Out-of-Band Networking



Similar documents
Secure, Remote Access for IT Infrastructure Management

Opengear Technical Note

Out-of-Band Management: the Integrated Approach to Remote IT Infrastructure Management

DS Series Solutions Integrated Solutions for Secure, Centralized Data Center Management

How To Manage The Sas Metadata Server With Ibm Director Multiplatform

Introducing Tripp Lite s PowerAlert Network Management Software

DS SERIES SOLUTIONS ALL AT ONCE

Payment Card Industry Data Security Standard

TimePictra Release 10.0

QRadar SIEM 6.3 Datasheet

Opengear Application Note

HP-UX 11i software deployment and configuration tools

Network Configuration Manager

Reducing operating costs of power generators with cloud-based remote management

RuggedCom Solutions for

TereScope Management Options

MRV EMPOWERS THE OPTICAL EDGE.

Network Management Slide Set 3

PN5212/PN5320/PN7212/PN7320

Server Room Solutions: How small to midsize IT businesses can make their IT budgets appear larger than they are

The best network information. COPA-DATA know-how: SNMP with zenon

A More Secure and Cost-Effective Replacement for Modems

LANDesk Server Manager. Single Console Multi-Vendor Management Solution

How do I secure and manage an out-of-band connection to network devices?

Information Technology General Controls Review (ITGC) Audit Program Prepared by:

Gigabyte Content Management System Console User s Guide. Version: 0.1

WAN Failover Scenarios Using Digi Wireless WAN Routers

Remote Data Center Control

Automating Infrastructure A connectivity perspective for BICSI SEA meeting, November 2011

ipatch System Manager - HIPAA Compliance

integrated lights-out in the ProLiant BL p-class system

GE Measurement & Control. Cyber Security for NEI 08-09

Building and Deploying Enterprise M2M Applications with Axeda Platform

Radiological Assessment Display and Control System

Reducing operating costs of telecom base stations with remote management

Top Ten Keys to Gaining Enterprise Configuration Visibility TM WHITEPAPER

Secure Remote Enterprise Network Management

CenterMind P+ Intelligent Power Management for your Data Center

SOLUTION BRIEF. Motorola FSA4000. How to Achieve Near 100% Fire Station Alerting Reliability

Executive Summary and Purpose

Network and Security. Product Description. Product Overview. Architecture and Key Components DATASHEET

Motorola AirDefense Network Assurance Solution. Improve WLAN reliability and reduce management cost

V1.4. Spambrella Continuity SaaS. August 2

Telecom CPE Management Overview

NEBS-Compliant Product Solutions For Carriers and Service Providers

SapphireIMS 4.0 BSM Feature Specification

CONTAMINATION CONTROL FOR ELECTRONIC AND SEMICONDUCTOR APPLICATIONS

SapphireIMS Business Service Monitoring Feature Specification

Transition Networks White Paper. Network Security. Why Authentication Matters YOUR NETWORK. OUR CONNECTION.

APC Enterprise KVM Switches

securityprobe5es -X20

Information Technology Solutions. Managed IT Services

Cisco Unified Communications Remote Management Services

Secure Access Complete Visibility

The Impact of HIPAA and HITECH

Product Guide CM-Relay

Industrial Network Security for SCADA, Automation, Process Control and PLC Systems. Contents. 1 An Introduction to Industrial Network Security 1

Uninterrupted Internet:

EM316T1E1-XY. Features

Case Study Ministry of Agriculture, France

Network Management and Monitoring Software

PE6108/PE6208/PE8108/PE8208

Configuring connection settings

Empirix OneSight for VoIP: Avaya Aura Communication Manager

What s new in IP Office R2.0

Improving PCI Compliance with Network Configuration Automation

EPICenter Network Management Software

Simple Network Management Protocol (SNMP) Primer

Symphony Plus Cyber security for the power and water industries

Operations Manager Comprehensive, secure remote monitoring and management of your entire digital signage network infrastructure

MRV EMPOWERS THE OPTICAL EDGE.

Symantec Database Security and Audit 3100 Series Appliance. Getting Started Guide

AIRDEFENSE SOLUTIONS PROTECT YOUR WIRELESS NETWORK AND YOUR CRITICAL DATA SECURITY AND COMPLIANCE

PATROL From a Database Administrator s Perspective

The IDG 9074 Remote Access Controller

securityprobe 5E Standard

Gigabyte Management Console User s Guide (For ASPEED AST 2400 Chipset)

This document describes how the Meraki Cloud Controller system enables the construction of large-scale, cost-effective wireless networks.

