Hp Insight Vulnerability and Patch Manager Software Manual do Utilizador Página 1

Consulte online ou descarregue Manual do Utilizador para Software Hp Insight Vulnerability and Patch Manager Software. HP Insight Vulnerability and Patch Manager Software User Manual [es] Manual do Utilizador

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
Vista de página 0
HP ProLiant Essentials Vulnerability and Patch
Management Pack
User Guide
Part number 367562-004
Fourth edition July 2007
Vista de página 0
1 2 3 4 5 6 ... 109 110

Resumo do Conteúdo

Página 1 - Management Pack

HP ProLiant Essentials Vulnerability and Patch Management Pack User Guide Part number 367562-004 Fourth edition July 2007

Página 2

Introduction 10 The following figure depicts a shared server configuration, in which the VPM Acquisition Utility is used to obtain patch and vuln

Página 3 - Contents

Vulnerability and Patch Management Pack events 100 Patch and fix events Table 7 lists the events created by the Vulnerability and Patch Manageme

Página 4 - Contents 4

Vulnerability and Patch Management Pack events 101 Table 7 VPM patch and fix events Event Description Occurs Failed VPM Patch and Fix for a Sys

Página 5 - Contents 5

Vulnerability and Patch Management Pack events 102 Acquisition events Table 8 lists the events created by the Vulnerability and Patch Management

Página 6 - About this guide

Vulnerability and Patch Management Pack events 103 Miscellaneous events Table 9 lists the miscellaneous events created by Vulnerability and Patc

Página 7 - Introduction

Vulnerability and Patch Management Pack events 104 Table 9 Miscellaneous VPM events Event Description Occurs Failed VPM Patch Agent Install A f

Página 8 - Introduction 8

HP services and technical support 105 HP services and technical support Vulnerability and Patch Management Pack is offered exclusively as a part

Página 9 - Infrastructure

HP services and technical support 106 • Obtain the latest SmartStart (http://www.hp.com/servers/smartstart)—The SmartStart, Management, and Fir

Página 10 - Introduction 10

Index 107 Index A acquisition patch, 37 settings, 37 adding licenses, 46 additional help resources, 6 applying licenses with License Manager, 47

Página 11 - Introduction 11

Index 108 IIS. See Internet Information Services installation default location, 18 logs, 79 reinstalling, 87 uninstalling, 85 viewing status, 68

Página 12 - Introduction 12

Index 109 scheduled task canceling, 51 modifying, 51 viewing, 51 security, 35 settings acquisition, 37 changing password, 96 default menu, 27 fir

Página 13

Introduction 11 Distributed server configuration In a distributed server configuration, Vulnerability and Patch Management Pack and HP SIM are ea

Página 14

Index 110 default settings, 18 events, 99 hardware requirements, 15 help resources, 6 infrastructure, 9 installation logs, 79 installing, 19 inte

Página 15 - Requirements

Introduction 12 The following figure depicts a distributed server configuration, in which the VPM Acquisition Utility is used to obtain patch and

Página 16 - HP Systems Insight Manager

Introduction 13 The Vulnerability and Patch Management Pack interface Vulnerability and Patch Management Pack vulnerability information appears i

Página 17 - Target systems

Introduction 14 Table 1 Vulnerability and Patch Management Pack icons Icon Status Risk assessment This system is available for licensing, but

Página 18 - Installation location

Requirements 15 Requirements This section lists the hardware and software required for each component in the Vulnerability and Patch Management P

Página 19

Requirements 16 Table 3 Software requirements Component Specification Microsoft Windows 2000 Server SP4 Windows 2000 Advanced Server SP4 Micros

Página 20

Requirements 17 VPM Acquisition Utility (optional) The VPM Acquisition Utility can be installed on a system with Internet access to acquire patch

Página 21

Installation and configuration 18 Installation and configuration This section provides detailed instructions to perform a first-time installatio

Página 22

Installation and configuration 19 Installing from the Insight Control Management DVD 1. Insert the Insight Control Management DVD into the DVD-

Página 23

Legal notices © Copyright 2004, 2007 Hewlett-Packard Development Company, L.P. Confidential computer software. Valid license from HP required for

Página 24

Installation and configuration 20 4. At the welcome screen, click Install. 5. At the Software Selection screen, select Vulnerability and Patch

Página 25

Installation and configuration 21 6. Review the requirements, and click Next.

