HP JETADVANTAGE SECURITY MANAGER. Adding and Tracking Devices



Similar documents
HP Device Manager 4.7

Bluetooth Pairing. User Guide

USING MANAGED PRINTER LISTS

HP Quality Center. Software Version: Microsoft Word Add-in Guide

HP Application Lifecycle Management

Send to Network Folder. Embedded Digital Sending

HP LeftHand SAN Solutions

RUNNING A HELPDESK CONTENTS. using HP Web Jetadmin

SMTP PROXY SERVER INSTALLATION FOR HP QUICKPAGE

HP Device Manager 4.6

Using HP Systems Insight Manager to achieve high availability for Microsoft Team Foundation Server

HP ARCHIVING SOFTWARE FOR EXCHANGE

How to use Data Protector 6.0 or 6.10 with Exchange Recovery Storage Groups to restore a single mailbox

Using HP ProLiant Network Teaming Software with Microsoft Windows Server 2008 Hyper-V or with Microsoft Windows Server 2008 R2 Hyper-V

FTP Server Configuration

Installing and Setting up Microsoft DNS Server

HP Web Jetadmin Database Connector Plug-in reference manual

DISCOVERING DEVICES CONTENTS. using HP Web Jetadmin

How to configure MAC authentication on a ProCurve switch

How to configure 802.1X authentication with a Windows XP or Vista supplicant

Software Manual. HP SimpleSave. Backup Software User Manual. SimpleSave

Synchronizing ProCurve IDM and Windows Active Directory

HP network adapter teaming: load balancing in ProLiant servers running Microsoft Windows operating systems

Rebasoft Auditor Quick Start Guide

KB Windows 2000 DNS Event Messages 1 Through 1614

HP JETADVANTAGE SECURITY MANAGER

HP LeftHand SAN Solutions

HP Velocity Live QoS Support

HP Cloud Service Automation

HP Device Manager 4.6

HP Intelligent Management Center v7.1 Virtualization Monitor Administrator Guide

HP LoadRunner. Software Version: Ajax TruClient Tips & Tricks

Integrate Cisco IronPort Security Appliance (ESA)

HP Point of Sale (POS) Peripherals Configuration Guide 2D Imaging / Linear / Presentation Scanner

HP LaserJet MFP Analog Fax Accessory 300 Send Fax Driver Guide

HP Software as a Service

HP LASER GAMING MOUSE USER MANUAL

HP INTEGRATED ARCHIVE PLATFORM

HP LeftHand SAN Solutions

Manage Address Book. Administrator's Guide

SMART INSTALL CONTENTS. Questions and answers

HP ProLiant Essentials Vulnerability and Patch Management Pack Release Notes

Sharing Pictures, Music, and Videos on Windows Media Center Extender

Software License Registration Guide

CA ARCserve Replication and High Availability for Windows

HP OpenView AssetCenter

HP Quality Center. Software Version: Microsoft Excel Add-in Guide

Legal Notes. Regarding Trademarks KYOCERA MITA Corporation

HP Point of Sale (POS) Peripherals Configuration Guide ap5000 VFD Windows (non-opos)

Backup and Recovery User Guide

HP Access Control Express Installation Guide

HP Quality Center. Software Version: Microsoft Excel Add-in Guide

HP Software as a Service. Federated SSO Guide

HP ilo mobile app for Android

Chapter 6. About This Chapter. Before You Begin. Windows 2000 Naming Schemes. [Previous] [Next]

HP Server Management Packs for Microsoft System Center Essentials User Guide

HP Service Manager. Software Version: 9.34 For the supported Windows and UNIX operating systems. Incident Management help topics for printing

Backing up and restoring HP Systems Insight Manager 6.0 or greater data files in a Windows environment

HP Roar Plus Speaker. Other Features

HP Embedded SATA RAID Controller

HP Operations Orchestration Software

How to Configure the Windows DNS Server

eprint SOFTWARE User Guide

Audit Management Reference

HP Device Manager 4.6

Backup and Recovery User Guide

Service Manager 9.32: Generating SSL Profiles for an F5 HWLB

DALIBuildings SQL Server System Administrator Account Management. DALI programming guide

iw Document Manager Cabinet Converter User s Guide

HP D2D NAS Integration with HP Data Protector 6.11

IMPRESSION COUNTING CONTENTS. in HP Web Jetadmin

HP Quality Center. Upgrade Preparation Guide

HP OpenView Internet Services. SNMP Integration with HP Operations Manager for Windows White Paper

