<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Secure comms between CMS and agents in Server Management - Systems Insight Manager</title>
    <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378423#M5884</link>
    <description>Hello&lt;BR /&gt;&lt;BR /&gt;I am also looking for solution to manage servers in DMZ. &lt;BR /&gt;&lt;BR /&gt;I am not yet find solution for HP Management Agents wich need SNMP for successfuly installation.&lt;BR /&gt;&lt;BR /&gt;My solution wich are not yet testing is:&lt;BR /&gt;Use SNMP for properly work HP Agents. Trap destination is only localhost. On firewall disable port 161 and 162 wich is used by SNMP. &lt;BR /&gt;For comunicating with Web Agents use one options wich HP suggest in document HP SIM Installation and User Guide page 12:&lt;BR /&gt;- WBEM uses HTTPS over port 5989&lt;BR /&gt;- Web agents use HTTPS over port 2381&lt;BR /&gt;- DTF uses SSH-2 over port 22 &lt;BR /&gt;&lt;BR /&gt;I so research solution with WMI (Windows Management Instrumentation). The SNMP provider allows client applications to access SNMP information through WMI. The SNMP provider acts as a gateway to systems and devices that use SNMP for management. &lt;BR /&gt;&lt;BR /&gt;Maybe can help guys from HP development team.&lt;BR /&gt;&lt;BR /&gt;Ivan</description>
    <pubDate>Tue, 14 Sep 2004 08:44:31 GMT</pubDate>
    <dc:creator>Ivan KOVAC</dc:creator>
    <dc:date>2004-09-14T08:44:31Z</dc:date>
    <item>
      <title>Secure comms between CMS and agents</title>
      <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378422#M5883</link>
      <description>Hi all,&lt;BR /&gt;&lt;BR /&gt;I have set up HP SIM and it is in production. I have received a request from the net security team to allow management of their servers in the DMZ. I'd like the opinions of the experts here as to what information I can gather and the best way of going about it.&lt;BR /&gt;&lt;BR /&gt;The only proviso is that SNMP *must not* be used, as the security guys are naturally concerned about the lack of security. Obviously, security of communication is their top priority.&lt;BR /&gt;&lt;BR /&gt;Any thoughts, ideas or links to info would be greatly appreciated.&lt;BR /&gt;&lt;BR /&gt;-C-</description>
      <pubDate>Tue, 14 Sep 2004 03:15:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378422#M5883</guid>
      <dc:creator>Colin Moors</dc:creator>
      <dc:date>2004-09-14T03:15:01Z</dc:date>
    </item>
    <item>
      <title>Re: Secure comms between CMS and agents</title>
      <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378423#M5884</link>
      <description>Hello&lt;BR /&gt;&lt;BR /&gt;I am also looking for solution to manage servers in DMZ. &lt;BR /&gt;&lt;BR /&gt;I am not yet find solution for HP Management Agents wich need SNMP for successfuly installation.&lt;BR /&gt;&lt;BR /&gt;My solution wich are not yet testing is:&lt;BR /&gt;Use SNMP for properly work HP Agents. Trap destination is only localhost. On firewall disable port 161 and 162 wich is used by SNMP. &lt;BR /&gt;For comunicating with Web Agents use one options wich HP suggest in document HP SIM Installation and User Guide page 12:&lt;BR /&gt;- WBEM uses HTTPS over port 5989&lt;BR /&gt;- Web agents use HTTPS over port 2381&lt;BR /&gt;- DTF uses SSH-2 over port 22 &lt;BR /&gt;&lt;BR /&gt;I so research solution with WMI (Windows Management Instrumentation). The SNMP provider allows client applications to access SNMP information through WMI. The SNMP provider acts as a gateway to systems and devices that use SNMP for management. &lt;BR /&gt;&lt;BR /&gt;Maybe can help guys from HP development team.&lt;BR /&gt;&lt;BR /&gt;Ivan</description>
      <pubDate>Tue, 14 Sep 2004 08:44:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378423#M5884</guid>
      <dc:creator>Ivan KOVAC</dc:creator>
      <dc:date>2004-09-14T08:44:31Z</dc:date>
    </item>
    <item>
      <title>Re: Secure comms between CMS and agents</title>
      <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378424#M5885</link>
      <description>Hello Colin,&lt;BR /&gt;&lt;BR /&gt;Are you see the document Managing HP servers through firewalls with HP SIM &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://h18004.www1.hp.com/products/servers/management/hpsim/infolibrary.html" target="_blank"&gt;http://h18004.www1.hp.com/products/servers/management/hpsim/infolibrary.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;ivan&lt;BR /&gt;</description>
      <pubDate>Thu, 23 Sep 2004 11:43:39 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378424#M5885</guid>
      <dc:creator>Ivan KOVAC</dc:creator>
      <dc:date>2004-09-23T11:43:39Z</dc:date>
    </item>
    <item>
      <title>Re: Secure comms between CMS and agents</title>
      <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378425#M5886</link>
      <description>Thanks Ivan. I will take a look at it this evening. Between WBEM and SSH, the *must* be a way of securely monitoring these servers. I'll let you know if I discover a good solution.&lt;BR /&gt;&lt;BR /&gt;-C-</description>
      <pubDate>Fri, 24 Sep 2004 02:34:44 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378425#M5886</guid>
      <dc:creator>Colin Moors</dc:creator>
      <dc:date>2004-09-24T02:34:44Z</dc:date>
    </item>
    <item>
      <title>Re: Secure comms between CMS and agents</title>
      <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378426#M5887</link>
      <description>HP SIM has a goal of being able to totally eliminate SNMP from your environment if you wish...but that's not true today.  While HP SIM can talk WBEM and receive WBEM indications, the Insight agents do not.  At this time, ProLiant management still relies heavily on SNMP.</description>
      <pubDate>Fri, 24 Sep 2004 08:23:12 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378426#M5887</guid>
      <dc:creator>David Claypool</dc:creator>
      <dc:date>2004-09-24T08:23:12Z</dc:date>
    </item>
    <item>
      <title>Re: Secure comms between CMS and agents</title>
      <link>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378427#M5888</link>
      <description>Reading through the white paper, I think the better solution for us may be a separate mini-network for management. Agents could be installed on all servers and iLO active. If all this happens within the DMZ, we could use a machine on our side as a VPN gateway to the CMS. It should give us full control with no security risks. Anyone see a problem with that?</description>
      <pubDate>Fri, 24 Sep 2004 08:31:53 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-systems/secure-comms-between-cms-and-agents/m-p/3378427#M5888</guid>
      <dc:creator>Colin Moors</dc:creator>
      <dc:date>2004-09-24T08:31:53Z</dc:date>
    </item>
  </channel>
</rss>

