NetBackup™ Web UI Security Administrator's Guide

Last Published:
Product(s): NetBackup (8.1.2)
  1. Introducing the NetBackup web user interface
    1.  
      About the NetBackup web user interface
    2.  
      Terminology
    3.  
      First-time sign in to a NetBackup master server from the NetBackup web UI
    4.  
    5.  
      The NetBackup dashboard
  2. Managing role-based access control
    1.  
      About role-based access control (RBAC) in NetBackup
    2.  
      NetBackup default RBAC roles
    3.  
      Configuring RBAC
    4.  
      Add a custom role
    5.  
      Edit or delete a custom role
    6.  
      Add an object group
    7.  
      Previewing the assets, application servers, or protection plans for an object group
    8.  
      Edit or delete an object group
    9.  
      Add access for a user through access rules
    10.  
      Edit or remove user access rules
    11.  
      How can I limit role permissions to specific objects or assets?
  3. Security events and audit logs
    1.  
      About NetBackup auditing
    2.  
      View security events and audit logs
  4. Managing host mappings and certificates
    1.  
      About security management and certificates in NetBackup
    2.  
      NetBackup host IDs and host ID-based certificates
    3.  
      View NetBackup host information
    4.  
      Approve or add mappings for a host that has multiple host names
    5.  
      Reissue a certificate when a host's certificate is no longer valid
    6.  
      Remove mappings for a host that has multiple host names
    7.  
      Reset a host's attributes
    8.  
    9.  
  5. Managing global security settings
    1.  
      Disable communication with NetBackup 8.0 and earlier hosts
    2.  
      Disable automatic mapping of NetBackup host names
    3.  
      Select a security level for certificate deployment
    4.  
      Set a passphrase for disaster recovery
  6. Troubleshooting the web UI
    1.  
      Tips for accessing the NetBackup web UI
    2.  
      If a user doesn't have the correct permissions or access to workload assets in the NetBackup web UI

Select a security level for certificate deployment

NetBackup offers several security levels for the certificate deployment. The security level determines what security checks the Certificate Authority (CA) performs before it issues a certificate to a NetBackup host. The level also determines how frequently the Certificate Revocation List (CRL) is refreshed on the host.

For more details on security levels, certificate deployment, and the CRL, see the NetBackup Security and Encryption Guide.

To select a security level for certificate deployment

  1. At the top, click Settings > Global security.
  2. Click Secure communication.
  3. Certificates are deployed on hosts during installation, after the host's administrator confirms the master server fingerprint. The security level determines if an authorization token is required or not for a host.

    Very high

    NetBackup requires an authorization token for every new certificate request.

    High (Default)

    NetBackup does not require an authorization token if the host is known to the master server, which means the host appears in a NetBackup configuration file, the EMM database, a backup policy, or the host is a legacy client.

    See "About certificate deployment security levels" in the NetBackup Security and Encryption Guide.

    Medium

    NetBackup issues certificates without an authorization token if the master server can resolve the host name to the IP address from which the request was originated.

  4. Click Save.