HP Integrated Lights-Out 2 User Guide

Table Of Contents
Support for X.509 CA signed certificates
Support for securing RBSU
Encrypted communication using:
SSH key administration
SSL certificate administration
Support for optional LDAP-based directory services
Some of these options are licensed features. To verify your available options, see “Licensing” (page
26).
General security guidelines
The following are general guidelines concerning security for iLO 2:
For maximum security, iLO 2 must be set up on a separate management network.
The iLO 2 firmware must not be connected directly to the Internet.
A 128-bit cipher strength browser must be used.
Password guidelines
The following is a list of recommended password guidelines. Passwords must:
Never be written down or recorded
Never be shared with others
Not be words generally found in a dictionary, or easy to guess words, such as the company
name, product names, the user's name, or the user's User ID
Include at least three of the four following characteristics:
At least one numeric character
At least one special character
At least one lowercase character
At least one uppercase character
Passwords issued for a temporary user ID, password reset, or a locked-out user ID must also conform
to these standards. Each password must be a minimum length of zero characters and a maximum
length of 39 characters. The default minimum length is set to eight characters. Setting the minimum
password length to fewer than eight characters is not recommended unless you have a physically
secure management network that does not extend outside the secure data center.
Security 41