Sun Oracle Sun Datacenter InfiniBand Switch 36 Hardware Security Manual

Hide thumbs Also See for Sun Datacenter InfiniBand Switch 36:

Advertisement

Sun Datacenter InfiniBand Switch 36
Hardware Security Guide
Part No.: E26701-02
March 2013

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the Sun Datacenter InfiniBand Switch 36 and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Sun Oracle Sun Datacenter InfiniBand Switch 36

  • Page 1 Sun Datacenter InfiniBand Switch 36 Hardware Security Guide Part No.: E26701-02 March 2013...
  • Page 2 Copyright © 2011, 2013, Oracle and/or its affiliates. All rights reserved. This software and related documentation are provided under a license agreement containing restrictions on use and disclosure and are protected by intellectual property laws. Except as expressly permitted in your license agreement or allowed by law, you may not use, copy, reproduce, translate, broadcast, modify, license, transmit, distribute, exhibit, perform, publish, or display any part, in any form, or by any means.
  • Page 3: Table Of Contents

    Contents Sun Datacenter InfiniBand Switch 36 Security Guide 1 Understanding Security Principles 1 Planning a Secure Environment 2 Hardware Security Software Security Oracle ILOM Firmware 4 VLAN Security 4 Infiniband Security 4 User Accounts 5 System Logs 5 Maintaining a Secure Environment 5...
  • Page 4 Sun Datacenter InfiniBand Switch 36 Hardware Security Guide • March 2013...
  • Page 5: Sun Datacenter Infiniband Switch 36 Security Guide

    Sun Datacenter InfiniBand Switch 36 Security Guide This document provides general security guidelines to help you protect the Sun Datacenter InfiniBand Switch 36. Topics discussed include: “Understanding Security Principles” on page 1 ■ “Planning a Secure Environment” on page 2 ■...
  • Page 6: Planning A Secure Environment

    USB consoles are also less secure than SSH connections. Restrict access to power supplies, fan modules, and transceivers in particular ■ because they can be easily removed. Sun Datacenter InfiniBand Switch 36 Hardware Security Guide • March 2013...
  • Page 7: Software Security

    – The nm2user has read-only privileges for the CLI interface. The ■ default password is changeme. Change the password with the passwd command. Schedule and regularly change every password on the switch, especially when ■ configured with additional user accounts. Sun Datacenter InfiniBand Switch 36 Security Guide...
  • Page 8: Oracle Ilom Firmware

    Partitioning and implementing P_Keys do not protect an Infiniband fabric. ■ Partitioning only offers Infiniband traffic isolation between partitions. Use static VLAN configurations when possible. ■ Disable unused switch ports and assign them an unused VLAN number. ■ Sun Datacenter InfiniBand Switch 36 Hardware Security Guide • March 2013...
  • Page 9: User Accounts

    “Log Security” on page 7 ■ Asset Tracking Use serial numbers to track inventory. Oracle embeds serial numbers in firmware on management controllers. Refer to the switch documentation for instructions how to read these serial numbers. Sun Datacenter InfiniBand Switch 36 Security Guide...
  • Page 10: Updates For Software And Firmware

    Disable unused or unnecessary services, such as TCP small servers or HTTP. Only ■ enable necessary services and configure these services securely. Data Protection Follow these guidelines to maximize data security: Sun Datacenter InfiniBand Switch 36 Hardware Security Guide • March 2013...
  • Page 11: Log Security

    Periodically archive and clear log files when they exceed a reasonable size. ■ Maintain the archives in a secure location for possible future reference or statistical analysis. Sun Datacenter InfiniBand Switch 36 Security Guide...
  • Page 12 Sun Datacenter InfiniBand Switch 36 Hardware Security Guide • March 2013...

Table of Contents