HP ProCurve Threat Management Solution Design Guide 2009-04

4-3
Design
Software and Hardware Selection
Table 4-2 PCM Recommended Hardware Configuration
PCM also requires one of the following operating systems:
Microsoft Windows Server 2003 Enterprise Edition with Service Pack (SP) 2
Microsoft Windows XP with SP 2 or SP 3
Windows Server 2003 provides better performance. You should use Windows XP for small
networks only.
If you do not already have a system that meets these hardware and software requirements, plan
to purchase what you do not have.
Plan Where to Install NIM
PCM+ 3.0 supports a distributed architecture, which allows you to use PCM+ to manage a WAN.
The PCM+ server is installed on a hardware platform in a centralized location—for example,
at your company’s main office. A PCM+ agent is installed on a hardware platform at each
network segment that is divided by a WAN link. The PCM+ agents manage most functions
locally, minimizing the traffic that must be sent over the WAN link. (Note that PCM+ secures
any traffic that is sent over a WAN link.)
When you run a distributed PCM+ architecture, you should install a local PCM+ agent at each
network segment that you want to protect. NIM can then provide more immediate detection
and mitigation of threats.
Table 4-3 lists the minimum requirements for PCM agents; Table lists the recommended
configuration. As you review these tables, keep in mind that one agent can support a maximum
of 350 devices, and one PCM server can support a maximum of 10 agents (including local and
remote agents).
Table 4-3 PCM Agent Minimum Hardware Requirements
Network Size CPU RAM Disk Space NIC
50 or fewer devices Two 3.0 GHz Xeon/PentiumV or equivalent 2 GB 120 GB 100/1000 MB
51 to 350 devices Two 3.0 GHz Xeon/Pentium V or equivalent 3 GB 120 GB 100/1000 MB
351 to 1200 devices Four 3.0 GHz Xeon/Pentium V or equivalent 4 GB 120 GB 100/1000 MB
1201 to 2400 devices Four 3.0 GHz Xeon/Pentium V or equivalent 6 GB 120 GB 100/1000 MB
2401 to 3500 devices Four 3.0 GHz Xeon/Pentium V or equivalent 6 GB 120 GB 100/1000 MB
Network Size # of Remote
Agents
CPU RAM Disk Space NIC
50 or fewer devices 1 local; remote
optional
One 3.0 GHz Xeon/Pentium V or equivalent 2 GB 20 GB 100 MB
51 to 350 devices 1 local; remote
optional
One 3.0 GHz Xeon/Pentium V or equivalent 2 GB 20 GB 100 MB
351 to 1200 devices 1 local + 3 remote Two 3.0 GHz Xeon/Pentium V or equivalent 2 GB 20 GB 100 MB
1201 to 2400 devices 0 local + 7 remote Two 3.0 GHz Xeon/Pentium V or equivalent 2 GB 20 GB 100 MB
2401 to 3500 devices 0 local + 10 remote Two 3.0 GHz Xeon/Pentium V or equivalent 2 GB 20 GB 100 MB