HP Integrity rx2800 Installation Guide, Windows Server 2008 R2 v7.0 - Page 90

Remote Management Using IPMI, Authentication and Authorization Issues, Local Management

Page 90 highlights

• Simple installation: Install all components on an nPartition (fewer components must be installed manually when reinstall media is used). • Simple connection: Log in to SMH and run Partition Manager, or run nPartition commands with no -g/-u options. No additional authentication or login steps are required to manage the local complex. • Controlled configuration of specific nPartitions with the nPartition Config Privilege option: You can restrict to configuration of certain nPartitions. Disadvantages of local management follow: • Requires at least one nPartition to be configured and booted to Windows (or to another OS supporting nPartition tools). • Requires nPartition tools to be installed on at least one nPartition in each partitionable complex. • Requires login to an nPartition in each complex to be managed, through the SMH web (in the case of Partition Manager), telnet, or Remote Desktop (in the case of nPartition commands). Remote Management Using IPMI Some of the advantages of remote management using IPMI are as follows: • Installs easily: Install all components onto a remote management station and enables you to manage all complexes in the data center. • Enables you to manage a complex even if no nPartitions are currently configured in the complex. • Enables you to manage all complexes in the data center from a single management station. Disadvantages of remote management using IPMI are as follows: • Does not allow configuration of specific nPartitions to be controlled by use of the nPartition Config Privilege option. Users logging in by remote IPMI have configuration privileges for all nPartitions in the complex. • Requires the additional login step of providing the MP host name and address and IPMI password to connect to the MP remotely. • Uses IPMI/LAN connections, which are slightly less secure than remote WBEM connections (using SSL). For this reason, HP recommends that the network connection between the management station and the MP be on a private network. Remote Management Using WBEM Some of the advantages of remote management using WBEM are as follows: • Uses a secure HTTPS/SSL connection between remote management station and nPartition. • Enables configuration of specific nPartitions to be controlled with the nPartition Config Privilege option. Users can be restricted to configuration of certain nPartitions. • Enables you to manage all complexes in the data center from a single management station. Some of the disadvantages of remote management using WBEM are the following: • Requires at least one nPar to be configured and booted to Windows (or another supported OS) and running the WBEM/WMI nPartition Provider. • Requires copying SSL certificates from the nPartition to the management station's trusted certificate store (not an automated process). • Requires the additional login step of providing a user name and password for the remote nPartition being connected to. Authentication and Authorization Issues A list of authentication and authorization issues associated with each management mode and connection method follows. Local Management Authentication issues associated with the local management mode include the following: 90 nPartitioning

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110

Simple installation: Install all components on an nPartition (fewer components must be
installed manually when reinstall media is used).
Simple connection: Log in to SMH and run Partition Manager, or run nPartition commands
with no
-g
/
-u
options. No additional authentication or login steps are required to manage
the local complex.
Controlled configuration of specific nPartitions with the nPartition Config Privilege option:
You can restrict to configuration of certain nPartitions.
Disadvantages of local management follow:
Requires at least one nPartition to be configured and booted to Windows (or to another OS
supporting nPartition tools).
Requires nPartition tools to be installed on at least one nPartition in each partitionable
complex.
Requires login to an nPartition in each complex to be managed, through the SMH web (in
the case of Partition Manager), telnet, or Remote Desktop (in the case of nPartition
commands).
Remote Management Using IPMI
Some of the advantages of remote management using IPMI are as follows:
Installs easily: Install all components onto a remote management station and enables you
to manage all complexes in the data center.
Enables you to manage a complex even if no nPartitions are currently configured in the
complex.
Enables you to manage all complexes in the data center from a single management station.
Disadvantages of remote management using IPMI are as follows:
Does
not
allow configuration of specific nPartitions to be controlled by use of the nPartition
Config Privilege option. Users logging in by remote IPMI have configuration privileges for
all nPartitions in the complex.
Requires the additional login step of providing the MP host name and address and IPMI
password to connect to the MP remotely.
Uses IPMI/LAN connections, which are slightly less secure than remote WBEM connections
(using SSL). For this reason, HP recommends that the network connection between the
management station and the MP be on a private network.
Remote Management Using WBEM
Some of the advantages of remote management using WBEM are as follows:
Uses a secure HTTPS/SSL connection between remote management station and nPartition.
Enables configuration of specific nPartitions to be controlled with the nPartition Config
Privilege option. Users can be restricted to configuration of certain nPartitions.
Enables you to manage all complexes in the data center from a single management station.
Some of the disadvantages of remote management using WBEM are the following:
Requires at least one nPar to be configured and booted to Windows (or another supported
OS) and running the WBEM/WMI nPartition Provider.
Requires copying SSL certificates from the nPartition to the management station’s trusted
certificate store (not an automated process).
Requires the additional login step of providing a user name and password for the remote
nPartition being connected to.
Authentication and Authorization Issues
A list of authentication and authorization issues associated with each management mode and
connection method follows.
Local Management
Authentication issues associated with the local management mode include the following:
90
nPartitioning