|
|
|
|
| |
| Network Management |
1. Overview Hillstone Security Management (HSM) is Hillstone’s Network Mangement platform. It can provide central management for all series of Hillstone equipments. HSM is divided into 3 parts: a HSM agent, a HSM server and a HSM client (StoneManager). When deployed, the administrator can securely log into the server and monitor various states of Hillstone equipments in real time. It provides an efficient way for the administrator to manage the whole network. The client-server connection and agent-server connection are secured with SSL, protects the secrecy and integrity of the data communication.
1.1. HSM Agent HSM system centrally manages and controls all Hillstone security appliances. Every Hillstone security appliance comes with a HSM Agent module. By configuration of this agent, the appliance can establish connection to the HSM server and the agent is responsible for the data transfer between the appliance and the server.
1.2. HSM Client HSM client, StoneManager, is client software installed on a Windows system. The client software provides a simple and friendly user interface to interact with the HSM system.
2. Features HSM provides the following features currently.
2.1. Central Monitoring HSM system can collect various information about Hillstone devices: device name, model, serial number, IP address, and char the history of CPU utilization, memory utilization, total sessions and VPN tunnels. |
2.2. Reporting HSM provides a complete alert and logging system. It can display “error”, “critical”, “alert” and “emergency” level logs in real time. Also provided are user defined logging levels and logging search criterion based on time and IP etc . |
2.3. Administrator Right HSM manages administrator rights based on roles. HSM administrator can assume 3 roles, super administrator, administrator and users. Different roles possess different operating rights.
HSM also supports domain management. Divide devices into different domains and users only can manage the devices in their corresponding domains.
3.Deployment Scenario There are two deployment scenarios for the HSM: inside intranet or across Internet. Internet scenario means agent, server and client are connected via Internet, assuming network reachability. The administrator can use the client to manage devices across the WAN (Figure 1). Intranet scenario means agent, server and client are inside company intranet. In this case, the administrator uses the client to manage different devices on the network. |
|
|
Figure 1. Deploying HSM over public Internet
|
|
|
Figure 2. Deploying HSM on intranet
|
| |
|
|
|
| |
|
|
|