Securing The Wbem Connection; Managing Npartitions Using Wbem - HP Integrity rx7620 Installation Manual

Installation (smart setup) guide, windows server 2008, v6.1
Hide thumbs Also See for Integrity rx7620:
Table of Contents

Advertisement

data in a consistent fashion. Client applications can then use this information to manage an
enterprise computing environment.
Because WBEM supports a distributed management architecture, client applications (nPartition
management tools, for example) can run on a remote system and use the WBEM infrastructure
to send requests to managed servers.
Partition Manager is a WBEM client application. Partition Manager uses WBEM when retrieving
information about a server complex. Partition Manager uses nPartition commands for all other
operations. The nPartition commands are also WBEM client applications.
Several software components support nPartition commands for Windows. The Windows OS
provides the Windows Management Instrumentation (WMI) software, which is an implementation
of WBEM standards. HP provides a WMI-based nPartition Provider and WMI mapper to convert
CIM/XML WBEM requests from clients (like nPartition commands and Partition Manager) into
WMI requests.
The nPartition commands and Partition Manager send management messages to the nPartition
Provider. The nPartition Provider handles communication with the MP using the IPMI protocol,
locally through an IPMI/BT device driver, or remotely using the MP IPMI/LAN interface.

Securing the WBEM Connection

WBEM secures the management connection using an SSL authentication process, which involves
the following files:
WBEM SSL Certificate (cert.pem file)
that is being managed and contains the local WBEM server's certificate.
On a Windows system, the WBEM SSL certificate file is in the location specified by the
sslCertificateFilePath entry in the %PEGASUS_HOME%\cimserver_current.conf file,
and is usually %SystemDrive%\hp\sslshare\cert.pem.
WBEM Trusted Certificate Store (known_hosts.pem file)
file resides on the system from which you issue WBEM remote management commands.
On a Windows system, the WBEM Trusted Certificate Store file resides in the
%SystemDrive%\hp\sslshare directory.
Partition Manager Trusted Certificate Store (parmgr.keystore file)
Certificate Store file resides on the system from which you run Partition Manager. Partition
Manager uses it to validate server certificates. On a Windows system, the Partition Manager
Trusted Certificate Store file resides in the %SystemDrive%\hp\sslshare directory.
For remote WBEM SSL connections to succeed, the WBEM SSL server certificate from the remote
system you are connecting to (the WBEM server) must be imported into the trusted certificate
stores on the system where the remote WBEM commands are issued from (the client system).

Managing nPartitions Using WBEM

Using WBEM, you can manage remote nPartitions indirectly, through an nPartition on the server.
NOTE:
You cannot use WBEM to manage nPartitions remotely if none of the nPartitions on the
target server have been booted or configured yet, or if the nPartition provider or MP device
driver components have not been installed yet.
To use WBEM, install the WMI Mapper and the nPartition commands software on your
management station. After you install the tools, enable secure WBEM communications. Then
you can use Partition Manager or nPartition commands to manage the remote nPartitions.
92
nPartitioning
The WBEM SSL certificate file resides on the system
The WBEM Trusted Certificate Store
The Partition Manager

Advertisement

Table of Contents
loading

This manual is also suitable for:

Integrity rx8620Integrity superdome sx1000

Table of Contents