contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Overview

HP-UX 11i v3

 

QuickSpecs for HP-UX 11i v3 describes the features and functionality delivered by the HP-UX 11i v3 operating environments and related software, plus considerations for a successful, optimized HP-UX 11i deployment.

NOTE: QuickSpecs are also available for HP Integrity systems, HP 9000 systems, HP-UX 11i layered software, HP storage products and more at: http://www.hp.com/go/quickspecs.
  • Execute initiatives faster and more efficiently to reduce operational costs with business-critical virtualization
  • Meet growth demands of your business with dynamic scalability
  • Mitigate risks with the continuous availability required by today's 24x7 enterprise

When it comes to running business-critical applications, it's hard to beat the performance and programming flexibility of UNIX®. But as business-critical applications grow and expand across your enterprise, the resulting complexity makes it more and more difficult to manage the environment and quickly respond to change. Meanwhile, end users demand ever-increasing service levels-and the business demands round-the-clock availability. To address this challenge, many companies are looking for ways to get more out of UNIX-without increasing cost and complexity. At HP, we believe the best way to get more out of UNIX for enterprises of all sizes is to choose a business technology infrastructure designed for the unpredictable world of business - a virtualized environment that is dynamically scalable and continuously available - an environment like HP-UX 11i v3, the recommended version of HP-UX, on HP Integrity servers.

contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Operating Environments

With the March 2008 release, HP presents a set of new operating environments for Version 3 of HP-UX 11i.
These new operating environments (OEs) provide a richer set of products and improved choices over the original set of HP-UX 11i OEs. Customers can now obtain the OE's integration, testing, and ease of deployment, covering a powerful set of software
designed to provide business-critical virtualization.
HP-UX 11i Data Center OE
Business critical virtualization built in-the Data Center OE is the ideal offering for customers who are consolidating, or building an infrastructure for the future. Because the powerful software within the DC-OE is integrated and tested with the operating system, it is an effective choice for a highly available virtualized environment. DC-OE is a complete, fully tested, and integrated UNIX offering available.
HP-UX 11i High Availability OE
For customers requiring high availability for large business critical applications, this OE contains all the products included in the base operating environment (BOE) (and the original enterprise operating environment [EOE]), in addition to applications such as HP Serviceguard and high availability (HA) toolkits required to enable a business-critical server.
HP-UX 11i Virtual Server OE
Designed for customers seeking higher resource utilization or embarking on consolidation projects and need virtualization for a flexible UNIX environment. The VSE-OE contains all the products included in the BOE (and the original EOE) and adds a host of other products including the entire VSE Suite.
HP-UX 11i Base OE
The BOE provides an integrated HP-UX operating environment for customers requiring less complex installations. The Base OE includes the entire original foundation operating environment (FOE), and offers complete HP-UX functionality including security, networking, Web functionality, and software management applications.
 
HP-UX 11i Base OEHP-UX 11i Virtual Server OE HP-UX 11i Data Center OE
Network driversHP Logical Volume ManagerGlancePlus PakGlancePlus Pak
Host intrusion detectionBase Veritas Volume ManagerHigh availability monitorsHigh availability monitors
IPFilterBase Veritas File SystemCapacity Advisor License to Use (LTRU)HP Capacity Advisor LTU
IPSecHP Event Monitoring Service (EMS) frameworkHP Global Workload Manager LTUHP Global Workload Manager LTU
Secure ShellHP Software Distributor-UXHP Virtualization Manager LTUHP Virtualization Manager LTU
Open Secure Sockets layer (SSL)Online diagnosticsHP VSE Suite LTUHP VSE Suite LTU
Pluggable Authentication Module (PAM) KerberosSoftware Package BuilderHP OnlineJFS 4.1HP OnlineJFS 4.1
Install-time securityPartitioning providers and management toolsHP-UX Workload Manager ToolkitsHP-UX Workload Manager
Software AssistantHP Ignite-UXMirrordisk/UXHP-UX Workload Manager Toolkits
HP-UX BastilleDistributed Systems Administration UtilitiesHP-UX Virtual PartitionsMirrordisk/UX
LDAP-UX integrationHP Systems Insight ManagerHP Integrity Virtual MachinesHP-UX Virtual Partitions
Common Desktop Environment (CDE)HP System Management Homepage (SMH) HP Virtual Machines
PerlProcess Resource Manager (PRM) HP Serviceguard
Network File System (NFS)HP WDB User Space DebuggerHP-UX 11i HA-OEHP Serviceguard NFS Toolkit
Red Hat Directory ServerC++ Linking for Oracle E-Business SuiteHP ServiceguardEnterprise Cluster Master Toolkit
Mozilla Web browserCaliper Performance ToolHP Serviceguard NFS Toolkit 
HP-UX Web Server SuiteAuto Port Aggregator (APA)Enterprise Cluster Master Toolkit 
Java™ OOB tuning toolsMath Library (MLIB)GlancePlus Pak 
Jave RTE, Java Development Kit (JDK), Java Platform Interface (JPI)Message Passing Interface (MPI)High availability monitors 
iCAP and PPU
(pay-per-use) enablement
3D Graphics Run Time EnvironmentHP OnlineJFS 4.1 
Trial HP Global Workload Manager (gWLM) agentDynamic Root DiskMirrordisk/UX 
 
contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Virtualization/Management and Automation

Virtualization
HP Virtual Server Environment

The HP Virtual Server Environment (VSE) for Integrity Servers provides an automated virtual infrastructure that can adapt in seconds with mission critical reliability. HP VSE allows you to optimize server utilization in real time by creating virtual servers that can automatically grow and shrink based on business priorities and service-level objectives. With the HP VSE you can increase the return on your investments and be agile at the same time.


HP Virtualization Manager
HP Virtualization Manager provides a central point of control for managing all the resources in your Virtual Server Environment. It's a powerful way to connect IT resources to real business needs. HP Virtualization Manager includes an easy-to-use interface that lets you build a picture of your available virtual resources in seconds rather than taking hours or days to "manually" construct a picture of your virtual environment. It lets you see how UNIX applications and virtual resources are being used, and how they relate to your physical infrastructure in real time. Virtual Manager can also be used to seamlessly configure new virtualization resources-and reconfigure existing ones-for high efficiency.

HP Capacity Advisor
HP Capacity Advisor is an easy-to-use tool that captures server utilization data and virtualization configuration scenarios so you can perform ongoing capacity planning. It allows you to view historical resource usage data through an intuitive graphical interface and use that data to pre-test different scenarios before you make changes to your critical applications. The new Smart Solver technology collects and analyzes real-time, historical data across thousands of variables on all virtual and physical resources using a unique algorithm from HP Labs. Additionally, Capacity Advisor has a 5-Star rating system that makes it easy to identify best-fit candidates for logical server profiles. With Capacity, Advisor you can make better decisions, match workloads to servers more precisely, and get more from your existing server resources.

HP Global Workload Manager and HP-UX Workload Manager

HP Global Workload Manager (gWLM) and HP-UX Workload Manager (WLM) provide the intelligent control for the HP Virtual Server Environment. They enable automated, dynamic allocation of server resources among applications according to predefined policies-so that resource utilization improves and service levels are maintained. While gWLM and WLM have a subset of unique features which are suited for a different type of Virtual Server Environment deployments, they both provide the following capabilities:

  • Managing the real-time resource allocation of many soft partitions (vPars, HP Integrity VMs or Secure Resource Partitions)
  • Shifting Instant Capacity licenses between nPars or servers based on business priorities, or resizing servers based on demand by activating or deactivating Temporary Instant Capacity
  • Synchronizing resource management policies to re-allocate server resources in the case of a failover

HP-UX Workload Manager (WLM) is designed to manage workloads on a single system or high availability cluster. WLM is a suitable for solution for a line-of-business (LOB) consolidation in which the LOB owns its servers but relies on an IT team to manage them. HP-UX WLM also gives you the ability to fine-tune policies to support specialized resource management needs.

HP gWLM is ideal for single systems or high availability clusters, as well as large-scale deployment with multiple servers. A typical example is a centralized-IT deployment, where a single IT department manages servers for multiple business units, and many applications run on a large number of servers - each with several partitions. HP gWLM's ease of use features include centralized policy administration, pre-defined policies and reporting features to enable IT to easily set-up, manage and track resource usage. These benefits also make gWLM a suitable solution for many common types of IT environments, where fine-tuned policies and specialized resource management are not applicable.

