
Management Infrastructure concepts
Discovery
All machines with Management Infrastructure software which are on the same LAN can automatically
discover and communicate with each other.
To do this, the Management Infrastructure discovery component on each machine stores information
about its web service API and other functions in a local Management Infrastructure registry. The local
registry information is available to all Management Infrastructure services and each discovery
component synchronizes its registry with other discovery components. Management Infrastructure
components can then look up web services from other Management Infrastructure components. The
distributed and replicated registry approach is supported on IPv4 and IPv6 networks using multicast,
broadcast, and range-scanning techniques, as appropriate.
Although discovery components can belong to only one Management Group at a time, they are aware
of, and communicate with, all discovery components that are visible on the LAN.
A Management Infrastructure discovery component is included in each instance of Management
Infrastructure software.
Discovery configuration settings include:
Non-local registry entry time-out, page 65Registry port, page 65
Registry table updates, page 65Management port, page 64
Registry update address (IPv4/IPv6), page 65Discovery interval, page 64
Discovery URI, page 64
Security integration
The Management Infrastructure security function includes: authenticating users, establishing trust
between Management Infrastructure components, grouping machines into Management Groups,
handling single sign-on and auditing.
The Management Infrastructure security component creates Management Groups. A Management
Group can be local to the machine that the security component is on, or it can include other machines.
The Management Group concept is very similar to network security domains.
Management Infrastructure security components locate each other using the Management Infrastructure
discovery registry and can replicate certificates to all member machines in the Management Group.
This allows services on other machines to access security credentials for a service on another machine.
This approach allows Management Infrastructure capable applications to share a common security
model. This is possible even when the applications are on different machines, use different operating
systems, and are written in different programing languages.
A Management Infrastructure security component is included with each instance of Management
Infrastructure software.
Security configuration settings include:
Management Group communication service port, page 67Login service port, page 66
HP StorageWorks Management Infrastructure48
Commenti su questo manuale