ProLiant Servers (ML,DL,SL)
1854820 Members
10171 Online
104103 Solutions
New Discussion

Security holes with SmartStart 7.3.0

 
Dwayne Skinner
Frequent Advisor

Security holes with SmartStart 7.3.0

I just built a new ML370 G4 using SmartStart 7.3.0. Our security group ran a scan on the server and found three security holes. I turned off HP Event Notifier and two of them went away.

I need to explain what these holes are coming from and whether they really represent a security vulnerability.

Please see attachment to look at the scan results.
3 REPLIES 3
Dwayne Skinner
Frequent Advisor

Re: Security holes with SmartStart 7.3.0

The last hole was plugged when I turned off the System Home Page service.
Ruslan
Respected Contributor

Re: Security holes with SmartStart 7.3.0

The system homepage service have many restriction access methods. It's use Local NT SAM to athentication process, you may point from which ip-addresses enable access via https and so on.
Dwayne Skinner
Frequent Advisor

Re: Security holes with SmartStart 7.3.0

The security department is no longer concerned with the holes so I am closing this thread.

Thanks for the help Ruslan.