HP StorageWorks XP Replication Monitor software installation and configuration guide (T1784-96008, November 2006)

XP Replication Monitor security management 73
5 XP Replication Monitor security management
This chapter explains security management using XP Replication Monitor software.
Security related to user permissions (section
5-1 )
Security related to network access(section 5-2 )
5-1 Security related to user permissions
To allow only users with the correct permissions to access Command View XP AE Suite products, including XP
Replication Monitor software, XP Replication Monitor software includes a security management facility that
requires user authentication.
A user can access XP Replication Monitor software using one of the following methods:
A user can log in to XP Replication Monitor software directly from web client.
A user who is using another Command View XP AE Suite product, such as Device Manager, can use a Link-
and-Launch operation to access XP Replication Monitor software.
A user who is using XP Replication Monitor software also accesses other Command View XP AE Suite products in
the following cases:
When the user who is using XP Replication Monitor software uses a Link-and-Launch operation to access
another Command View XP AE Suite product, such as Device Manager.
While using XP Replication Monitor software, the user accesses the Device Manager server that is the
information acquisition source of the XP Replication Monitor server.
5-1-1 User permissions necessary for login
When a user attempts to log in to XP Replication Monitor software from the web client, the security facility
authenticates the user ID and password. Only users who have User Management, Modify, or View permission, or
a combination of these permissions, are allowed access to XP Replication Monitor software.
Only a user who has User Management permission can register users in XP Replication Monitor software and
assign permissions to users.
For details on user permissions and how to set them, see section
3-3 .
5-1-2 Inheriting user authentication during a link-and-launch operation
For a user who has permission to log in to XP Replication Monitor software and other Command View XP AE
Suite products, the user authentication information is inherited during a Link-and-Launch operation. Therefore, the
user need not log in again when accessing another Command View XP AE Suite product from XP Replication
Monitor software, or vice versa, using Link-and-Launch.
To use Link-and-Launch from XP Replication Monitor software to another Command View XP AE Suite product,
select the other Command View XP AE Suite product from the Dashboard. If you have login permission for the
selected Command View XP AE Suite product, you can simply access it. If you do not have login permission, the
login window appears, and you need to enter the name and password of a user who has login permission.
If you are logged in to another Command View XP AE Suite product, you can use Link-and-Launch to log into XP
Replication Monitor software. If you have permission to log in to XP Replication Monitor software, you can simply
access it. If you do not have XP Replication Monitor software login permission, an authentication error occurs.
5-1-3 User permission for accessing the Device Manager server
When a user who is using XP Replication Monitor software accesses the Device Manager server, the XP
Replication Monitor software server uses the following special user ID that has a Device Manager user account:
When the Device Manager server is on the local server, the user ID specified during XP Replication Monitor
software installation is used.
When the Device Manager server has been registered as the information source, the user ID specified
during Device Manager server registration is used.
Regardless of the user who is logged in to XP Replication Monitor software, one of the above user ID is used for
accessing the Device Manager server from XP Replication Monitor software.