<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: privelege problem in Server Management (Insight Manager 7)</title>
    <link>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173779#M11705</link>
    <description>While SNMP has been much maligned because of a perceived lack of security due to plain text communications, in practice that is not really the case, particularly as it relates to IM7/hpSIM and the Insight agents.  In fact, since most systems are placed within firewall protected corporate networks, if you have users sniffing your network, you have a bigger problem than SNMP.  &lt;BR /&gt;&lt;BR /&gt;Communications need to be secure when you have the potential to do harm.  The only "harm" that is possible with the Insight agents (and this is disabled by default) is the remote reboot option.  Other than that, SNMP is used for status polling, data collection and used internal to the agents to clear logs and manipulate thresholds.  Every "transaction" that is performed (group configuration, software distribution) is done through HTTPS and not SNMP.&lt;BR /&gt;&lt;BR /&gt;Yes, the presence of SNMP on a system introduces another point for potential attack, but SNMP is no more intrinsically vulverable than DCOM, file sharing, HTTP, FTP and so forth.</description>
    <pubDate>Tue, 27 Jan 2004 14:47:45 GMT</pubDate>
    <dc:creator>David Claypool</dc:creator>
    <dc:date>2004-01-27T14:47:45Z</dc:date>
    <item>
      <title>privelege problem</title>
      <link>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173775#M11701</link>
      <description>Hi &lt;BR /&gt;&lt;BR /&gt;I use an HP insight 7 SP2 on a HP ML330&lt;BR /&gt;when I acced at the insight agent web home page&lt;BR /&gt;I log into with the administrator account&lt;BR /&gt;&lt;BR /&gt;But I can't move any threshold or deleting events in the log&lt;BR /&gt;&lt;BR /&gt;I have the following message on the botom of the window&lt;BR /&gt;&lt;BR /&gt;"Setting Thresholds: Thresholds cannot be set due to access limitations."&lt;BR /&gt;&lt;BR /&gt;some ideas ??&lt;BR /&gt;&lt;BR /&gt;fred</description>
      <pubDate>Mon, 26 Jan 2004 09:40:11 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173775#M11701</guid>
      <dc:creator>DEL PI?O</dc:creator>
      <dc:date>2004-01-26T09:40:11Z</dc:date>
    </item>
    <item>
      <title>Re: privelege problem</title>
      <link>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173776#M11702</link>
      <description>You need to have a suitable SNMP community name set up on both ends.&lt;BR /&gt;At the Server you're tring to change the settings, go into SNMP Settings and add a new community name (e.g InsightManager) and give this Read/Write access.&lt;BR /&gt;Update IM to use this new community name.&lt;BR /&gt;&lt;BR /&gt;Retry the connection.&lt;BR /&gt;&lt;BR /&gt;You could just update the public SNMP Community name to have Read/Write to test that it is an SNMP connectivity issue. I would advise against leaving it like this as it's not a great security feature.</description>
      <pubDate>Mon, 26 Jan 2004 16:18:29 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173776#M11702</guid>
      <dc:creator>Rob Buxton</dc:creator>
      <dc:date>2004-01-26T16:18:29Z</dc:date>
    </item>
    <item>
      <title>Re: privelege problem</title>
      <link>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173777#M11703</link>
      <description>HI&lt;BR /&gt;&lt;BR /&gt;thanks for your response.&lt;BR /&gt;&lt;BR /&gt;is there a way to have a more secure connection than SNMP community&lt;BR /&gt;&lt;BR /&gt;fred</description>
      <pubDate>Tue, 27 Jan 2004 03:27:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173777#M11703</guid>
      <dc:creator>DEL PI?O</dc:creator>
      <dc:date>2004-01-27T03:27:15Z</dc:date>
    </item>
    <item>
      <title>Re: privelege problem</title>
      <link>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173778#M11704</link>
      <description>Not really, SNMP is the backbone for device identification and then to be able to action things on the remote Server. &lt;BR /&gt;&lt;BR /&gt;You can tighten up SNMP by:&lt;BR /&gt;Using new Community names and removing the public and private community names.&lt;BR /&gt;On W2000 Servers change the Accept SNMP Request from All Hosts to Selected Servers. This is the default on 2003.&lt;BR /&gt;If you do this you must add an address for the local host (127.0.0.1) plus the IP Address of the IM Server and any other Servers that will use SNMP to get information.&lt;BR /&gt;</description>
      <pubDate>Tue, 27 Jan 2004 14:23:10 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173778#M11704</guid>
      <dc:creator>Rob Buxton</dc:creator>
      <dc:date>2004-01-27T14:23:10Z</dc:date>
    </item>
    <item>
      <title>Re: privelege problem</title>
      <link>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173779#M11705</link>
      <description>While SNMP has been much maligned because of a perceived lack of security due to plain text communications, in practice that is not really the case, particularly as it relates to IM7/hpSIM and the Insight agents.  In fact, since most systems are placed within firewall protected corporate networks, if you have users sniffing your network, you have a bigger problem than SNMP.  &lt;BR /&gt;&lt;BR /&gt;Communications need to be secure when you have the potential to do harm.  The only "harm" that is possible with the Insight agents (and this is disabled by default) is the remote reboot option.  Other than that, SNMP is used for status polling, data collection and used internal to the agents to clear logs and manipulate thresholds.  Every "transaction" that is performed (group configuration, software distribution) is done through HTTPS and not SNMP.&lt;BR /&gt;&lt;BR /&gt;Yes, the presence of SNMP on a system introduces another point for potential attack, but SNMP is no more intrinsically vulverable than DCOM, file sharing, HTTP, FTP and so forth.</description>
      <pubDate>Tue, 27 Jan 2004 14:47:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-insight/privelege-problem/m-p/3173779#M11705</guid>
      <dc:creator>David Claypool</dc:creator>
      <dc:date>2004-01-27T14:47:45Z</dc:date>
    </item>
  </channel>
</rss>

