Users Guide

Back to Contents Page
DellOpenManage™Security
DellOpenManage™Version5.1InstallationandSecurityUser'sGuide
Security Features
Built-in Security Features
Security Management
Security Features
TheDellOpenManagesystemsmanagementsoftwarecomponentsprovidethefollowingsecurityfeatures:
l Authentication for users through hardware-stored user IDs and passwords, or by using the optional Microsoft®Active Directory®.
l Role-based authority that allows specific privileges to be configured for each user.
l User ID and password configuration through the Web-based interface or the command line interface (CLI), in most cases.
l SSL encryption of 128 bit and 40 bit (for countries where 128 bit is not acceptable).
l Session time-out configuration (in minutes) through the Web-based interface or CLI.
l Configuration of many of the commonly known ports.
Built-in Security Features
Ports
Table2-1 lists the ports used by the Dell OpenManage systems management software, other standard operating system services, and other agent
applications. Correctly configured ports are necessary to allow Dell OpenManage systems management software to connect to a remote device through
firewalls. If the attempt to communicate with a remote device fails, you may have specified an incorrect port number.
Table 2-1.DellOpenManageUDP/TCPPortsDefaultLocations
NOTE: Telnet does not support SSL encryption.
NOTE: "Version" in Table2-1referstotheminimumproductversionthatusestheport(orexplicitversionifspecified).
Port #
Protocol
Port
Type
Version
Max. Encryption
Level
Direction
Usage
Configurable
Dell OpenManage Baseboard Management Controller -PowerEdge™
x8xx
systems
623
RMCP
UDP
PowerEdge
x800 systems
only
None
In/Out
IPMI access via LAN
No
Dell OpenManage Baseboard Management Utility
623
Telnet
TCP
1.x
None
In/Out
Accepts incoming Telnet connections
Yes
623
RMCP
UDP
1.x
None
In/Out
Basic BMC commands: server status, power
up/down, and so on.
No
623
RMCP
UDP
1.x
None
In/Out
Basic BMC commands and console redirection
No
Dell OpenManage Client Connector
135
RPC
TCP/UDP
2.0
None
In/Out
Viewing of client management data
No
389
LDAP
TCP
2.0
128 bit
In/Out
Domain authentication
No
4995
HTTPS
TCP
2.0
128 bit SSL
In/Out
Web GUI
Yes
1024 - 65535
(Dynamically
assigned)
DCOM
TCP/UDP
2.0
None
In/Out
Viewing of client management data
Port range can
be restricted.
Dell OpenManage Client Instrumentation
20
HTTP and
FTP
TCP
6.x, 7.x
None
In/Out
Flash BIOS communication
No
21
HTTP and
FTP
TCP
6.x, 7.x
None
In/Out
Flash BIOS communication
No
80
HTTP and
FTP
TCP
6.x, 7.x
None
In/Out
Flash BIOS communication
No
135
DCOM
TCP/UDP
6.x, 7.x
None
In/Out
Monitoring and configuration via WMI
No