Página 26

Installation and configuration 22 7. If this is an upgrade installation, be sure that all Vulnerability and Patch Management Pack functions ar

Página 27

Installation and configuration 23 9. If Vulnerability and Patch Management Pack is installed on a separate server from HP SIM, enter the user

Página 28

Installation and configuration 24 10. Specify the database type to use for storing your patch database, and click Next. An existing SQL Server

Página 29

Installation and configuration 25 11. Specify the installation directory or accept the default directory. NOTE: If this is an upgrade instal

Página 30 - Click Next

Installation and configuration 26 14. Click Finished. The HP SIM service is restarted and Vulnerability and Patch Management Pack is available

Página 31

Installation and configuration 27 Installing from the VPM download website 1. After downloading the Vulnerability and Patch Management Pack fro

Página 32

Installation and configuration 28 − View by System − View Patches Installed by VPM ○ View Patch Reboot Status ○ View Patch Repository • De

Página 33 - Finish

Installation and configuration 29 Vulnerability and Patch Management Pack upgrades New versions of Vulnerability and Patch Management Pack are

Página 34

Contents 3 Contents About this guide...

Página 35 - Establishing security

Installation and configuration 30 6. Click Next. 7. Specify the installation directory or accept the default directory, and click Next.

Página 36

Installation and configuration 31 8. Specify the Start Menu folder or accept the default folder, and click Next. 9. Select whether to create a

Página 37

Installation and configuration 32 10. Review the installation details. Click Back to change any settings, or click Install to begin the instal

Página 38

Installation and configuration 33 11. When the installation is complete, select whether to launch the VPM Acquisition Utility, and click Finis

Página 39

Installation and configuration 34 Post-installation configuration 1. Log in to HP SIM from an account with administrator privileges. NOTE: A

Página 40

Installation and configuration 35 5. Perform an automatic discovery to locate and identify target systems in the network that can be used with

Página 41

Installation and configuration 36 ○ If the VPM server does not have Internet access, select Acquire updates from local repository to use the V

Página 42

Installation and configuration 37 Configuring Vulnerability and Patch Management Pack acquisition for Red Hat Enterprise Linux If Red Hat patch

Página 43

Installation and configuration 38 Acquisitions from the VPM server IMPORTANT: If a proxy is used to connect to the Internet, proxy settings

Página 44

Installation and configuration 39 4. Select the appropriate languages for the required patches, and click Schedule. 5. Schedule a suitable

Página 45 - Licensing

Contents 4 Deleting scan results by system ...

Página 46 - Adding licenses

Installation and configuration 40 Progress of the acquisition can be monitored at C:\Program Files\HP\VPM\Radia\IntegrationServer\ logs\patch-a

Página 47

Installation and configuration 41 3. Select the appropriate operating system platforms and platform-related applications, and click Next. 4.

Página 48 - Click Run Now

Installation and configuration 42 6. If you use a proxy, select the I use a proxy checkbox, and enter the appropriate configuration informatio

Página 49 - Vulnerability scanning

Installation and configuration 43 The vulnerability and patch acquisition begins. Progress of the acquisition can be monitored at C:\Program F

Página 50

Installation and configuration 44 11. On the VPM server, create a directory named “data” at C:\Program Files\HP\VPM\Radia\Integration Server.

Página 51

Licensing 45 Licensing This section provides information about licensing systems for use with Vulnerability and Patch Management Pack. NOTE: Th

Página 52

Licensing 46 3. Click Next to continue the task. NOTE: Selected target systems not yet licensed or licensed using a time-limited license appe

Página 53

Licensing 47 NOTE: Vulnerability and Patch Management Pack does not support the HP SIM License Manager Add Key from File feature. NOTE: If t

Página 54

Licensing 48 5. Select the appropriate Vulnerability and Patch Management Pack license key to apply to the selected systems. 6. Click Run Now.

