Host Authentication And Communication; Identity Certificates And Public Key Cryptography - Oracle Secure Backup Installation And Configuration Manual

Release 10.3
Table of Contents

Advertisement

the media server, and host client as the client. An
belonging to a
-L library_name in obtool. If the attempt is made on client, then it fails with an
illegal request from non-trusted host error. The same command succeeds
when attempted on admin or media.
You can turn off these trust checks by setting the Oracle Secure Backup security policy
trustedhosts to off. This disables the constraints placed on non-trusted hosts.

Host Authentication and Communication

By default, Oracle Secure Backup uses the
establish a secure communication channel between hosts in an
domain. Each host has an X.509
identity certificate is signed by a
this host within the administrative domain. The identity certificate is required for
authenticated SSL connections.
This section contains these topics:

Identity Certificates and Public Key Cryptography

Authenticated SSL Connections
Certification Authority
Oracle Wallet
Web Server Authentication
Revoking a Host Identity Certificate
Identity Certificates and Public Key Cryptography
An
identity certificate
certificate
A
The identity of the host
What the host is authorized to do
Every host in the domain, including the
known only to that host that is stored with the host's identity certificate. This private
key corresponds to a public key that is made available to other hosts in the
administrative
Any host in the domain can use a public key to send an encrypted message to another
host. But only the host with the corresponding private key can decrypt the message. A
host can use its private key to attach a digital signature to the message. The host
class
that has the manage devices class right attempts to run lsvol
Commands that originate from the Oracle Secure Backup
Note:
tool
are always routed to the administrative server for processing, and
are not affected by the trustedhosts policy.
Currently, the
Network Data Management Protocol (NDMP)
Note:
does not support an SSL connection to a filer.
has both a body and a
include the following:
public key
domain.
Host Authentication and Communication
Oracle Secure Backup user
Secure Sockets Layer (SSL)
known as an
certificate
identity
Certification Authority (CA)
digital
signature. The contents of a
server, has a
administrative
Managing Security for Backup Networks 6-9
Web
protocol to
administrative
certificate. This
and uniquely identifies
private key

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the Secure Backup and is the answer not in the manual?

This manual is also suitable for:

Secure backup 10.3

Table of Contents