HP-UX Workload Manager (WLM) was designed to manage workloads on a single system or high availability cluster. As is also true with gWLM, WLM is a suitable for solution for a line-of-business (LOB) consolidation in which the LOB owns its servers but relies on an IT team to manage them. HP-UX WLM also gives you the ability to fine-tune policies to support specialized resource management needs.


Management and Automation

HP-UX 11i provides a rich set of tools to support management in the Adaptive Enterprise. Designed based on direct customer input, the latest generation of HP-UX 11i system management tools reflects the real needs of today's IT administrators, who must manage a dynamic, highly virtualized environment with smaller staffs and reduced budgets.

With HP-UX 11i system management tools, administrators gain the performance, accessibility, and efficiency they need to succeed. HP-UX software deployment and configuration management capabilities automate routine administration and simplify many complex tasks, while providing deep-level system control where needed. The choice of an enhanced CLI, menu-driven TUI, and web-based GUI ensure that both experienced and junior administrators alike can be productive quickly when working with HP-UX 11i. In addition, these single-system tools also work seamlessly with higher level multi-system and enterprise management environments, including HP Systems Insight Manager. As a result, administrators gain more visual abstracted views of their heterogeneous IT assets, while also having the ability to automatically launch HP-UX 11i management tools from within Systems Insight Manager when system-level precision tuning is required.


Central Point of Configuration – HP SIM

HP Systems Insight Manager (SIM) is the foundation for HP's unified server-storage management strategy. It is a multiple operating system, hardware level management product that supports HP Integrity, HP ProLiant and HP 9000 servers. HP SIM is easily extensible, integrating other HP management products and value-add plug-ins such as HP Integrity Essentials.

HP Systems Insight Manager (SIM) and HP Integrity Essentials help you control IT infrastructure with unified management of your HP Integrity server environment running HP-UX 11i. HP Integrity Essentials provides modular, integrated system management software for complete Integrity server management for multiple operating systems, including HP-UX 11i.


HP System Management Homepage (HP SMH)

HP System Management Homepage (HP SMH) is the launch point for all single system management applications for HP-UX 11i. SMH provides web-based systems management functionality, at-a-glance monitoring of system component health and consolidated log viewing. SMH also provides Text-Based User Interfaces (TUI), Command Line Interface (CLI) and X-based interfaces.

HP Systems Insight Manager (HP SIM) is HP's solution for multi-system management and SMH for single-system management. Customers can seamlessly move from multi-system views in SIM to more detailed single system information in SMH.


Ignite UX

HP-UX can be installed from either a DVD or an Ignite-UX Install Server. Administrators have a choice of full, update, and cloned installations. Installation Services are available for those customers who would like an experienced HP Software Specialist to install the software.

Ignite-UX addresses the needs of HP-UX 11i system administrators who perform fast deployment for one or many servers. It provides the means for creating and reusing standard system configurations, enables replication of systems, permits post-installation customization, and is capable of operating in both interactive and unattended modes.

Software Distributor-UX (SD-UX) is the HP-UX 11i administration toolset used to deliver and maintain the HP-UX 11i operating system and layered software applications. Delivered as part of HP-UX 11i, SD-UX can help manage the HP-UX 11i operating system, patches, and application software on HP Integrity servers.

Update-UX is a tool for customizing the behavior and automating the process for HP-UX 11i operating environment updates.

Software Package Builder is an intuitive, graphical user interface (GUI)-based tool for packaging software into SD-UX packages so that they can be installed and managed in the same way as HP's system software.


Dynamic Root Disk

Dynamic Root Disk (DRD) allows customers the ability to patch their HP-UX 11i systems online and quickly re-boot during off hours to affect the changes. DRD can also be used for HP-UX 11i system recovery as well. supports both HP Logical Volume Manager (LVM) and Veritas (VxVM) root volumes. For more information see: http://www.hp.com/go/drd.


GlancePlus Pak

HP GlancePlus Pak provides a single product for managing a system's availability and performance. It is an integrated product that includes:

HP GlancePlus - GlancePlus provides immediate performance information about a system. It lets a customer easily examine system activities, identify and resolve performance bottlenecks, and tune the system for more efficient operation.

HP Performance Agent - The HP Performance Agent is the logging, alarming, and collection component of HP GlancePlus Pak. It keeps a history of the system's performance and sends alarms of impending performance problems.

As an integrated product, the GlancePlus Pak includes the real-time diagnostic capabilities of GlancePlus and the historical data collection capabilities of the Performance Agent. The performance agent is used with other availability and performance management products, thus providing an integrated real-time and historical performance management solution.

With GlancePlus Pak, a wide range of system performance and availability problems can be handled o get the best from the system and the applications running on it.


HP Storage Data Protector

The HP Storage Data Protector software is enterprise data protection and disaster recovery, ensuring recovery from any disruption. Data Protector integrates a variety of techniques to eliminate backup and recovery windows. The capabilities to eliminate planned downtime range from online backup and backup of open files to zero-downtime, zero-impact backup. The software provides industry-leading instant recovery as well as several disaster recovery alternatives to eliminate unplanned downtime, allowing recovery of entire data centers in minutes.


Process Resource Manager

HP Process Resource Manager (HP PRM) is a resource management tool used to control the amount of resources that processes use during peak system load.

HP PRM can manage allocation of the following resources:

CPU: Ensures a minimum allocation, but (optionally) no more than its capped amount of CPU.

Memory: Ensures a minimum allocation, and (optionally) a soft upper bound can be defined of real memory.

Disk bandwidth: Ensures a minimum allocation of disk bandwidth.


Web-Based Enterprise Management (WBEM)
WBEM (Web-Based Enterprise Management) is a DMTF (Distributed Management Task Force) standard based on the CIM (Common Information Management) model.

WBEM allows customers to manage their systems consistently across multiple platforms and operating systems, providing integrated solutions that optimize their infrastructure for greater operational efficiency.

WBEM enables management applications to retrieve system information and request system operations wherever and whenever required.


Event Monitoring Services (EMS)

HP's Event Monitoring Service (EMS) is a system monitoring application designed to facilitate real-time monitoring and error detection for HP products in the enterprise environment. This framework provides centralized management of hardware devices and system resources and provides immediate notification of hardware failures and system status.

HP EMS reports information that helps to detect loss of redundant resources, thus exposing single points of failure and eliminating the threat to data and application availability. HP EMS capabilities cover the entire system: system components, storage, and network interfaces.


Partition Manager

Partition Manager (parmgr) allows system administrators to configure Superdome and other systems that support hardware partitions through an easy to use, familiar graphical user interface. Partition Manager is available as a free web download.


HP Serviceguard Manager

Serviceguard Manager provides a configuration, monitoring, and administration tool to display and manage Serviceguard, Serviceguard Extension for RAC, Serviceguard Extension for SAP, Metrocluster and Continentalclusters, maintaining high availability.

Using Serviceguard Manager, administrators and operators see color coded, graphically intuitive icons to get the big picture view of multiple clusters so that they can proactively manage the clusters, nodes, and applications.


Hyper-Threading for HP-UX 11i v3

The new generation of the dual-core Intel® Itanium® 2 processor incorporates two cores per socket; each core offers 2-way hardware threads. HP-UX 11i v3 fully supports this new Hyper-Threading (HT) technology. Each hardware thread appears as a complete processor to the operating system. Logical Processors (LCPUs) provide control for hardware threads in HP-UX 11i v3.

On HP-UX 11i v3, the HT technology is enabled at different levels. The Intel® Hyper-Threading feature is enabled or disabled at system boot time through the firmware setting. When the HT Feature is enabled, the LCPU feature can be dynamically enabled so that kernel threads are scheduled on each hardware thread. All interfaces available for general use by applications that deal with CPU IDs will expose LCPUs as processor core objects. Therefore, there is no impact to applications from a programming perspective. LCPUs are integrated with HP-UX Processor Sets (PSETs), as a way to offer simultaneous availability of processor cores and LCPUs in a single OS instance.