Página 55

Vulnerability scanning 49 Vulnerability scanning This section provides an overview of setting up and using the Vulnerability and Patch Managemen

Página 56

Contents 5 Other tools report that a Windows system is patched, but Vulnerability and Patch Management Pack reports patches needed...

Página 57

Vulnerability scanning 50 4. Verify that the correct target systems appear in the lists, click Add Targets or Remove Targets if it is necessary

Página 58

Vulnerability scanning 51 NOTE: Scans are run one system at a time in a serial process from the VPM server. 9. If scheduling the vulnerabili

Página 59

Vulnerability scanning 52 3. Modify the event details. a. If necessary, change target systems on which the task is scheduled to run by click

Página 60 - Deploying patches and fixes

Vulnerability scanning 53 Viewing vulnerability scan results The Vulnerability and Patch Management Pack scan results can be viewed either for

Página 61

Vulnerability scanning 54 Viewing scan results by system 1. Select Diagnose>Vulnerability and Patch Management>Scan>View Results by S

Página 62

Vulnerability scanning 55 4. Results for all scans performed on the selected system appear. Select the scan results to view, and click View.

Página 63

Vulnerability scanning 56 3. Select one or more vulnerabilities to include in the custom scan definition. 4. Enter a name and description for

Página 64

Vulnerability scanning 57 Deleting a customized vulnerability scan NOTE: Only custom vulnerability scans can be deleted. Default system scans

Página 65

Vulnerability scanning 58 2. Select the appropriate scan or scans, and click Delete. All results associated with the selected scan are deleted.

Página 66 - Viewing the patch repository

Vulnerability scanning 59 4. Select the scan results to delete, and click Delete.

Página 67

About this guide 6 About this guide This user guide provides step-by-step instructions for installing and using HP ProLiant Essentials Vulnerabi

Página 68

Deploying patches and fixes 60 Deploying patches and fixes This section provides an overview of using Vulnerability and Patch Management Pack to

Página 69

Deploying patches and fixes 61 To deploy patches, configuration fixes, or both to systems based on a specific vulnerability scan: 1. Select Dep

Página 70

Deploying patches and fixes 62 4. Select the systems on which to apply patches or fixes, and click Next. 5. Designate when the patched systems

Página 71

Deploying patches and fixes 63 8. View task results in the VPM Events list after the task completes. To view the list of target systems that r

Página 72 - Validating installed patches

Deploying patches and fixes 64 5. If any selected systems are unlicensed or licensed with a time-limited license, permanent licenses can be ap

Página 73

Deploying patches and fixes 65 8. Designate when the patched systems should be rebooted. Reboots can be performed immediately after the patche

Página 74

Deploying patches and fixes 66 a. Enter an appropriate name for the deployment task or accept the default name, and select Once. b. Designate

Página 75

Deploying patches and fixes 67 4. Verify that the correct target systems appear in the lists, click Add Targets or Remove Targets, if necessa

Página 76 - Removing patches

Deploying patches and fixes 68 7. If scheduling the reboot task: a. Enter an appropriate name for the reboot task or accept the default name,

Página 77 - Schedule

Deploying patches and fixes 69 Viewing patch installation status by search filter 1. Select Diagnose>Vulnerability and Patch Management>

Página 78

Introduction 7 Introduction Malicious software security threats are becoming more frequent, more sophisticated, and more costly to businesses, dr

Página 79 - Troubleshooting

Deploying patches and fixes 70 Viewing patch installation status by system 1. Select Diagnose>Vulnerability and Patch Management>View Pa

Página 80

Deploying patches and fixes 71 3. Verify that the correct target systems appear in the lists, click Add Targets or Remove Targets, if necessar

Página 81 - Required open ports

Deploying patches and fixes 72 Validating installed patches Patch validation identifies any missing patches on target systems and immediately r

Página 82 - Configuring a DNS server

Deploying patches and fixes 73 5. Enter an appropriate name for the validation task, or accept the default name. 6. To schedule the validatio

Página 83 - Multiple VPM servers

Deploying patches and fixes 74 NOTE: If the VPM Patch Agent deployment failed, be sure that the system is accessible by selecting Options>Pr

Página 84 - HTTP connection

Deploying patches and fixes 75 IMPORTANT: Any unlicensed systems not licensed at this time will not be included in the VPM Patch Agent deploym

