11
1 of 11 Applicability This document is applicable to the components or categories listed below: About This Document This document is intended for Operators of PlayPorTT wireless game and music systems, TouchTunes Field Service, Customer Support, and Sales personnel. It explains the PlayPorTT wireless router’s default (as-shipped) settings and provides instructions for configuring the router and access point(s) to comply with the Payment Card Industry (PCI) Digital Security Standard. Important Information When installing and configuring your PlayPorTT system, it is important that you understand and comply with the the following requirements. Software Hardware Mechanical Packaging 1. PlayPorTT wireless routers are shipped in a separate carton affixed to the exterior of the PlayPorTT system shipping crate. When a router is shipped with an accompanying wireless access point (WAP), the router and WAP are pre-configured with matching SSIDs and encryption properties that enable them to work together as a matched pair. The router must not be separated from the WAP and used with a different one. Make sure the router stays with the WAP for which it is intended. 2. In installations where wireless access points (WAPs) are used, it is imperative that the SSID, encryption method, and WPA Shared Key for all WAPs match that of the PlayPorTT wireless router. Failure to configure the components accordingly will cause the PlayPorTTs to cease functioning when roaming between access points. 3. In order for your PlayPorTT system to meet the requirements of the PCI security standard, the router and all access points must use WPA encryption. No other encryption method is acceptable in a PCI DSS-compliant system. Technical Bulletin Configuring PlayPorTT Network for PCI DSS Compliance October 2009 900431-001 Rev. 00 9 9

Technical Bulletin - TouchTunes

  • Upload
    others

  • View
    3

  • Download
    0

Embed Size (px)

Citation preview

1 of 11

ApplicabilityThis document is applicable to the components or categories listed below:

About This DocumentThis document is intended for Operators of PlayPorTT wireless game and music systems, TouchTunes Field Service, Customer Support, and Sales personnel.

It explains the PlayPorTT wireless router’s default (as-shipped) settings and provides instructions for configuring the router and access point(s) to comply with the Payment Card Industry (PCI) Digital Security Standard.

Important InformationWhen installing and configuring your PlayPorTT system, it is important that you understand and comply with the the following requirements.

Software

Hardware

Mechanical

Packaging

1. PlayPorTT wireless routers are shipped in a separate carton affixed to the exterior of the PlayPorTT system shipping crate. When a router is shipped with an accompanying wireless access point (WAP), the router and WAP are pre-configured with matching SSIDs and encryption properties that enable them to work together as a matched pair. The router must not be separated from the WAP and used with a different one. Make sure the router stays with the WAP for which it is intended.

2. In installations where wireless access points (WAPs) are used, it is imperative that the SSID, encryption method, and WPA Shared Key for all WAPs match that of the PlayPorTT wireless router. Failure to configure the components accordingly will cause the PlayPorTTs to cease functioning when roaming between access points.

3. In order for your PlayPorTT system to meet the requirements of the PCI security standard, the router and all access points must use WPA encryption. No other encryption method is acceptable in a PCI DSS-compliant system.

Technical BulletinConfiguring PlayPorTT Network for PCI DSS Compliance

October 2009900431-001 Rev. 00

2 of 11

Router Settings

Note: The instructions provided here assume that your installation uses the TouchTunes-supplied Linksys WRT54G or WRT54GL router. Other routers are not currently supported.

Changing Router PasswordIn order for your PlayPorTT system to be PCI DSS-compliant, you must change the passwords for your router and access point(s).

PlayPorTT wireless routers and access points are shipped with the default password “g0ldfish” (the second character is the numeral zero; all alphabetic characters are lower case).The Username field—left blank—is neither used nor changeable.

Use the following guidelines to choose a strong password for your wireless LAN:

• Choose a password of at least 7 characters in length.• Use a combination of upper and lower case letters.• Use a combination of letters, numbers, and special characters (for example, ` ~ ! @ # $ % ^ & * ( ) _ + - = { }

| [ ] \ : " ; ' < > ? , . /).• Avoid using dictionary words.• Avoid using proper names such as the location’s company name, or names of location personnel.To change the router’s password:

1. Connect an Ethernet cable between a LAN port on the router and a network port on a desktop or laptop computer, and wait for the connection to be established.TIP: To minimize the potential for complication, turn off the wireless radio on your laptop computer (where applicable).

