HP PageWide 377 User Guide - Page 51

Firewall, Security settings, Settings, Security

Page 51 highlights

Firewall The HP Embedded Web Server allows you to enable and configure product firewall rules, priorities, templates, services, and policies. The firewall feature provides a network layer of security on both IPv4 and IPv6 networks. The firewall configuration capability gives you control over IP addresses that are allowed to access the product. It also lets you set permissions and priorities for digital send, management, discovery, and print services. All of this helps provide a more secure way of controlling access to the product. The firewall feature also allows you to disable unused protocols and services. These protocol and services settings can also be protected from being changed by setting the EWS admin password. These protocols and services include the following. Protocol or service IPv4 and IPv6 Bonjour SNMP WINS SLP LPD LLMNR Port 9100 Web Services Internet Printing Protocol (IPP) Description To operate properly on a TCP/IP network, the product must be configured with valid TCP/IP network configuration settings, such as an IP address that is valid for your network. This product supports two versions of this protocol: version 4 (IPv4) and version 6 (IPv6). IPv4 and IPv6 can be enabled/disabled individually or simultaneously enabled. Bonjour services are typically used on small networks for IP address and name resolution where a conventional DNS server is not used. The Bonjour service can be enabled or disabled. SNMP (Simple Network Management Protocol) is used by network management applications for product management. This product supports the SNMPv1 protocol on IP networks. This product allows the ability to enable/disable SNMPv1. If you have a Dynamic Host Configuration Protocol (DHCP) service on your network, the product automatically obtains its IP address from that server and registers its name with any RFC 1001 and 1002-compliant dynamic name services as long as the Windows Internet Name Service (WINS) server IP address has been specified. The WINS server IP address configuration can be enable or disabled. If enabled, then the primary and secondary WINS server can be specified. Service Location Protocol (SLP) is an Internet standard network protocol that provides a framework to allow network applications to discover the existence, location and configuration of networked services in enterprise networks. This protocol can be enabled or disabled. Line Printer Daemon (LPD) refers to the protocol and programs associated with line-printer spooling services that may be installed on various TCP/IP systems. LPD can be enabled or disabled. Link-Local Multicast Name Resolution (LLMNR) is a protocol based on the Domain Name System (DNS) packet format that allows both IPv4 and IPv6 hosts to perform name resolution for hosts on the same local link. LLMNR can be enabled or disabled. The product supports raw IP printing through TCP Port 9100. This HP-propriety TCP/IP port on the product is the default port for printing and it is accessed by HP software. Port 9100 can be enabled or disabled. The product supports the ability to enable or disable Microsoft Web Services Dynamic Discovery (WS Discovery) protocols or Microsoft Web Services for Devices (WSD) Print services supported on the product. These web services can be enabled or disabled together or WS Discovery can be enabled separately. Internet Printing Protocol (IPP) is an Internet-standard protocol that allows you to print documents and manage jobs over the internet. IPP can be disabled or enabled. Security settings On the Settings tab of the Embedded Web Server, under Security, you can find the following options. ENWW Product security features 35

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203

Firewall
The HP Embedded Web Server allows you to enable and configure product firewall rules, priorities, templates,
services, and policies. The firewall feature provides a network layer of security on both IPv4 and IPv6
networks. The firewall configuration capability gives you control over IP addresses that are allowed to access
the product. It also lets you set permissions and priorities for digital send, management, discovery, and print
services. All of this helps provide a more secure way of controlling access to the product.
The firewall feature also allows you to disable unused protocols and services. These protocol and services
settings can also be protected from being changed by setting the EWS admin password. These protocols and
services include the following.
Protocol or service
Description
IPv4 and IPv6
To operate properly on a TCP/IP network, the product must be configured with valid TCP/IP
network configuration settings, such as an IP address that is valid for your network.
This product supports two versions of this protocol: version 4 (IPv4) and version 6 (IPv6). IPv4
and IPv6 can be enabled/disabled individually or simultaneously enabled.
Bonjour
Bonjour services are typically used on small networks for IP address and name resolution
where a conventional DNS server is not used. The Bonjour service can be enabled or disabled.
SNMP
SNMP (Simple Network Management Protocol) is used by network management applications
for product management. This product supports the SNMPv1 protocol on IP networks. This
product allows the ability to enable/disable SNMPv1.
WINS
If you have a Dynamic Host Configuration Protocol (DHCP) service on your network, the product
automatically obtains its IP address from that server and registers its name with any RFC 1001
and 1002-compliant dynamic name services as long as the Windows Internet Name Service
(WINS) server IP address has been specified.
The WINS server IP address configuration can be enable or disabled. If enabled, then the
primary and secondary WINS server can be specified.
SLP
Service Location Protocol (SLP) is an Internet standard network protocol that provides a
framework to allow network applications to discover the existence, location and configuration
of networked services in enterprise networks. This protocol can be enabled or disabled.
LPD
Line Printer Daemon (LPD) refers to the protocol and programs associated with line-printer
spooling services that may be installed on various TCP/IP systems. LPD can be enabled or
disabled.
LLMNR
Link-Local Multicast Name Resolution (LLMNR) is a protocol based on the Domain Name System
(DNS) packet format that allows both IPv4 and IPv6 hosts to perform name resolution for hosts
on the same local link. LLMNR can be enabled or disabled.
Port 9100
The product supports raw IP printing through TCP Port 9100. This HP-propriety TCP/IP port on
the product is the default port for printing and it is accessed by HP software. Port 9100 can be
enabled or disabled.
Web Services
The product supports the ability to enable or disable Microsoft Web Services Dynamic Discovery
(WS Discovery) protocols or Microsoft Web Services for Devices (WSD) Print services supported
on the product. These web services can be enabled or disabled together or WS Discovery can be
enabled separately.
Internet Printing Protocol (IPP)
Internet Printing Protocol (IPP) is an Internet-standard protocol that allows you to print
documents and manage jobs over the internet. IPP can be disabled or enabled.
Security settings
On the
Settings
tab of the Embedded Web Server, under
Security
, you can find the following options.
ENWW
Product security features
35