contents
 Overview      Standard Features      Supported Product line.gif (50 bytes)

Overview

ProLiant Essentials Vulnerability and Patch Management Pack v2.1

 
ProLiant Essentials Vulnerability and Patch Management Pack (VPM) integrates comprehensive vulnerability assessment and advanced patch management functions for HP and non-HP servers running Windows or Red Hat Linux into HP Systems Insight Manager, to identify and remediate security vulnerabilities quickly, efficiently, and reliably. Using VPM is a recommended step after deploying a server with HP Rapid Deployment Pack.

What's New
  • Effective July 9, 2007, Vulnerability and Patch Management Pack will now be offered exclusively through the Insight Control Management suites
  • HP Insight Control Management suites will include one year of 24 x 7 HP Software Technical Support and Update Service.
  • Vulnerability and Patch Management Pack now offers support for Red Hat Enterprise Linux AS on the managed servers
  • Vulnerability and Patch Management Pack now offers support for the Mozilla Firefox browser for client access
  • Requires HP System Insight Manager version 5.1 or higher

At A Glance
  • Combined vulnerability assessment and patch management
  • Integrated into HP Insight Control Environment
  • Comprehensive vulnerability assessment
  • Automated acquisition, optimized deployment and continuous enforcement of security patches

Available Packs and Purchase Information
Licensing and Packaging ProLiant Essentials Vulnerability and Patch Management Pack, Tracking License for Installed Base Servers
NOTE: For use only with Activation Key Agreements signed and implemented before July 9, 2007. Purchase of this part number entitles the customer to deploy additional licenses of the product under the terms of the existing Activation Key Agreement.
NOTE: Nothing is delivered in conjunction with the purchase of this part number. Visit http://h18004.www1.hp.com/products/servers/proliantessentials/license/akalic.html
for more information on Activation Key Agreements.

378372-B21
ProLiant Essentials Vulnerability and Patch Management Pack, Tracking license for New Servers
NOTE: For use only with Activation Key Agreements, signed and implemented before July 9, 2007. Purchase of this part number entitles the customer to deploy additional licenses of the product under the terms of the existing Activation Key Agreement
NOTE: Nothing is delivered in conjunction with the purchase of this part number. Visit http://h18004.www1.hp.com/products/servers/proliantessentials/license/akalic.html
for more information on Activation Key Agreements.

371647-B21
NOTE: The following products have been discontinued and are listed below as reference information only. Vulnerability and Patch Management Pack will now be offered exclusively through the Insight Control Management suites. Please see the Available Packs and Purchase Information section of this QuickSpecs for new Insight Control Management options.  
ProLiant Essentials Vulnerability and Patch Management Pack, 5 free Licenses
NOTE: 5 full-featured, non-expiring licenses for use on servers or desktops are included with Vulnerability and Patch Management Pack to enable easy evaluation of the product without having to purchase a license.
 
ProLiant Essentials Vulnerability and Patch Management Pack, Single-Server License
NOTE: For use with a single server. Contains one license with a unique license
activation key and documentation.

371645-B21
ProLiant Essentials Vulnerability and Patch Management Pack, 10-Server License
NOTE: For use with 10 servers. Contains 10 licenses with one unique license
activation key and documentation.

372029-B21

ProLiant Essentials Vulnerability and Patch Management Pack, Flexible-Quantity Server License
NOTE: For use with multiple servers (minimum 5). This part number can be used to purchase 5 or more licenses with a single activation key. The quantity ordered of this part number will be the quantity of licenses included in the kit in the form of a corresponding activation key. Use the same key to activate all licenses in the actual quantity ordered. For a given order, one kit will be delivered with the activation key, and documentation.
371646-B21