LCPUs are dynamically enabled or disabled for all cores within a PSET on an HT capable system. HP-UX 11i v3 customers may tailor each system specifically to the needs of the applications being run on that system. Applications that benefit from Hyper-Threading can run in PSETs with LCPUs enabled. For those applications that do not benefit from Hyper-Threading, PSETs may be configured to allow the application to run on cores without LCPUs enabled. This new use of PSETs allows for finer granularity control of HT through the use of an existing and well-tested mechanism. Furthermore, this use provides control for HT manipulation without requiring programming changes for applications. This approach is fully dynamic and allows all customer applications to co-exist within a single OS instance regardless of the use of HT.

contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

File system and storage

HP Serviceguard Storage Management Suite

The HP Serviceguard Storage Management Suite (SMS) is the latest addition to the HP-UX 11i high availability portfolio. This suite of products combines the power of HP Serviceguard with the VERITAS Storage Foundation offerings by Symantec to produce a comprehensive solution that offers proven availability, performance and manageability.

Seven products are included in the Serviceguard Storage Management Suite - each to address different customer mission critical requirements. Some products are specific to Oracle database environments and others provide cluster file system manageability.

Serviceguard Storage Management Suite A.02.00 (based on Serviceguard 11.18 and Veritas Storage Foundation 5.0), which contains a number of new features. CFS enjoys performance and scaling enhancements such as multiple Cluster File System transaction servers and faster & more reliable failover. Dynamic Multi-Pathing has multi-threaded error handling. Applications will be able to query the File Change Log thus allowing backup utilities, auditing, system management, and compliance applications to check for what has changed and thus operate more efficiently. There are also more policies for Tiered Storage support. Serviceguard Storage Management Suite A.02.00 (based on Serviceguard 11.18 and Veritas Storage Foundation 5.0) is planned to be supported on HP-UX 11i v3 early 2Q CY08.

Just released on HP-UX 11i v2 is the Serviceguard Storage Management Suite A.02.00 (based on Serviceguard 11.18 and Veritas Storage Foundation 5.0), which contains a number of new features. CFS enjoys performance and scaling enhancements such as multiple Cluster File System transaction servers and faster & more reliable failover. Dynamic Multi-Pathing has multi-threaded error handling. Applications will be able to query the File Change Log thus allowing backup utilities, auditing, system management, and compliance applications to check for what has changed and thus operate more efficiently. There are also more policies for Tiered Storage support.

The value of HP-UX 11i extends beyond the benefits gained through the Serviceguard Storage Management Suite. Customers will be able to take advantage of these high availability-based solutions integrated with the HP Virtual Server Environment to maximize resource utilization and improve ROI. Also, pre-integration with the HP-UX 11i Mission Critical Operating Environment provides a quick-to-deploy solution.

For additional information regarding the HP Serviceguard Storage Management Suite, go to: http://www.hp.com/go/sms.


JFS, Online JFS, VxFS, Base VxFS

HP sells Symantec Veritas file system VxFS under the name of HP OnlineJFS. HP invests in integration, testing and quality assurance of OnlineJFS with the HP-UX 11i operating environment.

Designed to extend the functionality of Base VxFS, HP OnlineJFS is a set of features that adds higher levels of data management capability and substantially increases the availability by enabling online data management without interrupting user and application access to the data.

Base VxFS is the base file system included the base HP-UX 11i operating system. OnlineJFS is available as a stand-alone add-on HP-UX 11i software product, included in the Enterprise and Mission Critical Operating Environments, and as a product in the Serviceguard Storage Management Suites for HP-UX 11i.

HP OnlineJFS provides the online management of the journaled file system.

OnlineJFS 5.0 is available as a stand-alone product on both HP-UX 11i v2 and HP-UX 11i v3.

Some of the features in VxFS 4.1 include:
Multi-volume file system (MVS)MVS allows a file system to exist in multiple volumes. It provides flexibility to the customer to customize the mapping between their data requirements and the most appropriate choice of performance, availability, and cost available from their storage configurations. NOTE - MVS is only available as part of HP Serviceguard Storage Management Suite products (SGSMS).
Dynamic Storage Tiers aka Quality of Storage Service (QoSS)With MVS you can control where storage is allocated for a given file, directory, or checkpoint. However, the value of that data can change over time. With Dynamic Storage Tiers and QoSS built on top of MVS, you can further configure relocation policies to ensure these files are stored on the storage most appropriate to matching their characteristics at a given time, thus reducing storage costs.
NOTE: QoSS is only available as part of some of the HP Serviceguard Storage Management Suite products (SGSMS). To find out which SGSMS products support this feature, please refer to the release notes at http://docs.hp.com/en/T2771-90036/relnotes_A0200_Reprint_v2.pdf
Cross-platform Data Sharing (CDS)CDS provides a means for the serial sharing of a VxFS file system across heterogeneous platforms that have direct access to the physical devices that contain the data. This may be useful for migrating from one platform to another (e.g., Solaris or AIX to HP-UX) or for the serial processing of data across multiple platforms (e.g., HP-UX and Linux).
Disk LayoutVxFS4.1 supports disk layouts 4, 5, and 6 (new and default). Disk layout 3 is no longer supported. Many of the new VxFS4.1 features and future scalability beyond a 32TB file system size require disk layout 6. With disk layout 6, any application that uses the statvfsdev(3C) family of interfaces (statvfsdev, fstatvfsdev, statvfsdev64, fstatvfsdev64, statfsdev, fstatfsdev) must relink with these routines.

Cluster File SystemThrough use of the cluster file system, you can concurrently share file systems and files between nodes in the cluster.
NOTE:
CFS is only available as part of Serviceguard Storage Management Suite with CFS.

VxFS (Online JFS) v5.0 new capabilities

Online JFS 5.0, product number B3929FB for HP-UX 11i v3, deploys a new method of indexing file directories that provides improved performance for directories containing large numbers of entries.


HP Logical Volume Manager and Mirrordisk/UX

The HP Logical Volume Manager (LVM) is included with HP-UX 11i and provides basic volume manager functions and features needed for most configurations. New enhancements to LVM include:

  • Dynamic LUN expansion for improved manageability and to minimize downtime
  • Support for Online disk replacement (OLR)
  • Improved ability to change existing volume group configuration (vgmodify)
  • Increased maximum logical volume size, from 2TB to 16TB
  • Performance improvements (scan time, activation time, etc.)
  • Support for storage array snapshots and clones
  • LVM command line interface parse-ability with HP-UX 11i v3

Full support of native multi-pathing on HP-UX 11i v3

With the HP-UX 11i v3 Update 2 release, the Logical Volume Manager (LVM) has been improved to take advantage of the scalability offered with the new Mass Storage Stack. This has been done by preserving customer investment by working seamlessly with the existing volume management infrastructure. In addition, improved performance and additional flexibility has been provided. The key features are:

  • Scalability - 2 Petabyte Volume groups, 256 TB Logical volumes and support for 16TB physical LUN's
  • Flexibility with up to 6 mirror copies of data and 32 Million extents
  • Improved command line responsiveness
  • Simplified provisioning for future growth thus enabling less down time

Mirrordisk/UX software (product number B2491BA) prevents data loss due to disk failures by maintaining up to three copies of data on separate disks. Applications can continue to access data even after a single disk failure. In addition, on-line backups can be performed to avoid user and application disruption.

To prevent the failure of a single I/O interface from causing a system failure, HP recommends that mirrored disks be connected to separate interface cards.

