Security levels

There are 4 possible security levels determining the level of the connection’s security. The default security level for each product is 4.

The following table describes the security provided and requirements for each security level.

Security Level

Security

Requirements

1

Encryption only

Key Pair, both endpoints must be configured for security level 1.

2

Encryption and presence of valid certificate on the server (with no server authentication)

Requires a valid certificate on the server.

3

Server authentication

Server was deployed with a valid certificate (possibly with a certificate chain), and the client was deployed with a certificate which is trusted by the same root CA (possibly with a certificate chain).

4

Client and server authentication

Same as level 3, and in addition both sides must be configured with security level 4.

In zone 2, Control-M/EM is the client and Control-M/Server is the server. In zone 3, Control-M/Server acts as the server and the Control-M/Agent acts as the client, and for other connections the Control-M/Agent acts as the server and the Control-M/Server acts as the client.

You must define the same security level for a pair of components that communicate with each other. However, you can define level 3 for communication in a server role and level 4 for communication in a client role to the communication channel between Control-M/Agent and Control-M/Server.

Parent Topic

Microsoft Windows environment