HP 635n HP Jetdirect Print Server Administrator's Guide (Firmware V.36) - Page 124

Summary of HP Jetdirect Security Features continued, Security Features V.36.xx

Page 124 highlights

Table 6-1 Summary of HP Jetdirect Security Features (continued) ● Used by Telnet (IPv4), HP Web Jetadmin (IPv4), and the embedded Web server to control access to HP Jetdirect configuration parameters. ● Up to 16 alphanumeric characters may be used. ● Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server services, or HP Web Jetadmin (IPv4). Up to 16 alphanumeric characters are allowed. ● If configured through the embedded Web server, may be synchronized as the SNMP Set Community Name used in HP Web Jetadmin (IPv4) SNMP v1/v2c Set commands. ● Cleared by cold reset of the print server to factory default settings. IPv4 Access Control List NOTE: The Firewall feature provides improved security and may be used in place of the IPv4 Access Control List. ● Specifies up to 10 IPv4 host systems, or IPv4 networks of host systems, that are allowed access to the HP Jetdirect print server and the attached network device. ● Access is generally limited to host systems specified in the list. ● By factory default, host systems that use HTTP (for example, using the embedded Web server or IPP) are not checked against entries in the Access List and are allowed access. However, HTTP host access can be disabled through the embedded Web server. ● If the list is empty, then all hosts are allowed access. ● Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or SNMP (IPv4) management software. Telnet Control ● Telnet (IPv4) access is not secure. Telnet may be disabled through the embedded Web server (see Embedded Web Server (V.36.xx) on page 61). Authentication and Encryption Certificate management for X.509v3 digital certificates is provided through the embedded Web server, for both client-based and server-based authentication. A self-signed Jetdirect certificate is pre-installed, and may be replaced. On full-featured print servers, a Certificate Authority (CA) certificate may also be installed. IPv4/IPv6 SNMP v1/v2c Set Community Name (IP/IPX) (SNMP v1/v2c only) ● A password on the HP Jetdirect print server that allows incoming SNMP Set commands (for example, from management software) to write (or set) HP Jetdirect configuration parameters. ● For a user-assigned Set Community Name, SNMP Set commands must contain the user-assigned name, which is authenticated by the print server before the command is performed. ● On IP networks, authentication of SNMP Set commands may be further restricted to systems identified on the access control list. ● Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or Management application services. ● SNMP v1/v2c uses plain text and can be disabled. IPv4/IPv6 SNMP v3 114 Chapter 6 Security Features (V.36.xx) ENWW

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202

Used by Telnet (IPv4), HP Web Jetadmin (IPv4), and the embedded Web server to control access to HP Jetdirect
configuration parameters.
Up to 16 alphanumeric characters may be used.
Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server services, or HP Web
Jetadmin (IPv4). Up to 16 alphanumeric characters are allowed.
If configured through the embedded Web server, may be synchronized as the SNMP Set Community Name used in HP
Web Jetadmin (IPv4) SNMP v1/v2c Set commands.
Cleared by cold reset of the print server to factory default settings.
IPv4 Access Control List
NOTE:
The
Firewall
feature provides improved security and may be used in place of the IPv4 Access Control List.
Specifies up to 10 IPv4 host systems, or IPv4 networks of host systems, that are allowed access to the HP Jetdirect print
server and the attached network device.
Access is generally limited to host systems specified in the list.
By factory default, host systems that use HTTP (for example, using the embedded Web server or IPP) are not checked
against entries in the Access List and are allowed access. However, HTTP host access can be disabled through the
embedded Web server.
If the list is empty, then all hosts are allowed access.
Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or SNMP (IPv4)
management software.
Telnet Control
Telnet (IPv4) access is not secure. Telnet may be disabled through the embedded Web server (see
Embedded Web
Server (V.36.xx)
on page
61
).
Authentication and Encryption
Certificate management for X.509v3 digital certificates is provided through the embedded Web server, for both client-based
and server-based authentication. A self-signed Jetdirect certificate is pre-installed, and may be replaced. On full-featured print
servers, a Certificate Authority (CA) certificate may also be installed.
IPv4/IPv6 SNMP v1/v2c Set Community Name (IP/IPX)
(SNMP v1/v2c only)
A password on the HP Jetdirect print server that allows incoming SNMP Set commands (for example, from management
software) to write (or
set
) HP Jetdirect configuration parameters.
For a user-assigned Set Community Name, SNMP Set commands must contain the user-assigned name, which is
authenticated by the print server before the command is performed.
On IP networks, authentication of SNMP Set commands may be further restricted to systems identified on the access
control list.
Configured on the HP Jetdirect print server using TFTP (IPv4), Telnet (IPv4), embedded Web server, or Management
application services.
SNMP v1/v2c uses plain text and can be disabled.
IPv4/IPv6 SNMP v3
Table 6-1
Summary of HP Jetdirect Security Features (continued)
114
Chapter 6
Security Features (V.36.xx)
ENWW