Features and Benefits

  • Striped mirrors (RAID 0+1) and Mirrored stripes (RAID 1+0) for improved performance and availability
  • No single point of failure - separate controllers/power supplies
  • Up to 3-way disk mirroring (RAID 1)
  • On-line backup while maintaining mirroring
  • Application transparency
  • Dynamic mirror configuration
  • Selective mirror of data
  • Fast data synchronization
  • Menu-driven administration tools

Veritas Volume Manager (VxVM), Base VxVM

The Veritas Volume Manager for HP-UX is an alternative to the HP Logical Volume Manager and HP Mirrordisk/UX products.
Base VxVM 4.1 (included in HP-UX 11i Base OE at no additional cost) provides many volume manager features and benefits such as:

  • Root disk mirroring
  • Rootability support for improved manageability of the root disk
  • Split brain avoidance for high availability
  • Java-based administrative GUI
  • Heterogeneous platform support

In addition to the above features offered in Base VxVM 4.1, theFull VxVM 4.1 product (product number B9116BA) and the full VxVM 5.0 (product number B9116CB) can be purchased separately to obtain many more features and benefits including:

  • Full mirroring capability (RAID1) up to 32 copies
  • Striping (RAID 0) to distribute data across storage devices for improved performance
  • Striped mirrors (RAID 0+1) and Mirrored stripes (RAID 1+0) for improved performance and availability
  • Dynamic LUN expansion for improved manageability and to minimize downtime -
    NOTE: Dynamic LUN Expansion is not available with Full VxVM or Base VxVM. Dynamic LUN Expansion is enabled by any of the HP Storage Management products (Serviceguard bundles optional)
  • Active load balancing or Dynamic Multi Pathing -
    NOTE: Dynamic Multi-pathing is not available in VxVM 4.1 on HP-UX 11i v3, but is available on VxVM 4.1 on HP-UX 11i v2. It is available in VxVM 5.0 on both HP-UX 11i v2 and HP-UX 11i v3.
  • Online relayout provides uninterrupted data access during maintenance
  • Online volume reconfiguration balances performance and minimize downtime
  • Hot relocation restores data after disk failure

VxVM 5.0 new capabilities:

VxVM 5.0 is available for HP-UX 11i v2 (product number B9116CA) and HP-UX 11i v3 (product number B9116CB).
Some of the VxVM 5.0 new capabilities include:

  • The faster startup time for the VxVM configuration daemon provides significantly faster discovery of new devices, initialization of dynamic multipathing, and the importing of disk groups.
  • Enhancements to the Dynamic Multipathing (DMP) feature include more tunable parameters, faster detection of failures, and a tunable parameter to control the duration of retries for Persistent Group Reservations.
  • Easier management of disks cloned via hardware replication.
  • Many other features such as enhancements to volume tags, disk tags, and the data migration commands.

Further benefits of VxVM 5.0 and VxFS 5.0 on HP-UX 11i v3 over HP-UX 11i v2 include integration with OS features, e.g. agile device naming, and native Multi Pathing support in the base products (clusters do not support native MP).


The HP CIFS Product Suite

Hewlett Packard's HP CIFS Suite consists of HP CIFS Server and HP CIFS Client. The Common Internet File System (CIFS) is the native sharing networking protocol in Microsoft Windows operating systems. HP CIFS for HP-UX 11i integrates UNIX with Microsoft Windows environments by providing remote file sharing, printer access and authentication services between HP-UX and Windows systems.

The HP CIFS Server provides remote access to HP-UX file systems for Windows clients, as well as other CIFS clients including the HP CIFS Client. Windows clients can also access the HP-UX printers. The HP CIFS Client allows HP-UX systems to mount file systems residing on Windows servers, the HP CIFS Server, Samba and other CIFS servers.

The HP CIFS products support CIFS UNIX Extensions, which allow connections between HP CIFS Clients and Servers to utilize UNIX file system attributes within the CIFS protocol. The HP CIFS Client also includes a Pluggable Authentication Module (PAM-NTLM) which allows HP-UX logins to be authenticated on a CIFS domain. Both products are included in the Base OE and are backed by full enterprise level service and support from HP.

HP CIFS Server features and benefits:

  • Based on the open source server software Samba
  • Support HP-UX 11i versions of Kerberos, Netscape Directory Server, and Red Hat Directory Server
  • Configurable as ADS Domain Member or NT Primary Domain Controller
  • Support for administration of HP-UX POSIX Access Control Lists (ACL) from Windows clients
  • Web-based configuration and management using the Samba Web Administration Tool (SWAT)
  • High Availability (HA) CIFS server solutions available when used with HP-UX Serviceguard. Templates and documentation are included to assist in the configuration of Serviceguard packages.
  • CIFS File System Module (CFSM) included for high-performance NFS/CIFS file interlocking

HP CIFS Client features and benefits:

  • HP-UX integration: /etc/fstab, mount(1M) and mountall(1M), bdf(1), autofs, auto-start(etc/rc.config.d)
  • Flexible and easy configuration (out-of-the-box startup, many tunable options)
  • Kerberos authentication
  • Microsoft Distributed File-System (Dfs)
  • Dynamic Loadable Kernel Module support (11i v2 or greater)
  • NTLM Pluggable Authentication Module (PAM) for HP-UX login authentication against domain controllers
  • CIFS oplock support
  • SMB over TCP
  • NTLM and NTLM v2 authentication protocols

Availability:
HP CIFS product suite is provided free with HP-UX 11i Application Releases. It is automatically ignited with HP-UX 11i, and is a standard component of HP-UX 11i Operating Environments. Both CIFS Server and CIFS Client products are included.


Network File System

The Network File System (NFS) allows a client node to perform transparent file access over the network. By using NFS, a client node operates on files residing on a variety of servers and server architectures, and across a variety of operating systems. File access calls on the client (such as read requests) are converted to NFS protocol requests and sent to the server system over the network. The server receives the request, performs the actual file system operation, and sends a response back to the client.

NFS has been updated for HP-UX 11i v3 with a completely new implementation of the NFS version 2 (NFS v2) and version 3 (NFS v3) protocols. Some of the new features and benefits include:

  • NFS v3 support for read, write, and readdirplus requests as large as 1MB for filesystems mounted using TCP. This feature allows NFS clients and servers performing large data transfers to utilize CPU and network resources more efficiently.
  • Client-side failover, for read-only file systems, allows the NFS client system to automatically and transparently switch to a backup NFS server if the original system stops responding
  • Configurable pools of asynchronous I/O threads that replace the biod daemons on the client, offering improved client stability and fault tolerance. The default number of threads is 8 per mount point.
  • A configurable pool of nfsd threads that replaces the user-space nfsd daemons on the server, offering consistent request processing for both UDP and TCP requests. The default number of threads is 16.
  • Support for the Unified File Cache, which enables significantly improved performance for many application workloads
  • New kctune kernel parameters and configuration files to control the performance and behavior of the NFS product
  • NFS server logging facility that enables administrators to determine which NFS clients are using server resources
  • Support for Access Control Lists to allow users on NFS client systems to view and modify ACLs, providing more granular file and directory permissions and security
  • WebNFS support that authorizes NFS servers to be accessed via WebNFS-aware browsers and clients
  • Integrated security, both enhanced user authentication and data encryption, so customers can feel safe sharing files over private and public networks
  • NFS services may be configured to run on specific port numbers, allowing system administrators to easily configure NFS server systems behind hardware firewalls or software firewalls such as IP Filter
  • IPv6 support allows administrators to share files across IPv6 networks

HP-UX 11i v3 also introduces NFS Version 4 (NFS v4), the latest version of the NFS protocol. NFS v4 delivers many customer-requested features, including:

  • Compound Remote Procedure Call (RPC) packets, which combine multiple operations into a single over-the-wire request, thus reducing network latency and security processing overhead
  • Integrated security for enhanced user authentication and data encryption, so customers can safely share files over both private and public networks
  • Integrated file locking, filesystem mounting and ACL support
  • Support for IPv6 networks
  • Improved Firewall and IP Filter Support, since all NFS v4 requests are sent to a single TCP port
  • Improved interoperability with Microsoft® Windows clients via enhanced file attributes and share locks
  • Support for read, write, and readdir requests as large as 1MB, allowing NFS clients and servers performing large data transfers to utilize CPU and network resources more efficiently
  • File Delegation support, allowing the NFS v4 client to perform I/O operations against a locally cached version of the file without informing the NFS server, thus improving application performance
  • Client-side failover, for read-only file systems, allowing the NFS v4 client to automatically and transparently switch to a backup NFS server if the original system stops responding
  • New kctune kernel parameters and configuration files to control the performance and behavior of the NFS product
  • Support for all versions of NFS (v2, v3 and v4) to be active on the system simultaneously
  • Updates to the AutoFS subsystem to support NFS v4

HP is continually making improvements to the NFS product family, both in terms of features, stability and performance. These product enhancements are delivered via Independent Software Units (ISU), available as a free download from HP's Software Depot website: http://software.hp.com/portal/swdepot/displayProductInfo.do?productNumber=ONCplus. The most recent ONCplus ISU includes numerous performance improvements that benefit most applications using NFS. HP strongly encourages customers to install the most recent version of the ONCplus ISU to reap these performance and stability benefits.


