HP-UX IPSec and MC/ServiceGuard

Step 2: Configuring HP-UX Host IPSec Policies for MC/ServiceGuard

The cluster nodes also initiate TCP connections to the remote command clients using dynamically assigned source and destination ports, as listed below. You must configure HP-UX IPSec so it does not discard the packets listed below, however, HP recommends that you do not allow the packets to pass in clear text. For more information, see “Maximizing Security” on page 59.

Source IP

Destination

Protocol

Source

Destination

Address

IP Address

Port

Port

 

 

 

 

 

 

cluster node

remote

TCP

0

0

address (or

command

 

 

 

wildcard)

client address

 

 

 

 

 

 

 

 

Chapter 8

249