|
Before the SMP system is officially implemented, the software environment of the server is checked, and the main inspection contents are as follows: 1. RG-SMP management system should not be installed on the external network, or on machines that may be operated by many people, it is recommended to install it in the DMZ area 2. It is recommended to limit access to RG-SMP management services on the intranet and not to disclose the access portal of the SMP management side to the external network 3. If the IP address of RG-SMP is fixed (for example, when the administrator's office location is fixed), you can set a firewall for the RG-SMP server to allow access only to these IPs and prohibit access from other unknown IPs 4. It is recommended that users take protective measures such as policy routing and ACL on aggregation devices 5. Before installation, ensure that the ports or processes used by the RG-SMP platform are not occupied by other programs, and if the firewall protection is enabled, make sure that the following processes and ports are in the "Exceptions" list of the firewall 1) Common ports: (take the default port value as an example) Port number | | | | | Communicate with the Ruijie client SU/SA | | | Receive trap or inform packets sent by switch devices or NIDS linkage devices | | | Receive security event information reported by Tianrongxin NIDS devices | | | | | | | | | Radius certified listening port | | | Radius accounting listening port | | | The source port that sends standard Radius offline packets to the device | | | | | | | | | | | | | | | | | | | | | Third-party web service access ports | | | Self-service platform access ports | | | Built-in WEB authentication port |
2) Third-party program ports · SQL Server's default listening port: 1433 (TCP) - configurable in the database software · SQL Server's default listening port: 1434 (TCP) – configurable in the database software 3) Service-related processes · SQL Installation Directory\MSSQL\Binn\sqlservr.exe (SQL Server 2000) · SQL installation directory\MSSQL.1\MSSQL\Binn\sqlservr.exe (SQL Server 2005) · SQL installation directory\MSSQL.1\MSSQL\Binn\sqlservr.exe (SQL Server 2008) · SMP service processes :SMPManager.exe management console processes · SMP service processes :SMPService.exe have two processes, which correspond to system services RG-SMP and RG-SMP_JMS · The SMP service process :SMService.exe is monitored in the management console to monitor the abnormal status of the service and realize system self-healing
|