User guide
21
Other Security Features
VLAN
Virtual LAN tagging can be configured in the web browser interface. If enabled, the iDRAC6 firmware
requires the presence of inserted fields in the network packets to send them through for processing.
This provides a way to put multiple IP networks on the same switch in addition to being an extra
measure of security.
Disabling Services and Changing the Service Port Number
There are several out-of-band services running on a IDRAC 6 by default. These services open a network
port that listens for a connection.
NOTE: Dell strongly recommends disabling all unused services on iDRAC6 cards.
The following are services which can be enabled or disabled by administrators:
• SNMP Agent
• Telnet (disabled by default)
• SSH
• Web Server
• Console Redirection Service
• Virtual Media Service
• IPMI LAN interface (disabled by default)
• IPMI SOL interface
Ports must be correctly configured to allow iDRAC6 to work through firewalls. The following lists indicate
the default ports used by iDRAC6:
22* SSH
23* Telnet
80* HTTP
443* HTTPS
623 RMCP/RMCP+
5900* Console Redirection keyboard/mouse, Virtual Media Service, Virtual Media Secure Service,
Console Redirection video
* Configurable port
iDRAC6 Client Ports…
25 SMTP
53 DNS
68 DHCP-assigned IP address
69 TFTP
162 SNMP trap
636 LDAPS
3269 LDAPS for global catalog (GC)