Next generation mass storage stack (HP-UX 11i v3 only)

The next generation mass storage stack meets the greater challenges of today and also establishes a solid foundation for future development. It delivers improved performance and scalability, higher levels of availability and simplified management of mass storage devices. Some of the new features and benefits include:

  • SAN (Storage Area Network) Agility - agile addressing of devices. A new, single persistent device special file (DSF) per logical unit (LUN) which will not change with reconfiguration of the SAN infrastructure
  • Immense scalability - architected to support up to 16 million devices (LUNs), up to 16 million I/O controllers, over 4 billion I/O paths and disk sizes up to 8 zettabytes
  • Built-in native multi-pathing and load balancing fully integrated with HP-UX 11i v3 - no more need for additional investment in add-on multi-pathing products
  • Automatic detection and auto configuration of new mass storage devices, device configuration and SAN changes
  • All paths to a device are automatically configured for multi-pathing and load balancing
  • Resilience to link failures with persistent DSFs and native multi-pathing. Faster and pro-active path failover of impacted I/O paths by utilizing SAN infrastructure notifications
  • Increased performance through use of parallelism and concurrency of I/O operations which can also result in significantly faster ioscan time
  • Architected to exploit OS and platform hardware features such as Cell Local Memory, Processor Allegiance, etc. for maximum performance
  • User settable tunables for further optimization of device access
  • Integration with CIM/WBEM based system and storage management utilities such as HP's System Management Homepage (SMH), Systems Insight Manager (SIM) and Storage Essentials (SE)
  • Enhanced performance metrics and improved performance tools, including port level metrics and separation of read and write operations within sar
  • OLARD (online addition, replacement, deletion) of I/O interfaces while I/O activity continues
  • Ability to quickly and easily detect missing SAN components and devices when SAN changes are made
  • Compatible with HP-UX 11i v2 - no retraining of IT staff required in most update cases. Update to HP-UX 11i v3 and begin using without additional training requirements. Only need to adopt new features when ready to or when exceeding HP-UX 11i v2 limits
  • Asymmetric Logical Unit Access (ALUA) for transparent Active/Passive, Asymmetric Active/Active array support
  • Integrated LUN/path deletion for snap/clone
  • Improved load balancing algorithms including preferred Tgt Port, closest path and weighted round robin
  • Configurable path ping (none, basic, extended)
  • Deferred path recovery (immediate, count_based, time_based)
  • Target Port Alias
  • Device Data Repository (DDR) name generation (scsimgr ddr_name)
  • Selective stale device deletion (rmsf -x -H <hwpath>)
  • Fibre Channel symbolic names for host node/port, array/port
  • Fibre Channel failover optimization
contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Availability and clustering

HP Serviceguard

HP Serviceguard builds upon the concept of virtualization by grouping multiple servers or partitions into a cluster to provide highly available application services that ensure data integrity. Within the cluster, HP Serviceguard monitors the health and status of software and hardware components and uses enhanced cluster management tools to efficiently manage multiple systems. If a threshold is exceeded or a failure occurs, HP Serviceguard provides automatic failover and fast failback of the business-critical applications.

While HP Serviceguard is effective in handling unplanned events, it can also be used for planned maintenance of your clustered environment. Applications can be moved among servers so that services can remain available to the end user while software or hardware upgrades are implemented.

HP Serviceguard is available as a stand-alone product, as part of the HP-UX 11i High Availability Operating Environment, the Data Center Operating Environment, and in the Serviceguard Storage Management Suites.

HP Serviceguard is available for environments with HP-UX 11i or Linux, enabling a consistent cluster strategy for both operating systems.


DT Solutions - Extended Distance (Campus) Cluster

Extended Distance Cluster is the most cost effective of HP's suite of disaster tolerant (DT) solutions for customers seeking to protect their data and maximize application availability. It used software-based data replication.

Key features

  • This configuration implements a single Serviceguard cluster across two data centers, and uses either Mirrordisk/UX or VxVM mirroring for data replication. No cluster license beyond Serviceguard is required for this solution, making it the least expensive to implement.
  • Customers may choose any storage supported by Serviceguard, and the storage can be a mix of any Serviceguard-supported storage.
  • Writes are synchronous unless the link or disk is down, so data remains current between the primary disk and its replica.

Extended Distance Cluster is most appropriate in the following situations:

  • Distance is less than 100km. Extended Distance Cluster does not support asynchronous data replication. While data currency is maintained between the two data in normal operations, longer distances between the data centers increases the likelihood of performance impact.
  • Data is less critical. Extended Distance Cluster provides no built-in mechanism for Serviceguard to determine the state of the data before starting up the application. Unlike Metrocluster or Continentalclusters, an application package will start successfully if volume group activation is successful. For example, nothing prevents an application from starting if the Logical Volume Manager (LVM) mirrors are split. This scenario will increase the exposure to loss in the event of a site disaster.

Only a carefully designed architecture coupled with proper implementation (e.g. adding additional intelligence to package control scripts, selecting appropriate volume group activation options, incorporating monitoring tools like Event Monitoring Services, etc.) can help to avoid undesirable behavior or consequences.


DT Solutions - Metrocluster

Metrocluster is the most robust of HP's suite of disaster tolerant solutions that also includes Continentalclusters and Extended Distance Cluster.

Key features:

  • Automatic and bi-directional failover of mission-critical data and applications so both data centers can be active, protected and capable of handling package failover to each other
  • Cluster can be stretched up to 300km, support for up to 16 HP Integrity and HP 9000 servers
  • Robust, reliable fast fail-over and fail-back via array-based data replication
  • Optimized resource utilization and performance with HP-UX Workload Manager and On-Demand Solutions

Metrocluster can be used with HP StorageWorks Continuous Access XP, Continuous Access EVA or EMC's Symmetrix Remote Data Facility (SRDF) in the following situations:

  • The integration with storage is used to mirror data between sites
  • Application performance is of critical importance
  • Fast fail-over and fail-back are required

DT Solutions - Continentalclusters

Continentalclusters are the most flexible of HP's suite of disaster tolerant solutions that also includes Extended Distance Cluster and Metrocluster.

Key Features:

  • Local and remote failover capability
  • Support for up to 32 HP Integrity or HP 9000 nodes
  • Support for several data replication mechanisms. HP offers tight integration with leading data replication solutions such as HP Continuous Access, EMC SRDF, and Oracle Standby Database
  • Optimized resource utilization and performance with HP-UX Workload Manager and On-Demand Solutions

Continentalclusters are most appropriate in the following situations:

  • Data centers are located at any distance from each other
  • Full control of the failover (operator initiated) is required in case of a major outage
  • Multiple clusters need to be managed and protected
  • Application requires that one site is totally down before the other comes online

HP Serviceguard Extension for SAP

HP Serviceguard Extension for SAP expands Serviceguard's powerful failover capabilities to SAP environments. It continuously monitors the health of each SAP node and automatically responds to failures or threshold violations. As an added bonus, it can minimize planned downtime when performing SAP upgrades.

Key Features and Benefits:

  • Builds on top of Serviceguard clusters to simplify deployment
  • Failure detection and restoration of any SAP application maximizes application uptime
  • Faster upgrade of SAP, OS or middleware to reduce planned downtime
  • Compatibility with disaster tolerant solutions offers disaster protection for SAP environments
  • Fully tested and backed by SAP to ensure compatibility with new releases
  • Mission-critical support for SAP offers coordination with SAP for problem prevention and faster resolution

HP Serviceguard Extension for RAC

HP Serviceguard Extension for RAC allows multiple servers to be configured as a highly available enterprise cluster that supports Oracle 9i and 10g Real Application Clusters (RAC). These two products work together to provide the best aspects of HP's enterprise clusters and Oracle RAC: high availability, data integrity, scalability, and reduced database administration costs.