Connectivity Pack for Microsoft Guide

-lead Grabber Business 2010 User Guide

HP Thin Client Imaging Tool

Software Manual. HP SimpleSave. Backup Software User Manual. SimpleSave

Nimsoft Monitor. dns_response Guide. v1.6 series

Integrating Autotask Service Desk Ticketing with the Cisco OnPlus Portal

Configuring the SST DeviceNet OPC Server

HP BladeSystem Management Pack version 1.0 for Microsoft System Center Essentials Troubleshooting Assistant

Traffic monitoring with sflow and ProCurve Manager Plus

Microsoft Access 2007 Advanced Queries

ProCurve Networking. Troubleshooting WLAN Connectivity. Technical White paper

HP Device Manager 4.6

HP Operations Smart Plug-in for Virtualization Infrastructure

File Management Utility User Guide

Administering Windows-based HP Thin Clients with System Center 2012 R2 Configuration Manager SP1

CA XOsoft High Availability for Windows

Integrate Websense Web Security Gateway (WSG)

CA Nimsoft Service Desk

CA Spectrum and CA Service Desk

HP LeftHand SAN Solutions

CA XOsoft Replication for Windows

HP Operations Orchestration Software

How to configure Failover Clustering for Hyper-V hosts on HP ProLiant c-class server blades with All-in-One SB600c storage blade

Transcription:

HP JETADVANTAGE SECURITY MANAGER Adding and Tracking Devices CONTENTS Overview... 2 General Description... 2 Detailed Description... 4 Resolve IP Address to Hostname... 4 Resolve Hostname/DNS Alias to IP Address... 5 Add Devices Using a Text or XML File... 5 Add Devices with a Text File... 6 Add Devices with an XML File... 6 Add devices to the Security Manager database... 7 Tracking Device Identity... 7 Manually adding devices to the database... 7 Communicating with the Device... 8 1

OVERVIEW Devices are added to HP JetAdvantage Security Manager manually using the Add Devices option or dynamically using the Instant-On Security feature. This whitepaper describes the Add Devices option in detail, including device identity tracking in the Security Manager database. (For information about adding devices through the Instant-On Security feature, see the Instant-On Whitepaper.) GENERAL DESCRIPTION Unless the Instant-On Security feature is in use, adding devices to Security Manager is a manual process. Use the Add Devices button on the toolbar in the Device tab to set up either automatic or manual device discovery. Devices can be manually added by importing a text or XML file that contains a list of devices or by manually entering the device information. Exported device lists from HP Web Jetadmin or from other properly formatted sources can be used. Device lists can include IP addresses, hostnames, DNS aliases or a combination of all three in XML or text format. Use the Verify Devices option on the Devices tab to verify support for a device or group of devices. Unsupported devices are indicated in the devices panel. To use the Automatic Discovery feature from Add Devices on the Devices tab, click the Device tab and click Add Devices on the toolbar. Click Automatic Discovery to open the Discovery Control settings. Select a Discovery Type: Automatic Discovery this method uses a multicast UDP discovery mechanism to ask HP imaging and printing devices to identify themselves. The user may choose the number of network hops or routers to traverse in the multicast query. The default is 4 hops. IP Range Discovery this discovery method scans the given IP address range for all devices that are supported by Security Manager. Depending on the Discovery Type, either adjust the Number of Network Hops, or type a Start Address and End Address for manual discovery using an IP range. Use the Instant-On Security feature and select the Accept Device Announcements check box in the Instant- On Security tab (click File, and then click Settings) to dynamically add devices. After selecting the Devices tab, two options are available to launch the Add Devices dialogue window. Select Add Devices from the toolbar or select the All Devices Group or a custom group and then select Add Devices from the context menu. 2

Either method launches the same Add Devices dialog window. The group name that is highlighted during the add devices process is the group that populates the Add to Group field. However, another group can be substituted here by choosing Select and replacing the existing Add to Group name with one from the Select a Device Group window. Adding devices to HP Security Manager is a two step process. The first step stages the devices before database entry. Enter device IP addresses, hostnames or DNS aliases into the Devices to Add table using the Add option or by selecting Add File and importing a properly formatted text or XML file. If the Resolve IP addresses to hostnames on add check box is selected (default selection), HP Security Manager attempts to resolve the provided IP addresses to a hostname. 3

When IP addresses are provided, deselecting the Resolve IP addresses to hostnames on add checkbox disables DNS resolve and results in displaying only the IP address during the add devices process. This can be desirable in the absence of a DNS server or if an IP address timeout is expected (typically within 5 seconds). If adding devices by hostname or DNS alias, the DNS resolve to IP address occurs automatically. As the final step, devices from the Devices to Add table are added to the database and assigned a license by selecting OK. DETAILED DESCRIPTION Resolve IP Address to Hostname The tracking of Security Manager device identity depends on how the device was added and entered into the database. The following section provides a detailed explanation of the process. When the Resolve IP addresses to hostnames on add box is selected and an IP address is provided without a correlating hostname, the IP address DNS resolve process is as follows: 1. A reverse DNS lookup is performed on the IP address. 2. If resolved to a hostname, a forward DNS lookup is performed on that hostname. 3. The hostname must resolve back to the IP address to be valid. 4. If any address resolve step fails, the device is still staged displaying the IP address only. 4

