Best practices for NetScaler® Console security
-
User-session-level information
-
Webpage performance data
-
Database information flowing through the NetScaler instances at your site and provides actionable reports.
Do not expose the NetScaler Console IP address and NetScaler agent IP address to the Internet
Strong password for system user
-
The password must have a minimum length of eight characters.
-
The password must not contain dictionary words or a combination of dictionary words.
-
The password must include at least one uppercase letter, one lowercase letter, one number, and one special character.
-
Navigate to Settings > Users & Roles.
-
In the User Administration page, click Settings on the right.
-
Select Enable Password Complexity.
-
In the Password Policy page, specify the minimum password length as 8.
-
Click OK.
Change the default certificate
-
Navigate to Settings > Administration.
-
Under SSL Settings, click Install SSL Certificate.
-
In the Install SSL Certificate on Console page, select the certificate and key files and optionally specify a password if the private key is encrypted.
-
Click OK.
Disable local authentication
-
Navigate to Settings > Authentication.
-
On the Authentication page, click Settings.
-
On the Authentication Settings page, in Server Type select EXTERNAL.
-
Click Insert, and on the External Servers page, select one or multiple authentication servers to cascade.
-
Clear Enable fallback local authentication to disable local authentication.
-
Click OK.