Key Features:

  • Rapid automatic detection and recovery times
  • Ability to withstand multiple node failures
  • Integration with HP Virtual Server Environment (VSE)
  • Multiple cluster configurations
  • Integration with HP Serviceguard Cluster File System

NOTE: Serviceguard and Serviceguard Extension for RAC are required components for Oracle9i Real Application Clusters on HP-UX servers.


HP Serviceguard Extension for Faster Failover

HP Serviceguard Extension for Faster Failover decreases recovery time to provide even greater levels of protection for mission-critical needs. The application is designed to significantly reduce failover time of Serviceguard and Serviceguard Extension for RAC environments while continuing to support all of their functionalities and components without compromise.

contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Security

The most basic goal of operating system security is to preserve the integrity of the system in the face of attack. The HP-UX 11i operating system includes a number of features that assist the administrator in locking down the platform:

  • HP-UX Bastille provides a graphical interface that guides an administrator in tasks to harden the system against attack, including locking down system ports, files, and other components.
  • Host IDS uses kernel-level system audit information to continuously monitor many systems for attacks, generating alerts and, as an option, also responding in real time.
  • IPFilter provides system firewall capabilities, including stateful connection filtering to limit the "attack surface" of the platform, and connection throttling to limit the effectiveness of denial-of-service attacks.
  • Install-Time Security eases default lockdowns by offering a menu of security profiles that may be applied as part of the operating-system installation process.
  • Software Assistant (SWA) incorporates key functionality from security_patch_check and ITRC Patch Assessment tools into a single tool. (NOTE: HP is discontinuing security_patch_check as of November 1, 2008. On this date, security_patch_check will begin invoking SWA. HP is obsoleting security_patch_check in 2009.) For more information on SWA, see: http://www.hp.com/go/swa
  • Execute-Protected Stack prevents common types of buffer overflow attacks, which are a leading contributor to platform compromise.

Security containment
HP Security Containment for HP-UX 11i is a suite of security technologies designed to dramatically reduce the likelihood of system compromise. HP incorporates these enhanced security features into the mainstream HP-UX 11i operating environment to help businesses combat increasingly complex threats. Without requiring modification to applications, HP Security Containment isolates compromised applications, which are denied unauthorized access to other applications or files on the system.

HP-UX 11i Security Containment comprises three core technologies that together provide a highly secure operating environment:

  • Compartments provide isolation and restrict access to application and system resources outside of the compartment to prevent catastrophic damage should a compartment be penetrated. HP-UX Security Containment accomplishes this by controlling the flow of information between processes in different compartments. For example, outside compartments can accept and process customer-facing data and then transfer it securely, by rule, to inside compartments for non-public access and processing.
  • Fine-Grained Privileges grant only the privileges needed for a task and, optionally, only for the time needed to perform the task. Applications that are "privilege-aware" are able to elevate their privilege level during the operation and lower it after completion of the operation.
  • Role-Based Access Control provides a mechanism to allow non-root users to perform administrative tasks, effectively splitting the power of root into a manageable set of roles. An out-of-the-box configuration supports many common HP-UX 11i commands.

Identity management and accountability
  • Standard Mode Security Enhancements offer granular account and password policies on a system-wide or per-user basis, including the ability to generate detailed system audits for user accountability.
  • HP-UX LDAP-UX client services simplify identity management by allowing system authentication and naming services to leverage a new or existing LDAP directory.
  • Kerberos server and clients offer enterprise-class Single-Sign-On (SSO) services as well as enhanced interoperability with Windows® ADS.
  • HP-UX AAA server (RADIUS) authenticates network devices and controls access.
  • Red Hat Directory Server for HP-UX provides an industry-standard, centralized directory service to store digital identity information.

Common Criteria certification
The HP-UX 11i v2 operating system running on HP Integrity or HP 9000 platforms has been successfully evaluated against the requirements for the EAL4 Common Criteria (ISO 15408) Assurance Level, augmented by ALC_FLR.3 (flaw remediation), using the Controlled Access (CAPP) and Role-Based Access Control (RBAC) Protection Profiles. EAL4+ is sometimes used as the abbreviated form for additional assurances. Details of the evaluation and evaluated configuration are available at:
http://www.commoncriteriaportal.org/public/files/epfiles/CRP225.pdf and:
http://www.commoncriteriaportal.org/public/files/epfiles/hp-ux11iv2.pdf.

HP-UX 11i v3, the latest release of HP's strategic UNIX operating environment running on HP 9000 and Integrity platforms, is in evaluation for Common Criteria Certification.

Many enterprise and government customers require this vendor-independent security certification because it increases confidence in the product's security assurance, functionality, quality and effectiveness. Many governments, including the United States, require certification for government IT procurement.

New in this evaluation: Hard partitions (nPartitions or nPars) are included in the evaluated configuration of the HP-UX 11i v3 operating system. Hardware partitions (nPartition) provide both hardware and software isolation so that hardware or software faults in one nPartition do not affect other nPartitions within the same server complex. Hard partitions (nPartitions) are available on cell-based servers such as rp7420, rp8420, rx7620, rx7640, rx8620, rx8640, and Superdome. The server is split into a number of cells that can be allocated to the nPartitions. Each cell contains processor(s) and system RAM and may be associated with its own peripheral devices.

HP expects HP-UX 11i v3 (including nPars) certification for EAL4 Common Criteria (ISO 15408) Assurance Level, augmented by ALC_FLR.3 (flaw remediation), using the Controlled Access (CAPP) and Role-Based Access Control (RBACPP) Protection Profiles to be completed in the 1st quarter of 2008.

View the in-evaluation statement for more information.

  • Encrypted Volume and File System transparently protects "data-at-rest" against unauthorized disclosure if the data is lost or stolen, and may also provide "safe harbor," avoiding the need for breach disclosure required by some state laws.
  • Trusted Computing Services provides software support for embedded security hardware that is available on selected HP Integrity servers for enhanced key protection and EVFS auto-boot support.
  • HP Protected Systems offers an automated mechanism to configure and deploy more secure systems by leveraging the built-in protection of HP-UX 11i servers, reducing the time and level of security knowledge required by IT personnel when configuring such mechanisms as Security Containment, which isolates processes and resources.
  • HP-UX Bastille with drift reporting checks the consistency of a system's hardening configuration with previously applied hardening policy to avoid risk of system changes. This data reduces system exposure to malware, simplifies compliance maintenance, and provides visibility into undone hardening to allow planned response without risk of unexpected system breakage.
  • HP-UX AAA Server offers more flexible integration with enterprise databases in combination with centralized, RADIUS-based user authentication and network access logging to simplify auditing and compliance.
contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Directory - Enabled Computing

HP provides added security protection through directory-enabled computing. In addition, LDAP Services are integrated through LDAP UX integration. LDAP is integrated with:

  • Local OS login authentication and authorization with pam_ldap and pam_authz
  • Cluster management for centralized OS user and group management
  • Sendmail
  • BIND 9.3.2
  • NIS
  • Network Quality of Service (QoS) management
  • Virtual Private Network (VPN) management
  • AAA (RADIUS) Server
  • HP Kerberos KDC server
  • HP Systems Insight Manager for User and Group management
  • HP Common Internet File System (CIFS)

For HP-UX 11i v3:
NIS+ Server is no longer available.


Netscape Directory Server V6.2 for HP-UX 11i v2

Netscape Directory Server for HP-UX 11i is an LDAP server that centralizes application settings, user profiles, group data, policies, and access control information into a network-based registry. Directory Server simplifies user management by eliminating data redundancy and automating data maintenance. It also improves security enabling administrators to store policies and access control information in the directory for a single authentication source across enterprise or extranet applications. The server is available on HP-UX 11i v2 and operates on both HP9000 and Integrity hardware platforms.


Red Hat Directory Server v7

Red Hat Directory Server for HP-UX provides an industry standard centralized directory service to build your intranet or extranet on. Your Red Hat servers and other directory-enabled applications use the directory service as a common, network-accessible location for storing shared data such as user and group identification, server identification, and access control information.


Novell eDirectory

Novell® eDirectory™ is the foundation for the world's largest identity management deployments-allowing businesses to manage identities and control access for employees, customers and partners. With Novell eDirectory, the industry's first and most advanced full-service directory, businesses lay the groundwork for complete secure identity management solutions and multi-platform network services. Now HP-UX 11i customers can implement this popular directory on systems running the HP-UX 11i operating system.


