Cisco DDR2200 Series Manuale Utente Pagina 10

  • Scaricare
  • Aggiungi ai miei manuali
  • Stampa
  • Pagina
    / 23
  • Indice
  • SEGNALIBRI
  • Valutato. / 5. Basato su recensioni clienti
Vedere la pagina 9
contributor to platform compromise.
Security containment
Security containmentSecurity containment
Security containment
HP Security Containment for HP-UX 11i is a suite of security technologies designed to dramatically
reduce the likelihood of system compromise. HP incorporates these enhanced security features into the
mainstream HP-UX 11i operating environment to help businesses combat increasingly complex threats.
Without requiring modification to applications, HP Security Containment isolates compromised
applications, which are denied unauthorized access to other applications or files on the system.
HP-UX 11i Security Containment comprises three core technologies that together provide a highly secure
operating environment:
Compartments
CompartmentsCompartments
Compartments
provide isolation and restrict access to application and system resources outside of
the compartment to prevent catastrophic damage should a compartment be penetrated. HP-UX
Security Containment accomplishes this by controlling the flow of information between processes
in different compartments. For example, outside compartments can accept and process customer-
facing data and then transfer it securely, by rule, to inside compartments for non-public access
and processing.
Fine-Grained Privileges
Fine-Grained PrivilegesFine-Grained Privileges
Fine-Grained Privileges
grant only the privileges needed for a task and, optionally, only for the
time needed to perform the task. Applications that are "privilege-aware" are able to elevate their
privilege level during the operation and lower it after completion of the operation.
Role-Based Access Control
Role-Based Access ControlRole-Based Access Control
Role-Based Access Control
provides a mechanism to allow non-root users to perform
administrative tasks, effectively splitting the power of root into a manageable set of roles. An out-
of-the-box configuration supports many common HP-UX 11i commands and, when combined with
HP OpenView Select Access, also supports multi-system access management.
Identity management and accountability
Identity management and accountabilityIdentity management and accountability
Identity management and accountability
Standard Mode Security Enhancements
Standard Mode Security EnhancementsStandard Mode Security Enhancements
Standard Mode Security Enhancements
offer granular account and password policies on a
system-wide or per-user basis, including the ability to generate detailed system audits for user
accountability.
HP-UX LDAP-UX
HP-UX LDAP-UXHP-UX LDAP-UX
HP-UX LDAP-UX
client services simplify identity management by allowing system authentication
and naming services to leverage a new or existing LDAP directory.
Kerberos
KerberosKerberos
Kerberos
server and clients offer enterprise-class Single-Sign-On (SSO) services as well as
enhanced interoperability with Windows® ADS.
HP-UX AAA
HP-UX AAAHP-UX AAA
HP-UX AAA
server (RADIUS) authenticates network devices and controls access.
Red Hat Directory Server
Red Hat Directory ServerRed Hat Directory Server
Red Hat Directory Server
for HP-UX provides an industry-standard, centralized directory service to
store digital identity information.
Common Criteria certification
Common Criteria certificationCommon Criteria certification
Common Criteria certification
The HP-UX 11i v2 operating system running on HP 9000 or HP Integrity platforms has been successfully
evaluated against the requirements for the EAL4 Common Criteria (ISO 15408) Assurance Level,
augmented by ALC_FLR.3 (flaw remediation), using the Controlled Access (CAPP) and Role-Based
Access Control (RBAC) Protection Profiles. EAL4+ is sometimes used as the abbreviated form for
additional assurances. Details of the evaluation and evaluated configuration are available at
http://www.commoncriteriaportal.org/public/files/epfiles/CRP225.pdf
and
http://www.commoncriteriaportal.org/public/files/epfiles/hp-ux11iv2.pdf
.
New Security Features:
New Security Features:New Security Features:
New Security Features:
HP-UX Identity Management Integration for Select Access
HP-UX Identity Management Integration for Select AccessHP-UX Identity Management Integration for Select Access
HP-UX Identity Management Integration for Select Access
, an HP OpenView Select tool included
at no charge with the HP-UX operating system, simplifies user management with improved
provisioning and manageability. Instead of accessing each machine individually to update security
polices, it is now possible to manage HP-UX 11i servers on a one-to-many basis; and add policies
QuickSpecs
HP Integrity BL860c Server Blade
HP Integrity BL860c Server BladeHP Integrity BL860c Server Blade
HP Integrity BL860c Server Blade
Standard Features
DA - 12671 North America — Version 2 — February 15, 2007
Page 10
Vedere la pagina 9
1 2 ... 5 6 7 8 9 10 11 12 13 14 15 ... 22 23

Commenti su questo manuale

Nessun commento