HP StorageWorks P9000 Command View Advanced Edition Software Common Component Security Guide

Overview of security setup and operation
10
When operating the system, the account administrator and the storage administrator must perform
the procedures described in this guide.
1-3-2
1-3-3
Hardware management
The hardware required for the system to be created or operated is managed in a center. A center is
a physical area equivalent to, for example, the computer center of a company. The person in charge
in the organization must manage a center as follows:
Control of entry to and exit from the computer room must be strict to prevent anyone other than
an administrator from entering the center.
A network in the center is called an internal network. A network outside the center is called an
external network. Set up a firewall between the internal network and all external networks.
Never bring any devices into the center other than hardware required for creating or operating
the system. The required hardware is described in section 2-1 , and is the hardware required
for operating the software described in section 2-2 . Required hardware also includes the
application servers, storage devices, and peripherals required for system operation.
Software management
The software required for the system to be created or operated must be managed according to the
following rules.
The software required for the system must be installed and set up as described in this guide.
To specify OS settings not covered in this guide, follow the documentation for the operating
system.
Security patches must be applied to required software, such as operating systems and
browsers.
Client terminals must be managed to prevent unwanted software programs from being
installed.
Only the following specified HP StorageWorks P9000 Command View Advanced Edition Suite
software use security functions that have been evaluated based on Common Criteria.
Accounts must be managed by a system integrator or an account administrator, and only
accounts for suitable persons without malicious intent must be added.
Table 1-2 Specified HP StorageWorks P9000 Command View Advanced Edition Suite
software products
No. HP StorageWorks P9000 Command View Advanced
Edition Suite software name
Version
1 HP StorageWorks P9000 Command View Advanced Edition
software
6.0.0 - 7.0.1
2 HP StorageWorks P9000 Replication Manager software
7.0.1
3 HP StorageWorks P9000 Tiered Storage Manager software
7.0.1
4 HP StorageWorks P9000 Tuning Manager software
7.0.0
See the manuals for the software in section 1-4 above to confirm the versions of the prerequisite
software for each.
1-3-4 Network management
The communication path between an internal network and an external network must be protected
from threats. The following are the requirements for network management.
The firewall installed between an internal network and an external network must be set up
correctly so that only communication from storage management client terminals will be
allowed.