YOGGIE YOGGIE MANAGEMENT SERVER Technical Information Page 255

  • Download
  • Add to my manuals
  • Print
  • Page
    / 536
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 254
Chapter 7. HMC security and user management 237
7.2 Overview and status
The overview and status window displays the following information about the secure system
manger server:
򐂰 Whether the secure system manager server is configured
򐂰 Whether the private key for this system manager server is installed
򐂰 Whether this system is configured as a Certificate Authority
7.2.1 Certificate Authority (CA)
Define one HMC as a Certificate Authority (CA) to generate keys and certificates for your
HMC servers and clients.
A Certificate Authority verifies the identities of the HMC servers to ensure secure
communications between clients and servers. To define a system as a Certificate Authority,
you must be logged in as the hscroot user at the machine being defined as the internal
Certificate Authority. This procedure defines a system as an internal Certificate Authority for
HMC security and creates a public key ring file for the Certificate Authority that you can
distribute to all of the clients that access the HMC servers.
A wizard guides you through configuring the Certificate Authority.
After you define the internal Certificate Authority, you can use the CA to create the private key
ring files for the HMCs that you want to manage remotely. Each HMC server must have its
private key and a certificate of its public key signed by a Certificate Authority that is trusted by
the HMC clients. The private key and the server certificate are stored in the server’s private
key ring file. There is an option to copy the private key ring files to a diskette so you can install
them on your servers.
7.2.2 Server Security
This option allows you to install the private key ring file that you have copied to diskette from
the HMC server that is acting as the Certificate Authority.Once you have copied the private
key file, there is another option to configure the HMC as a secure server so that secure,
remote clients can be used to remotely manage the HMC.
There is a remote client available for download from the HMC itself. It is called the
Web-based System Management remote client, and there is a Windows based version and a
Linux based version. To run in secure mode, a second file needs to be downloaded to the
client. This is also available for download from the HMC.
To download the Web-based System Management remote client to your Windows based or
Linux based PC, type in the following address from your Web Browser:
hostname/remote_client.html
Here, hostname is the name of the HMC you are downloading the Web-based System
Management remote client from. You choose whether you want the Windows based version
or the Linux based version.
Note: You cannot perform the following function using a remote client.
Page view 254
1 2 ... 250 251 252 253 254 255 256 257 258 259 260 ... 535 536

Comments to this Manuals

No comments