HP ProCurve Identity Driven Manager 3.0



Similar documents
HP Identity Driven Manager Software Series Overview

HP PCM Plus v3 Network Management Software Series Overview

HP E-PCM Plus Network Management Software Series

HP PCM Plus v4 Network Management Software Series

QuickSpecs. HP PCM Plus v4 Network Management Software Series (Retired) Key features

ProCurve Manager Plus 2.2

HP Intelligent Management Center Standard Software Platform

HP Intelligent Management Center Enterprise Software. Platform. Key features. Data sheet

HP Intelligent Management Center Standard Software Platform

HP Intelligent Management Center Enterprise Software Platform

ProCurve Mobility Manager 1.0

Network Access Control ProCurve and Microsoft NAP Integration

Synchronizing ProCurve IDM and Windows Active Directory

Models HP IMC Smart Connect Edition Virtual Appliance Software E-LTU

HP Intelligent Management Center Basic WLAN Manager Software Platform

HP Intelligent Management Center User Access Management Software

IP videoconferencing solution with ProCurve switches and Tandberg terminals

How to Configure Web Authentication on a ProCurve Switch

HP Business Service Management

FTP Server Configuration

HP Device Manager 4.7

HP Device Manager 4.6

Directory-enabled Lights-Out Management

How to configure 802.1X authentication with a Windows XP or Vista supplicant

How to configure MAC authentication on a ProCurve switch

HP IMC Smart Connect w/wlan Manager Virtual Appliance Software

HP Device Manager 4.7

Traffic monitoring with sflow and ProCurve Manager Plus

Interoperability between Cisco Unified IP 7900 Series phones and ProCurve switches

How To Manage A Network With An Ipc (Ipc) And Ipc V2 (Ipv) On An Ipa (Ipa) On A Network On An Hp Zl (Ips) And V2 On A Pc (

Sharing Pictures, Music, and Videos on Windows Media Center Extender

HP Software as a Service. Federated SSO Guide

HP VCX Desktop Communicator Software Series Overview. Models HP VCX Desktop Communicator Software HP VCX Desktop Communicator Outlook Edition Software

HP Security Assessment Services

Administering Windows Server 2012 (20411) H4D01S

HP Velocity Live QoS Support

HP ProLiant Essentials Vulnerability and Patch Management Pack Planning Guide

USB Secure Management for ProCurve Switches

QuickSpecs. HP Session Allocation Manager Software (SAM v2.3) Overview

HP Software as a Service

Secure Networks for Process Control

Red Hat Enterprise Linux and management bundle for HP BladeSystem TM

ProCurve Network Management

Protecting the Extended Enterprise Network Security Strategies and Solutions from ProCurve Networking

HP ProCurve Networking. Networking solutions for small and growing businesses

HP Device Manager 4.6

Interoperability between Avaya IP phones and ProCurve switches

It is also available as part of the HP IS DVD and the Management DVD/HPSIM install.

Send to Network Folder. Embedded Digital Sending

HP Certified Professional

Pro Curve Networking and Adaptive EDGE Architecture

QuickSpecs. HP Data Protector Reporter Software Overview. Powerful enterprise reporting with point and click simplicity

Installing and Configuring Windows Server 2012 (20410) H4D00S

Models HP IMC MPLS VPN Software Module with 50-node E-LTU

HP Thin Client Imaging Tool

Bluetooth Pairing. User Guide

Integrating HP Insight Management WBEM (WMI) Providers for Windows with HP System Insight Manager

HP ProLiant Essentials Vulnerability and Patch Management Pack Server Security Recommendations

HP Business Service Management

Interoperability between Mitel IP Phones and ProCurve Switches

HP Intelligent Management Center v7.1 Network Traffic Analyzer Administrator Guide

Network Access Security It's Broke, Now What? June 15, 2010

McAfee Web Reporter Turning volumes of data into actionable intelligence

HP Web Jetadmin Database Connector Plug-in reference manual

HP-UX 11i software deployment and configuration tools

Performance and Recommended Use of AB545A 4-Port Gigabit Ethernet Cards

HP OpenView Internet Services. SNMP Integration with HP Operations Manager for Windows White Paper

QuickSpecs HP Data Protector Express 4.0 Service Pack 1

HP ThinPro. Table of contents. Connection Configuration for RDP Farm Deployments. Technical white paper

HP CloudSystem Enterprise

QuickSpecs HP Data Protector Express 4.0 Service Pack 1

HP Real User Monitor. Release Notes. For the Windows and Linux operating systems Software Version: Document Release Date: November 2012

