Dell PowerEdge VRTX Chassis Management Controller Version 1.0 for Dell PowerEd - Page 67

Configuring Network Security Settings, Configuring Network Security Settings Using CMC Web Interface

Page 67 highlights

NOTE: IPv6 requires a minimum MTU of 1280. If IPv6 is enabled, and cfgNetTuningMtu is set to a lower value, the CMC uses an MTU of 1280. Configuring Network Security Settings You can configure the network security settings for IPv4 only. Configuring Network Security Settings Using CMC Web Interface NOTE: To perform the following tasks, you must have the Chassis Configuration Administrator privilege. To configure the network security settings using CMC Web interface: 1. In the left pane, click Chassis Overview, and then click Network . The Network Configuration page is displayed. 2. In the IPv4 Settings section, click Advanced Settings. The Network Security page is displayed. 3. Specify the IP range and IP blocking values. For more information, see the Online Help. 4. To save your settings, click Apply. Configuring CMC Network Security Settings Using RACADM IP filtering compares the IP address of an incoming login to the IP address range that is specified in the following cfgRacTuning properties: • cfgRacTuneIpRangeAddr • cfgRacTuneIpRangeMask A login from the incoming IP address is allowed only if the following are identical: • cfgRacTuneIpRangeMask bit-wise and with incoming IP address • cfgRacTuneIpRangeMask bit-wise and with cfgRacTuneIpRangeAddr Configuring Virtual LAN Tag Properties for CMC VLANs are used to allow multiple virtual LANs to co-exist on the same physical network cable and to segregate the network traffic for security or load management purposes. When you enable the VLAN functionality, each network packet is assigned a VLAN tag. Configuring VLAN Tag Properties for CMC Using RACADM 1. Enable the VLAN capabilities of the external chassis management network: racadm config -g cfgLanNetworking -o cfgNicVLanEnable 1 2. Specify the VLAN ID for the external chassis management network: racadm config -g cfgLanNetworking -o cfgNicVlanID The valid values for are 1- 4000 and 4021- 4094. Default value is 1. For example: racadm config -g cfgLanNetworking -o cfgNicVlanID 1 67

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193

NOTE:
IPv6 requires a minimum MTU of 1280. If IPv6 is enabled, and
cfgNetTuningMtu
is set to a lower value,
the CMC uses an MTU of 1280.
Configuring Network Security Settings
You can configure the network security settings for IPv4 only.
Configuring Network Security Settings Using CMC Web Interface
NOTE:
To perform the following tasks, you must have the
Chassis Configuration Administrator
privilege.
To configure the network security settings using CMC Web interface:
1.
In the left pane, click
Chassis Overview
, and then click
Network
. The
Network Configuration
page is displayed.
2.
In the
IPv4 Settings
section, click
Advanced Settings
. The
Network Security
page is displayed.
3.
Specify the IP range and IP blocking values. For more information, see the
Online Help
.
4.
To save your settings, click
Apply
.
Configuring CMC Network Security Settings Using RACADM
IP filtering compares the IP address of an incoming login to the IP address range that is specified in the following
cfgRacTuning
properties:
cfgRacTuneIpRangeAddr
cfgRacTuneIpRangeMask
A login from the incoming IP address is allowed only if the following are identical:
cfgRacTuneIpRangeMask
bit-wise and with incoming IP address
cfgRacTuneIpRangeMask
bit-wise and with
cfgRacTuneIpRangeAddr
Configuring Virtual LAN Tag Properties for CMC
VLANs are used to allow multiple virtual LANs to co-exist on the same physical network cable and to segregate the
network traffic for security or load management purposes. When you enable the VLAN functionality, each network
packet is assigned a VLAN tag.
Configuring VLAN Tag Properties for CMC Using RACADM
1.
Enable the VLAN capabilities of the external chassis management network:
racadm config -g cfgLanNetworking -o
cfgNicVLanEnable 1
2.
Specify the VLAN ID for the external chassis management network:
racadm config -g cfgLanNetworking -o cfgNicVlanID <
VLAN id
>
The valid values for <
VLAN id
> are 1– 4000 and 4021– 4094. Default value is 1.
For example:
racadm config -g cfgLanNetworking -o cfgNicVlanID
1
67