HP rp3440 HP Integrity and HP 9000 iLO MP Operations Guide, Fifth Edition - Page 18

Always-on Capability, Virtual Front Panel, Multiple Access Methods, Security, User Access Control - mp configuration

Page 18 highlights

Always-on Capability The iLO MP is active and available through the LAN and the local console serial port as long as the power cord is plugged in. In the event of a complete power failure, the iLO MP data is protected by a battery backup. Virtual Front Panel The virtual front panel (VFP) presents a summary of the system using direct console addressing. Multiple Access Methods There are several access methods available to access the iLO MP: • IPMI/LAN: Through the iLO MP MAC address. • LAN: Using telnet, web GUI, or SSH to access the iLO MP LAN. • Local Console Serial Port (RS-232): Using a terminal or laptop computer for direct connection. • Remote/Modem Console Serial Port (RS-232): Using a dedicated modem console serial port and external modem. Security The iLO MP provides strong security for remote management in IT environments such as: • User-defined TCP/IP ports • User accounts and access management • Lightweight Directory Access Protocol (LDAP)-based directory services authentication and authorization (requires iLO MP Advanced Pack) • Encrypted communication using SSL, SSH, and RC4 If you enter an incorrect user name and password or a log in attempt fails, the iLO MP imposes a security delay. The iLO MP provides several login security features. After initial failed login attempts (default three), a delay of approximately one second is imposed on the serial connection and the login banner warnings are repeated. User Access Control Access to the iLO MP is restricted by user accounts. User accounts are password protected and are assigned access rights that define a specific level of access to the server and to the iLO MP commands. The iLO MP supports LDAP directory user authentication and locally stored iLO MP user accounts. iLO MP users can have any of the following access rights: Console Access Power Control Access Local User Administration Access iLO MP Configuration Access Right to access the system console (the host operating system). This does not bypass host authentication requirements, if any. Right to power on, power off, or reset the server, and the right to configure the power restore policy. Right to configure locally stored user accounts. Right to configure all iLO MP settings and some system settings, such as the power restore policy. Multiple Users Multiple users can interact with the iLO MP. However, iLO MP Command mode and console mode are mirrored, allowing only one user at a time to have write access to the shared console. When a command is completed, write access is released, and any user can initiate another command. 18 Introduction to iLO MP

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140

Always-on Capability
The iLO MP is active and available through the LAN and the local console serial port as long as
the power cord is plugged in. In the event of a complete power failure, the iLO MP data is
protected by a battery backup.
Virtual Front Panel
The virtual front panel (VFP) presents a summary of the system using direct console addressing.
Multiple Access Methods
There are several access methods available to access the iLO MP:
IPMI/LAN: Through the iLO MP MAC address.
LAN: Using telnet, web GUI, or SSH to access the iLO MP LAN.
Local Console Serial Port (RS-232): Using a terminal or laptop computer for direct connection.
Remote/Modem Console Serial Port (RS-232): Using a dedicated modem console serial port
and external modem.
Security
The iLO MP provides strong security for remote management in IT environments such as:
User-defined TCP/IP ports
User accounts and access management
Lightweight Directory Access Protocol (LDAP)-based directory services authentication and
authorization (requires iLO MP Advanced Pack)
Encrypted communication using SSL, SSH, and RC4
If you enter an incorrect user name and password or a log in attempt fails, the iLO MP imposes
a security delay.
The iLO MP provides several login security features. After initial failed login attempts (default
three), a delay of approximately one second is imposed on the serial connection and the login
banner warnings are repeated.
User Access Control
Access to the iLO MP is restricted by user accounts. User accounts are password protected and
are assigned access rights that define a specific level of access to the server and to the iLO MP
commands. The iLO MP supports LDAP directory user authentication and locally stored iLO
MP user accounts. iLO MP users can have any of the following access rights:
Console Access
Right to access the system console (the host operating
system). This does not bypass host authentication
requirements, if any.
Power Control Access
Right to power on, power off, or reset the server, and the
right to configure the power restore policy.
Local User Administration Access
Right to configure locally stored user accounts.
iLO MP Configuration Access
Right to configure all iLO MP settings and some system
settings, such as the power restore policy.
Multiple Users
Multiple users can interact with the iLO MP. However, iLO MP Command mode and console
mode are mirrored, allowing only one user at a time to have write access to the shared console.
When a command is completed, write access is released, and any user can initiate another
command.
18
Introduction to iLO MP