Expand Configuration and Management Manual (G06.24+)

Expand Overview
Expand Configuration and Management Manual523347-008
2-11
Network Security
The SCF interface to the Expand subsystem is described in Section 15, Subsystem
Control Facility (SCF) Commands. The SCF interface to the WAN subsystem is
described in the WAN Subsystem Configuration and Management Manual.
Network Security
The Expand subsystem provides security features to control access to remote servers
and files.
Remote Passwords
To access a remote server, you must have a username and user ID on the remote
server that is identical to those on the local server. You use the REMOTEPASSWORD
command to set up two remote passwords for the local username and user ID: one to
establish a remote password for the local server, and one to establish a remote
password for the remote server. You again use the REMOTEPASSWORD command to
set up remote passwords for the remote username and user ID.
Before you can access a file on a remote server, you must have the proper security as
well as remote passwords for both the local and remote servers. Each file has
associated security attributes that can be changed with the FUP SECURE command.
Enhanced Security Techniques
The Safeguard security system enhances the security provided by both the Expand
subsystem and the NonStop Kernel operating system. Safeguard enables you to set
password expiration dates, create access control lists, and audit file access.
For an even greater level of security, data encryption devices are available from the HP
Atalla subsidiary.
Deleting the network control process No Yes
Deleting an Expand line-handler process No Yes
1. Changes made with SCF for the Expand subsystem are temporary; they do not remain across system loads.
2. Changes made with SCF for the WAN subsystem are permanent; they do remain across system loads.
Note. Setting up remote passwords is explained in the Guardian User’s Guide.
Table 2-1. Online Reconfiguration Tasks (page 2 of 2)
Task
SCF for
Expand
SCF for
WAN