Alcatel-Lucent Security Management Server (SMS) Installation Manual page 125

Release 9.4
Table of Contents

Advertisement

General application hardening guidelines
In addition to the general hardening guidelines provided in this appendix, further security
information can be found at:
The Center for Internet Security. This organization provides a wealth of information on
securing your platform. The Center for Internet Security's tools and benchmarks can be
found at http://www.cisecurity.org
Specific guidelines from your hardware and operating system manufacturer. These
guidelines can be found (by vendor):
®
For Sun
For Microsoft
Services and port access
In general, your management platform should enable only the services needed by the
applications that are running on the platform. The required services are highly dependent on
the specific operational and networking needs of the environment in which you are
deploying the SMS, Remote Navigator, and any additional applications that you may be
installing on the same platform, along with the specific security requirements that should be
followed in your data center.
The following table provides a listing of the services that are required for operating the
Alcatel-Lucent SMS and Remote Navigator products.
Port
80
900
7000
7001
®
Solaris
, http://www.cisecurity.org/bench_solaris.html
®
®
Windows
and Vista
Service
http/httpd
SMS and Operating System Hardening Guidelines
®
, http://www.cesecurity.org/bench_windows.html
Type
Port Usage
TCP
Used by Alcatel-Lucent SMS for
Remote Navigator download and for
displaying reports using the SMS
Navigator. This is a configurable port
and is set at install time with a default
value of 80.
TCP
Port 900 is used to allow any Brick
connected to the Alcatel-Lucent SMS
to send audit data to the SMS and
rqeuest the application to download the
Brick.
TCP
Used by the Alcatel-Lucent SMS to
accept connections by the remote/local
Alcatel-Lucent SMS Navigator.
TCP
Used by the Alcatel-Lucent SMS
Database Utility to accept
connections/transactions for its hosted
database.
...................................................................
113

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security management server 9.4

Table of Contents