HP Insight Control Environment for BladeSystem NOTE: Includes a singe product key to license Performance Management Pack (PMP) , Vulnerability and Patch Management Pack (VPM) and Insight Power Manager (IPM), plus separate product registration codes to license Rapid Deployment Pack (RDP) and iLO Select Pack.
Insight Control Data Center Edition is included on the Insight Control Management DVD delivered with HP BladeSystem c-Class enclosures with a choice of 16 purchased full licenses or 8 evaluation licenses (30 days).
NOTE: Insight Control Environment for BladeSystem can also be purchased for HP BladeSystem c Class and p-Class servers in the following license configurations:
HP Insight Control Environment for BladeSystem, No Media 1 License including 1 year of 24x7 Technical Support and Updates
NOTE: Contains 1 license for each of RDP, PMP, VPM, IPM and iLO Select. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
453484-B21
HP Insight Control Environment for BladeSystem, No Media, 8 Licenses including 1 year of 24x7 Technical Support and Updates
NOTE: Contains 8 licenses for each of RDP, PMP, VPM, IPM and iLO Select. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
436747-B22
HP Insight Control Environment for BladeSystem, No Media, Flexible License including 1 year of 24x7 Technical Support and Updates
NOTE: This part number can be used to purchase multiple licenses (minimum quantity of 5). The quantity ordered of this part number will be the quantity of licenses for each of RDP, PMP, and VPM included in a single kit. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
436749-B22
HP Insight Control Environment for BladeSystem RDP Upgrade, No Media, 1 Server License including 1 year of 24x7 Technical Support and Updates
NOTE: For use in environments where RDP is already installed and licensed. Contains 1 licenses for each of PMP, VPM, IPM and iLO Select. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
NOTE: This option does not include RDP licenses.

453485-B21
HP Insight Control Environment for BladeSystem RDP Upgrade, No Media 8 Licenses including 1 year of 24x7 Technical Support and Updates
NOTE: For use in environments where RDP is already installed and licensed. Contains 8 licenses for each of PMP, VPM, IPM and iLO Select. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
NOTE: This option does not include RDP licenses.
436751-B22
HP Insight Control Environment for BladeSystem RDP Upgrade, No Media, Flexible License including 1 year of 24x7 Technical Support and Updates
NOTE: For use in environments where RDP is already installed and licensed. This part number can be used to purchase multiple licenses (minimum quantity of 5). The quantity ordered of this part number will be the quantity of licenses for PMP, VPM, IPM and iLO Select included in a single kit. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
NOTE: This option does not include RDP licenses.

436753-B22
HP Insight Control Environment for BladeSystem, Tracking License including 1 year of 24x7 Technical Support and Updates
NOTE: For use with signed and implemented Activation Key Agreements (AKA) only. Purchase of this part number entitles the customer to deploy additional licenses of the product under the terms of the existing Activation Key Agreement. Includes one year of 24 x 7 HP Software Technical Support and Update Service. No physical components or license keys are delivered in conjunction with the purchase of this part number. For more information on Activation Key Agreements: http://h18004.www1.hp.com/products/servers/proliantessentials/license/akalic.html
437786-B22

HP Insight Control Environment (for ProLiant ML/DL 300 and 500 series) NOTE: Includes a singe product key to license Performance Management Pack (PMP) , Vulnerability and Patch Management Pack (VPM) and Insight Power Manager (IPM), plus separate product registration codes to license Rapid Deployment Pack (RDP) and iLO Advanced Pack.
NOTE: Insight Control Environment is available for purchase for HP ProLiant ML/DL 300 and 500 series servers in the following license configurations:
HP Insight Control Environment, No Media 1 Server License including 1 year of 24x7 Technical Support and Updates
NOTE: Contains 1 license for each of RDP, PMP, VPM, IPM and iLO Advanced. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
452148-B21
HP Insight Control Environment, No Media, Flexible License including 1 year of 24x7 Technical Support and Updates
NOTE: This part number can be used to purchase multiple licenses (minimum quantity of 5). The quantity ordered of this part number will be the quantity of licenses for each of RDP, PMP, VPM, IPM and iLO Advanced included in a single kit. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
452149-B21
HP Insight Control Environment, No Media, 10 Server Licenses including 1 year of 24x7 Technical Support and Updates
NOTE: Contains 10 licenses for each of RDP, PMP, VPM, IPM and iLO Advanced. Includes one year of 24 x 7 HP Software Technical Support and Update Service.
452676-B21
HP Insight Control Environment, Tracking License including 1 year of 24x7 Technical Support and Updates
NOTE: For use with signed and implemented Activation Key Agreements (AKA) only. Purchase of this part number entitles the customer to deploy additional licenses of the product under the terms of the existing Activation Key Agreement. Includes one year of 24 x 7 HP Software Technical Support and Update Service. No physical components or license keys are delivered in conjunction with the purchase of this part number. For more information on Activation Key Agreements: http://h18004.www1.hp.com/products/servers/proliantessentials/license/akalic.html
452150-B21
Media Kit HP Insight Control Management Software Media Kit
NOTE: Insight Control Management DVD media without licenses. Contains Insight Manager and Essentials software products and components licensed by Insight Control Management suites. Uses an integrated installer to perform quick and accurate software installation and updates.
436222-B21
contents
 Overview      Standard Features      Supported Product line.gif (50 bytes)

Standard Features

Combined vulnerability assessment and patch management
Single tool seamlessly combines the assessment and the remediation of vulnerabilities, reducing operational complexity that arises from managing separate tools for vulnerability assessment and patch management.

