How are unauthorized users kept away?
• Access is restricted to only authorized users • HTTP access is carefully guarded by excluding password-based HTTP sessions on the HP SURE PC Backup Services servers, only allowing API calls • API calls are individually authenticated and authentication information is embedded in a 128-bit MD5 token in each call • The MD5 token is based on a shared key and file handle, and optionally expiry date, time or IP address • Shared keys: • Are specified by the user using the HP SURE PC Backup Services web-based Management interface interface • Multiple keys can be specified and selected • Keys are controlled by the customer and can be changed as often as desired