System integration oriented data center. planning. In terms of ATEN's eco Sensors DCIM solution

HMS Industrial Networks. Putting industrial applications on the cloud

Tk20 Network Infrastructure

GHEM Secure Access Control

The Trellis Dynamic Infrastructure Optimization Platform for Data Center Infrastructure Management (DCIM)

CenterMind G+ Smart and Proactive Environment Monitoring

An Overview of the SaskTel Hosted Contact Centre Solution Design and Delivery Principles, and Core Architecture

LogRhythm and NERC CIP Compliance

CiscoWorks Resource Manager Essentials 4.3

AutoLog ControlMan. Remote Monitoring & Controlling Service

BMC s Security Strategy for ITSM in the SaaS Environment

OBM (Out of Band Management) Overview

Transcription:

Out-of-Band Networking A strategy to cut costs, increase security, lower risks and improve service levels in carrier and corporate networks ADMINISTRATION PRODUCTION (Data Port Network) OUT-OF-BAND (Service Port Network) OPERATING PHYSICAL

O u t - o f-band Netwo rk ACCESS Out-of-Band Networks provide secure remote service port access and remote power control to devices in an organization s networks and infrastructures. This nearly eliminates the need for physical presence at a device to correct problems or manage its everyday operation. This mode of unmanned operation is called Out-of-Band or Lights Out Management. The diagram below illustrates the complementary relationship between an organization s Production Network, Out-of-Band Network and the devices in an organization s infrastructures. Normally, an Operating Infrastructure device such as a server is managed through the switches and routers in the organization s Production Network. But when the server becomes disconnected from the Production Network due to an error, it frequently requires physical presence at the server to restore it to normal operation. This can nearly be eliminated by using an Out-of-Band Network to remotely power cycle the server and manage it back into the Production Network using the server s service port. The same is true for devices such as switches and routers in the Production Network. Secure remote access to devices in an organization s Physical Infrastructure can usually only be performed through the Out-of-Band Network. Primary access to the Out-of-Band Network itself is usually through the Production Network. But when a Production Network failure causes Out-of-Band Network equipment to become disconnected, access can be established through a secondary channel to restore Production Network and Out-of-Band Network equipment to normal operation. Out-of-Band Networking Primary Management Access ADMINISTRATION Secondary Management Access PRODUCTION (Data Port Network) OUT-OF-BAND (Service Port Network) > Routers > Multiplexers > Switches > Network Security Appliances OPERATING > Servers > Storage > PBX Ethernet Port Connections Service Port Connections Dial-up Connections Cellular Connections PHYSICAL > UPS > Physical Security > Environment > Disaster Control

O u t - o f-band Management MANAGE Using an Out-of-Band Network to aid in the management of an organization s networks and infrastructures can cut costs, increase security, lower risk and, in many cases, increase service levels. Cutting Costs Since Out-of-Band Networks can nearly eliminate the need for administrative personnel to be physically present at a device, personnel can be minimized and centralized, resulting in significant cost savings. Cost of downtime is also reduced since devices can be brought back online quickly without the delays of dispatching personnel to device locations. Increasing Security, Lowering Risk Out-of-Band Network equipment connects to service ports protecting them from unauthorized, undetected access. Disconnecting Out-of-Band equipment from a service port can cause an immediate alarm report, increasing overall security. Most operating systems and many applications generate logs that are stored on the hosting device and also written to the device s serial port. Some Out-of-Band Network equipment can capture this data through the hosting device s service port and store it externally. Many companies use this captured data as a record of system activity to meet security and auditability requirements of government regulations such as Sarbanes-Oxley, HIPAA, GLBA, NIPSOM Chapter 8 and California Bill 1386, thus lowering the risk of non-compliance. Enhancements in security and safety can be realized through providing remote connections to service ports and detection devices on Physical Infrastructure equipment. Some Out-of- Band Network equipment can detect and report the status of devices such as door alarms, fire alarms and even aerial lights on communications towers. They may also provide on-line access to the service ports of security and fire control panels and uninterruptible power supplies. Improving Service Levels One of the most common strategies to improve service levels is redundancy. This is a complex and costly approach that cannot be justified for most applications. Using Out-of-Band Networks to provide near immediate access to disconnected devices, downtime is minimized and service levels improved without the need for complex redundant systems.

