Release Notes

Important Notes
Topics:
Security
Ethernet Switch firmware update
Upgrading or downgrading OME-Modular
Template deployment
Security
OpenVAS vulnerability scanner may report the following issues:
CVE-2017-15906, CVE-2018-15919, CVE-2018-15473: Security scan may report these CVEs on OME-Modular. These are
false positives as, OMEModular disables the Server Configuration Profile (SCP) by default,. The SFTP and lockout policies
are in place to avoid brute force attack.
Security best practices
SNMP
Security scanners may identify SNMP. If you do not use SNMP in your deployment, you can disable SNMP.
If SNMP is required, Dell EMC recommends that the default community name is changed from public.
By default, a self-signed certificate is generated to enable HTTPS communication. Dell EMC recommends generating a CSR
and installing a valid non-self signed certificate.
Besides improving the security of OME-Modular, these actions eliminate warnings that are produced by vulnerability scanners
relating to the default self-signed web server certificate and default SNMP community name.
NOTE: Dell EMC recommends changing the default password for OMEModular.
Ethernet Switch firmware update
For instructions about updating network IOMs, see the Dell EMC OpenManage Enterprise - Modular Edition Version 1.30.00 for
PowerEdge MX Chassis User's Guide.
Upgrading or downgrading OME-Modular
Clear the browser cache before or after upgrading or downgrading OME-Modular.
Template deployment
If you deploy a template on servers with PERC controllers in HBA mode, then the profile deployment may fail. Check the
iDRAC Lifecycle Controller logs for the error details.
5
10 Important Notes