Managing HP servers through firewalls with Insight Management 7.2

White paper| HP Insight Management 7.2
16 | March 2013
Figure 4: WMI Mapper on a managed Windows system behind firewall
The WMI Mapper is included with the Windows version of HP SIM but can also be used with other
versions. It is available with the HP SIM software or from the HP website at
http://www.hp.com/go/hpsim. The WMI Mapper can be installed on a Windows system to allow
WBEM access to that system.
If the WMI Mapper is to be used as a proxy to access other systems (as shown in the previous DMZ
example), HP SIM must be configured to recognize the WMI Mapper as a proxy: Use the
OptionsSecurityWMI Proxy Settings menu item, and add the system on which the WMI
Mapper is installed.
WS-MAN
WS-Management is a public standard SOAP-based protocol for sharing management data among
all operating systems, computers, and devices.WS-MAN depends on SOAP.As of this writing, it is
used to manage iLO 2 or iLO 3.
SSH
SSH allows logging in to another system over a network and executing commands on that system.
It also enables administrators to move files from one system to another in an encrypted format. It
provides authentication and secure communications over insecure channels, and uses TCP port 22
to communicate.
Fault management
The HP agents have two methods for communicating faults: SNMP traps and SMTP e-mail (Table
2
). Both originate from the agents in the DMZ to the CMS or to the SMTP mail server. The HP
Insight Management WBEM providers can communicate faults using WMI indications. HP
recommends that the WMI Mapper be installed on the managed system so that these faults can
be sent using WBEM (CIM-XML/HTTP) through the firewall.
Table 2: How HP agents communicate faults
CMS
Managed
system
Port
Protocol
1
Description
In
2
Out
In
Out
Y Y 162 UDP SNMP Trap listener