HP-UX Host Intrusion Detection System Version 4.3 administrator guide

Table Of Contents
for the components to identify themselves and to authenticate that any information received
from another HP-UX HIDS component is genuine and not initiated by an unauthorized outsider.
HP-UX HIDS provides a toolset to generate X.509 certificates. The System Manager does not
start until you establish secure communication.
Table 2-1 lists and describes the IDS scripts you can use to set up an SSL environment.
Table 2-1 IDS Scripts Used to Set Up Secure Communications
Resulting ProductLocationScript
Root Certification Authority and Administration SSL
certificate
Administration system
IDS_genAdminKeys
A bundle of signed certificates for each agent system.Administration system
IDS_genAgentCerts
Agent SSL certificateAgent systems
IDS_importAgentKeys
NOTE: HP-UX HIDS certificate management is self-contained and does not require a pre-existing
public key infrastructure (PKI). However, HIDS certificate requests can be signed by an external
PKI and the resulting signed certificate can then be imported by the IDS_importAgentKeys
command. Contact HP Support for details.
To set up the SSL environment, follow these steps:
30 Configuring HP-UX HIDS