Contents Overview 1 Product Overview 1 Basic Security Principles 1 Access 1 Authentication 2 Authorization 2 Accounting 2 Planning a Secure Environment 3 Hardware Physical Security 3 Restrict Access 3 Record Serial Numbers 4 Software Security 4 Oracle ILOM Firmware 5 Operating System Security Guidelines 5 Oracle System Assistant Security Information 5 Understanding that OSA Contains a Bootable Root Environment 6...
Page 4
Hardware Power Control 10 Asset Tracking 10 Maintaining Updates for Software and Firmware 10 Local and Remote Access 11 Data Security 12 Netra Blade X3-2B Security Guide • November 2012...
Overview The following topics are covered in this overview: “Product Overview” on page 1 ■ “Basic Security Principles” on page 1 ■ Product Overview The Sun Blade X6270 M3 server module is an enterprise class server blade that supports 2P (two processor) configurations. The server module has a standard Sun Blade 6000 chassis blade form factor, layout, airflow, and compatibility with RAID expansion modules (REMs) and fabric expansion modules (FEMs).
Logs are typically maintained for a long period, so it is essential to maintain them. Use component serial numbers to track system assets for inventory purposes. ■ Oracle part numbers are electronically recorded on all cards, modules, and mother boards. Netra Blade X3-2B Security Guide • November 2012...
Planning a Secure Environment This section provides guidelines for use before and during the installation and configuration of a server and related equipment. The following topics are covered: “Hardware Physical Security” on page 3 ■ “Software Security” on page 4 ■...
Refer to the documentation that came with your software to enable any security ■ features available for the software. Implement port security to limit access based upon MAC addresses. Disable ■ autotrunking on all ports. Netra Blade X3-2B Security Guide • November 2012...
Oracle ILOM Firmware You can actively secure, manage, and monitor system components through Oracle Integrated Lights Out Manager (Oracle ILOM). Oracle ILOM management firmware is preinstalled on the SP on the Sun Netra X6270 M3 server module. To understand more about using this firmware when setting up passwords, managing users, and applying security-related features, including Secure Shell (SSH), Secure Socket Layer (SSL), and RADIUS authentication, refer to Oracle Integrated Lights Out Manager (Oracle ILOM) documentation:...
OSA itself can also be disabled. Disabling OSA means that the USB storage device will no longer be accessible to the host operating system. In addition, it will not be possible to boot to Oracle System Assistant. Netra Blade X3-2B Security Guide • November 2012...
Page 11
Once disabled, it can only be re-enabled from BIOS Setup. It is recommended that BIOS Setup be password-protected such that only authorized users can re-enable OSA. See the Oracle System Assistant documentation for instructions on how to disable OSA or refer to the Netra Blade X3-2B Administration Guide. Planning a Secure Environment...
Page 12
Netra Blade X3-2B Security Guide • November 2012...
Maintaining a Secure Environment After the initial installation and setup, use Oracle hardware and software security features to continue controlling hardware and tracking system assets. The following topics are covered: “Oracle ILOM Security” on page 9 ■ “Hardware Power Control” on page 10 ■...
Always install the latest released version of the software or firmware on your ■ equipment. Install any necessary security patches for your software. ■ Devices such as network switches, and ExpressModules also contain firmware and ■ might require patches and firmware updates. Netra Blade X3-2B Security Guide • November 2012...
Local and Remote Access Follow these guidelines to ensure the security of local and remote access to your systems: Follow LDAP security measures when using LDAP to access the system. Refer to ■ the Oracle ILOM Security Guide. Create a banner to state that unauthorized access is prohibited. ■...
- information can still be recovered from a drive after deleting files or reformatting the drive. (Use disk wiping software to completely erase all data on a drive.) Netra Blade X3-2B Security Guide • November 2012...
Need help?
Do you have a question about the Netra Blade X3-2B and is the answer not in the manual?
Questions and answers