User guide

21
Other Security Features
VLAN
Virtual LAN tagging can be configured in the web browser interface. If enabled, the iDRAC6 firmware
requires the presence of inserted fields in the network packets to send them through for processing.
This provides a way to put multiple IP networks on the same switch in addition to being an extra
measure of security.
Disabling Services and Changing the Service Port Number
There are several out-of-band services running on a IDRAC 6 by default. These services open a network
port that listens for a connection.
NOTE: Dell strongly recommends disabling all unused services on iDRAC6 cards.
The following are services which can be enabled or disabled by administrators:
SNMP Agent
Telnet (disabled by default)
SSH
Web Server
Console Redirection Service
Virtual Media Service
IPMI LAN interface (disabled by default)
IPMI SOL interface
Ports must be correctly configured to allow iDRAC6 to work through firewalls. The following lists indicate
the default ports used by iDRAC6:
22* SSH
23* Telnet
80* HTTP
443* HTTPS
623 RMCP/RMCP+
5900* Console Redirection keyboard/mouse, Virtual Media Service, Virtual Media Secure Service,
Console Redirection video
* Configurable port
iDRAC6 Client Ports
25 SMTP
53 DNS
68 DHCP-assigned IP address
69 TFTP
162 SNMP trap
636 LDAPS
3269 LDAPS for global catalog (GC)