
The command xCommand Security FIPSMode Activate is issued to a Cisco TelePresence C- Series codec. Management wants to reverse the effects of this command. Which two methods could be used for this purpose? (Choose two.)
Options
- AFrom the touch screen, disable FIPS mode in the Administrator Settings menu.
- BFrom the touch screen, perform a factory reset from the Administrator Settings menu.
- CFrom the touch screen, disable all security settings from the Administrator Settings menu.
- DUse SSH to connect to the system and enter the xCommand Security FIPSMode Deactivate
- EUse Telnet to connect to the system and enter the xCommand SystemUnit FactoryReset Init
- FUse SSH to connect to the system and enter the xCommand SystemUnit FactoryReset Confirm:
How the community answered
(36 responses)- B81% (29)
- C6% (2)
- D11% (4)
- E3% (1)
Why each option
FIPS mode activation on a Cisco TelePresence C-Series codec cannot be reversed with a toggle command and instead requires a full factory reset, achievable either from the touch screen or via SSH.
Cisco TelePresence C-Series codecs do not provide a simple FIPS mode toggle in the touch screen Administrator Settings; removing FIPS requires a full factory reset.
Performing a factory reset from the touch screen under Administrator Settings restores the codec to its default configuration, which removes FIPS mode because there is no direct deactivation command for FIPS on C-Series codecs.
There is no 'disable all security settings' option in the touch screen Administrator Settings menu on C-Series codecs.
The command 'xCommand Security FIPSMode Deactivate' does not exist in the Cisco TelePresence C-Series API; FIPS mode has no direct deactivation command.
When FIPS mode is active on a C-Series codec, Telnet access is disabled, making it impossible to connect via Telnet to issue any reset command.
The command 'xCommand SystemUnit FactoryReset' issued over SSH (with the required Confirm: Yes parameter) triggers a full factory reset from the CLI, which is the programmatic equivalent of the touch screen factory reset and effectively removes FIPS mode.
Concept tested: Reversing FIPS mode on Cisco TelePresence C-Series codec
Source: https://www.cisco.com/c/en/us/td/docs/telepresence/endpoint/codec-c-series/admin-guide/Cisco_Codec-C_Series_TC_Admin_Guide.html
Topics
Community Discussion
No community discussion yet for this question.