2. Ensure that the router and computer system are powered up and running.3. Open a Web browser and navigate to the Default Gateway IP address 192.168.8.1.

A login dialog displays

Router Login Dialog

4. Leave the User Name text field blank.5. Enter g0ldfish in the Password text field, and then click OK.

Note: The second character of the password is the numeral zero. All alphabetic characters are lower case.

3 of 11

The router’s Basic Setup menu displays.

Basic Setup

6. Click the Administration tab, and then select the Management menu.The Management menu displays.

Administration

7. Choose a new password, and then enter it in the Password text field.8. Confirm your choice by re-entering the password in the Re-enter to confirm text field.9. Click Save Settings to preserve your settings.10.Make a note of your password and record it in a safe place.

Note: TouchTunes recommends backing up your router’s configuration settings to a file located on your computer or a removable drive using the router’s backup utility. See “Backing up and Restoring Settings” on page 6.

Changing Router Encryption KeyThe wireless router’s encryption is shipped with the default WPA shared key “sw0rdf1sh”.

Note: The third character is the numeral zero; the seventh character is the numeral one.

4 of 11

You can change this key to any value you like, as long as you configure all wireless access points (where applicable) to use the same shared key.

To change the WPA shared key:

1. Log onto the router, using your newly created password.2. Click the Wireless tab, and then select the Wireless Security menu.

The Wireless Security menu displays.

Wireless Security Menu

3. Choose a new shared key, and type it into the WPA Shared Key text field.The shared key must be between 8 and 63 characters in length.

4. Press Save Settings to commit your changes.

If You Have Received a Wireless Access Point (WAP)...If you have received a WAP with your PlayPorTT system, you must change its local password and WPA passphrase, and verify that its SSID matches that of the router.

Note: The instructions provided here assume that your installation uses TouchTunes-supplied Linksys WAP54G wireless access point(s). Other WAPs are not currently supported.

Changing Access Point’s PasswordTo change the access point’s password:

1. Ensure that the router, WAP and computer system are powered up and running.2. IMPORTANT: You must connect the WAP LAN port to a LAN port on the router.

You must also connect the network port on a desktop or laptop computer to a LAN port on the router. Failure to do so will result in difficulty in accessing the WAP.

3. Open a Web browser and navigate to the IP address 192.168.8.2, or to whatever IP address you may have previously assigned to the WAP.

4. The WAP login screen displays.

Note: Leave the Username field blank. The default password for this WAP is “g0ldfish”.

5. Enter the password in the Password field, and then click OK.

5 of 11

The Network Setup screen displays.

Network Setup Screen

6. Click the Administration tab, and then select the Management menu.The Administration menu displays.

Administration - Management

7. Choose a password and enter it in the Password text field.

Note: The password does not have to match that of the router. However, when choosing a password, TouchTunes recommends that you follow the guidelines for choosing a strong password described earlier in this document. See “Changing Router Password” on page 2.

8. Confirm your choice by re-entering the password in the Re-enter to confirm text field.9. Click Save Settings to preserve your settings.10.Make a note of your password and record it in a safe place.

Note: TouchTunes recommends backing up your WAP’s configuration settings to a file located on your computer or a removable drive. See“Backing up and Restoring Settings” on page 6.

Changing Access Point’s WPA Passphrase

Important: The passphrase for all access points must be identical to the WPA shared key used by the wireless router.

To change the access point’s WPA passphrase:

1. If you have not already done so, make the following connections:• Connect the WAP LAN port to a LAN port on the router.

6 of 11

• Connect the network port on a desktop or laptop computer to a LAN port on the router.2. Log in to the access point.3. Click the Wireless tab, and then select the Wireless Security menu.

The Wireless Security menu displays.

