13.12.2012 Views

HP OpenView Operations Administrator's Reference - filibeto.org

HP OpenView Operations Administrator's Reference - filibeto.org

HP OpenView Operations Administrator's Reference - filibeto.org

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

About Secure Shell (SSH)<br />

About OVO Security<br />

About Network Security<br />

The OVO agent software can alternatively be installed using the Secure<br />

Shell (SSH) installation method. For details, see “Secure Shell<br />

Installation Method” on page 59.<br />

Secure Shell (SSH) is a UNIX shell program for logging into, and<br />

executing commands on a remote computer. SSH is intended to replace<br />

rlogin and rsh, and provide secure encrypted communications between<br />

two untrusted hosts over an insecure network. X11 connections and<br />

arbitrary TCP/IP ports can also be forwarded over the secure channel.<br />

The SSH provides a number of security features, such as:<br />

❏ Port forwarding<br />

All communication between two systems is conducted between<br />

well-known ports, thereby creating a virtual encrypted<br />

communication channel.<br />

❏ RSA authentication<br />

All logins, even those without a password, use RSA authentication.<br />

❏ Public-key encryption<br />

All traffic between systems is secured with public-key encryption.<br />

OVO Agent Installation Using Secure Shell<br />

The SSH installation method provides enhanced security for<br />

installations that are performed over insecure lines (for example, over<br />

the Internet).<br />

Files needed for agent installation are copied using SCP (Secure CoPy),<br />

and remote commands are executed using the command execution<br />

facility built into SSH. As a result, no one can eavesdrop on or alter<br />

communications between systems.<br />

The OVO installation procedure works with any configuration already<br />

established on the management server, regardless of security features<br />

used, as long as you have set up a passwordless login for user root on<br />

the managed node. The best way to set up this login is to establish an<br />

RSA-based passwordless login. For more information, see “To Install<br />

OVO Agent Software Using SSH Installation Method” on page 61.<br />

Chapter 12 493

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!