Hmc Security And User Management - IBM p5 590 System Handbook

Table of Contents

Advertisement

If any configuration parts were unsuccessful, you can check the status log for
configuration problems.

8.6 HMC security and user management

This section discusses security implementation within the HMC environment that
includes the following topics:
Certificate authority
Server security
Object manager security
HMC User management
System Manager Security ensures that the HMC can operate securely in the
client-server mode. Managed machines are servers and the managed users are
clients. Servers and clients communicate over the Secure Sockets Layer (SSL)
protocol, which provides server authentication, data encryption, and data
integrity. Each HMC System Manager server has its own private key and a
certificate of its public key signed by a Certificate Authority (CA) that is trusted by
the System Manager clients. The private key and the server certificate are stored
in the server's private key ring file. Each client must have a public key ring file that
contains the certificate of the trusted CA.
Define one HMC as a Certificate Authority. You use this HMC to generate keys
and certificates for your HMC servers and client systems. The servers are the
HMCs you want to manage remotely. A unique key must be generated and
installed on each server. You can generate the keys for all your servers in one
action on the CA and then copy them to diskette, install them at the servers, and
configure the servers for secure operation.
The client systems are the systems from which you want to do remote
management. Client systems can be HMCs, AIX 5L, or PC clients. Each client
system must have a copy of the CA's public key ring file in its System Manager
codebase directory. You can copy the CA public key ring file to the diskette on the
CA and copy it from the diskette to each client.
To use the System Manager Security application, you must be a member of the
System Administrator role. To ensure security during configuration, users of this
application must be logged in to the HMC locally.
Overview and status
The overview and status window displays the following information about the
secure system manager server:
Chapter 8. Hardware Management Console overview
231

Advertisement

Table of Contents
loading

This manual is also suitable for:

P5 595

Table of Contents