User guide

Chapter 2: Security Measures
2-24
Security Measures Concerning Operation of Smart
Repository
Smart Repository can be used with the following products:
Interstage Application Server Enterprise Edition
Interstage Application Server Standard Edition
Interstage Application Server Plus
About Operation
Take the following measures to prevent incorrect use during operation.
Users who are well informed about the overall information system including Smart Repository must
perform Smart Repository operation and they must receive appropriate training.
Smart Repository must always be correctly controlled and operated according to the rules
established in the manuals.
Blocking External Access
Set up a firewall and routers appropriately, prevent the intrusion of unauthorized external packets and
inhibit access to ports other than those specified.
Restriction of Services
By restricting remotely accessible services (such as telnet and ftp) on nodes where Interstage is
operating, you can prevent unauthorized accesses. This measure is effective against unauthorized
accesses made through networks.
For details of how to restrict such remotely accessible services, refer to the manual for each platform.
Notes on Accessing the Smart Repository Server
When an LDAP client accesses the Smart Repository server, there is a risk that an ill-intentioned person
on the network may access the Smart Repository server by impersonating a user having proper access
permissions. SSL encryption using SSL version 3 (client authentication) is recommended.
For SSL communication details, refer to "Method for Using SSL in Smart Repository."