HP TMS zl Module Security Administrator's Guide

1-3
Managing TMS zl Modules
Introduction
Introduction
Network usage has skyrocketed with the expansion of the Internet, wireless,
and convergence technologies. This increases the burden on network manag-
ers working to control network usage. Also, the complexity of large networks
makes it difficult to control network access and usage by individual users.
The Network Immunity Manager (NIM), a fully integrated feature of HP PCM+,
provides an affordable, feature-rich, unified, centralized approach to network
security management. It provides a scalable and easily managed method for
providing per port intrusion detection and response to stop malicious network
traffic at the edge of the network. In addition, NIM gives you the tools you
need to monitor your security network. You can create on-demand reports for
security activity, such as alerts generated and actions taken by policies. NIM
also features several levels of drill-down security monitoring windows, so you
can see the security activity of your entire network or for a specific group on
a single display
For more information about PCM+ and NIM, please see the HP PCM+ Network
Administrator’s Guide.
HP Threat Management Services (TMS) zl Modules can be configured and
managed from one central location using NIM’s TMS management functions.
Because of the ability of these modules to detect and mitigate threats from
both internal and external sources, the TMS zl Module is the perfect compan-
ion to NIM. The module supports Firewall, VPN, and Intrusion Protection
System (IPS) operations, which you can enable in various combinations and
manage through NIM.
NIM also offers the ability to configure High Availability (HA) clusters, which
groups two TMS zl Modules to ensure higher performance and operational
continuity with minimal downtime. In an HA cluster, connection-state infor-
mation is synchronized between the two cluster modules for stateful failover.
NIM TMS Management Features
Once communication is established between NIM and the TMS zl Module, you
can use the NIM TMS management features: TMS - Network, TMS - High
Availability, TMS - Firewall, TMS - IPS, and TMS - VPN to configure multiple
modules simultaneously.
TMS - Network, including configuring users and configuring authen-
tication, and TMS - HA Cluster features are explained in this chapter.