1 About Security for the Oracle Enterprise Manager

This guide provides an overview of the Oracle Enterprise Manager System Monitoring Plug-in for Oracle Key Manager and explains the general principles of application security.

Product Overview

The Oracle Enterprise Manager System Monitoring Plug-in for Oracle Key Manager extends Oracle Enterprise Manager Cloud Control to add support for monitoring Oracle Key Manager appliances. This plug-in provides the following primary features:

  • Gathers and presents configuration and performance information for Oracle Key Manager appliances

  • Raises alerts for pre-selected configuration and monitoring data

  • Ties together Oracle ZFS storage appliances and Oracle databases integrated with Oracle Key Manager appliances

  • Supports monitoring by remote agents in the Cloud Control environment

Basic Security Principles

The Plug-in follows these security principles:

Connections to Oracle Key Manager appliances are through SSL.

The Plug-in authenticates itself with an Oracle Key Manager (OKM) cluster and then establishes a Secure Sockets Layer (SSL) channel using Transfer Layer Sockets (TLS) v1.0 for further communication with the OKM cluster.

Certificates are encrypted.

The Plug-in uses X.509 certificates to authenticate itself with the OKM cluster. These certificates are stored in PKCS#12 files, and thus are encrypted.