Users Guide

Table Of Contents
以从 iDRAC GUI iDRAC 设置 > 服务 > SEKM 配置 > 重新加密执行 iDRAC 重新加密操作。执行此操作后,可以通过读取
KeyIdentifierN KeyIdentifierNMinusOne 属性来验证密钥更改。
SEKM PERC
重新加密(控制器
[
示例
RAID.Slot.1-1] FQDD
上的重新加密)
在执行 racadm sekm rekey <controller
FQDD> 时,相应的启用 SEKM 的控制器将通过从 KMS 创建的当前活动 iDRAC 通用密钥进行重新加密。还可以从 iDRAC GUI
存储 > 控制器 > <控制器 FQDD> > 操作 > 编辑 > 安全 > 安全(加密) > 重新加密执行存储控制器重新加密操作。
启用或禁用 HTTPS 重定向
如果由于与默认 iDRAC 证书相关的警告问题而不想从 HTTP 自动重定向至 HTTPS 或作为临时设置用于调试目的,您可以按照以下方
式配置 iDRAC:禁用从 http 端口(默认为 80)重定向到 https 端口(默认为 443)。默认情况下,它处于启用状态。您必须注销并
登录到 iDRAC 以使此设置生效。如果禁用此功能,会显示一条警告消息。
您必须具有“配置 iDRAC”权限才能启用或禁用 HTTPS 重定向。
在启用或禁用该功能时,将在 Lifecycle Controller 日志文件中记录一个事件。
要禁用 HTTP HTTPS 的重定向:
racadm set iDRAC.Webserver.HttpsRedirection Disabled
要启用 HTTP HTTPS 的重定向:
racadm set iDRAC.Webserver.HttpsRedirection Enabled
要查看 HTTP HTTPS 的重定向的状态:
racadm get iDRAC.Webserver.HttpsRedirection
Using VNC client to manage remote server
You can use a standard open VNC client to manage the remote server using both desktop and mobile devices such as Dell Wyse
PocketCloud. When servers in data centers stop functioning, the iDRAC or the operating system sends an alert to the console on the
management station. The console sends an email or SMS to a mobile device with required information and launches VNC viewer
application on the management station. This VNC viewer can connect to OS/Hypervisor on the server and provide access to keyboard,
video, and mouse of the host server to perform the necessary remediation. Before launching the VNC client, you must enable the VNC
server and configure the VNC server settings in iDRAC such as password, VNC port number, SSL encryption, and the time-out value. You
can configure these settings using iDRAC Web interface or RACADM.
NOTE: VNC feature is licensed and is available in the iDRAC Enterprise or Datacenter license.
NOTE: You may see VNC login error if you are using Chrome browser.
You can choose from many VNC applications or Desktop clients such as the ones from RealVNC or Dell Wyse PocketCloud.
Two VNC client sessions can be activated simultaneously. Second session is in Read-Only mode.
If a VNC session is active, you can only launch the Virtual Media using Launch Virtual Console and not the Virtual Console Viewer.
If video encryption is disabled, the VNC client starts RFB handshake directly, and an SSL handshake is not required. During VNC client
handshake (RFB or SSL), if another VNC session is active or if a Virtual Console session is open, the new VNC client session is rejected.
After completion of the initial handshake, VNC server disables Virtual Console and allows only Virtual Media. After termination of the VNC
session, VNC server restores the original state of Virtual Console (enabled or disabled).
NOTE:
While launching a VNC session, if you get an RFB protocol error, change the VNC client settings to High quality and then relaunch
the session.
When iDRAC NIC is in shared mode and the host system is power cycled, the network connection is lost for a few seconds.
During this time, if you perform any action in the active VNC client, the VNC session may close. You must wait for timeout (value
configured for the VNC Server settings in the Services page in iDRAC Web interface) and then re-establish the VNC
connection.
If the VNC client window is minimized for more than 60 seconds, the client window closes. You must open a new VNC session. If
you maximize the VNC client window within 60 seconds, you can continue to use it.
92 配置 iDRAC