Re: GSP lan access

From: Robert Klute (robert_klute_removethis_at_hp.com)
Date: 07/29/03


Date: Tue, 29 Jul 2003 12:26:15 -0700

On Tue, 29 Jul 2003 14:03:43 -0400, "mhearse" <mhearse@hotmail.com>
wrote:

>I need to know the details of the lan access capability in GSP. I believe
>the el command is used to enable/disable this. What is it used for? What
>are the consequences of disabling it. Does it control telnet/remote access
>to the server? Thanks.

The 'Core I/O' on HP servers includes
a lan port,
3 serial ports - Serial console, remote/modem, UPS monitor, and
an MP port

The serial ports are often combined into one 25-pin RS232 connector.
You can connect a regular 25 pin serial cable to connect to the serial
console, or a W/M cable to break out the 3 ports into 9-pin RS422
connectors.

The MP port allows administrators to telnet into the console instead of
requiring a serial terminal to be hooked up. There is a separate
command for remote/modem access. Some models also allow for browser
connection via secure web console session and SSL.

Disabling the modem port prevents remote diagnostic dial-in. Not a big
deal unless you are setup for/want it. Disabling the MP port prevents
lan access to the console port - again not a big deal if it is not
needed or not hooked up.

If you want to be able to remotely administer your system, you should
consider the use of the MP port. Set up userids other than Admin, and
grant privileges. Change the default password on Admin. Consider
putting the MP ports on a private LAN.

The MP port is their to make administration easier, but you do need to
think about how to maintain security. Remember, from the console you
are only one ctl-B away from the ability to completely munge the box.

LAN Console
EL - enable the use of the lan interface.
DL - disable the lan interface.
DI - disconnect lan console or modem
LC - configure the lan interface
     It is this command that sets the IP Address, netmask, gateway
     and name of the the GSP.
LS - display the LAN interface settings

Secure Web Console
EW - enable Web console access
DW - disable Web console access

SSL connection
ES - enable SSL access
CG - generate certificate for SSL access
DS - disable SSL access

Remote/Modem port access
ER - enable modem port access
MS - display modem status
CA - configure async and modem parameters
DI - disconnect lan console or modem

Robert Klute
Cupertino Solution Center
Hewlett-Packard Company
-----
The opinions are those of the poster, not the company.



Relevant Pages