Users Guide
Disabling FIPS Mode
To disable FIPS mode, reset CMC to the default factory settings.
Conguring services
You can congure and enable the following services on CMC:
• CMC serial console — Enable access to CMC using the serial console.
• Web Server — Enable access to CMC web interface. Disabling the web server also disables Remote RACADM.
• SSH — Enable access to CMC through rmware RACADM.
• Telnet — Enable access to CMC through rmware RACADM
• Remote RACADM — Enable access to CMC using RACADM.
• SNMP — Enable CMC to send SNMP traps for events.
• Remote Syslog — Enable CMC to log events to a remote server. To use this feature, you must have an Enterprise license.
NOTE: When modifying CMC service port numbers for SSH, Telnet, HTTP, or HTTPS, avoid using commonly used ports by OS
services such as port 111. See Internet Assigned Numbers Authority (IANA) reserved ports at http://www.iana.org/assignments/
service-names-port-numbers/service-names-port-numbers.xhtml.
CMC includes a web server that is congured to use the industry-standard SSL security protocol to accept and transfer encrypted data
from and to clients over the Internet. The web server includes a Dell self-signed SSL Digital Certicate (Server ID), and is responsible for
accepting and responding to secure HTTP requests from clients. This service is required by the web interface and remote RACADM CLI
tool for communicating with CMC.
If the web server resets, wait at least one minute for the services to become available again. A web server reset usually happens as a result
of any of the following events:
• Network conguration or network security properties are changed through the CMC web user interface or RACADM.
• Web server port conguration is changed through the web user interface or RACADM.
• CMC is reset.
• A new SSL server certicate is uploaded.
NOTE
: To modify service settings, you must have the Chassis Conguration Administrator privilege.
Remote syslog is an additional log target for CMC. After you congure the remote syslog, each new log entry generated by CMC is
forwarded to the respective destinations.
NOTE
: Because the network transport for the forwarded log entries is UDP, there is no guaranteed delivery of log entries, nor is
there any feedback to CMC about whether the log entries were received successfully.
The reserved network ports for CMC and iDRAC communication are 21, 68, 69, 123, 161, 546, 801, 4003, 4096, 5985 to 5990, 6900, and
60106.
Conguring services using RACADM
To enable and congure the various services, use the following RACADM objects:
• cfgRacTuning
• cfgRacTuneRemoteRacadmEnable
For more information about these objects, see the Chassis Management Controller for PowerEdge FX2/FX2s RACADM Command Line
Reference Guide available at dell.com/support/manuals.
70
Conguring CMC