HP Point of Sale (POS) Peripherals Configuration Guide ap5000 VFD Windows (non-opos)

Implementing an Advanced Server Infrastructure (20414) H4D07S

HP OpenView Smart Plug-in for Microsoft Windows Data sheet

HP Point of Sale (POS) Peripherals Configuration Guide 2D Imaging / Linear / Presentation Scanner

HP Device Manager 4.6

HP Virtual Controller and Virtual Firewall for VMware vsphere 1-proc SW LTU

QuickSpecs. Models. Features and benefits Configuration. HP VCX x3250m2 IP Telecommuting Module. HP VCX x3250m2 IP Telecommuting Module Overview

Using HP ProLiant Network Teaming Software with Microsoft Windows Server 2008 Hyper-V or with Microsoft Windows Server 2008 R2 Hyper-V

Microsoft Windows Server System White Paper

HP Access Control Express Installation Guide

HP ProLiant Lights-Out 100c Remote Management Cards Overview

Bluetooth for Windows

Intel vpro Provisioning

QuickSpecs. HP Data Protector Express Single Server Edition 4.0 Service Pack 1 Overview

HP Device Manager 4.7

HP SiteScope. HP Vertica Solution Template Best Practices. For the Windows, Solaris, and Linux operating systems. Software Version: 11.

HP Business Service Management

Advanced Solutions of Microsoft SharePoint Server 2013 (20332) H6C76S

HP EPICCenter Contact Center Software for VCX Solutions Overview

Customizing Asset Manager for Managed Services Providers (MSP) Software Asset Management

HP EPICCenter Contact Center Software for VCX Solutions Series

EAsE and Integrated Archive Platform (IAP)

HP network adapter teaming: load balancing in ProLiant servers running Microsoft Windows operating systems

Transcription:

Product overview HP ProCurve Identity Driven Manager (IDM), a plug-in to HP ProCurve Manager Plus, dynamically provisions network security and performance settings based on user, device, location, time, and endpoint posture. Identity Driven Manager provides network administrators with the ability to centrally define and apply policy-based network access rights that allow the network to automatically adapt to the needs of users and devices as they connect, thereby enforcing network security while providing appropriate access to authorized network users and devices. Identity Driven Manager is a powerful tool that allows network administrators to efficiently manage the users and devices connecting to their network. Key features Policy- and identity-based network access rights Provides appropriate access to network resources Dynamically configures security and performance Resilient architecture promotes high availability Integrates with MS Network Access Protection

Features and benefits Performance Traffic prioritization: Traffic prioritization (QoS) can be automatically applied for each session based on user, device, location, and time of day, allowing appropriate prioritization of network traffic. Rate limiting: Inbound and outbound rate limits can be automatically applied to a session in order to limit the impact of lower-priority connections and reserve bandwidth for important business use. Security Policy-based network access rights: Network access policies specifying network security and performance are defined based on the user, time, location, device, and endpoint posture and then dynamically enforced at the edge of the network, where users and devices connect. Automatic VLAN assignment: Users can be automatically assigned to the appropriate VLAN based on their identity, device, device posture, location, and time of day. User-based access control lists (ACLs): Users can be allowed or denied access to network resources (e.g., servers, printers) based on the destination IP address or a range of IP addresses, and/or to network services (e.g., Web pages, instant messaging, or FTP) based on well-known or user-defined TCP/UDP ports. Endpoint posture awareness: When used with an endpoint integrity solution such as Microsoft Network Access Protection (NAP) or the HP ProCurve Network Access Controller 800, access policies can be based on the posture of the endpoint connecting to the network, allowing non-compliant endpoints to be isolated until they comply with organizational policies. Integration NEW ProCurve network management solutions: HP ProCurve Manager Plus: IDM is delivered on the ProCurve Manager Plus Secure Domain Architecture, which delivers increased scalability and security. HP ProCurve Network Immunity Manager: IDM delivers enhanced integration with ProCurve Network Immunity Manager, which monitors the network for threats and applies policy-based mitigations to offending endpoints or users. IDM and NIM work together to provide consistent and effective network security. RADIUS authentication servers: Integrates with standard RADIUS authentication servers, including Microsoft Network Policy Server (NPS), Microsoft Internet Authentication Service (IAS), and FreeRADIUS on Linux platforms, enforcing network access policies through RADIUS authentication and authorization. Microsoft Network Access Protection: Cooperates with Microsoft Network Access Protection (NAP), bringing together NAP endpoint health status with IDM network access policy enforcement. User directory integration: Microsoft Active Directory: Connects to Microsoft Active Directory, automatically mapping Active Directory group membership to IDM Access Policy Groups. Changes made in Active Directory are reflected in IDM so that user management occurs in one centralized place. LDAP directories or XML files: User and group membership can be imported from an LDAP directory or XML file. Ease of use Graphical user interface (GUI): Identity Driven Manager provides a powerful GUI for defining network access policies and monitoring users on the network. Administrators can quickly see which users are currently on the network and easily drill down to know where and when they connected. NEW Secure access wizard: Simplifies the process of configuring system components by walking administrators through security configuration on network devices as well as configuring the authentication server with the list of these devices. NEW Agent auto-update: Simplifies updates to the software system by automatically updating the IDM agents when the IDM server is updated. 2

