HP Open View Data Protector for Security Containment

2
Introduction
This document helps you deploy a backup application in a Security Containment environment that will
protect your backup applications from other application security threats. HP-UX Security Containment
provides a highly secure operating system environment. Security containment uses three core
technologies (compartments, privileges, and authorizations) to provide platform level security which is
essential for enterprises and small and medium entreprises (SME) to host their business applications
securely. This document demonstrates how to deploy HP Open View Data Protector applications in an
HP-UX Security Containment environment.
Traditionally, enterprises deployed different applications in a single operating system environment.
For example, a backup application that runs along with other enterprise applications. In a highly
hostile internet environment, there is a possibility of a system being compromised. In addition if one
application in the system is compromised, there is a high probability that other applications will get
compromised. In the traditional UNIX environment, there is no mechanism to mitigate this scenario.
This document explains a way to isolate a backup application from other applications running in a
system using HP-UX Security Containment. In today’s enterprise, backup applications play a vital role
since many applications and databases frequently make small changes to existing files or produce
many new files containing business-critical data throughout the day. These files need to be backed up
immediately to guarantee that no data is lost. Therefore, the backup application should be protected
at all times from internet threats in order to perform real-time application data backup and restore
functions.
The following sections explain how to isolate HP Open View Data Protector (omni) in a security
containment environment.
HP Open View Storage Data Protector
HP OpenView Storage Data Protector is a backup solution that provides reliable data protection and
high accessibility for your fast growing business data. Data Protector offers comprehensive backup
and restore functionality specifically tailored for enterprise-wide and distributed environments. Data
Protector is an effective back up and restore tool for environments that range from a single system to
multiple (thousand) systems at different locations.
The Data Protector cell is the basic management unit in the data protector. It consists of a network
environment with a Cell Manager system, one or more Installation Servers, client systems, and
devices. The Cell Manager and Installation Server can be on the same system (default setting) or on
different systems. Data Protector has the following features:
Scalable and highly flexible architecture
Easy central administration
High performance backup
Easy installation, backup, and restore
See
HP Open View Storage Data Protector Concepts Guide (B6960-96001) for more information on
the features that Data Protector offers.