HP 635n HP Jetdirect Print Server Administrator's Guide - Page 118

Security Features, IPv4 Access Control List, Telnet Control, Authentication and Encryption

Page 118 highlights

Table 6-1 Summary of HP Jetdirect Security Features (continued) ■ Used by Telnet (IPv4), HP Web Jetadmin (IPv4), and the embedded Web server to control access to HP Jetdirect configuration parameters. ■ Up to 16 alphanumeric characters may be used. ■ Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server services, or HP Web Jetadmin (IPv4). Up to 16 alphanumeric characters are allowed. ■ If configured through the embedded Web server, may be synchronized as the SNMP Set Community Name used in HP Web Jetadmin (IPv4) SNMP v1/v2c Set commands. ■ Cleared by cold reset of the print server to factory default settings. IPv4 Access Control List ■ Specifies up to 10 IPv4 host systems, or IPv4 networks of host systems, that are allowed access to the HP Jetdirect print server and the attached network device. ■ Access is generally limited to host systems specified in the list. ■ By factory default, host systems that use HTTP (for example, using the embedded Web server or IPP) are not checked against entries in the Access List and are allowed access. However, HTTP host access can be disabled through the embedded Web server. ■ If the list is empty, then all hosts are allowed access. ■ Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or SNMP (IPv4) management software. Telnet Control ■ Telnet (IPv4) access is not secure. Telnet may be disabled through the embedded Web server (see HP Jetdirect Embedded Web Server (V.31.xx)). Authentication and Encryption (Full-featured print servers) Certificate management for X.509 digital certificates is provided through the embedded Web server, for both client-based and server-based authentication. A self-signed Jetdirect certificate is pre-installed, and may be replaced. A Certificate Authority (CA) certificate may also be installed. IPv4 SNMP v1/v2c Set Community Name (IP/IPX) (IPv4 SNMP v1/v2c only) ■ A password on the HP Jetdirect print server that allows incoming SNMP Set commands (for example, from management software) to write (or set) HP Jetdirect configuration parameters. ■ For a user-assigned Set Community Name, SNMP Set commands must contain the user-assigned name, which is authenticated by the print server before the command is performed. ■ On IP networks, authentication of SNMP Set commands may be further restricted to systems identified on the access control list. ■ Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or Management application services. ■ SNMP v1/v2c uses plain text and can be disabled. IPv4 SNMP v3 108 Chapter 6 Security Features ENWW

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194

Used by Telnet (IPv4), HP Web Jetadmin (IPv4), and the embedded Web server to control access to HP Jetdirect
configuration parameters.
Up to 16 alphanumeric characters may be used.
Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server services, or HP
Web Jetadmin (IPv4). Up to 16 alphanumeric characters are allowed.
If configured through the embedded Web server, may be synchronized as the SNMP Set Community Name used in HP
Web Jetadmin (IPv4) SNMP v1/v2c Set commands.
Cleared by cold reset of the print server to factory default settings.
IPv4 Access Control List
Specifies up to 10 IPv4 host systems, or IPv4 networks of host systems, that are allowed access to the HP Jetdirect
print server and the attached network device.
Access is generally limited to host systems specified in the list.
By factory default, host systems that use HTTP (for example, using the embedded Web server or IPP) are not checked
against entries in the Access List and are allowed access. However, HTTP host access can be disabled through the
embedded Web server.
If the list is empty, then all hosts are allowed access.
Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or SNMP (IPv4)
management software.
Telnet Control
Telnet (IPv4) access is not secure. Telnet may be disabled through the embedded Web server (see
HP
Jetdirect
Embedded
Web
Server
(V.31.xx)
).
Authentication and Encryption
(Full-featured print servers) Certificate management for X.509 digital certificates is provided through the embedded Web
server, for both client-based and server-based authentication. A self-signed Jetdirect certificate is pre-installed, and may be
replaced. A Certificate Authority (CA) certificate may also be installed.
IPv4 SNMP v1/v2c Set Community Name (IP/IPX)
(IPv4 SNMP v1/v2c only)
A password on the HP Jetdirect print server that allows incoming SNMP Set commands (for example, from
management software) to write (or
set
) HP Jetdirect configuration parameters.
For a user-assigned Set Community Name, SNMP Set commands must contain the user-assigned name, which is
authenticated by the print server before the command is performed.
On IP networks, authentication of SNMP Set commands may be further restricted to systems identified on the access
control list.
Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or Management
application services.
SNMP v1/v2c uses plain text and can be disabled.
IPv4 SNMP v3
Table 6-1
Summary of HP Jetdirect Security Features (continued)
108
Chapter 6
Security Features
ENWW