Protecting Snmp Traffic; Lights-Out Advanced/Kvm Card - HP ntegrity iLO 2 MP Operation Manual

Table of Contents

Advertisement

Because iLO 2 MP devices are completely autonomous and can be used to control the server,
treat them the same as other servers. For example, include the iLO 2 MP devices in the security
and network audits.
IMPORTANT:
by pressing the power button for longer than four seconds.

Protecting SNMP Traffic

Because SNMP uses passwords, known as community strings, that are sent across the network
in clear text, you must enhance the network security when using SNMP traffic. To enhance
network security, do the following:
Reset the community strings (read only) with the same frequency and according to the same
guidelines as the administrative passwords. For example, select alphanumeric strings with
at least one uppercase letter, one numeral, and one symbol.
Set firewalls or routers to accept only specific source and destination addresses. For example,
you can allow inbound SNMP traffic into the host server only if it comes from one of the
predetermined management workstations.
TIP:
Telnet sends data without encryption and is not a secure connection. HP recommends
using SSH instead of telnet because SSH uses encryption.
To enable and disable telnet access, use the SA command.

Lights-Out Advanced/KVM Card

The Lights-Out Advanced / KVM card (LOA) is a PCI-X card that you install into any sx2000-based
mid-range or high-end HP Integrity server.
The LOA card enables the Lights-Out Advanced vKVM and vMedia features of the iLO-2 MP
for the rx7640, rx8640, and Superdome sx2000 servers.
The LOA card is also a KVM card that offers physical video functionality for servers running
Windows, and USB functionality for servers running HP-UX, Windows, and OpenVMS.
All Lights-Out Advanced features are fully enabled on the LOA card--there is no additional
advanced pack license to purchase. At present, vKVM is only available for servers running
Windows and vMedia is available for servers running HP-UX, Windows, and OpenVMS.
The LOA card is not currently supported under Linux.
The Lights-Out Advanced features are accessed through the iLO-2 web interface.
26
Introduction to iLO 2 MP
Ensure that physical access to the server is limited. Anyone can clear passwords

Advertisement

Table of Contents
loading

Table of Contents