5. If reverse and forward address resolve succeeds, the IP address is staged with the hostname. 6. Once the device is entered into the database, Security Manager uses the hostname as the primary device identifier. Typing anything other than a valid IP address is interpreted as a hostname or DNS alias. The hostname resolve process ignores the Resolve IP addresses to hostnames on add selection and always attempts DNS resolution. Resolve Hostname/DNS Alias to IP Address The hostname DNS resolve process is as follows: 1. A hostname or DNS alias is provided. 2. A DNS forward lookup occurs and the corresponding IP address is paired for database entry. Unlike the IP address resolve process, only a forward DNS lookup is required by the hostname resolve process. Failure to resolve the hostname or DNS alias to an IP address produces an error. Staging devices in the Add Devices window can assist with device identity validation before entering that device address into the database. Once a device is in the Devices to Add list, it can be removed by highlighting it and selecting the Remove button (multiple rows can by highlighted and removed). The entire staging list can be cleared by selecting the Clear All button. Add Devices Using a Text or XML File The alternative to staging devices in a singular fashion is to import a pre-populated device list in text or XML file format. This is performed by selecting the Add File button and browsing to your device file of choice. 5

Add Devices with a Text File The devices listed in the text file (one per line) can include IP addresses, hostnames, DNS alias records, or a mixture of all three. The text file is invalid if: an address line exceeds 256 characters an address line contains control characters or symbols it cannot be parsed correctly In the example above, a mixed entry text file was imported without Resolve IP addresses to hostnames on add selected. The corresponding Devices to Add list show the IP address entries without a DNS resolved hostname. The DNS alias and hostname entries resolved to IP addresses by default. Add Devices with an XML File You can create device lists in XML format from an Security Manager export, an HP Web Jetadmin export, or by using an XML editor. (Security Manager only uses the data found for the IP Address and IP Hostname tags.) Examples of exported HP Web Jetadmin and Security Manager device lists are shown below. 6

If both the hostname and IP address are included in the XML file, the hostname is used during DNS resolution and the Resolve IP addresses to hostnames on add setting is ignored. Hostname resolution always occurs when the hostname is provided, regardless of whether the Resolve IP addresses to hostnames on add is selected. HP Security Manager uses the IP address that the provided hostname resolves to, which might be different than the IP address provided in the same XML file with the hostname. This ensures that the hostname to IP address pairing is current. ADD DEVICES TO THE SECURITY MANAGER DATABASE To add the devices listed in the Devices to Add table, select the OK button. If a license file is installed in Security Manager, devices are added to the database and automatically assigned a license. Without a license file installed, devices are still added to the database. Licenses can be manually assigned later. A Success message displays the number of new devices added, duplicates skipped, devices licensed and unlicensed. TRACKING DEVICE IDENTITY How a device is entered into the database determines how device identity is tracked and used for communication. Use the following definition and the flow chart below to understand how Security Manager tracks device identity. Manually adding devices to the database Devices are manually added to Security Manager in a singular fashion or through a device list during the import process. Device identity is provided to Security Manager via an IP address, hostname, or DNS alias (CNAME). Devices cannot be added by MAC or network interface hardware address. If a device is added using the hostname or DNS alias, the device s IP address is automatically resolved and paired to the hostname or DNS alias in the database. The Resolve IP Addresses to Hostnames on Add selection is ignored when a hostname or DNS alias is provided as the device 7

identity. If the device is added using the IP address, a database entry choice is provided. If Resolve IP Addresses to Hostnames on Add is selected (default), the hostname is resolved and linked to the IP address in the database. If Resolve IP Addresses to Hostnames on Add is not selected, the device s hostname is not resolved and only the IP address is entered in the database. Communicating with the Device When a task is launched, HP Security Manager checks for the presence of the hostname or DNS alias in the database. If the hostname or DNS alias is not present, the IP address in the database is used instead. If the hostname or DNS alias is present in the database, it is resolved to the DNS registered IP address. If the IP address is valid and the device is online, communication with that device should be successful. If the device does not respond to the database IP address or DNS provided IP address, communication with that IP address will fail. If communication fails, the appropriate error status is updated in HP Security Manager. When communication is successful and new device identifying information is gathered, the database is updated with the new information. 8

Copyright 2015 HP Development Company, L.P. The information contained herein is subject to change without notice. The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein. Microsoft and Windows are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries. c03602117enw, Rev. 3, September 2015 9