Dell Management Plug-in for VMware vCenter 1.7 User Manual Page 11

  • Download
  • Add to my manuals
  • Print
  • Page
    / 113
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 10
2
Dell Management Plug-in Configuration
The following sections provide step-by-step instructions for the Dell Management Plug-in initial configuration. Upgrade,
uninstallation, and security role information are also covered in the following sections.
Security Roles And Permissions
The Dell Management Plug-in stores user credentials in an encrypted format. It does not provide any passwords to
client applications to avoid any improper requests that could lead to issues. The database back ups are fully encrypted
using custom security phrases, and therefore the data cannot be misused.
By default, users in the Administrators group have all the privileges. Users can use all the functions of the Dell
Management Plug-in including the Dell Management Center and Dell Server Management Tab. If you want a non-admin
user to use both the Dell Management Center and Dell Server Management Tab, then create a new role including both
the Dell roles and then assign permission on the root/top node in the inventory and propagate permissions, as needed,
on the child nodes to which you want to give access to the user. For example if you want a user to manage only Cluster
A, then keep the permissions on Cluster A and remove permissions from other clusters. If the you want the non-admin
user to use only the Dell Management Center then create a new role including both the Dell roles and add permission
only on the root node and do not propagate it on the child nodes. If the you want the non-admin users to use only the
Dell Server Management tab then add permission with Dell-Operational role only on the nodes to which you want to
grant user access.
Data Integrity
Communication between the Dell Management Plug-in virtual appliance, Administration Console, and vCenter is
accomplished using SSL/HTTPS. The Dell Management Plug-in generates an SSL certificate used for trusted
communication between vCenter and the appliance. It also verifies and trusts the vCenter server's certificate before
communication and the Dell Management Plug-in registration. The Dell Management Plug-in Console tab (in VMware
vCenter) uses security procedures to avoid improper requests while the keys are transferred back and forth from the
Administration Console and back-end services. This type of security causes cross-site request forgeries to fail.
A secure Administration Console session has a five-minute idle timeout, and the session is only valid in the current
browser window and/or tab. If the user tries to open the session in a new window or tab, a security error is created that
asks for a valid session. This action also prevents the user from clicking any malicious URL that could try to attack the
Administration Console session.
Figure 2. Error Message
11
Page view 10
1 2 ... 6 7 8 9 10 11 12 13 14 15 16 ... 112 113

Comments to this Manuals

No comments