Integrated into HP Systems Insight Manager
Integration into HP Systems Insight Manager enables use of already existing functionality such as discovery, identification, scheduling, role-based security, notification, and group-based actions, eliminating the need for users to recreate these tasks in multiple tools for vulnerability assessment and patch management.

Comprehensive vulnerability assessment
Coverage of vulnerabilities reported in all leading vulnerability databases ensures comprehensive assessment. Powered by STAT® Scanner (the only Common Criteria Certified scanner) the scan identifies and provides advise to resolve vulnerabilities reported in the Common Vulnerabilities and Exposures (CVE) list, the Federal Computer Incident Response Center (FedCIRC) vulnerability catalog, the SANS Top 20 Internet Security Vulnerabilities list, the Computer Emergency Response Team (CERT) advisories list, and the U.S. Department of Energy Computer Incident Advisories Center (CIAC) bulletins.

Vulnerability scans can be scheduled so that scanning is implemented on an ongoing basis without user intervention.


Automated acquisition, optimized deployment and continuous enforcement of patches

Automatically collects new vulnerability updates, and patches directly from vendor sources, such as a vendor's web-based patch depository. Updates can be acquired outside the firewall and imported into the patch repository in infrastructures where firewall policies prevent http and ftp downloads. Users can schedule the download of vulnerability and patch updates at a frequency of their choosing.

Schedulable deployment, schedulable reboots after deployment, and checkpoint-restarts ensure that patches are deployed with minimal impact on network resources, and allow patches to be managed from a central point.

Unique desired-state management automatically and continuously ensures that patches remain applied in their proper state. If patches are corrupted in any way, they are automatically reinstalled to bring the system to the desired level of patches.

contents
 Overview      Standard Features      Supported Product line.gif (50 bytes)

Supported Product

Monitored systems Supported systems

Any x86-based physical or virtual system running one of the supported operating systems
Supported operating systems
Microsoft Windows 2000 Server
Microsoft Windows 2000 Advanced Server
Microsoft Windows Server 2003 Standard Edition
Microsoft Windows Server 2003 Enterprise Edition
Microsoft Windows Server 2003 Web Edition
Red Hat Enterprise Linux 2.1 ES/AS
Red Hat Enterprise Linux 3 ES/AS
Red Hat Enterprise Linux 4 ES/AS
Microsoft Windows XP Professional
Microsoft Windows 2000 Professional
Microsoft Small Business Server 2000
Microsoft Small Business Server 2003
NOTE: Vulnerability and Patch Management Pack is available in English (US) only for use on English, French, Italian, German, Spanish and Japanese versions of the operating system.
NOTE: Currently only 32-bit versions of the OS are supported
Supported applications for patching All Microsoft applications for which security patches are available (excluding Microsoft Office applications)
All applications included with Red Hat Linux for which Security Advisories are available

Minimum requirements for the VPM server (CMS) Server
Any HP x86-based server
Memory 1 GB RAM minimum for installation on SIM server
Processor
1.5 GHz or higher
Disk space
550 MB for Vulnerability and Patch Management Pack (150 MB in the TEMP directory for installation); Additional space for scan reports and patches
DVD-ROM drive
Supported operating systems Microsoft Windows 2000 Server SP4
Microsoft Windows 2000 Advanced Server SP4
Microsoft Windows Server 2003 Web Edition (inc. SP1, SP2)
Microsoft Windows Server 2003 Standard Edition (inc. SP1, SP2)
Microsoft Windows Server 2003 Enterprise Edition (inc. SP1, SP2)
NOTE: HP SIM may have additional restrictions for supported service pack levels.
NOTE: Currently only 32-bit versions of the OS are supported

Supported versions of HP Systems Insight Manager

HP Systems Insight Manager 5.1 or later

Database An existing Microsoft SQL Server database can be used, or Microsoft Data Engine (MSDE) will be installed on the VPM server during Vulnerability and Patch Management Pack installation. When changing databases during an upgrade, patch data from the previous database is not migrated. A full patch acquisition must be performed to repopulate the patch repository.
Services Microsoft Internet Information Services (IIS) 5.0 or later
NOTE: If running VPM on server separate from HP SIM, it is recommended that https is enabled
TCP/IP, correctly configured with DNS-resolvable names and addresses
Microsoft Internet Explorer 6.0 SP2 or later