LDAP-UX integration

LDAP-UX Integration for HP-UX is a free downloadable bundle consisting of two products, which provide access to the directory services of an LDAP directory server.

The NIS/LDAP Gateway acts as an NIS server storing data in an LDAP directory server rather than in NIS maps. The NIS/LDAP Gateway provides Simple Access to LDAP Directory Server allowing current NIS clients to use the LDAP directory server with few or no changes. In addition, the gateway server converts NIS rpc requests into LDAP operations, and then converts answers back into NIS replies.

The LDAP-UX Client Services provides tools for managing the data in the LDAP directory server and a second set of tools that provide native access to the directory server, bypassing NIS.


HP-UX Identity Management Integration

Hewlett Packard provides the first identity management and single sign-on capability from a single vendor that utilizes the HP-UX 11i operating system to enforce critical system access and authorizations. In addition to integrated enforcement, customers benefit from single vendor support for this mission critical capability.

The Identity Management Integration feature of HP-UX 11i provides authentication and enforcement of user rights within the operating system. By using the Red Hat Directory Server for HP-UX, with Select Access for IdMI, features are seamlessly managed.

contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Partitioning

HP nPartitions

Hewlett-Packard's nPartition system capabilities enable a customer to configure a single server complex as one large system or as multiple smaller systems. These hard partitions are designed to provide for complete electrical and software isolation. For an organization where high availability is critical, this ensures that any fault within one partition cannot impact any other partition. Applications running within hard partitions are not subject to hardware or software events in other partitions.

Each nPartition has one or more cells (containing processors and memory) that are assigned to the partition for its exclusive use. Any I/O chassis attached to a cell belonging to a partition is also assigned to the partition. (Each chassis has PCI card slots plus any I/O cards and attached devices, and may also have core I/O.) Since each nPartition has its own CPU, memory and I/O resources consisting of the resources of the cells allocated to the nPartition, resources may be removed from one nPartition and added to another without having to physically remove and add hardware. Additionally, dynamic creation and modification of nPartitions is supported.

These partitions operate in such a manner that they can be totally isolated from other hard partitions. Each nPartition executes a single OS image, thus providing software isolation. Alternate nPartitions may, therefore, be executing different versions of the OS. With the addition of IA-64 processors, HP-UX 11i, Linux, and Microsoft Windows will be supported simultaneously in different nPartitions within a single Superdome, making the Superdome the only high-end server in the industry that includes both full IA-64 compatibility and binary application support.

 
HP dynamic nPartitions (HP-UX 11i v3 only)
Dynamic nPartitions is an important extension of the partitioning continuum. Cell-based HP Integrity and HP 9000 servers can be configured into multiple nPartitions of various sizes. When workloads change, the server can be repartitioned to adjust for the application workload. Dynamic nPartitions allows the nPartitions to be changed online while applications continue to be available to meet business objectives without interruption.

There are two basic operations:

  • Cell online activation
  • Cell online deactivation

Cell online activation is used to activate an inactive cell and cell online deactivation is used to deactivate an active cell while the nPartition containing these cells continues to run without interruption.

NOTE: This functionality requires HP-UX 11i v3 Update 1 (released in September 2007) and supporting firmware.


HP Virtual Partitions

The vPars (Virtual Partitions) product is one of the soft partitioning options in the integrated HP Virtual Server Environment. vPars is available on cell-based mid-range and high-end HP Integrity and HP 9000 servers or nPartitions.

The vPars technology enables you to increase server utilization by creating multiple vPars simultaneously on a single server or nPartition. Each virtual partition: runs a separate instance of HP-UX, is assigned its own subset of CPU, memory and I/O resources, and hosts its own set of applications. HP-UX Virtual Partitions provide application and OS (operating system) fault isolation. Dynamic CPU migration is available between the vPars.

HP-UX 11i v3 Virtual Partitions also support: dynamic memory migration between vPars, and mixed HP-UX 11i v1, v2 and v3 version support within the same nPartition.

vPars provide processor core granularity. Because the vPars technology parses resources, and gets "out of the way" during normal processing, there is typically little overhead associated with vPars.

HP offers Virtualization Licensing for the HP-UX 11i software running in the vPars. Software running within vPars are capped, for licensing, at the maximum number of processor cores assigned to the total number of vPars.

For more information, see: http://h18004.www1.hp.com/products/quickspecs/12714_div/12714_div.html.


HP Integrity Virtual Machines

HP Integrity Virtual Machines is one of the soft partitioning options in the integrated HP Virtual Server Environment.

HP Integrity Virtual Machines (VM) is a software virtualization technology that allows you to create multiple virtual machines simultaneously on any single HP Integrity server, or nPartition. Each virtual machine has its own separate "guest" operating system instance with different: operating systems and versions, applications, and users. Each virtual machine hosts its own applications in an environment that provides full software fault and security isolation.

Integrity VM provides shared processor and shared I/O, and automatic, dynamic resource allocation that is built in. The physical resources of the HP Integrity server are shared amongst any of the virtual machines it hosts, based on demand and entitlement.
Integrity VM v3.5 also offers Accelerated Virtual I/O, new VM-aware network & storage I/O drivers for increased I/O performance, and increased number of virtual SCSI devices.

HP offers Virtualization Licensing for the HP-UX 11i software running in the guests. Software running within Integrity VMs are capped, for licensing, at the maximum number of processor cores assigned to the total number of virtual machines.

Integrity Virtual Machines 3.5 supports the following operating systems in individual virtual machine guests: HP-UX 11i v2 and v3, Windows Server 2003 (SP1 and SP2) ®, and Red Hat Enterprise Linux (RHEL) 4.4 and 4.5, and SUSE® SLES10 SP1.

Download the Integrity VM Manager GUI for free at our HP Integrity Essentials download page.
For more information, see: http://h18004.www1.hp.com/products/quickspecs/12715_div/12715_div.html.


HP Secure Resource Partitions

HP Secure Resource Partitions (SRPs) are a soft partitioning and virtualization technology available on HP-UX 11i. Secure Resource Partitions allow stacking of multiple applications within a single HP-UX 11i operating system image, allowing for the most dynamic and most granular allocation of resources. Increased security is achieved through the assurance that a process running in one secure resource partition cannot communicate with processes in another resource partition. HP Secure Resource Partitions offer the most granular resource controls, permitting applications to run in as little as one percent of a processor core. SRPs also support controls for real memory and disk I/O bandwidth, offering a high degree of dynamic control and flexibility. SRPs can be implemented by using the HP Process Resource Manager together with the Security Containment features of HP-UX 11i. Security Containment is included with the HP-UX 11i Foundation Operating Environment. The HP Process Resource Manager is included with the HP-UX 11i Enterprise Operating Environment.

contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Internet and networking

IPv6

HP-UX 11i supports IPv6, the next generation internet protocol. The IPv6 implementation supports dual stacks (IPv4 and IPv6) to facilitate IPv6 deployment. This allows existing applications to coexist on both IPv4 and IPv6 networks. Application modification is required only when the application needs to take advantage of the new IPv6 features Some benefits of IPv6 are:

  • Increased address space - IP address size increased from 32 bits to 128 bits, supporting many more addressable nodes and levels of addressing hierarchy
  • Plug-and-Play address auto-configuration - A "link-local" IP address is automatically to allow immediate communication with directly connected hosts, printers, or other devices.
  • IP security extensions for authentication, data integrity, and data confidentiality ensured by a standard header extension.
  • Natural Mobility support through auto-configuration, routing headers, destination options, anycast address, encapsulation, security, and flow label management all contribute to IPv6's natural mobility support.

HP-UX Mobile IPv6

IPv6 addresses are topologically correct, meaning IPv6 nodes attached to the same physical network or LAN segment must have the same IPv6 network address prefix. Mobile IPv6 allows Mobile Nodes, such as laptops and PDAs, to change network attachment points, remaining reachable at all times and with no disruption in network connectivity using a single, fixed IPv6 address for extended periods of time. Without Mobile IPv6, Mobile Nodes cannot use a single, fixed IPv6 address while they roam. Instead, each time a Mobile Node moves and changes network attachment points, it must manually re-configure a new IP address and default router based on its current location-temporarily losing its network connections and ability to communicate in the process. The first release of the HP-UX Mobile IPv6 software was delivered in TOUR 2.0.


