122
Secondary Logon
Service Name
Member Server
Default
Legacy Client
Enterprise Client High Security Client
seclogon Automatic Disabled Disabled Disabled
Important:
The
Secondary Logon
system service should be set to
Automatic
on HP NAS server systems
having 3
rd
party applications that execute functions using a secondary user or group account.
The
Secondary Logon
system service allows the user to create processes in the context of different
security principals. Restricted users commonly use this service to log on as a user with elevated
privileges for temporarily running administrative programs. This service enables users to start
processes under alternate credentials. These features are not required in the baseline server
environment. While this service is beneficial on client computers, it is not appropriate on most servers
because users logging onto them interactively will be members of the IT team performing some sort of
maintenance tasks that typically require administrative privileges. Therefore, this service is configured
to
Disabled
in the three environments defined in this guide.
Simple Mail Transport Protocol (SMTP)
Service Name
Member Server
Default
Legacy Client
Enterprise Client High Security Client
SMTPSVC Not
installed Disabled Disabled Disabled
Important:
The
Simple Mail Transport Protocol (SMTP)
system service must be set to
Automatic
on HP
NAS server systems requiring mail notifications of NAS system failures.
The
Simple Mail Transport Protocol (SMTP)
system service transports electronic mail across the
network. This service is not a requirement for the baseline server policy. Therefore, this service is
configured to
Disabled
in the three environments defined in this guide.
Simple TCP/IP Services
Service Name
Member Server
Default
Legacy Client
Enterprise Client High Security Client
SimpTcp Not
installed Disabled Disabled Disabled
Important:
The
Simple TCP/IP Services
may be set to
Automatic
on HP NAS server systems requiring
the following TCP/IP feature sets.
The
Simple TCP/IP Services
system service supports the following TCP/IP protocols:
•
Echo (port 7, RFC 862)
•
Discard (port 9, RFC 863)
•
Character Generator (port 19, RFC 864)
•
Daytime (port 13, RFC 867)
•
Quote of the Day (port 17, RFC 865)
These features are not required in the baseline server environment. Therefore, this service is
configured to
Disabled
in the three environments defined in this guide.
SNMP Service
Service Name
Member Server
Default
Legacy Client
Enterprise Client High Security Client
SNMP Not
installed Disabled Disabled Disabled
Important:
The
SNMP Service
must be set to
Automatic
on HP NAS server systems requiring SNMP
support. For example, HP Insight Manager software uses and requires SNMP. Customers using HP
Insight Manager software within their HP NAS systems should set this setting to
Automatic.