Wireless Security Screen

4. In the Passphrase text field, enter the identical WPA shared key used by the router.5. Press Save Settings to commit your changes.6. If you have multiple access points, repeat this procedure for all wireless access points used in your

installation.Verifying Access Point SSID

Important: The SSID for all access points must be identical to that of the wireless router.

Before quitting the configuration utility, verify that the WAP is using the same SSID as the router.

1. Click the Wireless tab, and then select the Basic Wireless Settings menu.

Basic Wireless Settings Screen

2. Verify that the SSID in the Network Name (SSID) text field is identical to that of the router.If not, change the SSID and press Save Settings to commit your changes.

3. If you have multiple access points, repeat this procedure for all wireless access points used in your installation.

Backing up and Restoring SettingsBacking up your router and access point’s settings provides an easy and convenient way to recover your settings, should they become lost. Both devices provide backup and restore mechanisms that require only the click of a button.

7 of 11

Wireless Router: Backup1. Log into your router if you have not already done so.2. Click the Administration tab, and then choose the Config Management menu.

Config Management

3. On the Save dialog, click the Backup button.

Choosing a Save Location

4. Choose a save location on your hard driver or removable media, and (optionally) a descriptive file name, for example, routersettings-March31.bin.

Wireless Router: Restore1. Log into your router if you have not already done so.

8 of 11

2. Click the Administration tab, and then choose the Config Management menu.

Config Management

3. Click the Browse... button and navigate to the location of your saved configuration file.

Choosing a Restore File

4. On the Choose File dialog, click Open.5. On the Config Management menu, click the Restore button.6. The restore operation completes, and a success message is displayed.

Router Upgrade Success Message

7. Click Continue.

Verify Restored Settings

Before exiting the configuration utility, confirm that all the router’s restored settings are correct.

In addition, you must verify that the “Easy Setup" button on the router’s front panel is disabled, as the WRT54G firmware does not consistently restore this value.

To verify this setting:

9 of 11

1. Click the Wireless tab and then choose Advanced Wireless Settings.

Advanced Wireless Settings

2. In the Secure Easy Setup pull-down menu, ensure that DISABLE is selected.3. Click Save Settings.Access Point: Backup1. Log into your wireless access point if you have not already done so.2. Click the Administration tab, and then select the Management menu.

Administration - Management

3. On the Save dialog, click the Backup Settings button.

10 of 11

Choosing a Save Location

4. Choose a save location on your hard driver or removable media, and (optionally) a descriptive file name, for example, accesspoint-1-settings-March31.bin.

Access Point: Restore1. Log into your wireless access point if you have not already done so.2. Click the Administration tab, and then select the Management menu.

Administration - Management

3. Click the Restore Settings button and navigate to the location of your saved configuration file.

Choosing a Restore File

4. On the Choose File dialog, click Open.5. The restore operation completes, and a success message is displayed.

Access Point Upgrade Success Message

6. Click Continue.

Verify Restored Settings

Before exiting the configuration utility, confirm that all the WAP’s restored settings are correct.

It is of particular importance to verify the WAP’s SSID and encryption properties, as the firmware does not consistently restore this information.

Copyright © 2009 TouchTunes Interactive Networks

TouchTunes Interactive Networks, Inc.400 Sainte Croix Avenue, Suite 200 EMontreal, Quebec,Canada, H4N 3L4

Technical Support847-353-1954www.touchtunes.com

11 of 11

Contacting TouchTunes SupportIf you need help with or have questions about this document, contact TouchTunes by:

• Using the email links on the Contacts page on the TouchTunes Dashboard at https://operator.touchtunes.com.

• Calling TouchTunes 24/7 Service Hotline at 847-353-1954.To help us assist you more effectively with problem reports, the following information may be required when contacting TouchTunes Support:

• Jukebox ID, PlayPorTT ID, or Barfly ID.• Jukebox model (where applicable).• The serial number of any component you believe to be defective.• The date/time of the problem.• Actions performed immediately before the problem occurred.• Any additional comments.If you require assistance with this or any other TouchTunes product, please contact technical support. We value your comments.