White Papers
8 Accessing Remote Desktop using VNC on Dell PowerEdge Servers and MX7000 Modular Infrastructure
2.3 Security-Related VNC server settings
The iDRAC VNC server supports three major operating modes:
Mode
Description
VNC over
SSH
Dell 14G servers support VNC over SSH. This mode is automatically enabled if both VNC
and SSH are enabled; SSH is enabled by default. To use VNC over SSH, authenticate to
SSH with iDRAC credentials (username/password).
Note—VNC over SSH is not compatible with VNC over TLS. When using VNC
over SSH, set the SSL Encryption setting to disabled. To enable VNC over SSH
only, do not set a VNC password.
Note—To use VNC over SSH using only iDRAC credentials, enter the iDRAC
wired IP address as the remote destination IP of the SSH tunnel (rather than
localhost or the Quick Sync 2 IP). This requires the wired interface have an IP
assigned. Otherwise, you must set and enter a VNC password. Some clients use
localhost when establishing a tunnel automatically, and thus require a VNC
password.
VNC over
TLS
VNC over TLS (SSL) provides an encrypted connection on 14G/13G/12G servers. This
mode is configured in the VNC settings and requires a VNC password.
VNC encryption is enabled
No
Encryptio
n
Using VNC without encryption offers greater compatibility and may be useful when
troubleshooting remote desktop connectivity. In this mode, connections are still
authenticated with a shared VNC password.
Note—Without SSH or TLS/SSL encryption data communicated in the remote
desktop connection, including host credentials, may be exposed and the identity of
the iDRAC cannot be verified. Consider disabling encryption only on secure local
networks, or when protected by other security such as VPN encryption.