HP StorageWorks 4/16 HP StorageWorks DC and DC04 SAN Backbone Director Switche - Page 121

Security, Network manageability

Page 121 highlights

Security Table 22 highlights some of the key security features available for the DC04 SAN Director running Fabric OS 6.2.0a or later, and for other HP enterprise-class platforms running Fabric OS 5.2.0 or later. For details, contact HP. Table 22 Security features Security Features Description DH-CHAP Login banner SSHv2 (using AES, 3DES, RSA) Monitoring of attempted security breaches (via audit logging) HTTPS (using AES) Monitoring of attempted security breaches (via Fabric Watch Security Class) SNPMv3 FC security policies: DCC and SCC FC-SP Trusted Switch (FCS) for central security management Secure RPC Management access controls (SNMPv3, Telnet, FTP, serial port, front panel) Secure file copy (SCP) Hardware-enforced zoning by WWN and/or domain/port ID Telnet disable Default zoning Telnet timeout RSCN suppression and aggregation IP filters (block listeners) Configurable RSCN suppression by port Secure passwords (centralized control via RADI- NTPv3 (to synchronize timestamps) US/CHAP) Multiple User Accounts (MUAs). Up to 255. Event auditing Role-Based Access Controls (RBACs) Change tracking Administrative domains/Virtual fabrics Firmware change alerts in Fabric Manager Boot PROM password reset Persistent port disable Password hardening policies Persistent domain ID Upfront login in Web Tools E_port disable Network manageability The DC04 SAN Director has a single domain and is managed as a single element with the Data Center Fabric Manager (DCFM) Graphical User Interface (GUI) application. The DC04 SAN Director responds to its own IP address and appears as a separate entity to the Telnet protocol and SNMP. All management interfaces, such as Telnet, Web Tools, standards compliant SMI-S, and Management Server, support a "port N within blade M" naming scheme. HP StorageWorks DC and DC04 SAN Backbone Director Switches 121

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256

Security
Table 22
highlights some of the key security features available for the DC04 SAN Director running
Fabric OS 6.2.0a or later, and for other HP enterprise-class platforms running Fabric OS 5.2.0 or
later. For details, contact HP.
Table 22 Security features
Description
Security Features
Login banner
DH-CHAP
Monitoring of attempted security breaches (via audit log-
ging)
SSHv2 (using AES, 3DES, RSA)
Monitoring of attempted security breaches (via Fabric Watch
Security Class)
HTTPS (using AES)
FC security policies: DCC and SCC
SNPMv3
Trusted Switch (FCS) for central security management
FC-SP
Management access controls (SNMPv3, Telnet, FTP, serial
port, front panel)
Secure RPC
Hardware-enforced zoning by WWN and/or domain/port
ID
Secure file copy (SCP)
Default zoning
Telnet disable
RSCN suppression and aggregation
Telnet timeout
Configurable RSCN suppression by port
IP filters (block listeners)
NTPv3 (to synchronize timestamps)
Secure passwords (centralized control via RADI-
US/CHAP)
Event auditing
Multiple User Accounts (MUAs). Up to 255.
Change tracking
Role-Based Access Controls (RBACs)
Firmware change alerts in Fabric Manager
Administrative domains/Virtual fabrics
Persistent port disable
Boot PROM password reset
Persistent domain ID
Password hardening policies
E_port disable
Upfront login in Web Tools
Network manageability
The DC04 SAN Director has a single domain and is managed as a single element with the Data
Center Fabric Manager (DCFM) Graphical User Interface (GUI) application. The DC04 SAN Director
responds to its own IP address and appears as a separate entity to the Telnet protocol and SNMP.
All management interfaces, such as Telnet, Web Tools, standards compliant SMI-S, and Management
Server, support a “port N within blade M” naming scheme.
HP StorageWorks DC and DC04 SAN Backbone Director Switches
121