Table 1-3
Intel AMT security features
Description
Feature
The user name and the password that you use to connect to the Intel
AMT device remotely. These credentials should not be confused with
the MEBx credentials, which by default share the same user name
and password as the remote access Intel AMT credentials.
See
“About Intel AMT related credentials”
on page 22.
Intel AMT
credentials
The Intel AMT access control list (ACL) manages who has access to
which capabilities within Intel AMT. An ACL entry has a user ID and
a list of realms to which a user has access. This access is required
to use the functionality that is associated with a realm.
Two kinds of ACL entries exist: Kerberos and Digest. The main
difference between them is that Kerberos entries have an Active
Directory SID to identify a user or group of users. Digest entries
have a user name and password for user identification. When
Microsoft Active Directory is used, user identities are imported from
Active Directory; otherwise, user identities are added manually.
Access Control List
(Enterprise mode
only)
A pair of keys that are used to ensure a secure connection when the
configuration server configures an Intel AMT device. After a device
is configured, these keys are no longer used and are deleted from
the Intel SCS database.
PID-PPS security
key pair (Enterprise
mode only)
TLS lets you encrypt communications between the configuration
server and the Intel AMT device after the device has been configured.
The encryption can be one direction (from the Intel AMT device to
the configuration server) or both directions (mutual authentication).
If you want to use TLS, you must use Intel AMT in enterprise mode
and have access to Microsoft certification authority.
See
“About TLS”
on page 95.
TLS encryption
(Enterprise mode
only)
21
Introducing Out of Band Management Component
How Out of Band Management Component works
Содержание ALTIRIS OUT OF BAND MANAGEMENT COMPONENT 7.0 SP3 - V1.0
Страница 1: ...Altiris Out of Band Management Component from Symantec Implementation Guide Version 7 0 SP3 MR1 ...
Страница 6: ......
Страница 30: ...Introducing Out of Band Management Component Where to get more information 30 ...
Страница 48: ...Installing Out of Band Management Component Uninstalling Out of Band Management Component 48 ...
Страница 110: ...Configuring TLS Configuring TLS with mutual authentication 110 ...
Страница 176: ...Troubleshooting Out of Band Management Component Troubleshooting OOB site server installation 176 ...