HP-UX Quality of Service

With the rapid growth in networking traffic and the utilization of server resources near their capacity, Enterprise IT departments and ISPs are confronted with a dilemma in providing applications and users the guaranteed bandwidth to meet the service levels that they have signed up for. To address this business need, HP-UX IPQoS provides IETF DiffServ-compliant network quality of service controls for IP-based network communications.


Multimedia Protocols

HP-UX provides a multimedia infrastructure to be used for multimedia applications. The following lists the protocols that Multimedia Streaming Protocols (MSP) includes.
RTP
Real Time Transfer Protocol (RTP) is a transport protocol that provides end-to-end network transport functions for applications transmitting data with real-time properties, such as interactive audio and video. RTP consists of Real-Time Control Protocol (RTCP), a closely linked protocol, which provides a mechanism for reporting feedback on the transmitted real-time data.
RTSP
Real Time Streaming Protocol (RTSP) controls the transfer of real-time media data and serves as a network-remote-control for multimedia sessions.
SDP
Session Description Protocol (SDP) describes the general real-time multimedia sessions


BIND 9.3.2

BIND, a Berkeley implementation of the Domain Name System (DNS), is a distributed network service that maps host names to Internet addresses and Internet addresses to host names, and facilitates Internet mail routing. BIND 9.3.2 version provides better security and manageability in the networking communications, and offers new features such as 'DNSSEC Implementation Based on RFC 4033, 4034, and 4035,' 'New Resource Records,' 'Transition Support for IPv4 and IPv6.'


Sockets

BSD Sockets is a set of programming development tools for inter-process communication. HP's implementation of BSD Sockets is a full set of sockets from the networking services originally developed by the University of California at Berkeley (UCB).


STREAMS

STREAMS/UX for the HP 9000 is Hewlett Packard's implementation of the AT&T de facto standard environment for communications protocols.
STREAMS/UX consists of the STREAMS environment, Transport Layer Interface (TLI), and XTI. TLI is an industry de facto standard application program interface for implementing transport-level communications by means of STREAMS-based network protocol stacks. HP also provides a Data Link Provider Interface (DLPI) adapter with the core operating system. DLPI is one industry standard definition for message communications to STREAMS-based network interface drivers.


Network performance enhancements for HP-UX 11i v3

The HP-UX 11i v3 networking stack automatically adapts to a range of enterprise networking requirements from low-bandwidth wireless environments to high-bandwidth, high throughput data center environments. There are several significant performance enhancements and optimizations as follows:

  • Improved throughput with mobile clients by avoiding unnecessary TCP retransmissions due to varying response times.
  • Improved throughput over congested networks by making the estimate of the network path's capacity more accurate.
  • Tcphashsz tunable made auto-tunable so that the system can decide the optimal value of tcphashsz at boot time.
  • Improved scalability and CPU utilization for high end systems involved significant reduction of spinlock usage and time spent within a spinlock (contention avoidance).
  • Improved bandwidth with high speed network interfaces involved implementing NOSYNC capabilities in the STREAMS framework and the IP Lower STREAMS module.
  • Improved CPU utilization on cell-based systems involved several different methods to reduce cache misses and the associated latency of retrieving memory across cross-bars.
  • Enhancement to the TCP stack and a backward compatible extension to socket send(2) API to improve performance of short lived connections such as web traffic.

Dynamic Host Configuration Protocol (DHCP)
HP-UX 11i DHCP Server contains all the benefits inherent in DHCP, plus a number of advantages that are unique to HP's version. DHCP is available for IPv4 and IPv6 networks. The most recent versions of DHCP, DHCPv6, are available on www.software.hp.com. This version is for IPv6 networks and can coexist with DHCPv4 on the same host.

HP-UX Web Server Suite
HP-UX 11i provides the industry leading, Apache Web Server as a total solution for web server deployment. The version of Apache featured on HP-UX 11i is based on the Open Source Apache Web Server 2.0 software developed by the Apache Software Foundation (Apache HTTP Server Project described at: http://httpd.apache.org).

Apache 2.0 is a significant enhancement over the Apache 1.3.x line from the Apache Server Foundation with many architectural improvements that increase Apache's power and flexibility while retaining its legendary stability as the world's most popular web server. In addition to the base HTTP server, HP has combined numerous popular modules from other Open Source projects as well as provided HP value-added features just for the HP-UX platform.


Internet Express

HP-UX 11i Internet Express is a collection of the most popular and up-to-date set of Internet and security services and tools, combined with a graphical administration utility for ease of management and easy installation of services and configuration. Included with every HP-UX 11i OE Media Kit, the Open Source software is fully tested and qualified for HP-UX 11i supported HP Integrity and HP 9000 systems.

The HP-UX 11i Internet Express software package consists of the most recognized security products, mail servers, news and chat servers, and a variety of tools for providing dynamic Web content. In addition, he Industry-leading HP-UX 11i Web Server Suite is also provided.

All the Open Source Internet components and administration software included with the product are configured and available for use when the installation is complete. HP-UX 11i Internet Express can be installed using a command-line script or using a graphical user interface. The HP-UX 11i Internet Express Open source components are configured through the HP-UX 11i Webmin-based administration utility. These components are grouped as HP-UX 11i OE components and non-OE components. The OE components are part of every HP-UX 11i OE media and are fully supported under HP-UX 11i support contracts. The non-OE components, on the HP-UX 11i Internet Express media, are part of every OE media kit and are open source community supported products.

HP-UX 11i Internet Express is available on both HP Integrity and HP 9000 platforms.

HP-UX supports Fast Ethernet (IEEE 802.3 100Base-TX) in full and half duplex.


HP Auto-Port Aggregation (HP APA)

HP APA, HP's link aggregation or trunking product, provides the ability to logically group two or more physical network ports into single "Fat Pipes", often called "trunks". Network traffic is load balanced across all of the links in the aggregation, which allows a customer to build large bandwidth logical links into the server that are highly available and completely transparent to the client and server applications. HP APA is available for HP-UX 11i v2 and v3.

The LAN Monitor mode of HP APA provides a failover group capability with Serviceguard-like configuration tools. LAN Monitor does not support Serviceguard. In the event of link failure, LAN Monitor will automatically migrate the data flow from the primary link to one of the standby links in the failover group.

HP has tested switches from the following vendors to work with HP APA:

  • 3Com
  • Cisco
  • HP
  • Foundry
  • Alteon
  • Nortel
  • Extreme
contents
 Overview      Operating Environments      Virtualization/Management and Automation      File system and storage      Availability and clustering      Security      Directory - Enabled Computing      Partitioning       Internet and networking      Developers tools      Standards      Internationalization      Hardware Requirements      Supported Hardware      Retired Hardware      Utility pricing and licensing      Software Product Services line.gif (50 bytes)

Developers tools

HP Fortran

HP Fortran is a modern, powerful mathematical and scientific language that supports array-handling, data abstraction, and data hiding. HP Fortran is available on both HP Integrity and HP 9000 servers, and includes the following features:

  • Full Fortran 95 compiler, based on International ANSI/ISO standards
  • Full OpenMP v2.0
  • Object-oriented Fortran feature optimizations
  • Math intrinsic inlining support
  • Standard Fortran library
  • Native and cross compilers for HP Integrity and HP 9000 systems
  • HP WDB debugger support
  • HP Caliper

HP Fortran products are increasingly the language of choice for software engineers writing scientific applications and who demand superior run-time performance, code portability, and programmer productivity.


HP C/aC++ Developer's Bundle

The HP C/ANSI C Developer's Bundle and HP aC++ compiler products for HP-UX are now combined into a single product: the HP C/aC++ Developer's Bundle. The new product includes all of the components of the original products and more; all for one price with consistent per-CPU license terms on all components.

The HP C/aC++ Developer's Bundle provides the tools for compiling, linking, and debugging C and C++ programs. It also includes performance analysis tools, code analysis tools, and the HP-UX Developer's Toolkit. This product runs on HP-UX 11i for both HP Integrity and HP 9000 systems.

The HP C/aC++ Developer's Bundle includes:

  • H