FW V06.XX/HAFM SW V08.02.00 HP StorageWorks SAN High Availability Planning Guide (AA-RS2DD-TE, July 2004)

Table Of Contents
Configuration Planning Tasks
187SAN High Availability Planning Guide
Task 9: Establish Product and HAFM Appliance Security
Measures
Effective network security measures are recommended for directors, switches,
and the HAFM appliance. Physical access to the network should be limited and
monitored, and password control should be strictly enforced.
When planning security measures, consider the following:
Directors, switches, and the HAFM appliance are installed on a LAN segment
and can be accessed by attached devices (including devices connected
through a remote LAN). Access from remote devices is limited by installing
the HAFM appliance and managed products in a secure physical network
domain. HP recommends this approach.
Access to products is possible through the maintenance port. This connection
is for use by authorized service personnel only and should be carefully
monitored.
The number of remote workstations with access to the HAFM appliance and
managed products can and should be restricted. Obtain IP addresses for
workstations that should have exclusive access. Ensure that adequate security
measures are established for the configured workstations.
Carefully manage users (up to 16) who have access to the HAFM and Element
Manager applications, and assign user names, passwords, and user rights.
Ensure that adequate security controls are established for remote access
software, including the Embedded Web Server.