SBM powered by Microsoft Lync Administrator's Guide 2010-11
A-49
Ready the Data Center for an SBM Deployment
Security Planning
Security Planning
HP has taken steps to secure the Windows Server 2008 R2 OS that runs on the
HP SBM, whenever possible following the United States Government Config-
uration Baseline (USGCB) recommendations. For example, the local Admin-
istrator and Guest accounts have been renamed and firewall rules have been
added to minimize vulnerabilities to SIP fuzzing.
However, implementing some USGCB recommendations would cause the
SBM deployment to fail or raise issues. Refer to Appendix B: “HP SBM Security
Hardening” for a list of the steps that HP has taken to harden the SBM OS and
for a list of policies that must not be implemented. If any your domain pushes
any of the prohibited policies to servers such as the SBM, you must exclude
the SBM from those policies.
Also verify that the standard ports used for Lync Server communications have
been opened on all firewalls between the SBM and the data center.