Auto-discovery of solution components: RADIUS servers with IDM agents, RADIUS realms, and users are automatically discovered and assigned to a default policy group for the administrator's attention. Detailed reporting: Identity Driven Manager provides reports of network access that can be automated to run at specified times or created on demand. Reports are useful for documenting network access by users and groups, as well as for investigating failed network access attempts in order to identify potential network attacks. Warranty and support Electronic and telephone support: limited electronic and telephone support is available from HP; refer to the HP Web site at www.procurve.com/support for details on the support provided and the period during which support is available Software releases: refer to the HP Web site at www.procurve.com/support for details on the software releases provided and the period during which software releases are available 3

Specifications software--500-user license (J9438A) software--additional 1,000-user license (J9440A) software--unlimited-user license (J9439A) Identity Driven Manager 3.0 software and license for managing up to 500 users. License to add support for managing an additional 1,000 users with the Identity Driven Manager 3.0 product. Identity Driven Manager 3.0 software and license for managing an unlimited number of users. RADIUS server support Microsoft Network Policy Server on Windows Server 2008 (32-bit) Microsoft Internet Authentication Service (IAS) on Windows Server 2003 (32-bit) FreeRADIUS supplied with Red Hat Enterprise Linux (4.7 and 5.2) RADIUS on the ProCurve Network Access Controller 800 FreeRADIUS supplied with SuSE Linux Enterprise Server (9.3 and 10.2) Microsoft Network Policy Server on Windows Server 2008 (32-bit) Microsoft Internet Authentication Service (IAS) on Windows Server 2003 (32-bit) FreeRADIUS supplied with Red Hat Enterprise Linux (4.7 and 5.2) RADIUS on the ProCurve Network Access Controller 800 FreeRADIUS supplied with SuSE Linux Enterprise Server (9.3 and 10.2) Features Intuitive Explorer-style interface OpenView NNM integration Application of policies by user identity - Auto VLAN assignment - Auto set quality of service by user - Auto set bandwidth assignment by user Rule-based access rights deployment Dynamic rights assignment based on: - Time - Location - User system Auto-discovery of: - RADIUS servers - Realms - Users Intuitive Explorer-style interface OpenView NNM integration Application of policies by user identity - Auto VLAN assignment - Auto set quality of service by user - Auto set bandwidth assignment by user Rule-based access rights deployment Dynamic rights assignment based on: - Time - Location - User system Auto-discovery of: - RADIUS servers - Realms - Users Notes Additional specifications Supports environments with up to 10,000 users. Supports up to 10 RADIUS servers with HP ProCurve Identity Driven Manager agents installed. Requires the HP ProCurve Manager Plus 3.0 management platform. Please see HP ProCurve Manager Plus 3.0 for hardware and software system requirements. Requires the HP ProCurve Identity Driven Manager 3.0 base product (J9438A). Multiple licenses for additional 1,000 users can be added to the base HP ProCurve Identity Driven Manager product to support larger numbers of users. Additional specifications Supports environments with up to 10,000 users. Supports up to 10 RADIUS servers with HP ProCurve Identity Driven Manager agents installed. Requires the HP ProCurve Manager Plus 3.0 management platform. Please see HP ProCurve Manager Plus 3.0 for hardware and software system requirements. Services (UQ125E) (UQ124E) (UQ119E) (UQ118E) (UQ133E) (UQ132E) 4

accessories Technology for better business outcomes To learn more, visit www.hp.com/go/procurve Copyright 2009 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein. Intel, Core, Pentium, and Xeon are trademarks of Intel Corporation in the U.S. and other countries. Microsoft, Windows, Windows NT, and Windows Vista are U.S. registered trademarks of Microsoft Corporation. April 2009