O u t - o f-band Solutions SIMPLIFY Advanced Out-of-Band Network Solutions consist of intelligent appliances that can integrate with existing security and network management systems. They also provide features to manage the Out-of-Band Network itself and to provide instant notification of events occurring in an organization s networks and infrastructures. Simplifying Operations Like any other network, an Out-of-Band Network must implement secure access protocols. Advanced Out-of-Band Network solutions automatically verify access through an organization s existing security infrastructure. Support for security standards such as SSH v2, RADIUS, SecurID, TACACS+, SNMP v3, NIST FIPS 140-2, and others is essential to assure security and operational simplicity. Further operational simplicity can be achieved through SNMPbased communications with existing Network Management Systems such as HP OpenView, Tivoli, BMC Patrol and CA- Unicenter. Also, equipment in the Out-of-Band Network itself may need to be updated with new configuration specifications or updated firmware. Some Out-of-Band Network equipment suppliers require costly software and/or management appliances to achieve these goals, adding a layer of complexity and additional cost. Advanced Out-of-Band Network equipment provides these features without the need for additional equipment and/or software. For organizations not running a Network Management System, some Out-of-Band Network equipment suppliers may offer Out-of-Band Network Management software or appliances to simplify management activities in the Out-of-Band Network. Configuration Interface Simplifying Event Notification and Response Operating system and application log data can be captured and examined by Advanced Out-of-Band Network equipment allowing for automatic notification of events. These notifications can be sent to an operations center where trouble tickets can be created and remedial actions taken according to an organization s standard practices. The ability to automatically respond to an emergency can increase safety and avoid disasters. For example, when an overheating condition occurs, equipment in the Out-of-Band Network could automatically turn off the power to the device and send a notification to the operations center. Trigger Action Interface Advanced Network Management Systems provide features to script an automatic response when an event notification is received. This improves both operational efficiency and incident response times.

Ad vance d O u t - o f-band Netwo rk Pro d u c t s MRV provides some of the most secure and feature-rich Out-of-Band Network products available. These products are in use today in carrier, corporate, government and metropolitan networks around the world. Console Servers The LX Series of secure console servers meets a wide range of carrier and corporate requirements. > Secure serial port access (SSH v2, RADIUS, SecurID, TACACS+, others) > Models from 1 to 48 ports > Supports FIPS 140-2 > NEBS certification > Ports configurable for serial port or sensor functions > Secure dial-up and wireless GPRS access > Automated event notification and response > Network Management Systems interface using encrypted SNMP v3 > Supports IPv6 > Built-in features to manage MRV Out-of-Band Network equipment no separate software or management appliance required Power Management The Power Management Series provides industry-leading features in a variety of options. Sensor Management > Remote power management (off, on, cycle) > Input current monitor > Power-up sequencing > 110-120v, 208-240v, -48v models > Username/Password per outlet > Zero, 1U and 2U models The 7204 Sensor Manager extends the LX Series with a high density, modular platform with dry contact input or output, and analog inputs. > Up to 128 sensor points > Automated event notification and response > Multi-level password protection per port > With Megavision Pro provides filtering, archiving, prioritizing of sensor information Megavision Pro Powerful graphical management software to simplify Out-of-Band management through an easy to use interface and extensive eatures, including sensor management. MegaVision Pro combines end-to-end network viewing and performance monitoring with robust configuration and fault management features. In addition, MegaVision Pro automatically detects and monitors any SNMP or TCP/IP compliant device from any vendor.

Service Aware Networking Technologies Corporate Headquarters MRV Communications, Inc. Corporate Center 20415 Nordhoff Street Chatsworth, CA 91311 Tel: 818.773.0900 Fax: 818.773.0906 www.mrv.com MRV International Business Park Moerfelden Waldeckerstrasse 13 64546 Moerfelden-Walldorf Germany Tel: (49) 6105/2070 Fax: (49) 6105/207-100 MRV Sales Tel: 800.338.5316 Tel: 978.952.4700 Sales@mrv.com MRV Service and Support 978.952.4888 service@mrv.com Additional MRV locations can be found at www.mrv.com MRV Boston 295 Foster Street Littleton, MA 01460 Tel: 978.952.4700 2005. All rights reserved. MRV Communications, the MRV Communications logo, Service Aware Network Technologies and Megavision Pro are either trademarks or registered trademarks of MRV Communications, Inc. All other marks are the property of their respective owner and/or licensor.