01.10.2015 Views

HP Operations Manager for UNIX Administrator’s Reference

HP Operations Manager for UNIX Administrator's Reference

HP Operations Manager for UNIX Administrator's Reference

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

About <strong>HP</strong>OM Security<br />

About Network Security<br />

About <strong>HP</strong>OM Process Security<br />

In <strong>HP</strong>OM, the management server and the managed nodes<br />

simultaneously run both RPC clients and servers. As a result, <strong>HP</strong>OM<br />

reduces the process configuration in<strong>for</strong>mation needed to execute RPC<br />

calls.<br />

To execute an RPC call, <strong>HP</strong>OM needs the following configuration<br />

in<strong>for</strong>mation about a process:<br />

❏ Name and password<br />

❏ Security level<br />

This configuration in<strong>for</strong>mation must be present on both the management<br />

server and the managed node.<br />

Configuring <strong>HP</strong>OM Security Levels<br />

<strong>HP</strong>OM allows you to select and configure the security level that your<br />

particular environment requires <strong>for</strong> each managed node.<br />

NOTE<br />

For HTTPS-based managed nodes, you can get this value by calling<br />

ovconfget, or change it by calling ovconfchg command-line tool. For<br />

more details, refer to <strong>HP</strong>OM HTTPS Agent Concepts and Configuration<br />

Guide. See also ovconfget and ovconfchg man pages <strong>for</strong> more in<strong>for</strong>mation.<br />

In this way, security on a given managed node may be changed to handle,<br />

<strong>for</strong> example, the addition of sensitive connections.<br />

It is possible that the process fails or is required to run in the<br />

unauthenticated mode due to the temporary unavailability or poor<br />

configuration of the security service. <strong>HP</strong>OM can be configured to help<br />

you to work around such situations.<br />

For example, if a management server process (<strong>for</strong> example, the request<br />

sender) receives an authentication failure when calling a control agent<br />

on a managed node, an error message is generated. This error message<br />

displays in the Message Browser window. As an <strong>HP</strong>OM administrator,<br />

you can then take immediate corrective action, <strong>for</strong> example, by<br />

temporarily changing the security level on the managed node in question<br />

to allow the retransmitted request to succeed.<br />

358<br />

Chapter 11

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!