Release Notes

Important Notes
Topics:
Security
Ethernet Switch firmware update
Upgrading or downgrading OME-Modular
Template deployment
Security
OpenVAS vulnerability scanner may report the following issues:
CVE-2017-15906, CVE-2018-15919, CVE-2018-15473: Security scan may report these CVEs on OME-Modular. These are
false positives as, OMEModular disables the Secure Copy Protocol (SCP) by default. The SFTP and lockout policies are in
place to avoid brute force attack.
Security best practices
SNMP
Security scanners may identify SNMP. If you do not use SNMP in your deployment, you can disable SNMP.
If SNMP is required, Dell Technologies recommends that the default community name is changed from public.
By default, a self-signed certificate is generated to enable HTTPS communication. Dell Technologies recommends generating
a CSR and installing a valid non-self signed certificate.
Besides improving the security of OME-Modular, these actions eliminate warnings that the vulnerability scanners, relating to the
default self-signed web server certificate, and default SNMP community name, produce.
NOTE: Dell Technologies recommends changing the default password for OMEModular.
Ethernet Switch firmware update
For instructions about updating network IOMs, see the Dell EMC OpenManage Enterprise - Modular Edition Version 1.30.00 for
PowerEdge MX Chassis User's Guide.
Upgrading or downgrading OME-Modular
Clear the browser cache before or after upgrading or downgrading OME-Modular.
Template deployment
If you deploy a template on servers with PERC controllers in HBA mode, then the profile deployment may fail. Check the
iDRAC Lifecycle Controller logs for the error details.
5
Important Notes 11