Start a Conversation

Unsolved

This post is more than 5 years old

458

February 25th, 2016 13:00

DD System Center Encryption

Is the traffic between DD System Center and Data Domains encrypted (default port 3009)?  I don't see any text saying it is or isn't in the security guide.

14.3K Posts

February 27th, 2016 13:00

I assume you ask this due to sysadmin pass usage?  I'm not sure to be honest.  Top of my head I would say it is not encrypted, but I could be wrong.  I noticed, at least with DDMC 1.3.0.2, that if I use it against DDOS 5.4.x and run managed-system check-connection I do not get network validation nor manual trust.  With DDOS 5.5.x and higher I do get it. I'm not sure to what exactly does manual trust refer to here and if systems during first contact exchange any keys which keep further exchange protected (at least during credential exchange).

62 Posts

March 1st, 2016 00:00

I can confirm that an encrypted communication method is used. Essentially what happens between the DDMC host and the DataDomain system(s), is an https session is established on port 3009. We utilise https to allow an encrypted communication method for the systems to pass information. So before anything is transmitted on this port, an https session is created, once this is established, the systems will then authenticate. So the authentication is performed after the https session is established, hence it is also encrypted.

No Events found!

Top