Installation Manual

Configuring Security Features 351
Several situations might call for disabling iDRAC6 Virtual Console. For
example, administrators may not want a remote iDRAC6 user to view the
BIOS settings that they configure on a system, in which case they can disable
Virtual Console during the system POST by using the
LocalConRedirDisable command. They may also want to increase
security by automatically disabling Virtual Console every time an
administrator logs in to the system, which they can do by executing the
LocalConRedirDisable command from the user logon scripts.
NOTE: See the white paper on Disabling Local Configuration and Remote Virtual
KVM in the DRAC on the Dell Support site at support.dell.com for more information.
For more information on logon scripts, see
technet2.microsoft.com/windowsserver/en/library/31340f46-b3e5-4371-
bbb9-6a73e4c63b621033.mspx.
Securing iDRAC6 Communications Using SSL and
Digital Certificates
This subsection provides information about the following data security
features that are incorporated in your iDRAC6:
"Secure Sockets Layer (SSL)" on page 351
"Certificate Signing Request (CSR)" on page 352
"Accessing the SSL Main Menu" on page 353
"Generating a Certificate Signing Request" on page 353
Secure Sockets Layer (SSL)
The iDRAC6 includes a Web server that is configured to use the
industry-standard SSL security protocol to transfer encrypted data over
the Internet. Built upon public-key and private-key encryption technology,
SSL is a widely accepted technique for providing authenticated and
encrypted communication between clients and servers to prevent
eavesdropping across a network.