HP-UX Secure Resource Partitions (SRP) A.02.00.001 Release Notes
1 HP-UX SRP
1.1 HP-UX SRP Overview
HP-UX Secure Resource Partitions (SRP) provides an environment for securely
consolidating multiple applications within a single image of the HP-UX 11i operating
system. SRP is a component of the Partitioning Continuum for HP-UX and offers high
efficiency in resource utilization along with maximum flexibility and performance for
customers seeking the benefits of application consolidation.
HP-UX SRP version 2 enables you to create and manage SRP compartments, which
provide isolated execution environments for applications. Each SRP compartment can
have:
• A compartment home directory tree, which is isolated from other compartments.
• A dedicated IP interface.
• Isolated interprocess communication (IPC).
• A compartment-specific login environment.
• Dedicated CPU and memory resources.
• Per-compartment initialization and shutdown capabilities. You can start or stop
an SRP compartment as you would start or stop a single system.
• Compartment-specific network security policies.
1.2 HP-UX SRP Features
HP-UX SRP v2 is a new, separately downloadable feature of HP-UX 11i that significantly
extends SRP capabilities. In addition to coordinating the creation of Security
Containment compartments with PRM, HP-UX SRP v2 now provides the following
features and benefits:
• Separate execution environment:
— HP-UX SRP provides controlled isolation of execution environments and system
resources, limiting access to files, interprocess communication (IPC), networking,
and controlling user login on a per-SRP basis.
— System resources (CPU, memory, and disk) can be managed and scheduled on
a per-SRP basis.
• Easy setup:
— Coordinates and guides the configuration of multiple HP-UX security, isolation,
and resource management features to achieve application consolidation.
— Components configured include: HP-UX Security Containment (HP-UX
compartments), Process Resource Management (PRM), Compartment Login,
Role-Based Access Control (RBAC), Network Interface and IP Address
Management, IPFilter host firewall, and Internet Protocol Security (IPSec).
• Lifecycle management:
1.1 HP-UX SRP Overview 7