FAQ

10 iDRAC9 with Lifecycle ControllerBest in class management for Dell EMC 14th generation PowerEdge Servers
1.1.3 Security by Default
Security is a critical component for any IT department. There is tremendous focus on security at the OS and
application layer. Dell EMC is also focuses on security at the hardware, BIOS and firmware levels. Here are
some of the features Dell EMC provides to further secure PowerEdge Servers.
Lock down the server configuration and firmware
iDRAC9 offers a new feature that ‘locks down’ the hardware and firmware configuration of a server or servers.
This mode can be enabled one by one by using the GUI, and CLIs such as RACADM, or as part of the
Server Configuration Profile. This mode is set with root privilege, and prevents lower classes from making
changes to the server. This feature can be enabled/disabled by root, and any changes made when disabled
are tracked in the Lifecycle Controller Log.
o Benefits
o Prevent configuration “drift” in your datacenter when using Dell tools.
o Protect against malicious attacks against embedded FW when using Dell Update Package
Securely erase server storage content with System Erase
Often times, servers get ‘repurposed’ from one department to another. But concerns over residual data and
information implies added work for the IT admin. Dell EMC servers now offer a quick and thorough process to
remove existing data, users, passwords, and more with a few clicks of a mouse. Admins can choose to wipe
all components, or select which items to keep. Hard drive (HDD) data is usually the primary concern. With
drive sizes in the TB range, writing 0’s and 1’s can take weeks. For 14
th
generation, all drives in the servers
support the industry standard “Instant Secure Erase” to help quickly remove the key that contains the
information to the data location on the drive. Once the key is removed, the data is no longer accessible, and
the system is ready for use in its new role.
o Benefits
o Quickly and securely erase 14G server storage devices including HDD and SSD/NVMe drives
o Repurpose or retire servers in minutes rather than hours or days