01.10.2015 Views

HP Operations Manager for UNIX Administrator’s Reference

HP Operations Manager for UNIX Administrator's Reference

HP Operations Manager for UNIX Administrator's Reference

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

About <strong>HP</strong>OM Security<br />

About Network Security<br />

About Network Security<br />

In <strong>HP</strong>OM, network security is designed to improve the security of<br />

connections between processes. These secure process connections can be<br />

within a network, across multiple networks, or through routers or other<br />

restrictive devices.<br />

For example, you could limit access to a network or a section of a network<br />

by restricting the set of nodes (with or without <strong>HP</strong>OM agents running on<br />

them) that are allowed to communicate with the management server<br />

across restrictive routers or even a packet-filtering firewall. It is not<br />

important to <strong>HP</strong>OM whether the server or the network of managed<br />

nodes are inside or outside the firewall. A management server outside<br />

your firewall can manage a network of nodes inside your firewall.<br />

Conversely, a management server inside your firewall can manage nodes<br />

outside your firewall.<br />

One way of limiting access to a network, and consequently improving the<br />

network’s inherent security, is to restrict all connections between <strong>HP</strong>OM<br />

processes on the management server and a managed node to a specific<br />

range of ports. To simplify matters, <strong>HP</strong>OM sets the default value on the<br />

managed node to “No security,” and allows you to select the security<br />

configuration node by node. In this way, you can change the security of a<br />

given node, depending, <strong>for</strong> example, on whether there is a need <strong>for</strong> the<br />

node to communicate across a firewall or through a restricted router.<br />

356<br />

Chapter 11

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!