Network Security Features of HP-UX 11i v1 and 11i v2
i
Table of Contents
Abstract........................................................................................................................................................... 1
Introduction .................................................................................................................................................... 2
Real-World Networking Security Example ..........................................................................................2
HP-UX Security Performance and Manageability............................................................................. 4
HP-UX AAA Server .......................................................................................................................................... 6
HP-UX AAA Server (RADIUS) Features.................................................................................................. 7
HP-UX Mobile AAA Server (Diameter) ........................................................................................................ 9
HP-UX Mobile AAA Server (Diameter) Features................................................................................. 9
Internet Protocol Security Protocol Suite—HP-UX IPSec ........................................................................ 10
HP-UX IPSec Features........................................................................................................................... 11
Host Based Firewalls with HP-UX IPFilter .................................................................................................... 12
HP-UX IPFilter Features ......................................................................................................................... 12
Secure Sockets Layer (SSL) Libraries ......................................................................................................... 14
SSL Features........................................................................................................................................... 14
TCP Denial of Service Defense .................................................................................................................. 15
TCP Wrapper ................................................................................................................................................ 16
TCP Wrapper Features......................................................................................................................... 16
HP-UX Secure Shell (SSH)............................................................................................................................. 17
HP-UX Secure Shell Features ............................................................................................................... 17
HP Kerberos .................................................................................................................................................. 19
Kerberos Server......................................................................................................................................... 20
Kerberos Server Features..................................................................................................................... 20
Kerberos Libraries, GSS-API, and PAM .................................................................................................. 20
Secure Routing............................................................................................................................................. 21
gated Daemon ........................................................................................................................................ 21
gated Daemon Features .................................................................................................................... 21
Route Administration Manager (ramD) with Next Generation Routing Information Protocol
(RIPng) ....................................................................................................................................................... 21
ramD with RIPng Features................................................................................................................... 21
Security Features in Internet Service Products ........................................................................................ 23
Adaptive Security Using an LDAP Directory ............................................................................................ 24
LDAP-UX Integration ................................................................................................................................ 24
Integration with Windows ................................................................................................................... 25
LDAP-UX Client Services .......................................................................................................................... 25
LDAP-UX Client Services Features ...................................................................................................... 25
NIS/LDAP Gateway.................................................................................................................................. 25
NIS/LDAP Gateway Features.............................................................................................................. 26
Account Authorization with libpam_authz .......................................................................................... 26
Netscape Directory Server ..................................................................................................................... 26
Netscape Directory Server Features ................................................................................................. 27
Superior Encryption Performance ............................................................................................................. 28
Faster BSAFE RSA Version 6.0.4 and above Performance in HP-UX 11i v1 and v2 ..................... 29
Conclusion.................................................................................................................................................... 30