Security Options for the iDRAC6 Administrator

Disabling the iDRAC6 Local Configuration

Administrators can disable local configuration through the iDRAC6 graphical user interface (GUI) by selecting Remote AccessNetwork/SecurityServices. When the Disable the iDRAC Local Configuration using option ROM check box is selected, the iDRAC6 Configuration Utility—accessed by pressing <Ctrl+E> during system boot—operates in read-only mode, preventing local users from configuring the device. When the administrator selects the Disable the iDRAC Local Configuration using RACADM check box, local users cannot configure the iDRAC6 through the RACADM utility, or the Dell OpenManage Server Administrator, although they can still read the configuration settings.

Administrators can enable one or both of these options at the same time. In addition to enabling them through the Web-based interface, administrators can do so using local RACADM commands.

Disabling Local Configuration During System Reboot

This feature disables the ability of the managed system’s user to configure the iDRAC6 during system reboot.

racadm config -g cfgRacTuning -o cfgRacTuneCtrlEConfigDisable 1

NOTE: This option is supported only on the iDRAC6 Configuration Utility. To upgrade to this version, upgrade your BIOS using the BIOS update package from the Dell Support website at support.dell.com.

Disabling Local Configuration From Local RACADM

This feature disables the ability of the managed system’s user to configure the iDRAC6 using the local RACADM or the Dell OpenManage Server Administrator utilities.

racadm config -g cfgRacTuning -o cfgRacTuneLocalConfigDisable 1

346

Configuring Security Features

Page 346
Image 346
Dell IDRAC6 manual Security Options for the iDRAC6 Administrator, Disabling the iDRAC6 Local Configuration, 346