D protocols used by hp sim, Snmp, Windows – HP Systems Insight Manager User Manual
Page 207
D Protocols used by HP SIM
HP SIM uses many different management protocol standards. This capability enables HP SIM to
provide management support for a wide array of manageable systems.
SNMP
Simple Network Management Protocol (SNMP) is one of the standard protocols for managing
devices on a network. The popular versions of this protocol include SNMPv1 (the initial
implementation), SNMPv2c (which provides additional data types and operations but similar to
SNMPv1 in terms of security) and SNMPv3 (which provides security features that were missing in
the previous versions).
HP SIM is a management tool which lays the foundation for other management solutions from HP
like HP Insight Control, HP Matrix Operating Environment (Matrix OE) and HP CloudSystem Matrix.
While HP SIM is available for Windows, Linux and HP UX operating systems and supports SNMPv1
till 7.2.0, it will support all versions of SNMP starting from version 7.2.0.
SNMPv1 (and similarly SNMPv2c) imposes variety of threats not limited to masquerading, spoofing,
information modification, disclosure and denial of service. SNMPv3 focuses on security in terms
of authentication and authorization. Also from a standards perspective, at a minimum, an SNMPv3
implementation should support user-based Security Model (USM) for authentication and View-Based
Access Control Model (VACM) for authorization.
HP SIM enables administrators to configure such that it could work with SNMPv1 only mode, mixed
mode or in SNMPv3 only mode. While SNMPv1 only mode will be useful for backward
compatibility, SNMPv3 only mode will help security conscious customers to meet compliance such
as Federal Information Processing Standards (FIPS). The mixed mode will be helpful in an
environment where multiple versions of SNMP exist.
HP SIM provides support for configuring SNMP specific parameters at individual managed node
level and at global level and supports the following features:
•
Manage Users / Credentials
•
Discovery and Identification
•
Data Collection
•
Periodic collection of component status
•
Process traps / notifications
HP SIM supports the following SNMPv3 specific features:
•
User-based Security Model (USM)
•
MD5, SHA algorithms for authentication protocols
•
AES (128, 192, 256), DES and 3DES algorithms for privacy protocols
NOTE:
In iLO3, the SNMP Alert destination setting accepts only IPv4 address. Hence, SNMP
traps are not supported for iLO3 with IPv6 address.
HP SIM supports all versions of SNMP across all of the supported operating systems - Microsoft
Windows, RedHat Enterprise Linux (RHEL) , SuSE Linux Enterprise Server (SLES) and HP UX.
Windows
Microsoft ships and supports its own SNMP trap receiver, typically installed as a Windows Service,
“SNMP Trap Service”, and listens for SNMP traps on port 162 on Windows. Also, the Microsoft
SNMP Trap Service acts as a single trap receiver for multiple SNMP managers installed on the
same host and thus allow co-existence with other tools. For example, HP SIM and HP Network
Node Manager could be installed on the same Windows box and both can receive traps from the
managed host through the common Microsoft SNMP Trap service.
SNMP 207