Minimum requirements for the VPM Acquisition Utility system (optional) System Any HP x86-based system
Memory 256 MB RAM minimum
Processor
1.5 GHz or higher
Disk space
12 MB for VPM Acquisition Utility;
Additional space for vulnerability and patch downloads
DVD-ROM drive
Supported operating systems Microsoft Windows XP Professional SP1 or later
Microsoft Windows 2000 Server SP4
Microsoft Windows 2000 Advanced Server SP4
Microsoft Windows Server 2003 Standard Edition (inc. SP1, SP2)
Microsoft Windows Server 2003 Enterprise Edition (inc. SP1, SP2
Microsoft Windows Server 2003 Web Edition (inc. SP1, SP2)
NOTE: Currently only 32-bit versions of the OS are supported

Supported browsers for client systems Microsoft Internet Explorer 6.0 SP or later; or
Microsoft Internet Explorer 7.0 or later; or
Mozilla Firefox 2.0 or later

Vulnerability update acquisition From secure HP web site (these updates are automatically downloaded each time the product checks for updates.
Includes vulnerabilities reported in the Common Vulnerabilities and Exposures (CVE) list, the Federal Computer Incident Response Center (FedCIRC) vulnerability catalog, the SANS Top 20 Internet Security Vulnerabilities list, the Computer Emergency Response Team (CERT) advisories list, and the U.S. Department of Energy Computer Incident Advisories Center (CIAC) bulletins.

Microsoft patch acquisition From Microsoft web-based patch repository
The patch descriptor files that are created use the information from mssecure.xml and the Microsoft Update Catalog data feeds

Red Hat patch acquisition From Red Hat Network web site.
Must have a valid subscription to the Red Hat Network for patch acquisitions.
A valid Red Hat Network license is required for each system to be patched.
For more information, see http://www.redhat.com.
The Red Hat library, compat-libstdc++, must exist on the Red Hat target systems.

Other product information Visit http://www.hp.com/go/vpm for more information on HP Vulnerability and Patch Management Pack
Warranty HP will replace defective delivery media replacement for a period of 90 days following the date of purchase.

Startup technical software support is available at no additional charge by calling HP Support up to 90 days from the date of purchase. This includes phone support to assist customers with installation, set-up and product usage questions and/or problems. Worldwide numbers for Support are available at: http://welcome.hp.com/country/us/en/wwcontact.html


HP Software Support Starting in July 2007, HP Insight Control Environment will include one year of 24 x 7 HP Software Technical Support and Update Service. This service provides access to HP technical resources for help in resolving software implementation or operations problems. The service also provides access to software updates and reference manuals either in electronic form or on physical media as they are made available from HP.

With this service, HP Insight Control Environment customers will benefit from expedited problem resolution and proactive notification and delivery of [product name] software updates.

To activate your HP Software Technical Support and Update Service for HP Insight Control Environment, you must register your software purchase through the HP website at http://www.hp.com/go/ice. Failure to register your service will jeopardize service fulfillment.

Your Service Agreement Identifier (SAID) will be delivered to you after registration. After you have received your SAID, you can go to the software update manager (SUM) web page to view your contract online and elect electronic delivery (in addition to standard media-based updates). For more information about this service, see http://www.hp.com/services/insight.


Software Implementation

ProLiant Essentials Vulnerability and Patch Management Pack is part of Insight Control Environment and one of several software plug-ins to HP Systems Insight Manager. Deployment or implementation of the software can be purchased as part of the custom HP Insight Control Management Suites Implementation Service.

For more information: http://h20219.www2.hp.com/services/cache/446042-0-0-225-121.html


Education Services Training is an essential part of server deployment. The Systems Insight Manager and Insight Control Management Suites curriculum provides a broad range of instructor-led and online courses, designed to build both core and advanced skills in server implementation and management.

Education services can be purchased in two ways:

  • HP Care Pack Total Education: This pack provides "credits" that can be used for any of more than 200 different instructor-led courses offered at HP education centers. Credits can also be used for any of more than 3,000 online courses offered through the HP IT Resource Center.
  • Technology-specific HP Care Pack: These services are designed to meet particular training needs specific to a certain technology or level of training.

For more information: http://h20219.www2.hp.com/services/cache/11154-0-0-225-121.html


© Copyright 2007 Hewlett-Packard Development Company, L.P.
The information contained herein is subject to change without notice.

Microsoft and Windows NT are US registered trademarks of Microsoft Corporation.

The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein.


   DA-12111 - U.S. - Version 10 - July 9, 2007 --- Retired on July 9, 2007