HP Systems Insight Manager 5.3 Technical Reference Guide

NOTE: OpenSSH can also be installed from the HP SIM menu by selecting DeployDeploy Drivers,
Firmware and AgentsInstall OpenSSH.
SSH SSH is used to log in to another system over a network and execute commands on that system.
It also enables you to move files from one system to another, and it provides authentication and secure
communications over insecure channels.
You can download SSH from the HP Software Depot (http://www.software.hp.com/).
To install the SSH provider from the Manage Communications page, select Quick Repair+Install
Provider s and AgentsInstall OpenSSH. To configure OpenSSH from the Manage Communications
page, select Quick Repair+Install Providers and AgentsInstall OpenSSHConfigure secure
shell (SSH) access.
Related procedures
Setting protocols and credentials for a system or groups of systems
Setting protocols for a single system
Setting global protocols
Adding a WMI Mapper Proxy
Deploying OpenSSH to multiple systems using RDP
Installing OpenSSH
Creating an OpenSSH task through the CLI
Configuring DMI access
Configuring SNMP access
Related topics
Global protocols
WMI Mapper Proxy
Configuring or repairing agents
Trusted certificates
Trusted
certificates
provide the highest level of security. Users with
administrative rights
can import certificates
from other systems into the HP SIM Trusted System Certificates List.
The purpose of the Trusted System Certificates List in HP SIM is to maintain a list of certificates in the HP SIM
keystore
. Certificates include the HP SIM system certificate and the certificates of
managed systems
that are
trusted by the HP SIM system. These imported certificates are placed in the keystore and appear in the Trusted
System Certificates List.
There are two options for accepting managed system certificates: Always Accept and Require. Always
Accept is the default option, but it is vulnerable to man-in-the-middle attacks. With this option selected, as
you browse to each managed system, their certificate is added to the HP SIM Trusted System Certificate List.
If you select Require, you must set up the trust by manually installing the system certificate into the HP SIM
Trusted System Certificate List. This option is the most secure.
The HP SIM certificate must also be installed on the managed system. For more information about exporting
the HP SIM server certificate, see “Exporting a server certificate.
Importing trusted certificates
1. Select OptionsSecurityCredentialsTrusted Systems, and then click Import. The Import
Trusted System Certificate section appears.
2. Next to the Certificate filename field, click Browse.
The Choose file dialog box appears.
3. Navigate to the location of the certificate to be imported, and then select the file name. Click Open.
Related topics
406 Tools that extend management