JavaScript is required to for searching.
Skip Navigation Links
Exit Print View
Sun QFS and Sun Storage Archive Manager 5.3 Security Guide     Sun QFS and Sun Storage Archive Manager 5.3 Information Library
search filter icon
search icon

Document Information

Preface

1.  Sun QFS and Sun Storage Archive Manager Overview

Product Overview

General Security Principles

Keep Software Up To Date

Restrict Network Access to Critical Services

Follow the Principle of Least Privilege

Monitor System Activity

Keep Up To Date on Latest Security Information

2.  Secure Installation and Configuration

3.  Sun QFS and Sun Storage Archive Manager Security Features

A.  Secure Deployment Checklist

General Security Principles

The following sections describe the fundamental principles that are required to use any application securely.

Keep Software Up To Date

Stay current with the version of SAM-QFS that you run. You can find current versions of the software for download at the Oracle Software Delivery Cloud.

Restrict Network Access to Critical Services

SAM-QFS uses the following TCP/IP ports:


Note - For MDS client traffic, consider setting up a separate network that is not interconnected to the outside WAN. This configuration prevents exposure from outside threats and also ensures that outside traffic does not limit MDS performance.


Follow the Principle of Least Privilege

Grant the user or administrator the least privilege that is required to accomplish the task to be performed. The SAM-QFS Manager has various roles that can be granted to users. These roles grant varying types and amounts of privilege. Performing SAM-QFS administration tasks from the command line requires root permission.

For more information about using the SAM-QFS Manager, see Chapter 6, Installing and Configuring SAM-QFS Manager, in Sun QFS and Sun Storage Archive Manager 5.3 Installation Guide.

Monitor System Activity

Monitor system activity to determine how well SAM-QFS is operating and whether it is logging any unusual activity. Check the following log files:

Keep Up To Date on Latest Security Information

You can access several sources of security information. For security information and alerts for a large variety of software products, see http://www.us-cert.gov. For information specific to SAM-QFS, see http://mail.opensolaris.org/mailman/listinfo/sam-qfs-discuss. The primary way to keep up to date on security matters is to run the most current version of the SAM-QFS software.