Managing your HP servers through firewalls with HP SIM (481364-002, February 2008)
6
HP management products
The following HP products are possible management options for HP servers deployed in the DMZ:
• HP Insight Control Environment (ICE)-Linux
• HP Insight Management Agents (Agents)
• HP Insight Management WBEM Providers for Windows (Insight Providers)
• HP Insight Orchestration (HPIO)
• HP Insight Power Manager (IPM)
• HP Smart Update Manager (HP SUM)
• HP Systems Insight Manager (HP SIM)
• HP WEBM Services for HP-UX
• ProLiant Essentials Performance Management Pack (PMP)
• Rapid Deployment Pack (RDP)
• Server Migration Pack Universal Edition (SMP)
• Version Control Agent (VCA)
• Version Control Repository Manager (VCRM)
• Virtual Machine Management Pack (VMM)
• Virtual Server Environment (VSE)
• Vulnerability and Patch Management Pack (VPM)
• Management processors such as Integrated Lights-Out 2 (iLO 2)
For information about these HP management products, see the “For more information” section at the
end of this paper. Appendix A gives port information related to these products.
Case 1: management protocols banned from DMZ
In some computing environments, IT security policies restrict management protocols in the secure
environment. Security policies may or may not permit other protocols (such as email or file sharing) in
the DMZ. An acceptable management solution must conform to security restrictions of the
environment.
Even if active management is not possible, some management information can flow from managed
devices in such an environment. Either SNMP or WBEM/WMI can be used to manage ProLiant
servers. These can be configured to prevent access from off the platform. For information on how to
configure SNMP or WBEM, see the documentation for your operating system.
Asset management
In this type of computing environment, administrators can collect system asset information from a
ProLiant server in the DMZ as long as the Agents or WBEM providers are running and an application
is running that can get the data locally. For example, Microsoft Systems Management Server can
get asset information from the Agents and transfer that information to its central server via the
operating system file share. As a second option, administrators can browse to the web-based System
Management Homepage (https://servername:2381/) and manually view the asset information.
Fault management
Administrators can configure ProLiant servers to send an email (via SMTP) when a hardware problem
occurs. In Microsoft Windows operating systems, the Agent Event Notifier provides this optional