OpenManage Enterprise Power Manager 2.0 Security Configuration Guide June 2021 Rev.
Notes, cautions, and warnings NOTE: A NOTE indicates important information that helps you make better use of your product. CAUTION: A CAUTION indicates either potential damage to hardware or loss of data and tells you how to avoid the problem. WARNING: A WARNING indicates a potential for property damage, personal injury, or death. © 2019 - 2021 Dell Inc. or its subsidiaries. All rights reserved. Dell, EMC, and other trademarks are trademarks of Dell Inc. or its subsidiaries.
Contents Figures..........................................................................................................................................4 Tables........................................................................................................................................... 5 Chapter 1: PREFACE..................................................................................................................... 6 Chapter 2: Legal disclaimers..........................................
Figures 1 4 Figures Security control map for Power Manager plugin...............................................................................................
Tables 1 Role-based user privileges for Power Manager................................................................................................
1 PREFACE As part of an effort to improve its product lines, Dell EMC periodically releases revisions of its software and hardware. Some functions that are described in this document might not be supported by all versions of the software or hardware currently in use. The product release notes provide the most up-to-date information about product features. Contact your Dell EMC technical support professional if a product does not function properly or does not function as described in this document.
2 Legal disclaimers THE INFORMATION IN THIS PUBLICATION IS PROVIDED "AS-IS." DELL MAKES NO REPRESENTATIONS OR WARRANTIES OF ANY KIND WITH RESPECT TO THE INFORMATION IN THIS PUBLICATION, AND SPECIFICALLY DISCLAIMS IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.
3 Deployment models You can download and install Power Manager plug-in from dell.com (online) or from an already downloaded package in a network share (offline). You can configure this setting in OpenManage Enterprise (Application Settings > Console and Plugins > Update Settings). For more information, see the Update settings in OpenManage Enterprise section in OpenManage Enterprise User's Guide.
4 Product and Subsystem Security Topics: • • • • • • • • • Security controls map Authentication Rest API security Login security settings User and credential management Role and scope-based access control in OpenManage Enterprise Data security Cryptography Auditing and logging Security controls map Power Manager uses fine-grained instrumentation to provide increased visibility to power consumption, anomalies, and utilization.
User and credential management Each user is assigned certain privileges that determine their access level in OpenManage Enterprise. For information about the user roles and feature-based access privileges for OpenManage Enterprise and Power Manager, see the Dell EMC OpenManage Enterprise User's Guide and Dell EMC OpenManage Enterprise Power Manager User's Guide.
Table 1. Role-based user privileges for Power Manager (continued) Features Administrator Device Manager (scope for assigned groups) Device Manager (scope for non-assigned groups) Viewer Add or remove Power Distribution Units (PDUs) from Power Manager. Yes No No No Monitor PDUs. Yes Yes No Yes Create, edit, or delete Physical Groups. Yes No No No Import physical groups Yes through CSV file No No No Manage the devices in Yes rack. No No No Monitor metrics.
While creating or updating a Device Manager (DM) user, administrators can assign scope to restrict operational access of DM to one or more system groups, custom groups, and / or plugin groups. Administrator and Viewer roles have unrestricted scope. That means they have operational access as specified by RBAC privileges to all devices and groups entities. Scope can be implemented as follows: 1. Create or Edit User 2. Assign DM role 3.
Data security The data that is maintained by Power Manager is stored and secured in internal databases within the appliance and it cannot be accessed from outside. The data that is transferred through Power Manager is secured by secure communication channel. Cryptography Sensitive data is encrypted and stored in an internal database. For more information, see the Security features in OpenManage Enterprise section in OpenManage Enterprise User's Guide.
5 Contacting Dell Prerequisites NOTE: If you do not have an active Internet connection, you can find contact information on your purchase invoice, packing slip, bill, or Dell product catalog. About this task Dell provides several online and telephone-based support and service options. Availability varies by country and product, and some services may not be available in your area. To contact Dell for sales, technical support, or customer service issues: Steps 1. Go to Dell.com/support. 2.