SAN security
What are the security implications with SAN servers?

    Requires Free Membership to View

    When you register for SearchStorage.com, you’ll also receive targeted emails from my team of award-winning editorial writers. Our goal is to keep you informed on the hottest topics, the latest news and the biggest challenges you face as a storage professional today.

    Rich Castagna, Editorial Director

    By submitting your registration information to SearchStorage.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchStorage.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.

It is not clear from the question as to what server functionality is assumed in the "SAN Server."

Typically, there is an application server that may access the FC SAN through an HBA. For that server, the access and management of the server and the HBA must be secured to prevent unauthorized access into the SAN.

For the server that is managing the SAN sever, there are some key security risks. Management access into the SAN has the potential of providing back door entrance for attacks into the SANs. The security requirements here are to implement strong authentication of the administrator (or the management application in the server). The management traffic between the management server and the SAN must be encrypted and signed to prevent unauthorized activities on the traffic.

This is a short answer to a very broad question.

Editor's note: Do you agree with this expert's response? If you have more to share, post it in one of our .bphAaR2qhqA^0@/searchstorage>discussion forums.

This was first published in April 2002