Release Notes

Table Of Contents
Important Notes
Topics:
Security
Security
OpenVAS vulnerability scanner may report the following issues:
NVT: OpenSSH 'sftp-server' Security Bypass Vulnerability (Linux) (OID: 1.3.6.1.4.1.25623.1.0.812051). This is a false positive
based on the OpenSSH version that OMEModular carries. No SFTP is exposed or supported.
NVT: SSH Weak Encryption Algorithms Supported (OID: 1.3.6.1.4.1.25623.1.0.105611). OMEModular supports secure
algorithms and upgrades SSH clients to the appropriate option. Configure your SSH client to autonegotiate the crypto
algorithms used.
Security best practices
SNMP
Security scanners may identify SNMP. If you do not use SNMP in your deployment, you can disable SNMP.
If SNMP is required, Dell EMC recommends that the default community name is changed from public.
By default, a self-signed certificate is generated to enable HTTPS communication. Dell EMC recommends generating a CSR
and installing a valid non-self signed certificate.
Besides improving the security of OME - Modular, these actions eliminate warnings that are produced by vulnerability scanners
relating to the default self-signed web server certificate and default SNMP community name.
NOTE: Dell EMC recommends changing the default password for OME - Modular.
VLAN
When you configure non-default untagged or native VLAN for FCoE enabled interfaces, the configuration is accepted, but not
applied to the hardware.
5
12 Important Notes