Jump to content WorldWide-English
HP.com Home Products and Services Support and Drivers Solutions How to Buy
» Contact HP
HP.com Home
Solutions  >  Security

HP-UX 11i Protected Systems Web Server

» 

HP-UX 11i

» Latest release
» Virtualization
» Security
» High availability
» Disaster tolerance
» Management
» Software development
» Internet & networking
» Open source software
» Packaging - OEs
» Utility pricing
» Products index

Leadership UNIX

» Lowest UNIX TCO
» Run it on blades
» Performance 
» ISVs’ v3 quotes
» The Real Story

Learn more:

» Information library
» Executive update
» Customer successes
» Knowledge-on-Demand technical Webcasts
» Transition from other environments

Related products

» Services
» HP-UX 11i storage
» HP Integrity servers
» HP 9000 servers
» Integrity solutions
» Try our software

Get what you need:

» Releases & media
» HP software from Software Depot
» HP-UX technical forum
» Technical documentation
» Training courses
» Events & user forums
» A local reseller
» Section map
HP-UX 11i HIDS a hit
HP-UX 11i open source ROI
Content starts here
fruits

Mitigate risk with a highly secure web server that features compartmented processing.

With HP-UX 11i Protected Systems Web Server (PS-Webserver) customers mitigate risk and benefit from a highly secure web server environment that uses compartmented processing to isolate customer-facing Web processing from internal databases, files and applications. This preplanned system combines HP-UX 11i Apache-based Web Server with security containment and other built-in security features to reduce security risks, lower TCO through automated and integrated security features, and improve time to market for secure Web serving.

Protected Systems chart

The PS-Webserver is a secure Web services platform built on the HP-UX11i v2 operating system. The secure architecture and run-time environment isolate the Internet from backend servers and isolate the Web server from the intranet. If the Web server is compromised, the PS-Webserver mitigates damage to system and intranet resources by minimizing the system access and resource privileges an attacker can obtain.

PS Webserver solves a business need

Many customers use the HP-UX platform to provide Web services. A Web server platform faces a wide range of threats because it is exposed to hostile traffic from the Internet. The introduction of IT regulation and government compliance measures has increased the importance of Web server solutions that include high levels of security and privacy protection.

Although standard HP-UX offers security mechanisms that can increase the security of a Web server, configuration can be time consuming and requires a high degree of security knowledge. The PS-Webserver starts with HP-UX and includes those security mechanisms that add value and reduce risk to configure a system tailored to serve as a secure front-end Web server.

The PS-Webserver includes HP-UX Security Containment, a next-generation security technology. Security Containment supports distinct separation, or compartmentalization, of processes while enabling you to define acceptable information flows between compartments. You can write rules for a compartment to control access to resources like files and directories.

HP-UX 11i security

» Recent news
» Security containment
» Protected Systems Web Server
» Host IDS
» Product specs
» Common Criteria certification
» Technical documentation

Downloads

» AAA Server
» Bastille
» BIND9.2.0
» Host IDS
» Identity management
» IPFilter
» IPSec
» Kerberos client
» Kerberos server
» MD5 checksum
» Mobile AAA
» Protected Systems-Web Server
» Random num generator
» RBAC
» Secure shell
» Security containment
» Shadow passwords
» Software Assistant
» Standard mode security extensions

White papers

» Securing Virtual Partitions-RBA
» Network security
HP-UX 11i security containment

Features and benefits

PS-Webserver offers the following business benefits:

  • With a preplanned usage target, as a web server, system development, installation and maintenance time and effort is reduced.
  • The quality and effectiveness of a secure Web Server is increased because it is built by HP and factory integrated with the HP-UX 11i operating environment.
  • The latest HP-UX 11i security technologies are architected and integrated into the system by HP and do not have to be developed by a third-party integrator.
  • The system can be used in a Virtualized Server Environment (VSE) or in a single system environment. All the advantages of HP-UX 11i are available with the use of PS-Webserver.
  • The PS-Webserver is available at no additional charge to users of HP-UX 11i. It is also supported at no additional charge under the terms of the HP-UX 11i support agreement.
  • The business benefits lower the total cost of ownership (TCO) by installing a preplanned usage target, as a web server, increasing time to market, reducing acquisition and support cost, potentially reducing server cost by server consolidation with VSE, reducing costs associated with the effects of damaging security vulnerabilities, and reducing regulatory security compliance costs.

PS-Webserver offers the following system features and benefits:

  • Elimination of resources and services that are not needed in a secure Web services environment
  • Secure run-time environment, including compartmentalization of resources
  • Isolated compartments separating Internet and intranet activity (HP-UX Security Containment product)
  • Controlled authorization and access to resources using role identification, controlling access to files and limiting the authority of the Apache application and others (HP-UX RBAC product)
  • Fine-grained privilege adjustments based on Web server-centric roles, limiting the application’s ability to access inappropriate resources (HP-UX Containment product)
  • Integrated auditing, audit configuration, and audit data review tools (HP-UX Auditing product) 
  • Online intrusion detection, intrusion alerts, and intrusion review tools (HP-UX HIDS product)
  • Execution of multiple instances of Apache in separate and isolated compartments.

Inside and outside compartments separate traffic and contain risk

By using the security containment compartments, the PS-Webserver creates outside compartments to talk to traffic on the external network, the Internet. And uses inside compartments to process internal traffic on the Intranet which is isolated from outside vulnerabilities and threats.


HP-UX 11i Operating System Environment chart

The benefits from this solution are the separation of external communication traffic and internal secured traffic in a single web server host. Additionally, if a vulnerability is discovered it can be contained in a compartment and not spread into another compartment or the internal network.

»  Download the software
»  Product Administration Guide
Printable version
Privacy statement Using this site means you accept its terms Feedback to webmaster
© 2008 Hewlett-Packard Development Company, L.P.