Security configuration settings
The following topics describe configuration settings for the Management Infrastructure security function.
See also “Security integration” on page 48.
Available OS security domains
This security setting establishes an administrator-specified list of OS security domains that Management
Infrastructure software can use for authentication.
• By default, this setting is empty.
• If you specify a security domain, it can be any legal domain name (up to 255 characters).
• Typical use. When it is known that a machine has trust relationships with an OS security domain
that Management Infrastructure software cannot automatically detect, you can add the domain to
this list. This allows Management Infrastructure software to authenticate users with the specified
domain.
• Considerations. Management Infrastructure software does not verify OS security domain entries.
If an incorrect domain is entered, security administrators will mistakenly believe that user accounts
for the security domain are being authenticated, when in fact they are not. Incorrect entries can
also cause failed login attempts.
Management Infrastructure software also uses certain domains which do not appear in the
administrator-specified list. On Windows machines these are:
• Local machine
• Primary active domain
Local service port
This security setting establishes the port for the Management Infrastructure local security web service.
• The default is 0 (zero), which allows Management Infrastructure software to assign the port number.
• If you specify a port number, it must be in the range of 1024 to 65535.
• Typical use. To accommodate environments where corporate policy or network infrastructures
(firewalls, proxies, etc.) require that specific ports be used. For example, if a server-assigned port
number might not work with a firewall, you can specify a port number.
• Considerations. The specified port must be free every time Management Infrastructure service
starts; otherwise the service will not be available.
Login service port
This security setting establishes the port for the Management Infrastructure login web service.
• The default is 0 (zero), which allows Management Infrastructure software to assign the port number.
• If you specify a port number, it must be in the range of 1024 to 65535.
• Typical use. To accommodate environments where corporate policy or network infrastructures
(firewalls, proxies, etc.) require that specific ports be used. For example, if a server-assigned port
number might not work with a firewall, you can specify a port number.
• Considerations. The specified port must be free every time Management Infrastructure service
starts, otherwise the service will not be available.
HP StorageWorks Management Infrastructure66
Commentaires sur ces manuels