Página 85

Deploying patches and fixes 76 9. View task results in the VPM Events list after the task completes. Removing patches Only patches that can be

Página 86

Deploying patches and fixes 77 3. Select the systems on which to remove the designated patches. 4. To remove the patches immediately, click R

Página 87 - Vulnerability scans

Deploying patches and fixes 78 5. If scheduling the patch removal task: a. Enter an appropriate name for the removal task or accept the default

Página 88 - Windows VPM server

Troubleshooting 79 Troubleshooting This section identifies and provides solutions for commonly encountered issues, as well as answers to frequent

Página 89 - Linux target systems

Introduction 8 the need to recreate these tasks in multiple tools for vulnerability assessment and patch management. • Comprehensive vulnerabili

Página 90 - Troubleshooting 90

Troubleshooting 80 Vulnerability and Patch Management Pack installation updates MDAC and MSDE If MSDE or files used by MSDE are not up-to-date, f

Página 91 - Troubleshooting 91

Troubleshooting 81 4. Click the Log On tab, and update with the new password. 5. Click the General tab, and click Stop>Start to restart the H

Página 92 - Check for missing patches

Troubleshooting 82 • UDP 1433, 1434—MSDE Shared Instance Support • TCP (variable)—MSDE TCP/IP communications. This port, assigned at random by

Página 93 - Troubleshooting 93

Troubleshooting 83 Be sure that the DNS suffix for this connection field has the correct DNS suffix and that both the Register this connection’s

Página 94 - HP SIM integration

Troubleshooting 84 For information about backing up and restoring the ISS Metabase, see http://www.microsoft.com/technet/prodtechnol/WindowsServe

Página 95

Troubleshooting 85 f. Clear the Require secure channel (SSL) option, and click OK>OK. Uninstalling Vulnerability and Patch Mana

Página 96

Troubleshooting 86 IMPORTANT: Vulnerability and Patch Management Pack licenses are not removed from target systems when Vulnerability and Patch

Página 97

Troubleshooting 87 Hiding the VPM column in the HP SIM console Vulnerability and Patch Management Pack uses the VPM column in the HP SIM console

Página 98 - Patch Management Pack

Troubleshooting 88 Windows • The account used to scan the target system is a member of the Administrator group or Domain Administrator group for

Página 99 - Scan events

Troubleshooting 89 Configure file permissions on all necessary DLLs. Configure Windows NT Registry permissions on the following: • HKEY_LOCAL_M

Página 100 - Patch and fix events

Introduction 9 Infrastructure A server environment using Vulnerability and Patch Management Pack consists of the following components: • Vulnera

Página 101 - Event Description Occurs

Troubleshooting 90 A scan was submitted but never started All target systems scanned by Vulnerability and Patch Management Pack must have an IP a

Página 102 - Acquisition events

Troubleshooting 91 To deploy the VPM Patch Agent to target systems, see the “Deploying the VPM Patch Agent” section. Be sure that the Red Hat li

Página 103 - Miscellaneous events

Troubleshooting 92 This message occurs because the Microsoft information pertaining to the patch location is incorrect and the patch cannot be do

Página 104

Troubleshooting 93 Other tools report that a Windows system is patched, but Vulnerability and Patch Management Pack reports patches needed Many o

Página 105

Troubleshooting 94 HP SIM integration Vulnerability and Patch Management Pack menus do not appear in the HP SIM console after installation The to

Página 106

Vulnerability and Patch Management Pack provided scan definitions 95 Vulnerability and Patch Management Pack provided scan definitions The follo

Página 107

Using the Change VPM Credentials Utility 96 Using the Change VPM Credentials Utility The Change VPM Credentials Utility can be used to update Vu

Página 108

Using the Change VPM Credentials Utility 97 4. If changing database credentials, enter your current database credentials, and click Change.

Página 109

Backing up and restoring Vulnerability and Patch Management Pack 98 Backing up and restoring Vulnerability and Patch Management Pack Introductio

Página 110

Vulnerability and Patch Management Pack events 99 Vulnerability and Patch Management Pack events Vulnerability and Patch Management Pack creates

Comentários a estes Manuais

Sem comentários