HP DC04 SAN Director Switch Hardware Reference Guide

Security
Table 2 (page 14) highlights some of the key security features available for the DC04 SAN Director
running Fabric OS 6.2.0a or later, and for other HP enterprise-class platforms running Fabric OS
5.2.0 or later. For details, contact HP.
Table 2 Security features
DescriptionSecurity Features
Login bannerDH-CHAP
Monitoring of attempted security breaches (via audit logging)SSHv2 (using AES, 3DES, RSA)
Monitoring of attempted security breaches (via Fabric Watch Security Class)HTTPS (using AES)
FC security policies: DCC and SCCSNPMv3
Trusted Switch (FCS) for central security managementFC-SP
Management access controls (SNMPv3, Telnet, FTP, serial port, front panel)Secure RPC
Hardware-enforced zoning by WWN and/or domain/port IDSecure file copy (SCP)
Default zoningTelnet disable
RSCN suppression and aggregationTelnet timeout
Configurable RSCN suppression by portIP filters (block listeners)
NTPv3 (to synchronize timestamps)Secure passwords (centralized control
via RADIUS/CHAP)
Event auditingMUAs (up to 255)
Change trackingRBACs
Firmware change alerts in Fabric ManagerAdministrative domains/Virtual fabrics
Persistent port disableBoot PROM password reset
Persistent domain IDPassword hardening policies
E_Port disableUp front login in WebTools
Network manageability
The DC04 SAN Director has a single domain and is managed as a single element with the HP
Data Center Fabric Manager GUI application. The DC04 SAN Director responds to its own IP
address and appears as a separate entity to the Telnet protocol and SNMP.
All management interfaces, such as Telnet, WebTools, standards compliant SMI-S, and Management
Server, support a port N within blade M naming scheme.
The DC04 SAN Director supports SNMPv1 and SNPMv3. When SNMP devices send SNMP
messages to a management console running SAN management software, the information is stored
in an MIB. Fabric OS 6.x supports the latest Fibre Alliance FCMGMT and SMI MIBs. These MIBs
provide the SAN administrator with information for monitoring the network. See the Fabric OS
MIB Reference Guide.
Optional software licenses
DC04 SAN Director optional software kits are listed below:
HP StoreFabric B-series 8Gb and 16Gb SAN Director Switch Fabric Vision LTU.
1
HP B-series Fabric Watch Director Switch LTU All
HP B-series ISL Trunking Director Switch LTU All
1. Fabric OS 7.2.0a or later
14 DC04 SAN Director overview