EasyManua.ls Logo

EMC Unity Family User Manual

EMC Unity Family
70 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
EMC Unity
Family
EMC Unity
All Flash, EMC Unity
Hybrid,
EMC UnityVSA
Version 4.0
Security Configuration Guide
P/N 302-002-564 REV 03

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the EMC Unity Family and is the answer not in the manual?

EMC Unity Family Specifications

General IconGeneral
ManagementUnisphere, REST API, CLI
Drive Types SupportedSSD, SAS, NL-SAS
ProtocolsiSCSI, NFS, SMB
Data ServicesSnapshots, Replication
Data ReductionCompression, Deduplication
Unified StorageBlock and File
Cloud IntegrationCloud Tiering
ModelUnity 300, Unity 400, Unity 500, Unity 600
Target MarketEnterprise, Midmarket
High AvailabilityDual-controller architecture, automatic failover

Summary

EMC Unity Access Control

Default Management and Service Accounts

Explains default user accounts for initial access and configuration, including admin and service accounts.

Storage System Account Management

Describes methods for managing storage system accounts, including roles like Management and Service.

Unisphere Access and Authentication

Covers authentication for Unisphere access using local or LDAP accounts, session rules, and password requirements.

Unisphere Command Line Interface (CLI)

Explains the CLI for Unisphere functionality, session rules, and password usage.

File System Security Models

Covers how storage systems use security policies for multiprotocol environments, including UNIX and Windows security models.

Dynamic Access Control (DAC)

Covers applying access-control permissions and restrictions based on rules related to resource sensitivity, user roles, and device configuration.

EMC Unity Communication Security

Storage System Network Ports

Outlines network services and their corresponding ports used by the storage system.

Ports Storage System Contacts

Lists ports the storage system must access as a network client for services like LDAP, DNS, and Kerberos.

SMB Encryption and Signing

Details SMB 3.0 and Windows 2012 support for SMB encryption and signing for secure data transfer.

FIPS 140-2 Management Support

Details FIPS 140-2 standard requirements for IT products and how the storage system supports FIPS 140-2 mode for SSL traffic.

EMC Unity Data Security Settings

Data at Rest Encryption (D@RE)

Explains Data at Rest Encryption (D@RE) using controller-based encryption for physical drive security.

Backup Keystore File

Recommends backing up the generated keystore file to an external location for system recovery in case of corruption.

D@RE Audit Logging

Details the auditing function for D@RE, logging keystore operations like key creation, backup, and disk encryption.

Data Security Settings by Storage Type

Summarizes security features available for different storage types like iSCSI, SMB, and NFS, including authentication and access control.

EMC Unity Security Maintenance

Related product manuals