A method and apparatus for initializing security information for a network
device. Two protocols are used. A first protocol, which has no encryption
capability, is used to create an initial account. However, the initial
account corresponds to a second protocol, and this second protocol does
have encryption capability. A security parameter which is used to encrypt
data and which corresponds to the initial account is transmitted by the
network device to the network management application. The security
parameter may be transmitted from the network device to the network
management application openly via the first protocol. The network
management application then uses this security parameter to encrypt
sensitive security information needed for initially configuring the
network device. The encrypted security information can now be transmitted
securely over the network to the network device by means of the second
protocol. Thereby, the network device can be initially configured with
the requisite security information in an easy-to-use and relatively
secure manner.