Storage Tip: Access storage arrays remotely, securely
What seems to be the problem? Storage arrays have long had the capability to
communicate information of the array from the physical site where the arrays
are located to a remote location. The first instantiation of this was the "call
home" capability where an array could be accessed over a telephone line
by a third party -- typically an employee of the storage vendor that provided
the array. Now, of course, messages can be sent over the Internet or through
wireless capabilities, such as to a cell phone or a Blackberry. Is it safe to
do?
What you need to know: The ability of a storage array to communicate remotely
has evolved over the years. The first reason was to monitor the health of the
array. If a disk failed, a storage vendor would know it immediately and could
dispatch a repair person to replace the failed disk. This reduced the time of
exposure to a possible second disk failure before a single parity RAID group
could be rebuilt. The ability to communicate health information evolved into
the ability to send information over an Ethernet connection, such as an e-mail
message.
While the ability to use different communication channels has evolved, so has
the ability to gather different types of information. Configuration information
is one type, but so is capacity utilization information as well as information
on the behavior of applications, such as a backup application.
This information is not only for monitoring purposes (i.e. read-only information),
but also control-oriented purposes (i.e. write actions to change things). So,
if an unauthorized user can read information, it is a breach of confidentiality,
but if an unauthorized person can make unauthorized changes, it could create
serious problems.
Therefore, while having the ability to act remotely may be highly desirable,
it must be done safely.
What you can do about it: There are a number of choices that will enable you
to have remote management capabilities, and make sure that you have the necessary
security. Among the options that you can consider include:
Sign up for ITworld's Daily newsletter
Follow ITworld on Twitter @IT_world
Esther Schindler
If the comments are ugly, the code is ugly
claird
SVG a graphics format for 21st century
pasmith
Take Chrome OS for a test spin
Sandra Henry-Stocker
Solaris Tip: Have Your Files Changed Since Installation?
jfruh
Android fragments vs. the iPhone monolith
mikelgan
What Gizmodo missed about the Pro WX Wireless USB disk drive
Where Google Chrome security fails: the password
I heard mention that the Chrome OS will have some sort of encryption available a la bitlocker. If it's possible to encrypt personal data using another password or key, then it may have potential for very secure data.... And Ubuntu has an 'encrypt home directory' option, perhaps google should follow suit.
- Dann
Join the conversation here
Quick, practical advice for IT pros. Made fresh daily.
Want to cash in on your IT savvy? Send your tip to tips@itworld.com. If we post it, we'll send you a $25 Amazon e-gift card.













